A malicious Python package targeting Discord developers with remote access trojan (RAT) malware was spotted on the Python Package Index (PyPI) after more than three years. [more]
Coinbase has fixed a confusing bug in its account activity logs that caused users to think their credentials were compromised. [more]
Microsoft warned Windows users of increased CPU usage when typing while using recent versions of the classic Outlook email client. [more]
A vulnerability in the WinRAR file archiver solution could be exploited to bypass the Mark of the Web (MotW) security warning and execute arbitrary code on a Windows machine. [more]
Coinbase is fixing a misleading account activity message that has caused confusion and anxiety, making users think their credentials were compromised. [more]
Artificial intelligence company OpenAI has announced a fivefold increase in the maximum bug bounty rewards for "exceptional and differentiated" critical security vulnerabilities from $20,000 to $100,000. [more]
​Microsoft is investigating a known issue that causes the new Outlook email client to crash when users click the "Go to classic Outlook" button, which should help them switch back to the classic Outlook. [more]
GitLab released security updates for Community Edition (CE) and Enterprise Edition (EE), fixing nine vulnerabilities, among which two critical severity ruby-saml library authentication bypass flaws. [more]
​Microsoft has fixed a known issue that broke email and calendar drag-and-drop in classic Outlook after installing recent updates on Windows 24H2 systems. [more]
Microsoft is not testing a fix for a longstanding known issue that is breaking SSH connections on some Windows 11 22H2 and 23H2 systems. [more]
​Microsoft announced over the weekend that it has expanded its Microsoft Copilot (AI) bug bounty program and increased payouts for moderate severity vulnerabilities. [more]
The Serbian government exploited Qualcomm zero-days to unlock and infect Android devices with a new spyware named 'NoviSpy,' used to spy on activists, journalists, and protestors. [more]
CISA has warned U.S. federal agencies to secure their systems against ongoing attacks targeting a high-severity Windows kernel vulnerability. [more]
America's cyber defense agency has received evidence of hackers actively exploiting a remote code execution vulnerability in SSL VPN products Array Networks AG and vxAG ArrayOS. [more]
Microsoft is warning enterprise customers that, for almost a month, a bug caused critical logs to be partially lost, putting at risk companies that rely on this data to detect unauthorized activity. [more]
Microsoft is investigating an Outlook bug that is causing desktop app crashes, high system resource usage, and preventing users from logging into their accounts. [more]
CISA has tagged another critical Ivanti security vulnerability, which can let threat actors create rogue admin users on vulnerable Virtual Traffic Manager (vTM) appliances, as actively exploited in attacks. [more]
Intel says it has finally gotten to the bottom of why 13th and 14th-generation CPUs can behave erratically. [more]
Microsoft acknowledges there is a bug with Windows 11 and certain types of VPN connections. [more]
Apple's "pinch to zoom" bug we described last September has probably been fixed. [more]
Microsoft has resolved a known issue causing significant delays for Microsoft 365 customers when saving attachments in Outlook Desktop. [more]
The file explorer in Windows 11 is faster, but not thanks to a clever solution, but a bug. [more]
Have you experienced a blue screen with the associated error code “UNSUPPORTED_PROCESSOR?”. [more]