Security
Headlines
HeadlinesLatestCVEs

Tag

#microsoft

CVE-2023-33157

Microsoft SharePoint Remote Code Execution Vulnerability

CVE
#vulnerability#microsoft#rce
CVE-2023-32057

Microsoft Message Queuing Remote Code Execution Vulnerability

CVE-2023-33134

Microsoft SharePoint Server Remote Code Execution Vulnerability

CVE-2023-33159

Microsoft SharePoint Server Spoofing Vulnerability

CVE-2023-35309

Microsoft Message Queuing Remote Code Execution Vulnerability

CVE-2023-33160

Microsoft SharePoint Server Remote Code Execution Vulnerability

CVE-2023-24881

Microsoft Teams Information Disclosure Vulnerability

Undocumented driver-based browser hijacker RedDriver targets Chinese speakers and internet cafes

Cisco Talos has identified multiple versions of an undocumented malicious driver named “RedDriver,” a driver-based browser hijacker that uses the Windows Filtering Platform (WFP) to intercept browser traffic.

Old certificate, new signature: Open-source tools forge signature timestamps on Windows drivers

Actors are leveraging multiple open-source tools that alter the signing date of kernel mode drivers to load malicious and unverified drivers signed with expired certificates.

Hackers Exploit Windows Policy Loophole to Forge Kernel-Mode Driver Signatures

A Microsoft Windows policy loophole has been observed being exploited primarily by native Chinese-speaking threat actors to forge signatures on kernel-mode drivers. "Actors are leveraging multiple open-source tools that alter the signing date of kernel mode drivers to load malicious and unverified drivers signed with expired certificates," Cisco Talos said in an exhaustive two-part report shared