CISA KEV Update Part I – January 2024

CISA KEV Update Part I – January 2024

CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2023-7024 Google Chromium WebRTC Heap Buffer Overflow Vulnerability CVE-2023-7101 Spreadsheet::ParseExcel Remote Code Execution Vulnerability These…
Snappfood Iran discloses a data breach

Snappfood Iran discloses a data breach

Snappfood, an online food delivery service in Iran, has disclosed a data breach in which personal information of millions of customers was stolen. Snappfood facilitates users in Iran to order food…
Microsoft disables App Installer

Microsoft disables App Installer

Microsoft has disabled its ms-appinstaller URI scheme (App Installer) after observing that threat actors are using it to distribute malware. According to a blog from Microsoft Threat Intelligence, it has…