The Cybersecurity and Infrastructure Security Agency (CISA) has added a 9.8-rated vulnerability affecting Microsoft SharePoint servers to its list of Known Exploited Vulnerabilities (KEV). The vulnerability, CVE-2023-29357, could allow attackers to bypass authentication checks and gain administrative access to a server. Despite a patch being issued by Microsoft in June, CISA reports it is still being actively exploited.
Amazon Takes Down BMI CalculationVsn App From Its Appstore After Spotting Android Malware In It
McAfee Labs discovered an Android spyware disguised as a BMI calculation app on the Amazon Appstore. The app harvested sensitive data from devices it infected