Tenable researchers found two security vulnerabilities in Microsoft’s Azure Health Bot platform that could allow unauthorized access to internal APIs and cross-tenant resources. Microsoft acted promptly on Tenable’s findings, applying mitigations to all affected services and eliminating the attack vector. These discoveries highlight the potential risks of AI-powered services and the need for strong web application and cloud security controls.
Amazon Takes Down BMI CalculationVsn App From Its Appstore After Spotting Android Malware In It
McAfee Labs discovered an Android spyware disguised as a BMI calculation app on the Amazon Appstore. The app harvested sensitive data from devices it infected