password management

AppWizard
December 20, 2024
Researchers at McAfee Labs found a malicious app named BMI CalculationsVsn on the Amazon Appstore, disguised as a body mass index calculator. The app activates screen recording when users click the “Calculate” button, potentially capturing sensitive information. Although it was designed to record video, the developer had not implemented the capability to upload recordings. The app could still scan for installed applications and collect text messages. It was uploaded to the Amazon Appstore in early October and was removed after McAfee alerted Amazon. Users who installed it need to delete it manually.
Winsage
December 12, 2024
Microsoft's Patch Tuesday updates for 2024 addressed 72 security vulnerabilities, including 17 classified as Critical, 52 as Important, and one as Moderate. One vulnerability, CVE-2024-49138, is actively exploited and relates to privilege escalation in the Windows Common Log File System (CLFS) driver. Microsoft has mitigated 1,088 vulnerabilities this year. The flaw allows attackers to gain elevated system privileges and has been recognized by CrowdStrike. It is the fifth actively exploited CLFS privilege escalation vulnerability since 2022 and the ninth patched this year. Microsoft is implementing additional verification steps for log files and has introduced new security mitigations using Hash-based Message Authentication Codes (HMAC). This vulnerability is listed in the Known Exploited Vulnerabilities catalog by CISA, requiring Federal Civilian Executive Branch agencies to remediate it by December 31st. The most critical vulnerability this month is CVE-2024-49112, a remote code execution flaw affecting the Windows Lightweight Directory Access Protocol (LDAP). Other significant remote code execution vulnerabilities include CVE-2024-49117 (Windows Hyper-V), CVE-2024-49105 (Remote Desktop Client), and CVE-2024-49063 (Microsoft Muzic). Users are advised to update their systems promptly and ensure Windows Defender is activated.
Tech Optimizer
December 12, 2024
Microsoft offers Windows Security for Windows 11 and Windows Defender for Windows 10, both providing integrated security solutions focused on virus detection and protection against malware, phishing, and ransomware. Users often consider third-party antivirus options for enhanced protection. Windows Security has drawbacks, including false positives that can lead to the removal of legitimate applications and significant resource consumption affecting performance on older devices. Users contemplating permanent removal of Windows Security may do so for reasons such as preferring third-party solutions with additional features, performance issues, and frustration from false alarms. Before removing Windows Security, users should ensure they have an alternative antivirus solution ready, understand that they will lose automatic updates for threats, and be cautious of improper removal methods that could cause system instability. Methods to disable Windows Security include using the Local Group Policy Editor, modifying the Windows Registry, disabling Tamper Protection, or using the Windows Defender Remover tool available on GitHub. Alternatives to complete removal include adding exclusions for specific files, disabling real-time protection, or installing a third-party antivirus that automatically disables Windows Security.
Search