Cybersecurity researchers have said that a spoofing bug (CVE-2019-1105) could pave the way for an email attack chain. But Microsoft has patched the vulnerability in Outlook for Android, which opens the door to cross-site scripting (XSS) attacks. The company said that CVE-2019-1105 rated “important” is a spoofing vulnerability that exists inRead More…

Researchers at Trend Micro have unearthed a cyber-espionage campaign targeting Android devices in the Middle East region. Called “bouncing golf,’’ the attack uses a malware called GolfSpy, with extensive cyber espionage potential. The tricky bit is that this malicious code is hidden deep inside revamped legitimate applications distributed through socialRead More…