VMware and Google’s Mandiant say a sophisticated hacker group has been installing backdoors in VMware’s virtualization software on multiple targets’ networks (Andy Greenberg/Wired)

Andy Greenberg / Wired:
VMware and Google’s Mandiant say a sophisticated hacker group has been installing backdoors in VMware’s virtualization software on multiple targets’ networks  —  For decades, security researchers warned about techniques for hijacking virtualization software.  Now one group has put them into practice.

Related Articles

Researchers say Slack and Microsoft Teams have fundamental issues vetting third-party apps and should overhaul their app model to be more like traditional OSes (Andy Greenberg/Wired)

Andy Greenberg / Wired:
Researchers say Slack and Microsoft Teams have fundamental issues vetting third-party apps and should overhaul their app model to be more like traditional OSes  —  New research shows how third-party apps could be exploited to infiltrate these sensitive workplace tools.

A look at Ukraine’s efforts to block crypto donations to Russia’s military and paramilitary groups, who researchers say have received $4M+ since the invasion (Andy Greenberg/Wired)

Andy Greenberg / Wired:
A look at Ukraine’s efforts to block crypto donations to Russia’s military and paramilitary groups, who researchers say have received $4M+ since the invasion  —  Blockchain investigators have uncovered at least $4 million—and counting—in cryptocurrency donations to Russia’s violent militia groups.

The SEC charges VMware with misleading investors by obscuring financial performance; VMware agrees to pay $8M to settle without denying or admitting charges (Kanishka Singh/Reuters)

Kanishka Singh / Reuters:
The SEC charges VMware with misleading investors by obscuring financial performance; VMware agrees to pay $8M to settle without denying or admitting charges  —  The U.S. Securities and Exchange Commission said on Monday it has charged cloud computing company VMware Inc (VMW.N) …

Security engineer says Uber hacker had access to its HackerOne bug bounty program; source: the hacker downloaded all vulnerability reports before losing access (Lawrence Abrams/BleepingComputer)

Lawrence Abrams / BleepingComputer:
Security engineer says Uber hacker had access to its HackerOne bug bounty program; source: the hacker downloaded all vulnerability reports before losing access  —  Uber suffered a cyberattack Thursday afternoon with a hacker gaining access to vulnerability reports and sharing screenshots …