Microsoft accuses China-backed nation state hackers of abusing the country’s vulnerability disclosure requirements to discover and develop zero-day exploits (Jonathan Greig/The Record)

Jonathan Greig / The Record:
Microsoft accuses China-backed nation state hackers of abusing the country’s vulnerability disclosure requirements to discover and develop zero-day exploits  —  Microsoft on Friday accused state-backed hackers in China of abusing the country’s vulnerability disclosure requirements in an effort to discover and develop zero-day exploits.

Related Articles

Pwn2Own Toronto 2022: participants earned a total of $400K for new exploits targeting Samsung Galaxy S22, printers, routers, and NAS devices on the first day (Eduard Kovacs/SecurityWeek)

Eduard Kovacs / SecurityWeek:
Pwn2Own Toronto 2022: participants earned a total of $400K for new exploits targeting Samsung Galaxy S22, printers, routers, and NAS devices on the first day  —  On the first day of the Pwn2Own Toronto 2022 hacking competition, participants earned a total of $400,000 for new exploits targeting phones, printers, routers and NAS devices.

Pwn2Own Toronto 2022: participants earned a total of $400K for new exploits targeting Samsung Galaxy S22, printers, routers, and NAS devices on the first day (Eduard Kovacs/SecurityWeek)

Eduard Kovacs / SecurityWeek:
Pwn2Own Toronto 2022: participants earned a total of $400K for new exploits targeting Samsung Galaxy S22, printers, routers, and NAS devices on the first day  —  On the first day of the Pwn2Own Toronto 2022 hacking competition, participants earned a total of $400,000 for new exploits targeting phones, printers, routers and NAS devices.

Security engineer says Uber hacker had access to its HackerOne bug bounty program; source: the hacker downloaded all vulnerability reports before losing access (Lawrence Abrams/BleepingComputer)

Lawrence Abrams / BleepingComputer:
Security engineer says Uber hacker had access to its HackerOne bug bounty program; source: the hacker downloaded all vulnerability reports before losing access  —  Uber suffered a cyberattack Thursday afternoon with a hacker gaining access to vulnerability reports and sharing screenshots …

Google updates Chrome to address an actively exploited high-severity zero-day vulnerability in Mojo, its sixth patch for zero-day vulnerabilities in 2022 (Sergiu Gatlan/BleepingComputer)

Sergiu Gatlan / BleepingComputer:
Google updates Chrome to address an actively exploited high-severity zero-day vulnerability in Mojo, its sixth patch for zero-day vulnerabilities in 2022  —  Google has released Chrome 105.0.5195.102 for Windows, Mac, and Linux users to address a single high-severity security flaw …

Microsoft releases 63 security fixes, including patches for two zero-day flaws, one of which is under active exploit, and five critical RCE vulnerabilities (Lawrence Abrams/BleepingComputer)

Lawrence Abrams / BleepingComputer:
Microsoft releases 63 security fixes, including patches for two zero-day flaws, one of which is under active exploit, and five critical RCE vulnerabilities  —  Today is Microsoft’s September 2022 Patch Tuesday, and with it comes fixes for an actively exploited Windows vulnerability and a total of 63 flaws.