Google Accuses Spanish Spyware Vendor of Exploiting Chrome, Firefox, & Windows Zero-Days

A Barcelona-based surveillanceware vendor named Variston IT is said to have surreptitiously planted spyware on targeted devices by exploiting several zero-day flaws in Google Chrome, Mozilla Firefox, and Windows, some of which date back to December 2018. “Their Heliconia framework exploits n-day vulnerabilities in Chrome, Firefox, and Microsoft Defender, and provides all the tools necessary…

Should I Buy A Refurbished Apple Watch?

There have been eight generations of Apple Watch, each available in multiple screen sizes, connectivity options, case materials, and straps, ranging from a couple of hundred dollars to literally thousands. Anyone else remember the original $10k Apple Watch Edition? While not all are available to buy directly from Apple–right now the company sells only the…

Web3 developer platform Fleek raises $25M led by Polychain Capital • TechCrunch

Web3 developer platform Fleek has raised $25 million in Series A funding led by Polychain Capital, the company shared exclusively with TechCrunch. Additional investors in the round include Coinbase Ventures, Digital Currency Group, Protocol Labs, Arweave, North Island Ventures, Distributed Global, The LAO, and Argonautic Ventures. The startup is aiming to build an interface and…

Researchers Disclose Critical RCE Vulnerability Affecting Quarkus Java Framework

A critical security vulnerability has been disclosed in the Quarkus Java framework that could be potentially exploited to achieve remote code execution on affected systems. Tracked as CVE-2022-4116 (CVSS score: 9.8), the shortcoming could be trivially abused by a malicious actor without any privileges. “The vulnerability is found in the Dev UI Config Editor, which…