Google's New .zip and .mov Domains Raise Security Concerns

1 min read
Source: Hackaday
Google's New .zip and .mov Domains Raise Security Concerns
Photo: Hackaday
TL;DR Summary

The new .zip Top Level Domain (TLD) can be abused for phishing purposes using Unicode tricks. Microsoft Sharepoint is automatically trying the most common passwords to scan inside encrypted zip files, which is a concern for security researchers. Essential Addons for Elementor and possearchproducts are two web plugins with high-priority vulnerabilities that allow attackers to take over user accounts and steal credit card information. BlackLotus has broken Secure Boot on Windows, and a patch and workaround have been found. IPv6 and vm2 escapes are also causing security concerns. The Wemo Mini Smart Plug V2 has a buffer overflow vulnerability that can be leveraged for Remote Code Execution.

Share this article

Reading Insights

Total Reads

0

Unique Readers

20

Time Saved

5 min

vs 6 min read

Condensed

90%

1,039107 words

Want the full story? Read the original article

Read on Hackaday