Afternoon Dessert - 2022-10-28

Welcome to another Afternoon Dessert breakout:

Microsoft: Windows domain joins may fail after October updates
Microsoft says that Windows domain join processes may fail with "0xaac (2732)" errors after applying this month's security updates. [...]
Read more....

Updates to Apple’s zero-day update story – iPhone and iPad users read this!
Turns out that Tuesday's zero-day for iOS 16 is Friday's zero-day for iOS 15...
Read more....

These Dropper Apps On Play Store Targeting Over 200 Banking and Cryptocurrency Wallets
Five malicious dropper Android apps with over 130,000 cumulative installations have been discovered on the Google Play Store distributing banking trojans like SharkBot and Vultur, which are capable of stealing financial data and performing on-device fraud. "These droppers continue the unstopping evolution of malicious apps sneaking to the official store," Dutch mobile security firm ThreatFabric
Read more....

High-Severity Flaws in Juniper Junos OS Affect Enterprise Networking Devices
Multiple high-severity security flaws have been disclosed as affecting Juniper Networks devices, some of which could be exploited to achieve code execution. Chief among them is a remote pre-authenticated PHP archive file deserialization vulnerability (CVE-2022-22241, CVSS score: 8.1) in the J-Web component of Junos OS, according to Octagon Networks researcher Paulos Yibelo. "This vulnerability
Read more....

Exploit released for critical VMware RCE vulnerability, patch now
Proof-of-concept exploit code is now available for a pre-authentication remote code execution (RCE) vulnerability allowing attackers to execute arbitrary code remotely with root privileges on unpatched Cloud Foundation and NSX Manager appliances. [...]
Read more....

Student arrested for running one of Germany’s largest dark web markets
The Federal Criminal Police Office (BKA) in Germany have arrested a 22-year-old student in Bavaria, who is suspected of being the administrator of 'Deutschland im Deep Web' (DiDW) 3, one of the largest darknet markets in the country. [...]
Read more....

Largest EU copper producer Aurubis suffers cyberattack, IT outage
German copper producer Aurubis has announced that it suffered a cyberattack that forced it to shut down IT systems to prevent the attack's spread. [...]
Read more....

Microsoft shares workaround for ongoing Outlook login issues
Microsoft is working on a fix for ongoing sign-in issues affecting some Outlook for Microsoft 365 customers and preventing them from accessing their accounts. [...]
Read more....