132Articles
8Categories
2023-07-19Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-3519 Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability These types of vulnerabilities are frequent attack vectors for mal…
KEV
🐛
Security Alert: Alert Regarding Vulnerability (CVE-2023-3519) in Citrix ADC and Citrix Gateway
🐛
Zero-Day Attacks Exploited Critical Vulnerability in Citrix ADC and Gateway
🐛
Exploitation of New Citrix Zero-Day Likely to Increase, Organizations Warned
🐛
Comprehensive analysis of initial attack samples exploiting CVE-2023-23397 vulnerability
🐛
Safe programming languages: A solid first step
🐛
Citrix ADC Vulnerability CVE-2023-3519, 3466 and 3467 - Patch Now!, (Wed, Jul 19th)
🐛
Memory corruption vulnerability in Microsoft Edge; MilesightVPN and router could be taken over
🐛
Security Agencies Urge Users to Patch Citrix Zero-Day Flaw
🐛
Adobe fixes patch bypass for exploited ColdFusion CVE-2023-29298 flaw
🐛
Zero-Day Attacks Exploited Critical Vulnerability in Citrix ADC and Gateway
KEV
🐛
Citrix ADC Vulnerability CVE-2023-3519, 3466 and 3467 - Patch Now!, (Wed, Jul 19th)
⚠️
Vulnerability Monitoring: Reducing Third-Party Risk
⚠️
Defunct Avaddon Rebranded as NoEscape Ransomware
⚠️
Medical Device Maker Flags Eight Flaws in Drug Infusion Products
⚠️
Google Fixes ‘Bad.Build’ Vulnerability Affecting Cloud Build Service
⚠️
FortiGuard Labs Warns of .ZIP Domains Fueling Phishing Attacks
⚠️
Mario Movie Malware Might Maliciously Mess With Your Machine
⚠️
U.S. Blacklists Two Spyware Firms Run by an Israeli Former General
⚠️
Two Jira Plugin Vulnerabilities in Attacker Crosshairs
⚠️
Biden Admin. Adds ‘Mercenary Spyware’ Firms to Ban List
⚠️
Imagine360, others impacted by separate third-party data breaches
⚠️
US adds spyware developers Intellexa, Cytrox to blacklist
⚠️
HHS urged to bolster protection of health records
⚠️
Supply chain attacks possible with Google Cloud Build vulnerability
⚠️
Legislators say HHS is failing to adequately protect health records from law enforcement
⚠️
Adobe emergency patch fixes new ColdFusion zero-day used in attacks
⚠️
Attacker ID’ed After Infecting Own Computer With Malware
⚠️
Multiple Vulnerabilities in Adobe ColdFusion Could Allow for Arbitrary Code Execution
⚠️
Oracle Quarterly Critical Patches Issued July 18, 2023
⚠️
Multiple Vulnerabilities in Citrix Products Could Allow for Remote Code Execution
⚠️
Chinese APT41 Hackers Target Mobile Devices with New WyrmSpy and DragonEgg Spyware
⚠️
Bad.Build Flaw in Google Cloud Build Raises Concerns of Privilege Escalation
⚠️
U.S. Government Blacklists Cytrox and Intellexa Spyware Vendors for Cyber Espionage
⚠️
Threat Level - GUARDED
⚠️
Bad.Build: A Critical Privilege Escalation Design Flaw in Google Cloud Build Enables a Supply Chain Attack
📢
Red Hat security advisory (AV23-424)
📢
[Control systems] Weintek security advisory (AV23-423)
📢
[Control systems] Weintek security advisory (AV23-423)
📢
Why are there so many malware-as-a-service offerings?
📢
Red Hat security advisory (AV23-424)
📢
CISA and Microsoft Partnership Expands Access to Logging Capabilities Broadly
📢
Google Chrome security advisory (AV23-425)
📢
Oracle security advisory – July 2023 quarterly rollup (AV23-426)
📢
Oracle security advisory – July 2023 quarterly rollup (AV23-426)
📢
Google Chrome security advisory (AV23-425)
📢
Foxit security advisory (AV23-427)
📢
Foxit security advisory (AV23-427)
📢
Biden Administration Blacklists 2 Commercial Spyware Firms
📢
Adobe security advisory (AV23-428)
📢
White House seeks public insight to harmonize ‘inconsistent’ cyber regulations
📢
Atlassian security advisory (AV23-429)
📢
Adobe security advisory (AV23-428)
📢
Atlassian security advisory (AV23-429)
📢
An important step towards secure and interoperable messaging
📢
Microsoft Expands Logging Access After Chinese Hack Blowback
📢
White House Unveils Cyber Trust Label for Smart Devices
📢
CISA and NSA Issue New Guidance to Strengthen 5G Network Slicing Against Threats
📢
An important step towards secure and interoperable messaging
🔥
Cyber Security Today, July 19, 2023 - The Sturmous ransomware group is back, a ransomware gang adds a new backdoor, and more
🔥
HCA Healthcare data breach impacts 11 million patients
🔥
Not all cybersecurity analytics are created equal: What CISOs should look for
🔥
Cybersecurity Firm Sophos Impersonated by New SophosEncrypt Ransomware
🔥
Trends in Ransomware-as-a-Service and Cryptocurrency to Monitor
🔥
FIN8 retools backdoor malware to avoid detection
🔥
Norwegian Mining and Recycling Company TOMRA Experiences Disruptive Cyberattack
🔥
FCC launches 'U.S. Cyber Trust Mark' labeling for IoT devices
🔥
Microsoft expands access to cloud logging data for free after Exchange hacks
🔥
New Attack Campaign Enters the 'FakeUpdates' Arena to Deliver NetSupport RAT
🔥
Recycling Giant Tomra Takes Systems Offline Following Cyberattack
🔥
Novel SophosEncrypt RaaS operation emerges
🔥
Cyberattack disrupts TOMRA
🔥
Most financial and insurance firms report security issues in production APIs
🔥
Reporting Cyber Incidents Within 72 Hours: Challenges Ahead
🔥
Estée Lauder beauty giant breached in two separate ransomware attacks
🔥
Estée Lauder beauty giant breached by two ransomware gangs
🔥
Sogu, SnowyDrive Malware Spreads, USB-Based Cyberattacks Surge
🕵️
Security Alert: Oracle Releases Critical Patch Update, July 2023
🕵️
Extending Burp Suite for fun and profit – The Montoya way – Part 3
🕵️
Variants of BPFDoor Deployed in Linux Kernel
🕵️
Oracle Releases 508 New Security Patches With July 2023 CPU
🕵️
Chrome 115 Patches 20 Vulnerabilities
🕵️
Diligent and Bitsight Partner to Increase Board Confidence in Cyber Risk Oversight
🕵️
Security Awareness Training Isn’t Working – How Can We Improve It?
🕵️
Russia Expected to Increase Critical Infrastructure Attacks
🕵️
Chinese APT41 Hackers Target Mobile Devices with New WyrmSpy and DragonEgg Spyware
🕵️
Virtual Event Today: 2023 Cloud & Data Security Summit
🕵️
Recently Patched GE Cimplicity Vulnerabilities Reminiscent of Russian ICS Attacks
🕵️
ChatGPT Provides Limited Help Identifying Malware
🕵️
ISC Stormcast For Wednesday, July 19th, 2023 https://isc.sans.edu/podcastdetail/8578, (Wed, Jul 19th)
🕵️
HAM Radio + Enigma Machine Challenge, (Wed, Jul 19th)
🕵️
Microsoft backtracks: Premium security logging is now free
🕵️
DDoS attack prevalence, sophistication spikes
🕵️
VirusTotal leak impacts US, other countries' government agencies
🕵️
Why a cyber resilience approach to digital risk is needed now more than ever
🕵️
WormGPT: What you need to know about the cybercriminal's answer to ChatGPT
🕵️
What is the new Enhanced Safe Browing for Gmail (and should you enable it)?
🕵️
Sophos Team Go Wild for Volunteering
🕵️
Microsoft Bows to Pressure to Free Up Cloud Security Logs
🕵️
Practice Your Security Prompting Skills
🕵️
Google is cutting off internet access for some employees. Here's why
🕵️
An ‘Alarming Escalation’ of Sophistication in DDoS Attacks, Cloudflare Says
🕵️
OpenAI credentials stolen by the thousands for sale on the dark web
🕵️
US power grid faces escalating cyber threats, infrastructure experts warn
🕵️
Ukrainian Police Shutter Propaganda-Spreading Bot Farm
🕵️
Russian Hackers Probe Ukrainian Defense Sector With Backdoor
🕵️
Creativity Test of GPT’s Story Telling Ability Based on an Image Alone
🕵️
ISC Stormcast For Wednesday, July 19th, 2023 https://isc.sans.edu/podcastdetail/8578, (Wed, Jul 19th)
🕵️
​​Expanding cloud logging to give customers deeper security visibility
🌐
WormGPT: Emerging AI Tool Raises Concerns over Advanced Cyber Threats
🌐
US govt bans European spyware vendors Intellexa and Cytrox
🌐
DangerousPassword Attacks Targeting Developers’ Windows, macOS, and Linux Environments
🌐
Microsoft: Hackers turn Exchange servers into malware control centers
📡
EMEA Webinar | Security Awareness Matters: How to Build Awareness that Transforms Culture and Reduces Risk
📡
Called a Bogus Airline Customer Support Number? Google is Hustling to Fix That
📡
FBI: Tech support scams now use shipping companies to collect cash
📡
Germany’s new cyber chief to ‘intensify and focus’ work shaping European rules
📡
Bureau raises $16.5 million to help users prevent fraud
📡
Ukraine takes down massive bot farm, seizes 150,000 SIM cards
📡
FIA World Endurance Championship Driver Passports Left Unsecured
📡
Facebook behavioral ads banned by Norwegian privacy watchdog
📡
Ukraine Police Bust Another Bot Farm Accused of Pro-Russia Propaganda, Internet Fraud
📡
When Tech Vendors Make Key Logging Info Available for Free, Everyone Wins
📡
Sophos Team Go Wild for Volunteering
📡
Tech Support Scams Now Use Shipping Companies to Collect Cash
📡
Meta confirms WhatsApp is down worldwide
📡
Hands on with GPT-4-powered Bing AI Chat's virtual search
📡
How to Manage Your Attack Surface?
📡
Exploring the Dark Side: OSINT Tools and Techniques for Unmasking Dark Web Operations
📡
HAM Radio + Enigma Machine Challenge, (Wed, Jul 19th)
📡
AWS Reliability Pillar: Consistent Cloud Architecture
📡
Child identity theft: how do I keep my kids’ personal data safe?