72Articles
8Categories
2023-07-28Date
πŸ›
Major Security Flaw Discovered in Metabase BI Software – Urgent Update Required
πŸ›
A step-by-step guide for patching software vulnerabilities
πŸ›
Zimbra Patches Zero-Day Vulnerability Exploited in XSS Attacks
πŸ›
Exploitation of Recent Citrix ShareFile RCE Vulnerability Begins
πŸ›
Ivanti Releases Security Updates for EPMM to address CVE-2023-35081
πŸ›
CISA Releases Malware Analysis Reports on Barracuda Backdoors
πŸ›
MAR-10454006-r2.v1 SEASPY Backdoor
πŸ›
MAR-10454006-r3.v1 Exploit Payload Backdoor
πŸ›
MAR-10454006-r1.v2 SUBMARINE Backdoor
⚠️
Cybersecurity Agencies Warn Against IDOR Bugs Exploited for Data Breaches
⚠️
CISA and Partners Release Joint Cybersecurity Advisory on Preventing Web Application Access Control Abuse
⚠️
Indirect Instruction Injection in Multi-Modal LLMs
⚠️
A Data Exfiltration Attack Scenario: The Porsche Experience
⚠️
Hackers Abusing Windows Search Feature to Install Remote Access Trojans
⚠️
Nitrogen Malvertising - Sneaky Malware in Search Ads
⚠️
Innovative Attack Methodology Leverages the "search-ms" URI Protocol Handler
⚠️
Zimbra Patches Exploited Zero-Day Vulnerability
⚠️
STARK#MULE Targets Koreans with U.S. Military-themed Document Lures
⚠️
WordPress Ninja Forms Plugin Flaw Lets Hackers Steal Submitted Data
⚠️
Ivanti patches new zero-day exploited in Norwegian govt attacks
⚠️
CISA: New Submarine malware found on hacked Barracuda ESG appliances
⚠️
Lazarus Group Targets Microsoft IIS Servers
⚠️
A Vulnerability in Ivanti Endpoint Manager Mobile Could Allow for Arbitrary Code Execution
⚠️
Hackers Attack Apache Tomcat Servers to Deploy Malware
⚠️
Akira Ransomware Expands to Linux with In-built Tor Website
⚠️
The Role of Machine Learning in Fraud Detection
πŸ“’
Major Security Flaw Discovered in Metabase BI Software – Urgent Update Required
πŸ“’
TSA Revises Security Directives for Oil and Gas Pipelines to Test Resilience
πŸ“’
CISA to Establish Network of Regional Election Advisers for 2024
πŸ“’
CISA warns of breach risks from IDOR web app vulnerabilities
πŸ“’
Ivanti security advisory (AV23-448)
πŸ“’
Hawaii Community College admits paying ransom to extortionists
πŸ”₯
IOTW: Data breach victim ordered to pay $1.21 million to Adidas and NBA
πŸ”₯
Weekly Update 358
πŸ”₯
Update: HawaiΚ»i Community College Pays Ransom After Attackers Steal Personal Info of 28,000 People
πŸ”₯
BreachForums Database and Private Chats for Sale in Hacker Data Breach
πŸ”₯
Education Sector has Highest Ransomware Victim Count
πŸ”₯
SEC Implements New Rule Requiring Firms to Disclose Cybersecurity Breaches in 4 Days
πŸ”₯
Hawai'i Community College pays ransomware gang to prevent data leak
πŸ”₯
IcedID Malware Adapts and Expands Threat with Updated BackConnect Module
πŸ”₯
STARK#MULE Targets Koreans with U.S. Military-Themed Document Lures
πŸ”₯
Industry Reactions to New SEC Cyber Incident Disclosure Rules: Feedback Friday
πŸ”₯
In Other News: Data Breach Cost Rises, Russia Targets Diplomats, Tracker Alerts in Android
πŸ”₯
ISMG Editors: MOVEit Breach Fallout, Cybercrime Innovation
πŸ”₯
US and Australia Warn Developers Over IDOR Vulnerabilities
πŸ”₯
Cyber Security Today, Week in Review for Friday July 28, 2023
πŸ”₯
The Week in Ransomware - July 28th 2023 - New extortion tactics
πŸ”₯
700,000 Sensitive Teacher, Student Records Exposed on Web
πŸ”₯
Hacker Using Google and Bing ads to Deliver Weaponized IT tools
πŸ•΅οΈ
ISC Stormcast For Friday, July 28th, 2023 https://isc.sans.edu/podcastdetail/8592, (Fri, Jul 28th)
πŸ•΅οΈ
BlueBravo Deploys GraphicalProton Backdoor Against European Diplomatic Entities
πŸ•΅οΈ
CoinsPaid Blames North Korean Hackers for $37 Million Cryptocurrency Heist
πŸ•΅οΈ
Weintek Weincloud Vulnerabilities Allowed Manipulation, Damaging of ICS Devices
πŸ•΅οΈ
BlueBravo Deploys GraphicalProton Backdoor Against European Diplomatic Entities
πŸ•΅οΈ
Your KnowBe4 Fresh Content Updates from July 2023
πŸ•΅οΈ
IcedID Malware Adapts and Expands Threat with Updated BackConnect Module
πŸ•΅οΈ
US, Australia Issue Warning Over Access Control Vulnerabilities in Web Applications
πŸ•΅οΈ
FBI: Hackers Use AI for Sextortion, Explosives, Bad Websites
πŸ•΅οΈ
Friday Squid Blogging: Zaqistan Flag
πŸ•΅οΈ
WhatsApp’s New Record Feature Lets You Record And Send Short Videos In Chats
🌐
Vulnerabilities Exposed Peloton Treadmills to Malware and Dos Attacks
🌐
Related CherryBlos and FakeTrade Android Malware Involved in Scam Campaigns
🌐
New Android malware uses OCR to steal credentials from images
🌐
Related CherryBlos and FakeTrade Android Malware Involved in Scam Campaigns
🌐
Is backdoor access oppressive? – Week in security with Tony Anscombe
πŸŽ™οΈ
Cyber Security Today, July 28, 2023 - At least 8 million Americans hit in the latest MOVEit hack, and more
πŸ“‘
ShellCode Hidden with Steganography, (Fri, Jul 28th)
πŸ“‘
DOD, OMB expect September release of proposed CMMC rule
πŸ“‘
Twitter's rebranding to 'X' triggers Microsoft Edge security alert
πŸ“‘
Every Application Journey Needs a Cybersecurity Platform
πŸ“‘
Apple says new App Store API rules will limit user fingerprinting
πŸ“‘
Flaw in Ninja Forms WordPress plugin allows hackers to steal submitted data