65Articles
9Categories
2023-07-31Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-35801 Ivanti Endpoint Manager Mobile (EPMM) Path Traversal Vulnerability These types of vulnerabilities are frequent attack vectors for malicio…
KEV
🐛
Multiple Flaws Found in Ninja Forms Plugin Leave 800,000 Sites Vulnerable
🐛
Second Ivanti EPMM Zero-Day Vulnerability Exploited in Targeted Attacks
🐛
Study Reveals Silent Python Package Security Fixes
⚠️
Dark Power Ransomware Abusing Vulnerable Dynamic-Link Libraries in Resolved API Flow
⚠️
AVRecon Botnet Leveraging Compromised Routers to Fuel Illegal Proxy Service
⚠️
CISA Analyzes Malware Used in Barracuda ESG Attacks
⚠️
New Study Reveals Forged Certificate Attack Risks
⚠️
A Year in Review of Zero-Days Exploited In-the-Wild in 2022
⚠️
Senate opens path for a cyber-focused military branch
⚠️
Pentagon Looks Into ‘Critical Compromise’ of Air Force and FBI Contacts
⚠️
VMware ESXi Servers Face New Threat from Abyss Locker
⚠️
New P2PInfect Worm Targets Redis Servers with Undocumented Breach Methods
⚠️
White House Unveils National Cyber Workforce Strategy
⚠️
Ivanti Says Second Zero-Day Used in Norway Government Breach
⚠️
Hackers exploit BleedingPipe RCE to target Minecraft servers, players
⚠️
P2PInfect server botnet spreads using Redis replication feature
⚠️
CISA Welcomes Aeva Black: Joining Our Team to Strengthen Open Source Software Security
⚠️
White House Unveils National Cyber Workforce Strategy
⚠️
Hackers Exploit Bleedingpipe RCE Flaw to Target Minecraft Servers, Players
⚠️
What Causes a Rise or Fall in Fresh Zero-Day Exploits?
KEV
⚠️
US Gov Rolls Out National Cyber Workforce, Education Strategy
⚠️
CISA Releases One Industrial Control Systems Advisory
📢
Cyber Security Today, July 31, 2023 - Warning to Linux administrators, and more
📢
CISA Discovers Spear Phishing and Valid Account Compromise Are the Most Common Attack Vectors
📢
U.S. Senator Blasts Microsoft for Chinese Hack Seeks Federal Action
📢
Ubuntu security advisory (AV23-450)
📢
IBM security advisory (AV23-449)
📢
[Control systems] ABB security advisory (AV23-451)
🔥
Canada: University of Guelph Students Notified of Benefits Data Breach Four Months Later
🔥
'Call of Duty: Modern Warfare 2' Game Servers Taken Offline Due to Malware Concerns
🔥
Understanding the New SEC Cybersecurity Rules: A Guide for Executives
🔥
Linux Version of Abyss Locker Ransomware Targets VMware ESXi Servers
🔥
Israel’s Largest Oil Refinery Website Offline After DDoS Attack
🔥
North Korean Hackers Phishing With US Army Job Lures
🔥
New Jersey Supreme Court to Hear Merck Insurance Dispute Over NotPetya Attack
🔥
Ztna can be More Than a VPN Replacement for Application Access
🔥
Blocking Access to ChatGPT is a Short Term Solution to Mitigate Risk
🔥
Known MOVEit Attack Victim Count Reaches 545 Organizations
🔥
Study Downplays Cyber Insurance As Incentive to Pay Ransom
🔥
SEC demands four-day disclosure limit for cybersecurity breaches
🕵️
ISC Stormcast For Monday, July 31st, 2023 https://isc.sans.edu/podcastdetail/8594, (Mon, Jul 31st)
🕵️
Fruity Trojan Uses Deceptive Software Installers to Spread Remcos RAT
🕵️
Automatically Finding Prompt Injection Attacks
🕵️
Heads Up: Google Inactive Account Deletion Notifications
🕵️
Patchwork Hackers Target Chinese Research Organizations Using EyeShell Backdoor
🕵️
Fruity Trojan Relies on Deceptive Software Installers to Spread Remcos RAT
🕵️
Patchwork Hackers Target Chinese Research Organizations Using EyeShell Backdoor
🕵️
New Android Malware Uses Optical Character Recognition to Steal Login Credentials
🕵️
Amazon Sends Email to Customers on Common Scam Tactics
🕵️
Apple Lists APIs That Developers Can Only Use for Good Reason
🕵️
Reddit Taps Fredrick ‘Flee’ Lee for CISO Job
🕵️
European Governments Targeted in Russian Espionage Campaign
🕵️
Ukraine Cracks Down on Illicit Financing Network
🕵️
New Malware WikiLoader Targeting Italian Organizations
🌐
Hackers Deploy "SUBMARINE" Backdoor in Barracuda Email Security Gateway Attacks
🌐
Hackers spread malware via Call of Duty
🌐
Hackers steal Signal, WhatsApp user data with fake Android chat app
🎙️
AMTD: The Final Layer of Defense
📡
Microsoft fixes WSUS servers not pushing Windows 11 22H2 updates
📡
Webinar: Riding the vCISO Wave: How to Provide vCISO Services
📡
Apple Sets New Rules for Developers to Prevent Fingerprinting and Data Misuse
📡
School Accreditation Organization Exposed Sensitive Information on Students, Parents, and Teachers Online
📡
Canon warns of Wi-Fi security risks when discarding inkjet printers
📡
Google warns again it will start deleting inactive accounts in December