102Articles
9Categories
2023-08-10Date
🚨
CISA Warns Organizations of Exploited Vulnerability Affecting .NET, Visual StudioCISA has added CVE-2023-38180, a zero-day vulnerability affecting .NET and Visual Studio, to its Known Exploited Vulnerabilities Catalog. The post CISA Warns Organizations of Exploited Vulnerability Affecting .NET, Visual Studio appeared first on SecurityWeek .
KEV
⚠️
Malicious Campaigns Exploit Weak Kubernetes Clusters for Crypto Mining
⚠️
AWS Pledges $20M to K-12 Cyber Training, Incident Response
⚠️
High-Severity Access Control Vulnerability Found in Spring WebFlux
⚠️
Open Source Tool Used to Target Ukrainian Government Agencies
⚠️
Newly Discovered Inception Attack Exposes Data from AMD Zen CPUs
⚠️
Google to fight hackers with weekly Chrome security updates
⚠️
New Zero-Day Vulnerabilities Could Instantly Drain Crypto Wallets
⚠️
Cryptographic Flaw in Libbitcoin Explorer Cryptocurrency Wallet
KEV
⚠️
Emerging Attacker Exploit: Microsoft Cross-Tenant Synchronization
⚠️
Report: 37% Of Third-Party Applications Have High-Risk Permissions
⚠️
Law Enforcement Takes Down Phishing-as-a-Service Site
⚠️
Update: The MOVEit Spree is as Bad as β€” or Worse β€” Than You Think it is
⚠️
Authorities Taken Down Bulletproof Hosting Provider Lolek
⚠️
UK cybersecurity giant NCC Group is making more layoffs
⚠️
We Want Your Input to Help Secure Open Source Software
⚠️
Cryptohack Roundup: Zero-Day Bugs in 15 Crypto Wallets
⚠️
Fourty Vulnerabilities Patched in Android With August 2023 Security Updates
⚠️
CISA Releases Twelve Industrial Control Systems Advisories
⚠️
Northern Ireland Police Disclose Another Serious Data Breach
⚠️
Count of Organizations Affected by MOVEit Attacks Hits 621
⚠️
Gafgyt malware exploits five-years-old flaw in EoL Zyxel router
⚠️
Researchers Uncover 'Inception' Flaw in AMD CPUs
⚠️
How An Unpatched Microsoft Exchange 0-Day Likely Caused One Of The UK's Biggest Hacks Ever
⚠️
CISA Warns Orgs Of Exploited Vuln Affecting .NET, Visual Studio
⚠️
Making Chrome more secure by bringing Key Pinning to Android
⚠️
Rightbiz - 65,376 breached accounts
⚠️
Check Point beefs up SASE offering with $490M Perimeter 81 acquisition
⚠️
Takeovers of MFA-protected accounts increase, as Microsoft 365 phishing campaign shows
⚠️
Embrace services to improve security operations
⚠️
Google Cloud launches Chronicle CyberShield to help government agencies tackle threats
⚠️
Vulnerability management, its impact and threat modeling methodologies
⚠️
Deloitte Safeguards Software Development Lifecycle
⚠️
Hacker Archetypes - D&D Classes
πŸ“‹
Adobe Patches 30 Acrobat, Reader Vulnerabilities on Patch Tuesday
πŸ“‹
Microsoft Exchange updates pulled after breaking non-English installs
πŸ“’
White House Launches AI Cyber Challenge to Make Software More Secure
πŸ“’
China-Linked Hackers Strike 17 Nations in Three-Year-Long Cyber Campaign
πŸ“’
NIST Releases Draft Overhaul of Its Core Cybersecurity Framework
πŸ“’
CISA: New Whirlpool backdoor used in Barracuda ESG hacks
πŸ“’
[Control systems] ABB security advisory (AV23-476)
πŸ“’
Chinese RedHotel Spy Group Linked to Hacks in 17 Countries
πŸ“’
β€ŽASecuritySite Podcast: World Leaders in Cryptography: Tahir ElGamal - 1 hour 10 minutes
πŸ“’
Dataministeriet podcast 76. The Truth Teller with a wonderful laugh. Guest: Heidi Saas - 58 minutes
πŸ”₯
TargetCompany Ransomware Deploy Fully Undetectable Malware on SQL Server
πŸ”₯
New Report Exposes Vice Society's Collaboration with Rhysida Ransomware
πŸ”₯
Israeli Hospital Redirects New Patients Following Ransomware Attack
πŸ”₯
Ukraine Says It Thwarted Attempt to Breach Military Tablets
πŸ”₯
Breach Connected to MOVEit Flaw Affects Missouri Medicaid Recipients
πŸ”₯
The State of Ransomware in Healthcare 2023
πŸ”₯
Threat Report: Ransomware Down, Targeted Attacks on the Rise
πŸ”₯
Breach Roundup: SEC Fines 11 Orgs for Record-Keeping Failure
πŸ”₯
Proof of Concept: Managing Software Supply Chain Woes
πŸ”₯
Rhysida ransomware – what you need to know
πŸ•΅οΈ
ISC Stormcast For Thursday, August 10th, 2023 https://isc.sans.edu/podcastdetail/8610, (Thu, Aug 10th)
πŸ•΅οΈ
Report: Threat Actors Abuse Valid Accounts Using Manual Tactics
πŸ•΅οΈ
Cybercriminals Increasingly Using EvilProxy Phishing Kit to Target Executives
πŸ•΅οΈ
Researchers Tricked Hackers into Reveal Their Secrets Using Honeypot
πŸ•΅οΈ
European Startup Pistachio Raises €3.25 Million for Cybersecurity Training Platform
πŸ•΅οΈ
New Infostealer Malware Steal Logs & Corporate Access Data
πŸ•΅οΈ
Pro-Russian Hacker Group Claims Attacks on French, Dutch Websites
πŸ•΅οΈ
Managing and Securing Distributed Cloud Environments
πŸ•΅οΈ
Symmetry Systems Raises $17.7M for Data Security Posture Management Platform
πŸ•΅οΈ
Black Hat: "Five cyber phases of Russia's hybrid war"
πŸ•΅οΈ
Check Point to Buy SSE, ZTNA Startup Perimeter 81 for $490M
πŸ•΅οΈ
MoustachedBouncer hackers use AiTM attacks to spy on diplomats
πŸ•΅οΈ
AI's Role in Cybersecurity: Black Hat USA 2023 Reveals How Large Language Models Are Shaping the Future of Phishing Attacks and Defense
πŸ•΅οΈ
Check Point to Acquire SASE Security Firm Perimeter 81 for $490 Million
πŸ•΅οΈ
Attackers Use EvilProxy to target C-suite Excecutives
πŸ•΅οΈ
The Pentagon’s 2023 cyber strategy: What you need to know
πŸ•΅οΈ
BSIDES PGH (PITTSBURGH) 2023 - 18 videos
πŸ•΅οΈ
ESET Research Podcast: Unmasking MoustachedBouncer
πŸ•΅οΈ
MoustachedBouncer: Espionage against foreign diplomats in Belarus
🌐
OpenBullet Campaign: Cybercriminals Target Script Kiddies
🌐
Balada Injector Still at Large – New Domains Discovered
🌐
Private network adoption grows as enterprises seek greater control and security
🌐
New Statc Stealer Malware Emerges: Your Sensitive Data at Risk
🌐
Safeguarding Against Silent Cyber Threats: Exploring the Stealer Log Lifecycle
🌐
New Attack Alert: Freeze[.]rs Injector Weaponized for XWorm Malware Attacks
πŸŽ™οΈ
Smashing Security podcast #334: Acoustic attacks, and the tears of a crypto rapper
πŸŽ™οΈ
S3 Ep147: What if you type in your password during a meeting?
πŸ“‘
Interpol Busts Phishing-as-a-Service Platform '16Shop,' Leading to 3 Arrests
πŸ“‘
Attacker combines phone, email lures into believable, complex attack chain
πŸ“‘
Data of All Serving Police Officers Police Service of Northern Ireland Mistakenly Published Online
πŸ“‘
Encryption Flaws in Popular Chinese Language App Put Users' Typed Data at Risk
πŸ“‘
C-Level Executives at Over 100 Firms Targeted in Massive Cloud Account Takeover Scheme Using EvilProxy
πŸ“‘
Some things never change ? such as SQL Authentication ?encryption?, (Thu, Aug 10th)
πŸ“‘
Dell Compellent hardcoded key exposes VMware vCenter admin creds
πŸ“‘
Check Point buys Perimeter 81 for $490M to enhance its security tools for hybrid and remote workers
πŸ“‘
Osano, a data privacy management platform, nabs $25M
πŸ“‘
Belarus hackers target foreign diplomats with help of local ISPs, researchers say
πŸ“‘
IRS Confirms Takedown of Bulletproof Hosting Provider Lolek
πŸ“‘
Identity management platform Veza secures $15M from Capital One and ServiceNow
πŸ“‘
Encryption Flaws in Popular Chinese Language App Put Users' Typed Data at Risk
πŸ“‘
Sweet Security Raises $12M Seed Round for its Cloud Security Suite
πŸ“‘
Protecting your information and data when using applications- ITSAP.40.200
πŸ“‘
Secondary Market Medical Device Security Risks
πŸ“‘
10,000 N Ireland police officers and staff have their details exposed after spreadsheet screw-up
πŸ“‘
Nearly Every AMD CPU Since 2017 Vulnerable To Inception Attacks
πŸ“‘
DARPA Sponsors Competition For AI Innovation And Cybersecurity
πŸ“‘
Azure Serial Console Attack and Defense - Part 1
πŸ“‘
TunnelCrack vulnerabilities in VPN clients | Kaspersky official blog