127Articles
9Categories
2023-08-23Date
🐛
Exploitation of Ivanti Sentry Zero-Day Confirmed
🐛
Apache XML Graphics Batik Flaw Exposes Sensitive Information
🐛
Container security probes provide continuous penetration testing
🐛
WinRAR zero-day exploited since April to hack trading accounts
KEV
🐛
Attackers exploited WinRAR zero-day for months to steal money from brokers (CVE-2023-38831)
🐛
3,000 Openfire Servers Exposed to Attacks Targeting Recent Vulnerability
🐛
Over 3,000 Openfire servers vulnerable to takover attacks
KEV
🐛
Traders' Dollars in Danger: CVE-2023-38831 zero-Day vulnerability in WinRAR exploited by cybercriminals to target traders
⚠️
Cybercriminals turn to AI to bypass modern email security measures
⚠️
Over a Dozen Malicious npm Packages Target Roblox Game Developers
⚠️
Hackers exploit WinRAR zero-day bug to steal funds from broker accounts
⚠️
How API authentication vulnerabilities are at the center of cloud security concerns
⚠️
Profile Stealers Spread via LLM-themed Facebook Ads
⚠️
Open redirect flaws increasingly exploited by phishers
⚠️
Generative AI fueling significant rise in cyberattacks
⚠️
Surge in identity crime victims reporting suicidal thoughts
⚠️
BeyondID launches BeyondID SOC
⚠️
Open Redirect Flaws Increasingly Exploited by Phishers
⚠️
Scarab Ransomware Deployed Worldwide via Spacecolon Toolset
⚠️
North Korean Affiliates Suspected in $40M Cryptocurrency Heist, FBI Warns
⚠️
Dope Security wants to help CISOs get a handle on shadow IT
⚠️
Cybercriminals Turn to AI to Bypass Modern Email Security Measures
⚠️
Exploitation Of Ivanti Sentry Zero-Day Confirmed
⚠️
The End of “Groundhog Day” for the Security in the Boardroom Discussion?
⚠️
3,000 Openfire Servers Exposed to Attacks Targeting Recent Vulnerability
⚠️
Google Workspace to gain AI-enabled security, digital sovereignty controls
⚠️
University of Minnesota Investigates Alleged Data Breach Involving Seven Million Alumni
⚠️
Google plans to bring AI-fueled security enhancements to Google Workspace
⚠️
Social Engineering Is the Number One Cybersecurity Problem by Far
⚠️
Discord starts notifying users affected by March data breach
⚠️
Bitwarden releases free and open-source E2EE Secrets Manager
⚠️
Clop ransomware dominates ransomware space after MOVEit exploit campaign
⚠️
Lapsus$ teen hackers convicted of high-profile cyberattacks
⚠️
Navigating the AI frontier: cybercrime’s evolution and defense strategies
📋
Cyber Security Today, August 23, 2023 -Public exposure doesn't deter this attacker, and more
📋
First Weekly Chrome Security Update Patches High-Severity Vulnerabilities
📋
First Weekly Chrome Security Update Patches High-Severity Vulnerabilities
📢
US Government Publishes Guidance on Migrating to Post-Quantum Cryptography
📢
LOKKER launches On-demand Website Privacy Audit for healthcare organizations
📢
HPE security advisory (AV23-499)
📢
Google Chrome security advisory (AV23-498)
📢
Nagarro-Seclore Secure Collaboration Solution ensures business compliance
📢
CISA Prioritizing On-Site K-12 Cybersecurity Reviews This School Year
🔥
Large-scale breaches overshadow decline in number of healthcare data incidents
🔥
Duolingo - 2,676,696 breached accounts
🔥
Spacecolon Toolset Fuels Global Surge in Scarab Ransomware Attacks
🔥
Report: 15% Drop in Healthcare Breaches, 31% Surge in Victims
🔥
Tesla Sues Two Former Employees Over Insider Data Breach
🔥
Time keeps on slippin’ slippin’ slippin’: The 2023 Active Adversary Report for Tech Leaders
🔥
BlackCat ransomware gang claims credit for Seiko data breach
🔥
Ransomware actors log on when you log off. Here’s how to stop them.
🔥
Speed Demons: Ransomware Attackers' Dwell Time Shrinks
🔥
Phishing Tops the List as the Most Costly Initial Attack Vector in Data Breaches
🔥
Data Breach Costs in Healthcare Rise 53% to More than Double the Average
🔥
Malwarebytes releases EDR Extra Strength for endpoint protection
🔥
Learning the lessons from cybersecurity trash fires at TC Disrupt 2023
🔥
Ransomware Intrusion Impacts All Servers of Danish Cloud Provider
🔥
Hosting firm says it lost all customer data after ransomware attack
🔥
The MOVEit hack and what it taught us about application security
🔥
Report: Ransomware Attackers' Dwell Time Shrinks
🔥
How Malware Sandboxes Strengthen Your Cybersecurity
🔥
Cybersecurity Companies Report Surge in Ransomware Attacks
🔥
SpyCloud raises $110 million to accelerate identity threat protection
🔥
Hackers Threaten Patients Following a Massive Cyberattack on a Hospital
🔥
Ransomware Attacks Rise 69% and 1500 Organizations Feel the Hurt
🔥
Danish cloud host says customers ‘lost all data’ after ransomware attack
🔥
Jury Finds 2 Teenagers Perpetrated Lapsus$ Group Hacks
🔥
FBI Says North Korea’s Lazarus Hackers Behind Recent Crypto Heists
🔥
Data Breaches Involving Social Engineering Attacks Take Longer to Identify and Contain
🔥
MOVEit Health Data Breach Tally Keeps Growing
🕵️
Profile Stealers Spread via LLM-themed Facebook Ads
🕵️
ISC Stormcast For Wednesday, August 23rd, 2023 https://isc.sans.edu/podcastdetail/8628, (Wed, Aug 23rd)
🕵️
Anticipating the next wave of IoT cybersecurity challenges
🕵️
How the downmarket impacted enterprise cybersecurity budgets
🕵️
Security Onion 2.4: Free, open platform for defenders gets huge update
🕵️
Carderbee Hacking Group Uses Legitimate Software in Supply Chain Attack
🕵️
Bogus OfficeNote app delivers XLoader macOS malware
🕵️
Syrian Threat Actor EVLF Unmasked as Creator of CypherRAT and CraxsRAT Android Malware
🕵️
FBI says North Korean hackers preparing to cash out after high-profile crypto hacks
🕵️
Deceptive Links, Brand Impersonation, and Identity Deception Top the List of Phishing Attack Tactics
🕵️
Phishing Campaigns Targeting Microsoft Login Credentials Jump an Unprecedented 6100%
🕵️
Scammers Impersonate the Australian Tax Office
🕵️
Supply Chain Attack: Carderbee APT Strikes Hong Kong Organizations
🕵️
Remote access detection in 2023: Unmasking invisible fraud
🕵️
LinkedIn Deception: How a Chinese Spy Tricked Thousands of UK Officials
🕵️
FBI: Lazarus hackers readying to cash out $41 million in stolen crypto
🕵️
Thoma Bravo Merges ForgeRock with Ping Identity
🕵️
Smart Cities: Utopian Dream, Security Nightmare, or Political Gimmick?
🕵️
FBI Finds 1,580 Bitcoin in Crypto Wallets Linked to North Korean Hackers
🕵️
US charges founders of Tornado Cash mixer used by Lazarus hackers
🕵️
INTERPOL + Trend to Fight African Cybercrime Networks
🕵️
Threat Actor Targets Hong Kong With Korplug Backdoor
🕵️
US FBI Urges Action on Barracuda ESG Hacking
🕵️
Has anyone tried obtaining ccTLD zone files?
🕵️
What are You Working on Wednesday
🕵️
Devoxx UK 2023 - 135 videos
🕵️
Danger: Generative AI Fuels Extremism | Deeplab.com
🕵️
The Importance of Key Rotation for Data Security
🕵️
Lateral movement: A conceptual overview
🕵️
British court convicts two teen Lapsus$ members of hacking tech firms
🕵️
North Korea’s Lazarus hackers behind recent crypto heists: FBI
🕵️
Millions stolen from crypto platforms Exactly Protocol and Harbor Protocol
🌐
New Agniane Stealer Peddled on Dark Web Forums to Enable Crypto Theft
🌐
Fake Roblox Packages Target NPM With Luna Grabber Information-Stealing Malware
🌐
Agile Approach to Mass Cloud Credential Harvesting and Crypto Mining Sprints Ahead
🌐
The ‘US Cyber Trust Mark’ finally gives device makers a reason to spend big on security
🎙️
Smashing Security podcast #336: Pizza pests, and securing your wearables
📡
Meta plans to roll out default end-to-end encryption for Messenger by the end of the year
📡
More Exotic Excel Files Dropping AgentTesla, (Wed, Aug 23rd)
📡
Data of 2.6 million Duolingo users posted on the dark web
📡
Zoom’s AI terms overhaul sets stage for broader data use scrutiny
📡
December’s Reimagining Democracy Workshop
📡
Nearly a third of young people preyed on by “text pest” delivery drivers
📡
Scraped Data of 2.6 Million DuoLingo Users Released on Hacking Forum
📡
Meta Set to Enable Default End-to-End Encryption on Messenger by Year End
📡
Defense Contractor Belcan Leaks Admin Password With a List of Flaws
📡
Guidance On Migrating To Post-Quantum Cryptography Released By US
📡
MacOS Variant Of XLoader Written In C Observed In The Wild
📡
Court Finds Teenagers Carried Out Lapsus Hacking Spree
📡
Google Workspace will require two admins to sign off on critical changes
📡
Kali Linux 2023.3 released with 9 new tools, internal changes
📡
What Can Generative AI do for Hybrid Cloud Security?
📡
Window Snyder talks striking out on her own in cybersecurity at TechCrunch Disrupt
📡
Thoma Bravo Merges ForgeRock with Ping Identity
📡
Using WinRAR? Be sure to patch against these code execution bugs…
📡
New stealthy techniques let hackers gain Windows SYSTEM privileges
📡
Windows 10 KB5029331 update introduces a new Backup app