124Articles
7Categories
2023-08-31Date
πŸ›
WinRAR Deets, A WIFI Worm, Inside McFlurries, & Jeff's Book Review - PSW #797
πŸ›
Multiple Splunk Enterprise Flaws Let Attackers Execute Arbitrary Code
πŸ›
Netgear Releases Patches for Two High-Severity Vulnerabilities
πŸ›
Chromium: CVE-2023-4572 Use after free in MediaStream
⚠️
Smashing Security podcast #337: The DEA’s crypto calamity, and scammers’ blue tick bonanza
⚠️
Unpatched Citrix NetScaler Devices Under Attack, Connected to FIN8
⚠️
Earth Estries' Espionage Campaign Targets Governments and Tech Titans Across Continents
⚠️
Axio and Cyentia Institute join forces to boost data-driven cyber risk quantification for enterprises
⚠️
Apple offers security researchers specialized iPhones to tinker with
⚠️
Gangs Forcing Hundreds of Thousands of People Into Cybercrime in South-East Asia, Says UN
⚠️
Nordic Users Targeted by National Danish Police Phishing Attack
⚠️
BGP Flaw can Be Exploited for Prolonged Internet Outages
⚠️
Hacking Campaign Brute-Forces Cisco VPNs to Breach Networks
⚠️
Hackers can Exploit Windows Container Isolation Framework to Bypass Endpoint Security
⚠️
Cisco VPNs with no MFA enabled hit by ransomware groups
⚠️
Cisco BroadWorks Application Software Flaw Let Attackers conduct XSS Attack
⚠️
IBM partners with Salesforce to drive productivity and growth with generative AI
⚠️
Bitbucket integrates Arnica’s application security tools
⚠️
North Korean Hackers Deploy New Malicious Python Packages in PyPI Repository
⚠️
SapphireStealer Malware: A Gateway to Espionage and Ransomware Operations
⚠️
Malwarebytes lays off 100 employees ahead of business split
⚠️
GRU hackers attack Ukrainian military with new Android malware
⚠️
Vulnerability in WordPress Migration Plugin Exposes Websites to Attacks
⚠️
Barracuda Thought It Drove 0-Day Hackers From Customer Networks
⚠️
Cryptohack Roundup: Cypher Comp Plan
⚠️
CISA Releases Four Industrial Control Systems Advisories
⚠️
CISA Warns of Hurricane-Related Scams
⚠️
BadBazaar Espionage Tool Targets Android Users
⚠️
Securing the future: Safeguarding cyber-physical systems
⚠️
Labor Day Alert: Mobile Phishing Attacks on the Rise for Remote Employees
⚠️
Hackers Launch MiTM Attack to Bypass VMware Tools SAML Token Signature Verification
⚠️
Sourcegraph website breached using leaked admin access token
πŸ“’
Multiple Flaws in ArubaOS Switches Let Attackers Execute Remote Code
πŸ“’
SEC Cyber Incident Reporting Regulations Prompt 10 Questions for CISOs
πŸ“’
HPE security advisory (AV23-514)
πŸ“’
VMware security advisory (AV23-513)
πŸ“’
Compliance and Risk Management Startup Hyperproof Raises $40M
πŸ“’
CISA and International Partners Release Malware Analysis Report on Infamous Chisel Mobile Malware
πŸ“’
[Control systems] Digi security advisory (AV23-516)
πŸ“’
[Control systems] PTC security advisory (AV23-515)
πŸ“’
[Control systems] ARDEREG security advisory (AV23-517)
πŸ“’
[Control systems] GE Digital security advisory (AV23-518)
πŸ“’
Ivanti security advisory (AV23-519)
πŸ“’
Simplify Your Audit Process without Compromising Identity Data Security - Erik Huckle - ESW #330
πŸ”₯
Incident Response: Clouds, SMBs, and more! - Amanda Berlin - PSW #797
πŸ”₯
PlayCyberGames - 3,681,753 breached accounts
πŸ”₯
The power of passive OS fingerprinting for accurate IoT device identification
πŸ”₯
Pampling - 383,468 breached accounts
πŸ”₯
Dismantling Qakbot Botnet – FBI’s Largest Cyber Operation Ever
πŸ”₯
Phished Data via CERT Poland - 67,943 breached accounts
πŸ”₯
Crooks Using Stealers and Stolen Cookies to Hack Airbnb Accounts
πŸ”₯
500k Impacted by Data Breach at Fashion Retailer Forever 21
πŸ”₯
Paramount Media Hacked: Attackers Obtain Access to User Personal Information
πŸ”₯
WordPress Migration Add-on Flaw Could Lead to Data Breaches
πŸ”₯
Montreal Electricity Organization is the Latest Victim in LockBit Ransomware Spree
πŸ”₯
Lawsuit Accuses University of Minnesota of Not Doing Enough to Prevent Data Breach
πŸ”₯
Why Criminals Keep Reusing Leaked Ransomware Builders
πŸ”₯
Paramount Discloses Data Breach Following Security Incident
πŸ”₯
Numbers Don't Lie: Exposing the Harsh Truths of Cyberattacks in New Report
πŸ”₯
Forever 21 Breach Notification Leaves Unanswered Questions
πŸ”₯
Forever 21 Data Breach Leaks Personal Information of Over 539,000 Individuals
πŸ”₯
Ransomware Comic Looks To Bring Detective Noir To The Computer Age
πŸ”₯
Customers of Cryptocurrency FTX are Target ofΒ  Phishing Emails
πŸ”₯
Another data breach at Forever 21 leaks details of 500,000 current and former employees
πŸ”₯
Free Key Group ransomware decryptor helps victims recover data
πŸ”₯
LogicMonitor customers hit by hackers, because of default passwords
πŸ”₯
Unmasking Trickbot, One of the World’s Top Cybercrime Gangs
πŸ”₯
Forever 21 data breach affects half a million people
πŸ”₯
LogicMonitor customers hacked in reported ransomware attacks
πŸ”₯
Breach Roundup: Chinese Hackers Breach Japanese Cyber Agency
πŸ”₯
Insulin App Maker Faces Privacy Lawsuit for Web Tracker Use
πŸ”₯
Forever 21 data breach: hackers accessed info of 500,000
πŸ•΅οΈ
The secret habits of top-performing CISOs
πŸ•΅οΈ
ISC Stormcast For Thursday, August 31st, 2023 https://isc.sans.edu/podcastdetail/8640, (Thu, Aug 31st)
πŸ•΅οΈ
ChatGPT on the chopping block as organizations reevaluate AI usage
πŸ•΅οΈ
What does optimal software security analysis look like?
KEV
πŸ•΅οΈ
MMRat Android Malware Targets Banking Users in Southeast Asia
πŸ•΅οΈ
68k Phishing Victims are Now Searchable in Have I Been Pwned, Courtesy of CERT Poland
πŸ•΅οΈ
(crosspost) Episode 135 "AI and Security: The Good, the Bad, and the Magical" of Cloud Security Podcast
πŸ•΅οΈ
Dangling DNS Used to Hijack Subdomains of Major Organizations
πŸ•΅οΈ
Trojanized Signal, Telegram apps found on Google Play, Samsung Galaxy Store
πŸ•΅οΈ
Own Your Own Government Surveillance Van
πŸ•΅οΈ
Contain Yourself: Staying Undetected Using the Windows Container Isolation Framework
πŸ•΅οΈ
APT Attacks From 'Earth Estries' Hit Governments, Tech Firms Across the Globe
πŸ•΅οΈ
Five Eyes Report: New Russian Malware Targeting Ukrainian Military Android Devices
πŸ•΅οΈ
Splunk Patches High-Severity Flaws in Enterprise, IT Service Intelligence
πŸ•΅οΈ
Alert fatigue: A 911 cyber call center that never sleeps
πŸ•΅οΈ
Apple Preparing iPhone 14 Pro Phones for 2024 Security Research Device Program
πŸ•΅οΈ
PagerDuty strengthens analytics capabilities and expands generative AI offerings
πŸ•΅οΈ
Energy Department Offering $9M in Cybersecurity Competition for Small Electric Utilities
πŸ•΅οΈ
Stealthy APT Exposed: TTPs Spill Secrets Of Sophisticated Campaigns
πŸ•΅οΈ
Unpinnable Actions: How Malicious Code Can Sneak into Your GitHub Actions Workflows
πŸ•΅οΈ
[Live Demo] Ridiculously Easy Security Awareness Training and Phishing
πŸ•΅οΈ
VMConnect Supply Chain Attack Continues, Evidence Points to North Korea
πŸ•΅οΈ
Malwarebytes Does Layoffs, to Split Consumer, Corporate Arms
πŸ•΅οΈ
Five Eyes Fingers Moscow in Ukrainian Android Hacking
πŸ•΅οΈ
Earth Estries Group Targets Government and IT Organizations
πŸ•΅οΈ
News alert: Hornetsecurity launches new podcast series all about grasping, overcoming cybersecurity risks
πŸ•΅οΈ
North Korean hackers behind malicious VMConnect PyPI campaign
πŸ•΅οΈ
News alert: Voxel AI increases funding to $30M, aims to transform industrial workplace safety
πŸ•΅οΈ
Proof of Concept: Securing Digital Government Services
πŸ•΅οΈ
Malwarebytes' Layoffs Seek to Split Consumer, Corporate Arms
πŸ•΅οΈ
Malwarebytes Cuts Staff, Will Split Consumer, Corporate Arms
πŸ•΅οΈ
UK Lawmakers Call For Swift Adoption of AI Policy
πŸ•΅οΈ
Chinese APT Uses Fake Messenger Apps to Spy on Android Users
πŸ•΅οΈ
SentinelOne CEO on Wiz M&A: 'Pure Speculation on Their Part'
πŸ•΅οΈ
Lazarus hackers deploy fake VMware PyPI packages in VMConnect attacks
πŸ•΅οΈ
Navigating privacy in a data-driven world with Microsoft Priva
πŸ•΅οΈ
Fake Signal and Telegram apps – Week in security with Tony Anscombe
🌐
Joint report on new Russian malware campaign targeting Ukrainian military
🌐
Five Eyes Report: New Russian Malware Targeting Ukrainian Military Android Devices
🌐
Qakbot Botnet Brought Down In Major Global Operation Led By US
🌐
U.S. and International Partners Release Report on Russian Cyber Actors Using β€œInfamous Chisel” Malware
πŸ“‘
SailPoint to Buy Privileged Access Vendor Osirium for $8.3M
πŸ“‘
How to safeguard your kids and their gadgets in the new school year | Kaspersky official blog
πŸ“‘
High-Severity Memory Corruption Vulnerabilities Patched in Firefox, Chrome
πŸ“‘
The Secret Habits of Top-Performing CISOs
πŸ“‘
The low, low cost of (committing) cybercrime, (Thu, Aug 31st)
πŸ“‘
The Power of Passive OS Fingerprinting for Accurate IoT Device Identification
πŸ“‘
National Safety Council Data Leak Impacts Credentials of NASA, Tesla, DoJ, Verizon, and 2000 Other Firms
πŸ“‘
Classiscam fraud-as-a-service expands, now targets banks and 251 brands
πŸ“‘
Anonymous Sudan Hacks X To Put Pressure On Elon Musk Over Starlink
πŸ“‘
IT & OT security: How to Bridge the Gap
πŸ“‘
What you need to know about iCloud Private Relay