110Articles
10Categories
2023-09-13Date
๐Ÿšจ
CISA Adds Three Known Vulnerabilities to CatalogCISA has added three new vulnerabilities to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-35674 Android Framework Privilege Escalation Vulnerability CVE-2023-20269 Cisco Adaptive Security Appliance and Firepower Threat Defense Unโ€ฆ
KEV
๐Ÿ›
Mozilla Rushes to Patch WebP Critical Zero-Day Exploit in Firefox and Thunderbird
KEV
๐Ÿ›
Update Adobe Acrobat and Reader to Patch Actively Exploited Vulnerability
KEV
๐Ÿ›
Unusually low 5 critical vulnerabilities included in Microsoft Patch Tuesday, along with two zero-days
KEV
๐Ÿ›
Windows Arbitrary File Deletion Vulnerability Leads to Full System Compromise
๐Ÿ›
Chrome Zero-Day Vulnerability Exploited in the Wild
KEV
๐Ÿ›
Mozilla Zero-Day Vulnerability Exploited in the Wild โ€“ Patch Now!
KEV
๐Ÿ›
Several Siemens ICS Products Impacted by Critical CodeMeter Vulnerability
๐Ÿ›
Zero-Click Exploit in iPhones
๐Ÿ›
Adobe Says Critical PDF Reader Zero-Day Being Exploited
๐Ÿ›
Alert: New Kubernetes Vulnerabilities Enable Remote Attacks on Windows Endpoints
๐Ÿ›
Severe Azure HDInsight flaws highlight dangers of cross-site scripting
๐Ÿ›
New Kubernetes vulnerability allows privilege escalation in Windows
๐Ÿ›
CVE-2023-38146: Arbitrary Code Execution via Windows Themes
โš ๏ธ
Power grid of Asian nation shows signs of intrusion by espionage group โšกโšกโšก
โš ๏ธ
New backdoor tool spotted in use against targets in Brazil, Israel, UAE
โš ๏ธ
Ransomware crew hits Save The Children, steals 7TB of data
โš ๏ธ
Microsoft Releases Patch for Two New Actively Exploited Zero-Days Flaws
KEV
โš ๏ธ
New Exploit Puts Thousands of GitHub Repositories and Millions of Users at Risk
โš ๏ธ
After Apple and Google, Mozilla Also Patches Zero-Day Exploited for Spyware Delivery
โš ๏ธ
Mozilla Rushes to Patch WebP Critical Zero-Day Exploit in Firefox and Thunderbird
KEV
โš ๏ธ
โ€œAuthorizedโ€ to break in: Adversaries use valid credentials to compromise cloud environments
โš ๏ธ
Gigamonโ€™s โ€˜Precryptionโ€™ to block attacks hiding behind encryption
โš ๏ธ
Microsoft Patches a Pair of Actively Exploited Zero-Days
KEV
โš ๏ธ
CISA Offering Free Vulnerability Scanning Service to Water Utilities
โš ๏ธ
SAP Patches Critical Vulnerability Impacting NetWeaver, S/4HANA
โš ๏ธ
CISA Releases Open Source Software Security Roadmap
โš ๏ธ
How end-user phishing training works (and why it doesnโ€™t)
โš ๏ธ
Researchers Detail 8 Vulnerabilities in Azure HDInsight Analytics Service
โš ๏ธ
Perception Point launches MSP program to help partners tackle threats
โš ๏ธ
High-Profile CVEs Turn up in Vulnerability Exploit Sales
KEV
โš ๏ธ
US Cyber Command Wrapped Second โ€˜Hunt Forwardโ€™ Mission to Lithuania
โš ๏ธ
Distributed Energy Resources Get Cybersecurity Boost with $39M DOE Funding
โš ๏ธ
Mozilla Patches 0-Day Exploited For Spyware Delivery
โš ๏ธ
Mozilla Releases Security Updates for Multiple Products
โš ๏ธ
Black Hat Fireside Chat: The impactful role crowdsourced security intelligence must play
โš ๏ธ
Partnering up on XDR: A rising tide lifts all security teams
โš ๏ธ
Using AI-generated code can lead to business risk
โš ๏ธ
Rollbar discloses data breach after hackers stole access tokens
โš ๏ธ
New Paper: โ€œSecuring AI: Similar or Different?โ€œ
โš ๏ธ
Pegasus Infection of Galina Timchenko, exiled Russian Journalist and Publisher
โš ๏ธ
Microsoft Patches Fix Word and Streaming Services Zero-Days
KEV
โš ๏ธ
A Vulnerability in Mozilla Products Could Allow for Arbitrary Code Execution
๐Ÿ“‹
Cyber Security Today, Sept. 13, 2023 - Crooks target Facebook Messenger accounts of businesses, a warning to IT support staff and more
๐Ÿ“ข
UK ICO and NCSC Set to Share Anonymized Threat Intelligence
๐Ÿ“ข
New EMEA FinServ Compliance: Digital Operational Resilience Act (DORA)
๐Ÿ“ข
Ransomware: It Takes A Village, Says the UK NCSC
๐Ÿ“ข
US Agencies Publish Cybersecurity Report on Deepfake Threats
๐Ÿ“ข
Microsoft Edge security advisory (AV23-548)
๐Ÿ“ข
Google Chrome security advisory (AV23-549)
๐Ÿ“ข
Mozilla security advisory (AV23-550)
๐Ÿ“ข
Red Hat security advisory (AV23-552)
๐Ÿ“ข
Fortinet security advisory (AV23-551)
๐Ÿ“ข
US Federal Agencies Urge Firms to Prepare for Deepfakes
๐Ÿ“ข
Readout from CISAโ€™s 2023 Third Quarter Cybersecurity Advisory Committee Meeting
๐Ÿ”ฅ
CoinEx confirms hack after $31 million in cryptocurrency allegedly stolen from exchange
๐Ÿ”ฅ
Israel Investigates Potential Breach of Lawmakersโ€™ Phones
๐Ÿ”ฅ
CISOs and Board Members Work More Closely Than Ever Before
๐Ÿ”ฅ
Chinese Redfly Hacked National Power Grid & Maintained Access for 6 Months
๐Ÿ”ฅ
Ransomware gang steals 6.8TB of data from Save The Children
๐Ÿ”ฅ
How Cyberattacks Are Transforming Warfare
๐Ÿ”ฅ
Rust-Written 3AM Ransomware: A Sneak Peek into a New Malware Family
๐Ÿ”ฅ
Big MGM Resorts Outage Traces to Ransomware, Researchers Say
๐Ÿ”ฅ
RedLine/Vidar Abuses EV Certificates, Shifts to Ransomware
๐Ÿ”ฅ
Canadian Nurses Association Confirms Data Theft After Hackers Dump Stolen Information
๐Ÿ”ฅ
Weaponized Free Download Manager for Linux Steals System Data & Passwords
๐Ÿ”ฅ
Redfly Group Compromised National Power Grid in Six-Months-Long Campaign
๐Ÿ”ฅ
Hackers use new 3AM ransomware to save failed LockBit attack
๐Ÿ”ฅ
Cost of a data breach 2023: Pharmaceutical industry impacts
๐Ÿ”ฅ
macOS Info-Stealer Malware โ€˜MetaStealerโ€™ Targeting Businesses
๐Ÿ”ฅ
Airbus Launches Investigation After Hacker Leaks Data
๐Ÿ”ฅ
Hackers steal $53 million worth of cryptocurrency from CoinEx
๐Ÿ”ฅ
Digital forensics firm Binalyze raises $19M to investigate cyber threats
๐Ÿ”ฅ
Feds Warn Healthcare Sector of Akira Ransomware Threats
๐Ÿ”ฅ
Ransomware Infection Vectors | News - PSW798
๐Ÿ•ต๏ธ
ISC Stormcast For Wednesday, September 13th, 2023 https://isc.sans.edu/podcastdetail/8656, (Wed, Sep 13th)
๐Ÿ•ต๏ธ
Microsoft Warns of New Phishing Campaign Targeting Corporations via Teams Messages
๐Ÿ•ต๏ธ
SecurityWeek to Host Cyber AI & Automation Summit
๐Ÿ•ต๏ธ
Can You Guess Common Phishing Themes in Southeast Asia?
๐Ÿ•ต๏ธ
China Says No Law Banning iPhone Use in Govt Agencies
๐Ÿ•ต๏ธ
Newly Discovered MetaStealer Malware Targets macOS Users
๐Ÿ•ต๏ธ
CISOs and Board Reporting โ€“ an Ongoing Problem
๐Ÿ•ต๏ธ
How Next-Gen Threats Are Taking a Page From APTs
๐Ÿ•ต๏ธ
Community Feedback Request: Weekly Threads
๐Ÿ•ต๏ธ
ReconAIzer: OpenAI-based Extension for Burp Suite
๐Ÿ•ต๏ธ
EU Chief Announces Plans to Boost AI Development
๐Ÿ•ต๏ธ
Hackers Attack Facebook Business Users Aggressively to Steal Login Credentials
๐Ÿ•ต๏ธ
Network Device Supply Chain Security - BTS #13
๐Ÿ•ต๏ธ
AuthMind Scores $8.5M Seed Funding for ITDR Tech
๐Ÿ•ต๏ธ
Chinese APT41 Implicated in Asian National Power Grid Hack
๐Ÿ•ต๏ธ
DOD Cyber Strategy Aims to Disrupt Hackers, Deepen Ally Work
๐Ÿ•ต๏ธ
Meet AI-Powered Prisma SASE at SASE Converge 2023
๐ŸŒ
Stealthy Remcos Malware Attack Campaign Takes Aim at Colombian Firms
๐ŸŒ
Password Stealing Linux Malware Served For 3 Years And No One Noticed
๐ŸŽ™๏ธ
Smashing Security podcast #339: Bitcoin boo-boo, deepfakes for good, and time to say goodbye to usernames?
๐Ÿ“ก
LIVE Webinar | Is Your Microsoft 365 Data Recoverable?
๐Ÿ“ก
New MidgeDropper Variant Discovered
๐Ÿ“ก
RATs! More Threats to SoC Teams! (German Webinar)
๐Ÿ“ก
CoinEx Exchange Loses $27 Million Worth of Crypto in Suspected Hack
๐Ÿ“ก
Webinar: Identity Threat Detection & Response (ITDR) โ€“ Rips in Your Identity Fabric
๐Ÿ“ก
CertifID, Which Develops Products To Prevent Wire Fraud, Raises $20M
๐Ÿ“ก
Nearly 15,000 Accounts Raided at Automaker Sites to Harvest Vehicle IDs
๐Ÿ“ก
Microsoft Teams down: Ongoing outage behind message failures, delays
๐Ÿ“ก
Malicious AI Tools Flourish, Put Pressure On Lawmakers
๐Ÿ“ก
France Halts iPhone 12 Sales Over Radiation Levels
๐Ÿ“ก
Airbus Launches Investigation After Hacker Leaks Data
๐Ÿ“ก
France demands Apple pull iPhone 12 due to high RF radiation levels
๐Ÿ“ก
Journey to the Cloud: Navigating the Transformation - Part 1
๐Ÿ“ก
New Windows 11 feature blocks NTLM-based attacks over SMB
๐Ÿ“ก
Read it right! How to spot scams on Reddit