107Articles
8Categories
2023-09-25Date
🚨
Faster Patching Pace Validates CISA’s KEV Catalog InitiativeThe Known Exploited Vulnerabilities (KEV) Catalog maintained by the US cybersecurity agency CISA has led to significant improvements in federal agencies’ patching efforts, with more than 1,000 vulnerabilities now included in the list.
KEV
🚨
CISA Adds Three Known Exploited Vulnerabilities to CatalogCISA has added three new vulnerabilities to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-41991 Apple Multiple Products Improper Certificate Validation Vulnerability CVE-2023-41992 Apple Multiple Products Kernel Privilege Escalat…
KEV
🐛
BIND DNS System Flaws Let Attackers Launch DoS Attacks
⚠️
The Shocking Data on Kia and Hyundai Thefts in the US
⚠️
Update: T-Mobile Denies Rumors of a Breach Affecting Employee Data
⚠️
New Apple Zero-Days Exploited to Target Egyptian ex-MP with Predator Spyware
⚠️
New Zealand University Operating Despite Cyberattack
⚠️
How to pick the best endpoint detection and response solution
⚠️
In-the-Wild Exploitation Expected for Critical TeamCity Flaw Allowing Server Takeover
⚠️
Predator Spyware Delivered to iOS, Android Devices via Zero-Days, MitM Attacks
⚠️
From Watering Hole to Spyware: EvilBamboo Targets Tibetans, Uyghurs, and Taiwanese
⚠️
National Student Clearinghouse Discloses Data Breach Impacting 890 Schools
⚠️
Insecure URL handler (Electron) in iRacing leading to RCE in the client - bug discovery and exploit
⚠️
NY College Forced to Invest $3.5 Million in Cybersecurity After Breach Affecting 200,000
⚠️
Chinese state actors behind espionage attacks on Southeast Asian government
⚠️
EvilBamboo Targets Tibetans, Uyghurs, and Taiwanese People and Organizations
⚠️
Mixin Network suspends operations following $200 million hack
⚠️
Ukrainian Military Targeted in Phishing Campaign Leveraging Drone Manuals
⚠️
Organizations Starting to Understand the Impact of Ransomware, But Their Efforts Not Enough to Overcome Infostealer Malware
⚠️
3 iOS 0-Days, A Cellular Network Compromise, And HTTP Used To Infect An iPhone
⚠️
Ukrainian Military Targeted in Phishing Campaign Leveraging Drone Manuals
⚠️
Stop Executive & Employee PII Exposure on the Public Web. - Reuben Moretz - ISW23 #1
⚠️
Incomplete Disclosures by Apple and Google Create “Huge Blindspot” for Zero-Day Hunters
⚠️
Weaponizing Asset Intelligence: Defending Against Bad Actors - Brian Contos - ISW23 #1
⚠️
Over 400K Buckets and 10.4B Files Are Public Due to Cloud Misconfigurations
⚠️
Bermuda Struggles to Recover From Cyberattack
⚠️
DHS unveils one common platform for reporting cyber incidents
📢
CISA Urges Use of Memory Safe Code in Software Development
📢
Are You Willing to Pay the High Cost of Compromised Credentials?
📢
CISA and NFL Collaborate to Secure Super Bowl LVIII
📢
How Will SEC Rules Affect Reporting, Tracking of Incidents?
📢
CISA Releases Hardware Bill of Materials Framework (HBOM) for Supply Chain Risk Management (SCRM)
📢
Ubuntu security advisory (AV23-576)
📢
Dell security advisory (AV23-575)
📢
WatchGuard Announces its Acquisition of CyGlass
📢
Polish Privacy Regulator Probes OpenAI's ChatGPT
📢
New SEC cybersecurity disclosure rules: What you need to know to stay in compliance
🔥
LockBit, BlackCat, and Clop Prevail as Top RAAS Groups: Ransomware in First Half of 2023
🔥
Hidden Dangers Loom for Subsea Cables, the Invisible Infrastructure of the Internet
🔥
Cyber Security Today, Sept. 25, 2023 - Hackers from India say they are targeting Canadian web sites
🔥
Update: Nova Scotia Says All Victims of MOVEit Breach Have Been Notified
🔥
GUEST ESSAY: A roadmap for the finance teams at small businesses to improve cybersecurity
🔥
T-Mobile data breach exposes personal customer information
🔥
City of Dallas Details Ransomware Attack Impact, Costs
🔥
Cyber Insurance Claims Spiked in First Half of 2023 as Ransomware Attacks Surged: Report
🔥
Are you ready to build your organization’s digital trust?
🔥
New Modular Deadglyph Backdoor Used in a Government Attack
🔥
New Wave of Hospitality Phishing Attacks: Compromise User Credentials, Then Go Phish
🔥
Government Of Bermuda Links Cyberattacks To Russian Hackers
🔥
City Of Dallas Details Ransomware Attack Impact, Costs
🔥
Data Breach Toll Tied to Clop Group's MOVEit Attacks Surges
🔥
Almost 900 US Schools Breached Via MOVEit
🔥
Hong Kong-Based Cryptocurrency Firm Mixin Says Hackers Stole $200 Million in Assets
🔥
Average Insider Cyberthreat Cost Spikes 40% in Four Years: Report
🔥
Decade of newborn child registry data stolen in MOVEit mass-hack
🔥
Hackers steal $200 million from crypto company Mixin
🔥
Personal Data of 25,000 Hongkongers at Risk After Cyberattack Against Consumer Council
🔥
BORN Ontario child registry data breach affects 3.4 million people
🔥
CommonSpirit Details Financial Fallout of $160M Cyberattack
🔥
T-Mobile US exposes some customer data, but don't say breach
🕵️
ISC Stormcast For Monday, September 25th, 2023 https://isc.sans.edu/podcastdetail/8672, (Mon, Sep 25th)
🕵️
Outer Space and Juicy Mix: OilRig Campaigns Targeting Israeli Organizations
🕵️
OilRig: Never-seen C#/.NET Backdoor to Attack Wide Range of Industries
🕵️
New Report Uncovers Three Distinct Clusters of China-Nexus Attacks on Southeast Asian Government
🕵️
Gelsemium APT Suspected Behind an Attack on Southeast Asian Government
🕵️
Mentorship Monday - Discussions for career and learning!
🕵️
Stealth Falcon APT Preying Over Middle Eastern Skies With Deadglyph
🕵️
Tools From Cybercrime Software Vendor W3LL Found to be Behind the Compromise of 56K Microsoft 365 Accounts
🕵️
MFA Defenses Fall Victim to New Phishing-As-A-Service Offerings
🕵️
900 US Schools Impacted by MOVEit Hack at National Student Clearinghouse
🕵️
Cybercriminals Use Google Looker Studio to Host Crypto Scam to Steal Money and Credentials
🕵️
[NEW RELEASE]: Unleash the Power of Cybersecurity Education with KnowBe4’s 'Hack-A-Cat' on Roblox
🕵️
Python Malware Targets Tatar-Language Users: TA866 Threat Actor Strikes Again
🕵️
Stealthy APT Gelsemium Seen Targeting Southeast Asian Government
🕵️
Nigerian Pleads Guilty in US to Million-Dollar BEC Scheme Role
🕵️
InfoSec World 2023 - Day 1
🕵️
“The good and the bad that comes with the growth of AI” – watch this series of webinars with Abnormal, OpenAI, and others
🕵️
Our data is our biggest asset, however most organizations do not know where it is! - T... - ISW23 #1
🕵️
How to Overcome Practitioner Concerns Over Cisco-Splunk Deal
🕵️
An Identity Thief Explains the Art of Emptying Your Bank Account
🕵️
Avoiding Negative Value, Feedback-Driven Culture, & Don't Buy Too Many Security Tools - BSW #321
🕵️
Human Risk Management at Western Governors University - Jake Wilson - BSW #321
🕵️
Governor at Fed Cautiously Optimistic About Generative AI
🕵️
Deadglyph Backdoor Targeting Middle Eastern Government
🕵️
CyberArk, BeyondTrust, Delinea Dominate Gartner MQ for PAM
🕵️
News | The Right Skills For The Job - PSW800
🕵️
SaaS Security in the Golden Age | Security's Role in Edge Computing | Enterprise News - ESW333
🕵️
NarcBots | Blacktech | ZenRat | Chrome | CISOs | Privacy | Aaran Leyland & more – SWN329
🌐
New BBTok Banking Trojan Versions Target 40 LATAM Banks
🌐
SANS Survey Shows Drop in 2023 ICS/OT Security Budgets
🌐
Xenomorph Malware Returns to Strike Customers of Over 30 American Banks
🌐
Xenomorph Android malware now targets U.S. banks and crypto wallets
📡
Github Passkeys Generally Available for Passwordless Sign-Ins
📡
Sophos Named a Customers’ Choice in the Gartner® Peer Insights™ Voice of the Customer report for Endpoint Protection Platforms
📡
Cato Networks Raises $238M on $3B Valuation to Move Upmarket
📡
UK Security Agency Publishes New Cryptographic Designs
📡
Watch the Webinar — AI vs. AI: Harnessing AI Defenses Against AI-Powered Risks
📡
How to protect your child's privacy when using social networks and IMs | Kaspersky official blog
📡
900 US Schools Impacted By MOVEit Hack At National Student Clearinghouse
📡
iOS 17 update secretly changed your privacy settings; here’s how to set them back
📡
Nigerian Man Pleads Guilty to Attempted $6 Million BEC Email Heist
📡
Fake Celebrity Photo Leak Videos Flood TikTok With Temu Referral Codes
📡
For Security to Benefit From AI, Companies Need to Shore up Their Data
📡
Google is retiring its Gmail Basic HTML view in January 2024
📡
Journey Down Under: How Rocco Became Australia’s Premier Hacker
📡
Sensor Intel Series: Top CVEs in August 2023
📡
Sensor Intel Series: Top CVEs in August 2023