103Articles
9Categories
2023-10-02Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-5217 Google Chrome libvpx Heap Buffer Overflow Vulnerability These types of vulnerabilities are frequent attack vectors for malicious cyber act…
KEV
🚨
NSA and CISA Red and Blue Teams Share Top Ten Cybersecurity MisconfigurationsA plea for network defenders and software manufacturers to fix common problems. EXECUTIVE SUMMARY The National Security Agency (NSA) and Cybersecurity and Infrastructure Security Agency (CISA) are releasing this joint cybersecurity advisory (CSA) to highlight the most common cybe…
KEV
🐛
OpenRefine's Zip Slip Vulnerability Could Let Attackers Execute Malicious Code
🐛
Six 0day exploits were filed against Exim by ZDI, including several RCE. After days of silence, Exim has filed this public detail
🐛
Microsoft’s Response to Open-Source Vulnerabilities - CVE-2023-4863 and CVE-2023-5217
⚠️
Alert: Attackers Actively Exploiting WS_FTP Vulnerabilities
KEV
⚠️
Bugs Found in Another Progress Software File Transfer App
⚠️
Update: Mass Exploitation Attempts Against WS_FTP Have Begun
⚠️
Update: Recently Patched TeamCity Vulnerability Exploited to Hack Servers
⚠️
Russian Company Offers $20m For Non-NATO Mobile Exploits
⚠️
Unpatched Exim Vulnerabilities Expose Many Mail Servers to Attacks
⚠️
Recently Patched TeamCity Vulnerability Exploited to Hack Servers
⚠️
Silverfort Open Sources Lateral Movement Detection Tool
⚠️
A Vulnerability in EXIM Could Allow for Arbitrary Code Execution
⚠️
Kicking off NIST's Cybersecurity Awareness Month Celebration & Our Cybersecurity Awareness Month 2023 Blog Series
⚠️
APT34 Employs Weaponized Word Documents to Deploy New Malware Strain
⚠️
Budworm APT Attacking Telecoms Org With New Custom Tools
⚠️
Cisco IOS Software Zero-day Exploited in Attacks
⚠️
Progress Software Warns of Critical Vulnerability in WS_FTP Server
⚠️
Progress, the company behind MOVEit, patches new actively exploited security flaws
KEV
⚠️
India’s national logistics portal exposed sensitive personal data, trade records
⚠️
Mass Exploitation Attempts Against WS_FTP Have Begun
⚠️
Recently Patched TeamCity Vuln Exploited To Hack Servers
⚠️
Multibillion-dollar cybersecurity training market fails to fix the supply-demand imbalance
⚠️
10 things you should know about navigating the dark web
⚠️
ShadowSyndicate Cybercrime gang has used 7 ransomware families over the past year
⚠️
Hackers Steal User Database From European Telecommunications Standards Body
⚠️
Hackers Bypass Cloudflare Firewall, and DDoS Protections using Cloudflare
⚠️
Lazarus Attack on Spanish Aerospace Company Started with Messages from Phony Meta Recruiters
⚠️
Arm warns of Mali GPU flaws likely exploited in targeted attacks
KEV
⚠️
Exploit available for critical WS_FTP bug exploited in attacks
⚠️
Live Exploitation Underscores Urgency to Patch Critical WS-FTP Server Flaw
⚠️
Logic Flaws Let Attackers Bypass Cloudflare's Firewall and DDoS Protection
⚠️
Ransomware gangs now exploiting critical TeamCity RCE flaw
⚠️
Chertoff Group Arm to Buy Trustwave from Singtel for $205M
⚠️
Exim patches three of six zero-day bugs disclosed last week
⚠️
Royal family’s website suffers Russia-linked cyberattack
📢
Financial Crime Compliance Costs Exceed $206 Billion
📢
Phishing, Smishing Surge Targets USPS
📢
UK Privacy Regulator Orders End to Spreadsheet FOI Responses
📢
CISA Kicks Off Cybersecurity Awareness Month With New Program
📢
Android Banking Trojan Zanubis Evolves to Target Peruvian Users
📢
EU Lawmaker Questions CSAM Proposal 'Conflicts of Interest'
📢
PKD | NSA | WS_FTP | Exim | Sextortion | BunnyLoader | CISA | Jason Wood & more – SWN330
🔥
Motel One discloses data breach following ransomware attack
🔥
LUCR-3 aka Scattered Spider Getting SaaS-y in the Cloud
🔥
New LostTrust Ransomware is a Likely Rebrand of the MetaEncryptor Gang
🔥
Ransomware Attack Leads to Payroll Issues at 21 Pinal County School Districts
🔥
Johnson Controls Ransomware Attack Could Impact DHS
🔥
The top 9 cyber security incidents in September 2023
🔥
Euro Telecom Standards Institute Discloses Data Breach
🔥
Horse Isle - 27,786 breached accounts
🔥
European Telecommunications Standards Institute Discloses Data Breach
🔥
MadPot: AWS Honeypot to Disrupt Threat Actors
🔥
Some Prospect Medical Hospitals in Dire State, Post-Attack
🔥
Evolving Role of Browsers in Modern Enterprise | Enterprise News | ISW Executive Interviews - ESW334
🕵️
How Should Organizations Navigate the Risks and Opportunities of AI?
🕵️
AWS Using MadPot Decoy System to Disrupt APTs, Botnets
🕵️
ISC Stormcast For Monday, October 2nd, 2023 https://isc.sans.edu/podcastdetail/8682, (Mon, Oct 2nd)
🕵️
New SMS Phishing Campaign Impersonating The US Postal Service
🕵️
Malicious HDMI Cables Steals Photos, Videos, and Location Data
🕵️
Hackers Inject Malicious Ads into GPT-4 Powered Bing Chat
🕵️
GUEST ESSAY: Has shielding and blocking electromagnetic energy become the new normal?
🕵️
Data never dies: The immortal battle of data privacy
🕵️
Zanubis Android Banking Trojan Poses as Peruvian Government App to Target Users
🕵️
Mentorship Monday - Discussions for career and learning!
🕵️
Fort Lauderdale, Florida, taken for $1.2M in email scam | StateScoop
🕵️
Bsides Tallinn 2022 - 6 videos
🕵️
North Korean Lazarus targeted a Spanish aerospace company
🕵️
Number of Internet-Exposed ICS Drops Below 100,000: Report
🕵️
cloudgrep: cloudgrep is grep for cloud storage
🕵️
Lazarus Tricking Employees with Trojanized Coding Challenges
🕵️
LightSpy APT Attacking WeChat Users to Steal Payment Data
🕵️
NSA AI Security Center
🕵️
Cybercriminals Using New ASMCrypt Malware Loader to Fly Under the Radar
🕵️
Risk Management in the Cloud Starts with Identities | Leadership & Communications - BSW #322
🕵️
Microsoft Defender flags Tor Browser as a Trojan and removes it from the system
🕵️
Risk Management in the Cloud Starts with Identities - Eric Kedrosky - BSW #322
🕵️
The CISO Carousel's Effect While Struggling to Get Budgets and Feel Free to Disagree - BSW #322
🕵️
New Partner Compensation Model — Breakaway 1=5
🕵️
Celebrate 20 years of Cybersecurity Awareness Month with Microsoft and let’s secure our world together
🕵️
Malware Trends | News - PSW801
🕵️
Feet | Google | Predator vs. Lemurs | Qakbot | Aaran Leyland & More! – SWN331
🌐
National Logistics Portal Leaks Sensitive Data Related to Operations at Indian Ports
🌐
BunnyLoader: New Malware-as-a-Service Threat Emerges in the Cybercrime Underground
🌐
Zanubis Android Banking Trojan Poses as Peruvian Government App to Target Users
🌐
New BunnyLoader threat emerges as a feature-rich malware-as-a-service
🌐
Microsoft Defender no longer flags Tor Browser as malware
🎙️
Cyber Security Today, Oct. 2, 2023 - Advice for creating a cybersecurity awareness program
📡
Live Webinar | Guide to Implementing SASE/SSE: 5 Things for Every CIO & CISO to Know
📡
Live Webinar | Achieving Air Gapped Security on VMs in Azure
📡
FBI warns of surge in 'phantom hacker' scams impacting elderly
📡
UK Royal Family Website Taken Down by DDoS Attack
📡
Cybersecurity Budgets Show Moderate Growth
📡
Norway Wants Europe-Wide Ban on Facebook Behavioral Ads
📡
APIs: Unveiling the Silent Killer of Cyber Security Risk Across Industries
📡
LUCR-3: Scattered Spider Getting SaaS-y in the Cloud
📡
Silent Skimmer: A Year-Long Web Skimming Campaign Targeting Online Payment Businesses
📡
Friendly Reminder: ZIP Metadata is Not Encrypted, (Mon, Oct 2nd)
📡
Critical Vulnerabilities In Exim Threaten Over 250k Email Servers Worldwide
📡
"Phantom Hacker" Scams Target Senior Citizens and Result in Victims Losing their Life Savings
📡
Don’t Let Zombie Zoom Links Drag You Down
📡
IronNet, founded by former NSA director, shuts down and lays off staff