101Articles
8Categories
2023-10-03Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-4211 Arm Mali GPU Kernel Driver Use-After-Free Vulnerability These types of vulnerabilities are frequent attack vectors for malicious cyber act…
KEV
🐛
Arm Issues Patch for Mali GPU Kernel Driver Vulnerability Amidst Ongoing Exploitation
🐛
Companies Address Impact of Exploited Libwebp Vulnerability
🐛
Arm patches bugs in Mali GPUs that affect Android phones and Chromebooks
🐛
Hackers Seen Exploiting Bugs in Browsers and Popular File Transfer Tool
🐛
Qualcomm Releases Patch for 3 new Zero-Days Under Active Exploitation
🐛
Google Chrome zero-day jumps onto CISA’s known vulnerability list
KEV
⚠️
The Biggest Hack of 2023 Keeps Getting Bigger
⚠️
138: The Mimics of Punjab
⚠️
Exim Patches Three of Six Zero-Day Bugs Disclosed Last Week
⚠️
Virginia School District Open Despite Lockbit Ransomware Attack
⚠️
The value of threat intelligence — and challenges CISOs face in using it effectively
KEV
⚠️
Cybersecurity professional job-satisfaction realities for National Cybersecurity Awareness Month
⚠️
Zip Slip Vulnerability Let Attacker Import Malicious Code and Execute Arbitrary Code
⚠️
Arm Issues Patch for Mali GPU Kernel Driver Vulnerability Amidst Ongoing Exploitation
⚠️
Chalk: Open-Source Software Security and Infrastructure Visibility Tool
⚠️
Android’s October 2023 Security Updates Patch Two Exploited Vulnerabilities
⚠️
Researcher Reveals New Techniques to Bypass Cloudflare's Firewall and DDoS Protection
⚠️
Cybersecurity experts raise concerns over EU Cyber Resilience Act’s vulnerability disclosure requirements
⚠️
root with a single command: sudo logrotate
⚠️
Hackers Steal User’s Database From European Telecommunications Standards Institute
⚠️
Update: Some Prospect Medical Hospitals in Dire State, Post-Attack
⚠️
Protecting your IT infrastructure with Security Configuration Assessment (SCA)
⚠️
Android’s October 2023 Security Updates Patch Two Exploited Vulnerabilities
⚠️
US Executives Targeted in Phishing Attacks Exploiting Flaw in Indeed Job Platform
⚠️
New Wave of Mirai Botnet Variants Like hailBot, kiraiBot, and catDDoS Mount a Fierce Onslaught
⚠️
Microsoft Edge, Teams get fixes for zero-days in open-source libraries
⚠️
Qualcomm says hackers exploit 3 zero-days in its GPU, DSP drivers
⚠️
Progress Software Disappointed Researchers Published PoC Of Newly Patched Bug
⚠️
Vulnerable ARM GPU Drivers Under Active Exploitation. Patches May Not Be Available
⚠️
Let’s Go into the rabbit hole (part 1) — the challenges of dynamically hooking Golang programs
⚠️
A Deceptive Dependabot, Insecure JWT, CISA Wants HBOMs, OpenSSF's Critical Projects - ASW #257
⚠️
[QubesOS] Disarm Shortcut for BusKill Hardware Dead Man Switch
⚠️
US Executives Targeted in Phishing Attacks Exploiting Flaw in Indeed Job Platform
⚠️
Creating Presentations and Training That Engage an Audience - Lina Lau - ASW #257
⚠️
Microsoft Edge, Teams Get Fixes for Zero-Days in Open-Source Libraries
⚠️
ShellTorch flaws expose AI servers to code execution attacks
⚠️
Warning: PyTorch Models Vulnerable to Remote Code Execution via ShellTorch
⚠️
Android October security update fixes zero-days exploited in attacks
KEV
⚠️
ZDI Discusses First Automotive Pwn2Own
⚠️
The advantages and risks of large language models in the cloud
⚠️
New 'Looney Tunables' Linux bug gives root on major distros
⚠️
Ransomware Actors Exploit Critical Bug, Target DevOps Tool
⚠️
Defending new vectors: Threat actors attempt SQL Server to cloud lateral movement
📢
FDA Cyber Mandates for Medical Devices Goes Into Effect
📢
PKD, NSA, WS_FTP, Exim, Sextortion, BunnyLoader, CISA, More News, and Jason Wood - SWN #330
📢
Dell security advisory (AV23-594)
📢
Android security advisory – October 2023 monthly rollup (AV23-593)
📢
Ubuntu security advisory (AV23-595)
📢
Exim security advisory (AV23-596)
🔥
Are Local LLMs Useful in Incident Response?, (Tue, Oct 3rd)
🔥
Malicious Packages Found Hidden in NPM Registry
🔥
Update: Clorox Resumes Normal Plant Operations in the Wake of Cyberattack
🔥
Activision - 16,006 breached accounts
🔥
Motel One Discloses Ransomware Attack Impacting Customer Data
🔥
BlackCat Ransomware Gang Allegedly Stole Over 24 Million Files From Motel One
🔥
Medusa Ransomware Group Claims Intrusions at Two New Victims, Sets Ransom Deadline
🔥
The importance of Infrastructure as Code (IaC) when Securing cloud environments
🔥
NextGen Security Tooling: Investments in Intelligence - Mike Coogan - CSP #142
🔥
Motel One says ransomware gang stole customer credit card data
🔥
Lorenz Ransomware Group Attacks Allcare Pharmacy in Major Cyber Assault
🔥
Over 3 Dozen Data-Stealing Malicious npm Packages Found Targeting Developers
🔥
Group Claims It Stole 2.5 Million Patients' Data in Attack
🕵️
AWS security exec talks secret threat intel tool MadPot
🕵️
ISC Stormcast For Tuesday, October 3rd, 2023 https://isc.sans.edu/podcastdetail/8684, (Tue, Oct 3rd)
🕵️
BSides Oslo 2023 - 8 hours of talks
🕵️
Cybersecurity M&A Roundup: 28 Deals Announced in September 2023
🕵️
Hacking Gas Pumps via Bluetooth
🕵️
Actor Tom Hanks Warns of Ad With AI Imposter
🕵️
Network, Meet Cloud; Cloud, Meet Network
🕵️
Dozens of Malicious NPM Packages Steal User, System Data
🕵️
CyberheistNews Vol 13 #40 Why BJ Fogg and Daniel Kahneman Are Big Security Pro Must-Knows
🕵️
[HEADS UP] Aurora Police Department Warns of Contactless Payment Processors Scams
🕵️
Generative AI and the Automation of Social Engineering Increasingly Used By Threat Actors
🕵️
FBI most-wanted Russian hacker reveals why he burned his passport
🕵️
Palo Alto Networks a Leader in the Gartner® Magic Quadrant™ for SD-WAN
🕵️
Critical TorchServe Flaws Could Expose AI Infrastructure of Major Companies
🕵️
Synqly Joins Race to Fix Security, Infrastructure Product Integrations
🕵️
France Closes in on Digital Safety Bill
🕵️
Chinese APT Actors Target WeChat Users
🕵️
Palo Alto, Microsoft, Check Point Lead Zero Trust: Forrester
🌐
Cyber Investments on Pace to Reach $215B in 2024: Gartner
🌐
Google to bolster phishing and malware delivery defenses in 2024
📡
How to Embrace a Cloud Security Challenge Mindset
📡
Chertoff Group Arm to Buy Trustwave from Singtel for $205M
📡
Cloaked manages your logins with proxy emails, phone numbers and a built-in password manager
📡
Live Webinar | Achieving Air-Gapped Data Security for VMs in Azure
📡
Global Events Fuel DDoS Attack Campaigns
📡
API Security Trends 2023 – Have Organizations Improved their Security Posture?
📡
Windows driver compatibility and security issues — how to stay safe | Kaspersky official blog
📡
EvilProxy uses indeed.com open redirect for Microsoft 365 phishing
📡
The Crypto Market Bears The Scars Of FTX's Collapse
📡
US Issues First Ever Fine For Space Junk To Dish Network
📡
US Executives Get Phished By Open Redirect In Indeed Job Platform
📡
Researchers Show How Easy It Is To Defeat AI Watermarks
📡
Critical TorchServe Flaws Could Expose AI Infrastructure
📡
Staying Safe and Secure Online: Cybersecurity Awareness Month
📡
Panel Discussion | Proactive vs Reactive: Why Using GenAI Needs to be Part of A Proactive Security Strategy
📡
Microsoft now lets you play a game during Windows 11 installs
📡
Sophos Firewall v20: Streamlined Management
📡
Playing your part in building a safer digital world: Why cybersecurity matters