108Articles
10Categories
2023-10-11Date
๐Ÿšจ
CISA Warns of Attacks Exploiting Adobe Acrobat VulnerabilityCISA has added five bugs to its Known Exploited Vulnerabilities catalog, including the recent WordPad, Skype, and HTTP/2 zero-days. The post CISA Warns of Attacks Exploiting Adobe Acrobat Vulnerability appeared first on SecurityWeek .
KEV
๐Ÿ›
Microsoft Warns of Nation-State Hackers Exploiting Critical Atlassian Confluence Vulnerability
๐Ÿ›
curl - SOCKS5 heap buffer overflow
๐Ÿ›
Massive DDoSย Attack Leveraged Zero-Day in HTTP/2 Rapid Reset
๐Ÿ›
Only you can prevent forest trust issues: managing the complexity of merged networks
๐Ÿ›
SAP Releases Seven New Notes on October 2023 Patch Day
๐Ÿ›
Microsoft Warns of Nation-State Hackers Exploiting Critical Atlassian Confluence Vulnerability
๐Ÿ›
Over 17,000 WordPress Sites Compromised by Balada Injector in September 2023
๐Ÿ›
U.S. Cybersecurity Agency Warns of Actively Exploited Adobe Acrobat Reader Vulnerability
KEV
๐Ÿ›
CVE-2023-38545: curl SOCKS5 oversized hostname vulnerability. How bad is it?, (Wed, Oct 11th)
๐Ÿ›
HTTP/2 Rapid Reset: deconstructing the record-breaking attack
โš ๏ธ
Microsoft Releases October 2023 Patches for 103 Flaws, Including 2 Active Exploits
โš ๏ธ
3 Zero-days and 100+ vulnerabilities Fixed in Microsoft Security Update
โš ๏ธ
TROOPERS23 - 35 talks
KEV
โš ๏ธ
British Cable Manufacturer Volex Confirms Unauthorized Access to its Systems and Data
โš ๏ธ
Code Execution Flaws Patched in Adobe Commerce, Photoshop
โš ๏ธ
CISA Collaborative Weighs in on Open Source Software Security
โš ๏ธ
New Magecart Campaign Abuses 404 Page Not Found Error
โš ๏ธ
Microsoft Releases October 2023 Patches for 103 Flaws, Including Two Active Exploits
KEV
โš ๏ธ
Cisco Canโ€™t Stop Using Hard-Coded Passwords
โš ๏ธ
Google, Cloudflare, and AWS Reveal Record-Breaking HTTP/2 Rapid Reset DDoS Vulnerability
โš ๏ธ
Organizations Respond to HTTP/2 Zero-Day Exploited for DDoS Attacks
โš ๏ธ
State-backed hackers are exploiting new โ€˜criticalโ€™ Atlassian zero-day bug
โš ๏ธ
[DISINFORMATION ALERT] Israel-Hamas war causes deluge of dis- and misinformation
โš ๏ธ
Microsoft, American Express most spoofed brands in financial services phishing emails
โš ๏ธ
Crunchyroll Resolves Class Action Lawsuit, Offers Compensation for Subscribers
โš ๏ธ
Israel-Hamas conflict extends to cyberspace
โš ๏ธ
FBI and CISA Release Update on AvosLocker Advisory
โš ๏ธ
Simpson Manufacturing shuts down IT systems after cyberattack
โš ๏ธ
Citrix Patches Critical NetScaler ADC, Gateway Vulnerability
โš ๏ธ
US Government Releases Security Guidance for Open Source Software in OT, ICS
โš ๏ธ
Microsoft: State hackers exploiting Confluence zero-day since September
โš ๏ธ
Vulnerability impacting HTTP/2 - Rapid Reset
โš ๏ธ
A New Threat on the Horizon: The Grayling APT Group
โš ๏ธ
Multiple Citrix NetScaler Flaw Leads to DoS Attack and Data Exposure
โš ๏ธ
CISA Warns Of Attacks Exploiting Adobe Acrobat Vulnerability
โš ๏ธ
Critical SOCKS5 Vulnerability in cURL Puts Enterprise Systems at Risk
โš ๏ธ
News alert: Study finds law firms targeted โ€” ALSO Cloud UK urges them to shore up cyber hygiene
โš ๏ธ
Chinese APT Group Exploiting Atlassian Zero Day
โš ๏ธ
IZ1H9 Mirai-Based Botnet Enhances its Arsenal with 13 New Exploits
โš ๏ธ
Mirai reloads exploit arsenal before latest expansion drive
โš ๏ธ
Microsoft Fixes Three Zero Days
โš ๏ธ
One-click remote code exploit in CD cue files affects most GNOME-based Linux distros
โš ๏ธ
How the Cybersecurity Industry Is Aiding Israel's War Effort
โš ๏ธ
Virus Bulletin โ€“ building digital armies
โš ๏ธ
CD-indexing cue files are the core of a serious Linux remote code exploit
๐Ÿ“‹
Cyber Security Today, Oct. 11, 2023 - IT administrators warned of serious vulnerabilities in web servers and in cURL
๐Ÿ“‹
ICS Patch Tuesday: Siemens Ruggedcom Devices Affected by Nozomi Component Flaws
๐Ÿ“‹
Windows 11 21H2 and Windows Server 2012 reach end of support
๐Ÿ“‹
Patch Tuesday harvests a bumper crop in October
๐Ÿ“‹
Fortinet Releases Security Updates for Multiple Products
๐Ÿ“ข
TROOPERS23: Hidden Pathways: Exploring the Anatomy of ACL-Based Active Directory Attacks and Building Strong Defenses
๐Ÿ“ข
Apple security advisory (AV23-617)
๐Ÿ“ข
Google Chrome security advisory (AV23-619)
๐Ÿ“ข
Adobe security advisory (AV23-618)
๐Ÿ“ข
[Control systems] Siemens security advisory (AV23-620)
๐Ÿ“ข
Curl security advisory (AV23-621)
๐Ÿ“ข
New WordPress backdoor creates rogue admin to hijack websites
๐Ÿ”ฅ
Air Europa Breached: Customersโ€™ Credit Card Details Exposed
๐Ÿ”ฅ
Credit card information exposed in Air Europa hack
๐Ÿ”ฅ
McLaren Health Care Facing Three Lawsuits in Ransomware Hack
๐Ÿ”ฅ
Seven New Organizations Listed as Victims by PLAY Ransomware
๐Ÿ”ฅ
Take an Offensive Approach to Password Security by Continuously Monitoring for Breached Passwords
๐Ÿ”ฅ
10 years in review: Cost of a Data Breach
๐Ÿ”ฅ
That day you find youโ€™re suddenly in charge of Facebookโ€™s official UK account
๐Ÿ”ฅ
North Korean Hackers Continue to Refine Their Arsenal of Tactics & Techniques
๐Ÿ”ฅ
Both Pro-Israeli and Pro-Palestinian Hacktivists Have Joined the Fight and are Targeting ICS and SCADA Systems
๐Ÿ”ฅ
Microsoft Defender now auto-isolates compromised accounts
๐Ÿ”ฅ
Israel-Hamas War: Publicity-Seeking Hacktivists Take Sides
๐Ÿ”ฅ
Supply Chain, Cloud Compromise Worries Growing in Healthcare
๐Ÿ”ฅ
BianLian extortion group claims recent Air Canada breach
๐Ÿ”ฅ
Microsoft Defender for Endpoint now stops human-operated attacks on its own
๐Ÿ”ฅ
Automatic disruption of human-operated attacks through containment of compromised user accounts
๐Ÿ•ต๏ธ
What are You Working on Wednesday
๐Ÿ•ต๏ธ
ISC Stormcast For Wednesday, October 11th, 2023 https://isc.sans.edu/podcastdetail/8696, (Wed, Oct 11th)
๐Ÿ•ต๏ธ
Threat Actors Abusing 404 Pages to Hide Credit Card Stealing Malware
๐Ÿ•ต๏ธ
How I made a heap overflow in curl | daniel.haxx.se
๐Ÿ•ต๏ธ
China-Linked Stayin Alive Campaign Targets Telecom and Government Entities
๐Ÿ•ต๏ธ
North Korea's State-Sponsored APTs Organize and Align
๐Ÿ•ต๏ธ
Wireshark Tutorial: Identifying Hosts and Users
๐Ÿ•ต๏ธ
Chrome 118 Patches 20 Vulnerabilities
๐Ÿ•ต๏ธ
Applying AI to API Security
๐Ÿ•ต๏ธ
Securing the future of Industry 4.0: WALLIX white paper reveals key strategies โ€“ get your copy today!
๐Ÿ•ต๏ธ
[Cybersecurity Awareness Month]ย Password Security: Do Not Get Bit by Count Hackula
๐Ÿ•ต๏ธ
Cybersecurity Awareness Month: A Year-Round Effort for States
๐Ÿ•ต๏ธ
Payment Card Data Stolen in Air Europa Hack
๐Ÿ•ต๏ธ
KnowBe4 Named a Leader in the Fall 2023 G2 Grid Report for Security Awareness Training
KEV
๐Ÿ•ต๏ธ
Unity, Compassion and Business Resilience in Israel
๐Ÿ•ต๏ธ
Pentera CEO on How Firms Should Respond to Attack on Israel
๐Ÿ•ต๏ธ
Vietnam Accused of Using Predator to Spy on EU, US Lawmakers
๐ŸŒ
Cybersecurity Pros Predict Rise of Malicious AI
๐ŸŽ™๏ธ
Smashing Security podcast #343: Four-legged girlfriends, LoveGPT, and a military intelligence failure
๐Ÿ“ก
Kaspersky proposes six principles of ethical use of AI | Kaspersky official blog
๐Ÿ“ก
UK Opposition Leader Targeted by AI-Generated Fake Audio Smear
๐Ÿ“ก
Google Steps Up Its Push to Kill the Password
๐Ÿ“ก
Sophos Interns Share Experiences To Mark International Day of the Girl
๐Ÿ“ก
Old-School Attacks are Still a Danger, Despite Newer Techniques
๐Ÿ“ก
LinkedIn Smart Links attacks return to target Microsoft accounts
๐Ÿ“ก
Generative AI Security: Preventing Microsoft Copilot Data Exposure
๐Ÿ“ก
Chrome 118 Patches 20 Vulnerabilities
๐Ÿ“ก
TikTok Chief Summoned by EU Lawmakers for Privacy Probe
๐Ÿ“ก
Attacks On NetScaler Gateways Aim For User Credentials
๐Ÿ“ก
Curl Vulns Ironed Out With Patches After Week-Long Tease
๐Ÿ“ก
Hacker Conversations: Natalie Silvanovich From Googleโ€™s Project Zero
๐Ÿ“ก
Exchange Online mail delivery issues caused by anti-spam rules
๐Ÿ“ก
SEC is investigating MOVEit mass-hack, says Progress Software
๐Ÿ“ก
Yepic fail: This startup promised not to make deepfakes without consent, but did anyway
๐Ÿ“ก
6 steps to getting the board on board with your cybersecurity program