97Articles
10Categories
2023-10-13Date
🚨
Threat Actors Exploit Atlassian Confluence CVE-2023-22515 for Initial Access to NetworksSUMMARY The Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), and Multi-State Information Sharing and Analysis Center (MS-ISAC) are releasing this joint Cybersecurity Advisory (CSA) in response to the active exploitation of CVE-2023-2…
KEV
πŸ›
Apple Releases iOS 16 Update to Patch Exploited Vulnerability
KEV
πŸ›
Vulnerability Exposed in WordPress Plugin User Submitted Posts
πŸ›
Pro-Russia Hacker Groups Exploiting Winrar Flaw to Steal Login Credentials
πŸ›
Chromium: CVE-2023-5218 Use after free in Site Isolation
πŸ›
Chromium: CVE-2023-5473 Use after free in Cast
πŸ›
Chromium: CVE-2023-5474 Heap buffer overflow in PDF
πŸ›
Chromium: CVE-2023-5475 Inappropriate implementation in DevTools
πŸ›
Chromium: CVE-2023-5476 Use after free in Blink History
πŸ›
Chromium: CVE-2023-5477 Inappropriate implementation in Installer
πŸ›
Chromium: CVE-2023-5478 Inappropriate implementation in Autofill
πŸ›
Chromium: CVE-2023-5479 Inappropriate implementation in Extensions API
πŸ›
Chromium: CVE-2023-5481 Inappropriate implementation in Downloads
πŸ›
Chromium: CVE-2023-5483 Inappropriate implementation in Intents
πŸ›
Chromium: CVE-2023-5484 Inappropriate implementation in Navigation
πŸ›
Chromium: CVE-2023-5485 Inappropriate implementation in Autofill
πŸ›
Chromium: CVE-2023-5486 Inappropriate implementation in Input
πŸ›
Chromium: CVE-2023-5487 Inappropriate implementation in Fullscreen
πŸ›
CVE-2023-36559 Microsoft Edge (Chromium-based) Spoofing Vulnerability
⚠️
Indian state government fixes website bug that revealed Aadhaar numbers and fingerprints
⚠️
ToddyCat APT Hackers Exploiting Vulnerable Microsoft Exchange Servers
⚠️
US Securities and Exchange Commission Probes MOVEit Hack
⚠️
Cyber Security Today, Oct. 13, 2023 -- A ransomware gang offers cash for employees to betray their firms
⚠️
Ransomware Attacks Now Target Unpatched WS_FTP Servers
⚠️
Dozens of Squid Proxy Vulnerabilities Remain Unpatched 2 Years After Disclosure
⚠️
SEC Investigating Progress Software Over MOVEit Hack
⚠️
Critical Heap Overflow Vulnerability in Curl Fixed After a Week Long Wait
⚠️
Hacking the High School Grading System
⚠️
US Smashes Annual Data Breach Record With Three Months Left
⚠️
DarkGate Targets Organizations via Compromised Skype, Teams Accounts
⚠️
55 Vulnerabilities in Squid Caching Proxy and 35 0days
⚠️
Biggest DDoSes Of All Time Generated By Protocol 0-Day In HTTP/2
⚠️
Dozen Of Squid Proxy Vulnerabilities Remain Unpatched
⚠️
Void Rabisu Targets Female Political Leaders with New Slimmed-Down ROMCOM Variant
⚠️
An analysis of an in-the-wild iOS Safari WebContent to GPU Process exploit
⚠️
CISA Now Flagging Vulnerabilities, Misconfigurations Exploited by Ransomware
⚠️
CISA shares vulnerabilities, misconfigs used by ransomware gangs
⚠️
CISA Now Flagging Vulnerabilities, Misconfigurations Exploited by Ransomware
⚠️
Container Security in a GitOps Environment
⚠️
Juniper Networks Patches Over 30 Vulnerabilities in Junos OS
⚠️
Ransomware-Wielding Attackers Target Unfixed WS_FTP Servers
⚠️
Should You Use Controversial Simulated Phishing Test Emails?
⚠️
Cisco Emergency Responder Static Credentials Vulnerability
⚠️
UK FCA Fines Equifax 11 Million Pounds for 2017 Data Breach
⚠️
53% of Organizations Experienced Cyber Attacks
⚠️
Chinese APT group ToddyCat launches new cyber-espionage campaigns
⚠️
Why IronNet Ran Out of Cash, Filed For Chapter 11 Bankruptcy
πŸ“‹
Microsoft: October Windows 10 security updates fail to install
πŸ“‹
Staying on top of security updates – Week in security with Tony Anscombe
πŸ“’
Void Rabisu Targets Female Political Leaders with New Slimmed-Down ROMCOM Variant
πŸ“’
FBI, CISA Warn of Rising AvosLocker Ransomware Attacks Against Critical Infrastructure
πŸ“’
US Agencies Share Avoslocker Ransomware Technical Details, Defense Tips
πŸ“’
CISA and International Partners--Starting a Global Movement to Secure Our World
πŸ“’
Fortinet security advisory (AV23-629)
πŸ”₯
Good Day Ransomware malware analysis
πŸ”₯
Edwardian Hotels London Cyberattack Claim Surface with Samples of Bank Data, Passport
πŸ”₯
Breach Roundup: Google Phases Out Passwords for Passkeys
πŸ”₯
Ransomware attacks doubled year on year. Are organizations equipped to handle the evolution of Ransomware in 2023?
πŸ”₯
Half of Small Businesses Hit by Cyberattack Over the Past Year
πŸ”₯
Researchers Unveil ToddyCat's New Set of Tools for Data Exfiltration
πŸ”₯
UK Watchdog Fines Equifax $13.4 Million For Role In Cyber Breach
πŸ”₯
Shadow silent on data breach as hacked data appears genuine
πŸ”₯
New PEAPOD Cyberattack Campaign Targeting Women Political Leaders
πŸ”₯
Indian State Government Fixes Website Bug That Revealed Aadhaar Numbers and Fingerprints
πŸ”₯
Kwik Trip IT systems outage caused by mysterious β€˜network incident’
πŸ”₯
How Cyberattacks Could Affect the Israel-Hamas War
πŸ”₯
23andMe hit with lawsuits after hacker leaks stolen genetics data
πŸ”₯
9 in 10 CISOs Report at Least One Disruptive Cyberattack in the Last Year
πŸ”₯
60% of Organizations are Very Concerned About the Potential Impact of Ransomware Attacks
πŸ”₯
Feds Warn Healthcare Sector of 'NoEscape' RaaS Gang Threats
πŸ”₯
The Week in Ransomware - October 13th 2023 - Increasing Attacks
πŸ•΅οΈ
ISC Stormcast For Friday, October 13th, 2023 https://isc.sans.edu/podcastdetail/8700, (Fri, Oct 13th)
πŸ•΅οΈ
Microsoft Offers Up to $15,000 in New AI Bug Bounty Program
πŸ•΅οΈ
KnowBe4 Named a Leader in the Fall 2023 G2 Grid Report for Security Orchestration, Automation, and Response (SOAR)
πŸ•΅οΈ
Palo Alto Networks Is the HashiCorp Technology Partner of the Year
πŸ•΅οΈ
Juniper Networks Patches Over 30 Vulnerabilities in Junos OS
πŸ•΅οΈ
In Other News: Ex-Uber Security Chief Appeal, New Offerings From Tech Giants, Crypto Bounty
πŸ•΅οΈ
BSides Tallinn* 2023
πŸ•΅οΈ
Phishing-as-a-Service Strox Lets Hackers Phish any Brand by Submitting its Logo
πŸ•΅οΈ
Microsoft, SeroxenRAT, Smart Links, ToddyCAT, ShellBot, More News & Aaran Leyland - SWN #333
πŸ•΅οΈ
Friday Squid Blogging: On Squid Intelligence
🌐
After hackers distribute malware in game updates, Steam adds SMS-based security check for developers
🌐
DarkGate Malware Spreading via Messaging Services Posing as PDF Files
🌐
Vietnam Accused of Using Predator Spyware to Target EU, US Lawmakers
πŸŽ™οΈ
Cyber Security Today, Week in Review for Friday, Oct. 11, 2023
πŸ“‘
Largest DDoS attacks ever reported by Google, Cloudflare and AWS
πŸ“‘
ShellBot Uses Hex IPs to Evade Detection in Attacks on Linux SSH Servers
πŸ“‘
Bad password policies and how to avoid them | Kaspersky official blog
πŸ“‘
State’s Cyber Overhaul Bets Big on Zero Trust to Tackle Emerging Threats
πŸ“‘
Juniper Networks Patches Over 30 Vulnerabilities In Junos OS
πŸ“‘
Live Webinar | The Rise of the Cloud Conscious Adversary: Defense Playbook
πŸ“‘
Hackers use Binance Smart Chain contracts to store malicious scripts
πŸ“‘
Conveyor Raises $12.5m to Automate Security Reviews Using LLMs
πŸ“‘
Microsoft plans to kill off NTLM authentication in Windows 11
πŸ“‘
What's Normal: MAC Addresses, (Fri, Oct 13th)
πŸ“‘
Unlocking the Platform Advantage in Security
πŸ“‘
High Performance Payments: How to Seize the Billion-Dollar Opportunity