114Articles
8Categories
2023-10-31Date
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-46747 F5 BIG-IP Authentication Bypass Vulnerability CVE-2023-46748 F5 BIG-IP SQL Injection Vulnerability These types of vulnerabilities are f…
KEV
πŸ›
Atlassian Warns of New Critical Confluence Vulnerability Threatening Data Loss
πŸ›
Attackers Exploiting Critical F5 BIG-IP Vulnerability
⚠️
Update: Exploit Released for Critical Cisco IOS XE Flaw, Many Hosts Still Hacked
⚠️
RCE Exploit for Wyze Cam v3 Publicly Released, Patch Now
⚠️
Data loss prevention vendors tackle gen AI data risks
⚠️
The Future of Drone Warfare
⚠️
Crypto Thief Steals $4.4 Million in a Day as Toll Rises From LastPass Breach
⚠️
Five Guys Discloses Hack of Two Employee Email Accounts
⚠️
Confirmed: Palo Alto Networks buys Dig Security, sources say for $400M
⚠️
Citrix Bleed Bug Under Mass Exploitation
⚠️
SEC sues SolarWinds and its CISO for fraudulent cybersecurity disclosures
⚠️
Cybersecurity workforce shortage reaches 4 million despite significant recruitment drive
⚠️
Atlassian Warns of New Critical Confluence Vulnerability Threatening Data Loss
⚠️
iLeakage updates Spectre for novel info-stealing side-channel attack
⚠️
Hackers Abuse Google Search Ads to Deploy Bonanza Malware
⚠️
Why ransomware victims can’t stop paying off hackers
⚠️
What the White House executive order on AI means for cybersecurity leaders
⚠️
Malicious NuGet Packages Exploit Loophole in MSBuild Integrations
⚠️
CISA Releases Three Industrial Control Systems Advisories
⚠️
Prepare Your Employees to Withstand a Zero-Day Cyber Attack: 5 Key Strategies
⚠️
Atlassian warns of critical Confluence flaw leading to data loss
⚠️
Atlassian CISO Urges Quick Action to Protect Confluence Instances From Critical Vulnerability
⚠️
Securing Cloud Infrastructure Demands a New Mindset
⚠️
How Security Tools Must Evolve - Dan Kuykendall - ASW #261
⚠️
Third Wave Innovations rolls security into all-in-one NOC offering
⚠️
G7 Unveils Rules for AI Code of Conduct - Will They Stick?
⚠️
Zero Day Threat Protection for Your Network
⚠️
Closing the gender gap: 7 ways to attract more women into cybersecurity
πŸ“’
Meta Launches Paid Ad-Free Subscription in Europe to Satisfy Privacy Laws
πŸ“’
Cyber Pros Praise Biden Executive Order On Artificial Intelligence
πŸ“’
[Control systems] INEA security advisory (AV23-663)
πŸ“’
[Control systems] Zavio security advisory (AV23-664)
πŸ“’
Atlassian security advisory (AV23-665)
πŸ“’
Feds Levy First-Ever HIPAA Fine for Ransomware Data Breach
πŸ”₯
Proofpoint to Buy Tessian to Infuse Email Protection With AI
πŸ”₯
Trojanized PyCharm Software Version Delivered via Google Search Ads
πŸ”₯
Proofpoint to Acquire AI Email Security Firm Tessian
πŸ”₯
SEC accuses SolarWinds CISO of misleading investors before Russian cyberattack
πŸ”₯
Dallas County Confirms Cybersecurity Incident After Ransomware Gang Claims Attack
πŸ”₯
September Sees a 32% Increase in the Number of Ransomware Attacks in Just One Month
πŸ”₯
US-led cybersecurity coalition vows to not pay hackers’ ransom demands
πŸ”₯
Dozens of countries will pledge to stop paying ransomware gangs
πŸ”₯
SEC charges SolarWinds CISO with fraud for misleading investors before major cyberattack
πŸ”₯
British Library knocked offline by weekend cyberattack
πŸ”₯
India’s biggest data breach? Hacking gang claims to have stolen 815 million people’s personal information
πŸ”₯
Step-by-step through the Money Message ransomware
πŸ•΅οΈ
Cryptojackers steal AWS credentials from GitHub in 5 minutes
πŸ•΅οΈ
ISC Stormcast For Tuesday, October 31st, 2023 https://isc.sans.edu/podcastdetail/8724, (Tue, Oct 31st)
πŸ•΅οΈ
SEC Charges SolarWinds and Its CISO With Fraud and Cybersecurity Failures
πŸ•΅οΈ
ServiceNow Misconfigurations Lead to Leak of Sensitive Data
πŸ•΅οΈ
BSides Munich 2023 - 7 SYNs; 22 videos
πŸ•΅οΈ
Pro-Hamas Hacker Group Targets Israeli Entities with BiBi-Linux Wiper Malware
πŸ•΅οΈ
PentestPad: Platform for Pentest Teams
πŸ•΅οΈ
Hacker Jailed for Stealing $1 Million Via SIM Swapping Attacks
πŸ•΅οΈ
Palo Alto Networks + Dig Security
πŸ•΅οΈ
Extending ZTNA to Protect Against Insider Threats
πŸ•΅οΈ
Could a threat actor socially engineer ChatGPT?
πŸ•΅οΈ
Navigating Cybersecurity in a Social-First Campaign
πŸ•΅οΈ
CyberheistNews Vol 13 #44 [Don't Get Trapped] The Dark History of Phishing and More Social Engineering
πŸ•΅οΈ
Training Tuesday - Discussions for certs, training and learning-at-home
πŸ•΅οΈ
Google Chrome Now Auto-Upgrades to Secure Connections for All Users
πŸ•΅οΈ
Cybercriminal Group Octo Tempest and Its Menacing Phishbait
πŸ•΅οΈ
Should We Be Relying on Our Cybersecurity Risk Matrices? - Doug Hubbard - CSP #146
πŸ•΅οΈ
WSJ: "SEC Sues SolarWinds Over 2020 Hack Attributed to Russians"
πŸ•΅οΈ
Arid Viper Targeting Arabic Android Users with Spyware Disguised as Dating App
πŸ•΅οΈ
Dr. Who | iLeakage | Canada | AI | Killnet | NuGet | Jason Wood & More! – SWN338
πŸ•΅οΈ
Massive cybercrime URL shortening service uncovered via DNS data
πŸ•΅οΈ
Arid Viper Disguising Mobile Spyware as Updates for Non-Malicious Android Applications
πŸ•΅οΈ
IAM Credentials in Public GitHub Repositories Harvested in Minutes
πŸ•΅οΈ
Dr. Who, iLeakage, Canada, AI, Killnet, NuGet, More News and Jason Wood - SWN #338
πŸ•΅οΈ
Palo Alto Networks to Buy Data Defense Startup Dig Security
πŸ•΅οΈ
Palo Alto Networks to Acquire Cloud Security Start-Up Dig Security
πŸ•΅οΈ
Abusing OAuth, State of DevOps, Nightshade and AI, iLeakage, Sandboxing Apps - ASW #261
πŸ•΅οΈ
Misdirection for a Price: Malicious Link-Shortening Services
πŸ•΅οΈ
DR. WHO, ILEAKAGE, CANADA, AI, KILLNET, NUGET, MORE NEWS AND JASON WOOD – SWN #338
πŸ•΅οΈ
News alert: Ivanti reports reveals 49% of CXOs have requested bypassing security measures
πŸ•΅οΈ
Cybersecurity Leaders Spooked by SEC Lawsuit Against SolarWinds CISO
πŸ•΅οΈ
News alert: Traceable celebrates winning the prestigious SINET16 Innovator Award for 2023
πŸ•΅οΈ
German Data Regulator to Intensify ChatGPT Probe
πŸ•΅οΈ
Supercharging Red-Teaming with Infrastructure as Code Integration
πŸ•΅οΈ
AI-Enabled Crimes Are Already Here, UK NCA Chief Says
πŸ•΅οΈ
From classroom to cyberfront: Unlocking the potential of the next generation of cyber defenders
🌐
Malicious NuGet Packages Caught Distributing SeroXen RAT Malware
🌐
.US Harbors Prolific Malicious Link Shortening Service
🌐
Malicious NuGet packages abuse MSBuild to install malware
🌐
Russia to Launch its Own Version of Virustotal Due to US Snooping Fears
🌐
Multiple Layers of Anti-Sandboxing Techniques, (Tue, Oct 31st)
🌐
Samsung Galaxy gets new Auto Blocker anti-malware feature
🌐
Avast confirms it tagged Google app as malware on Android phones
πŸ“‘
Indian opposition leaders say Apple has warned them of state-sponsored iPhone attacks
πŸ“‘
Costco Pharmacy Sends Sensitive Health Data to Third Parties
πŸ“‘
Canada Bans WeChat and Kaspersky Apps On Government Devices
πŸ“‘
SEC Charges SolarWinds, its CISO With Fraud
πŸ“‘
Canada Bans WeChat and Kaspersky on Government Phones
πŸ“‘
Apple Improves iMessage Security With Contact Key Verification
πŸ“‘
Preparing for your child's first gadget: what you need to know | Kaspersky official blog
πŸ“‘
Preparing for your child's first gadget: a comprehensive checklist | Kaspersky official blog
πŸ“‘
Meta Launches Paid Ad-Free Subscription in Europe to Satisfy Privacy Laws
πŸ“‘
Report Links ChatGPT to 1265% Rise in Phishing Emails
πŸ“‘
Canada Bans WeChat And Kaspersky On Government Phones
πŸ“‘
Atlassian Wants Everyone To Patch A Critical Confluence Flaw Now
πŸ“‘
Florida Man Jailed For Crypto SIM Swapping Attacks
πŸ“‘
SEC Charges SolarWinds And Its CISO With Fraud And Cybersecurity Failures
πŸ“‘
Alliance Of 40 Countries To Vow Not To Pay Ransom To Cybercriminals, US Says
πŸ“‘
Packet Storm Updates Will Be Minimal Until November 10
πŸ“‘
Canada bans WeChat and Kaspersky products on govt devices
πŸ“‘
Florida SIM Swapper Sentenced to Prison for Cryptocurrency Theft
πŸ“‘
Largest Indian Data Leak Involving 815 Million People’s COVID Test Data on Sale; Samples Verified
πŸ“‘
Microsoft releases Windows 11 23H2 as an enablement package
πŸ“‘
How to download a Windows 11 23H2 ISO from Microsoft
πŸ“‘
Log analysis and security firm Graylog raises $9M in equity, $30M in debt
πŸ“‘
Windows 11 23H2 - New features in the Windows 11 2023 Update
πŸ“‘
Flipper Zero Bluetooth spam attacks ported to new Android app