95Articles
8Categories
2023-11-09Date
🐛
CISA Alerts: High-Severity SLP Vulnerability Now Under Active Exploitation
KEV
🐛
SysAid Zero-Day Vulnerability Exploited by Ransomware Group
🐛
NetRise releases Trace solution with AI-powered semantic search aimed at protecting firmware
🐛
SysAid Zero-Day Vulnerability Exploited by Ransomware Group
🐛
MOVEit cybercriminals behind SysAid zero-day attack
🐛
Zero-Day Alert: Lace Tempest Exploits SysAid IT Support Software Vulnerability
🐛
CVE-2022-44687 Raw Image Extension Remote Code Execution Vulnerability
🐛
Chromium: CVE-2023-5996 Use after free in WebAudio
🐛
CVE-2023-36014 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
🐛
CVE-2023-36024 Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
⚠️
Android Security Updates: 2023 – 37 Vulnerabilities Patched Including RCE, DOS
⚠️
Ransomware Actors Exploiting Legitimate System Tools to Gain Access – FBI
⚠️
Researchers Uncover Undetectable Crypto Mining Technique on Azure Automation
⚠️
Forget the spam filter: How unique phishing attempts undermine Microsoft email security
⚠️
Council for Scottish Islands Faces IT Outage After ‘Incident’
⚠️
CISA Says SLP Vulnerability Allowing Amplified DoS Attacks Exploited in the Wild
KEV
⚠️
Russian hackers switch to LOTL technique to cause power outage
⚠️
Online Retail Hack
⚠️
CISA Alerts of High-Severity SLP Vulnerability Now Under Active Exploitation
⚠️
Microsoft: SysAid zero-day flaw exploited in Clop ransomware attacks
⚠️
SysAid warns customers to patch after ransomware gang caught exploiting new zero-day flaw
⚠️
BigID unveils new data risk remediation guidance feature
⚠️
CISA Releases Four Industrial Control Systems Advisories
⚠️
Now is the time to insist on total visibility, enabling your organization to utilize AI strategically and comprehensively in the future
⚠️
Medical Company Fined $450,000 by New York AG Over Data Breach
⚠️
Sandworm Disrupts Power in Ukraine Using a Novel Attack Against Operational Technology
⚠️
CISA, NSA, and Partners Release New Guidance on Securing the Software Supply Chain
⚠️
MOVEit Hackers Turn to SysAid Zero-Day Bug
⚠️
Iranian APT group launches destructive attacks against Israeli organizations
⚠️
Maine government says data breach affects 1.3 million residents
📢
SysAid security advisory (AV23-682)
📢
CISA Signs Memorandum of Understanding with the Republic of Korea to Share Cyber Threat Information and Cybersecurity Best Practices
📢
[Control systems] Johnson Controls security advisory (AV23-683)
📢
[Control systems] Hitachi Energy security advisory (AV23-684)
🔥
Japan Aviation Electronics Targeted in Ransomware Attack
🔥
New Malvertising Campaign Uses Fake Windows News Portal to Distribute Malicious Installers
🔥
Threat Actors Impersonate Windows News Portal to Distribute RedLine Stealer
🔥
Medical Transcription Hack Affects 1.2 Million Chicagoans
🔥
Mr. Cooper says customer data exposed during cyberattack
🔥
Cryptohack Roundup: Avraham Eisenberg's Trial Pushed to 2024
🔥
Industrial and Commercial Bank of China hit by ransomware attack
🔥
AWS IoT Core: A Compromised Device Perspective
🔥
Breach Roundup: Mr. Cooper Recovers From Hacking Incident
🔥
“Skillful Social Engineering of the IT Support Desk” One of the Most Common Tactics in Ransomware Attacks
🔥
Kyocera AVX says ransomware attack impacted 39,000 individuals
🔥
Security Chaos Engineering: Realigning the Security Industry - Kelly Shortridge - ESW #339
🔥
Ontario Hospitals Expect Monthlong Ransomware Recovery
🔥
World’s largest commercial bank ICBC confirms ransomware attack
🕵️
Testing AI Before It Comes To Get You - Austin Carson - PSW #806
🕵️
ISC Stormcast For Thursday, November 9th, 2023 https://isc.sans.edu/podcastdetail/8738, (Thu, Nov 9th)
🕵️
Firmware, Mainframes, Security and Risk - PSW #806
🕵️
New ObjCShellz Malware Spotted Targeting macOS Systems
🕵️
Threat Actors Leverage File-Sharing Service and Reverse Proxies for Credential Harvesting
🕵️
Russian Hackers Used Novel OT Attack to Disrupt Ukrainian Power Amid Mass Missile Strikes
🕵️
MuddyC2Go: New C2 Framework Iranian Hackers Using Against Israel
🕵️
Chinese APT Targeting Cambodian Government
🕵️
Iranian Hackers are Using New MuddyC2Go C2 Framework Against Israel
🕵️
Risk Ledger Raises £6.25 Million for Supply Chain Security Solution
🕵️
KnowBe4 Wins Multiple 2023 Best Of Awards From TrustRadius
KEV
🕵️
Russian Sandworm APT Group Caused Power Outage in October 2022
🕵️
This Is How We Do It — Season One Recap
🕵️
New BlazeStealer Malware in PyPI Targets Developers
🕵️
‘BlazeStealer’ Malware Delivered to Python Developers Looking for Obfuscation Tools
🕵️
Major ChatGPT Outage Caused by DDoS Attack
🕵️
Iranian Hackers Target Israeli Logistics and IT Companies
🕵️
Send Bluetooth LE Spam impersonating 219 devices just using Android app instead of Flipper Zero
🕵️
Google ads push malicious CPU-Z app from fake Windows news site
🕵️
Tidal Cyber Raises $5 Million for Threat-Informed Defense Platform
🕵️
Smashing Security podcast 347 - Trolls, military data, and the hitman and her - 1 Hour, 4 minutes
🕵️
Microsoft shares threat intelligence at CYBERWARCON 2023
🕵️
Storage And Backup Cyber Resiliency – CISOs Guide 2024
🕵️
Experts Urge Congress to Combat Deepfake Technology Threats
🕵️
Rockwell Combines Generative AI and Industrial Automation
🕵️
The State of Internet Attack Surface - Aidan Holland - ESW #339
🕵️
Cyber Security Today, Nov.10, 2023 - Patch SysAid software fast, how Ukraine's power system was crippled by Russia and more
🌐
US Urges Critical Infrastructure Firms to Get “Shields Ready”
🌐
Google Play malware clocks up more than 600 million downloads in 2023 | Kaspersky official blog
🌐
Unlucky Kamran: Android malware spying on Urdu-speaking residents of Gilgit-Baltistan
🎙️
Smashing Security podcast #347: Trolls, military data, and the hitman and her
🎙️
Transatlantic Cable podcast, episode 323 | Kaspersky official blog
🎙️
UK Webinar | Risky Business: When Third-Party Troubles Become Your Own
📡
UK’s online safety regulator puts out draft guidance on illegal content, saying child safety is priority
📡
OpenAI confirms DDoS attacks behind ongoing ChatGPT outages
📡
Visual Examples of Code Injection, (Thu, Nov 9th)
📡
OpenAI blames DDoS attack for ongoing ChatGPT outage
📡
When Email Security Meets SaaS Security: Uncovering Risky Auto-Forwarding Rules
📡
Secure messaging app Signal moves a step closer to launching usernames
📡
Memory scanning leaves attackers nowhere to hide
📡
UKI Webinar | Unprivilege the Attacker: Preventing Endpoint-Originating Attacks with Least Privilege
📡
OpenAI Reveals ChatGPT is Being Targeted with DDoS Attacks
📡
Microsoft shares temp fix for broken Windows Server 2022 VMs
📡
Live Webinar | Improve your cyber defenses and boost your cyber insurability
📡
Cloudflare website down, showing ‘We’re sorry’ Google errors
📡
Cloudflare website downed by DDoS attack claimed by Anonymous Sudan
📡
Top 10 DevOps Blunders and How to Sidestep Them