104Articles
9Categories
2023-11-15Date
🚨
Scattered SpiderSUMMARY The Federal Bureau of Investigation (FBI) and Cybersecurity and Infrastructure Security Agency (CISA) are releasing this joint Cybersecurity Advisory (CSA) in response to recent activity by Scattered Spider threat actors against the commercial facilities sectors and subse…
KEV
🐛
CacheWarp Attack: New Vulnerability in AMD SEV Exposes Encrypted VMs
🐛
Urgent: VMware Warns of Unpatched Critical Cloud Director Vulnerability
🐛
Reptar: New Intel CPU Vulnerability Impacts Multi-Tenant Virtualized Environments
🐛
WP Fastest Cache Plugin Bug Exposes 600K WordPress Sites to Attacks
🐛
VMware Discloses Critical VCD Appliance Authentication Bypass With No Patch
🐛
New Intel CPU Vulnerability ‘Reptar’ Can Allow DoS Attacks, Privilege Escalation
🐛
New PoC Exploit for Apache ActiveMQ Flaw Could Let Attackers Fly Under the Radar
🐛
CISA, FBI, and MS-ISAC Release Advisory on Rhysida Ransomware
🐛
Intel patches high-severity CPU privilege escalation flaw
⚠️
Alert: Microsoft Releases Patch Updates for 5 New Zero-Day Vulnerabilities
⚠️
GUEST ESSAY: An assessment of how ‘Gen-AI’ has begun to transform DevSecOps
⚠️
Understanding OWASP’s Bill of Material Maturity Model: Not all SBOMs are created equal
⚠️
Google warns of surge in generative AI-enhanced attacks, zero-day exploit use in...
⚠️
Acuity - 14,055,729 breached accounts
⚠️
Microsoft Releases Patch Updates for Five New Zero-Day Vulnerabilities
KEV
⚠️
New Reptar CPU Flaw Impacts Intel Desktop and Server Systems
⚠️
Millions of Cryptocurrency Wallets Found Affected by Randstorm Flaw
⚠️
Cryptocurrency Wallets Might be Vulnerable to ‘Randstorm’ Flaw in Bitcoin JavaScript Library
⚠️
SAP Patches Critical Vulnerability in Business One Product
⚠️
SAP Patches Critical Vulnerability In Business One Product
⚠️
Another Bunch Of Fixes For Microsoft Security Bugs Exploited In The Wild
KEV
⚠️
Reptar: an Intel Ice Lake CPU vulnerability, by Tavis Ormandy
⚠️
Security of AMD's Trusted Execution Environment Undone by Cache Meddling
⚠️
For top cybersecurity talent, companies pay over $500,000: Report
⚠️
Microsoft Patches Sensitive Information Disclosure Vulnerability in Azure CLI
⚠️
File-Transfer Services, Rich With Sensitive Data, are Under Attack
⚠️
What is a zero-click exploit? | Kaspersky official blog
⚠️
CISA Resources Can Help Underserved Communities Be More Resilient
⚠️
New ASD Cyber Threats Report Shows A Cybercrime Incident Is Reported in Australia Every Six Minutes
⚠️
New SSH Vulnerability
⚠️
Congress Looks Beyond Voluntary Commitments on Global AI Use
⚠️
Protecting The Digital Supply Chain - Yuriy Bulygin - BTS #17
⚠️
3 Layers of App Security to Keep Hackers Out, Let Customers In – Aviad Mizrachi – PSW #807
⚠️
European Telecom Body to Open-Source Radio Encryption System
⚠️
Nikesh Arora on Why Palo Alto Networks Is Buying Talon, Dig
⚠️
Ransomware gang files SEC complaint over victim’s undisclosed breach
📋
Chipmaker Patch Tuesday: Intel, AMD Address Over 130 Vulnerabilities
📢
EU Formalizes Cybersecurity Support for Ukraine
📢
Azerbaijan Agencies Sign Cyber-Partner Deals
📢
NCSC: UK Facing “Enduring and Significant” Cyber Threat
📢
CISA Outlines AI-Related Cybersecurity Efforts
📢
Microsoft security advisory – October 2023 monthly rollup (AV23-700)
📢
HPE security advisory (AV23-701)
📢
FBI and CISA warn of opportunistic Rhysida ransomware attacks
📢
US says Royal ransomware gang plans ‘Blacksuit’ rebrand
📢
VMware security advisory (AV23-702)
📢
Citrix security advisory (AV23-703)
🔥
MY TAKE: Sophos X-Ops advances internal, external threat intelligence sharing to the next level
🔥
Acuity Who? Attempts and Failures to Attribute 437GB of Breached Data
🔥
Cyber Security Today, Nov. 15, 2023 - A new ransomware gang emerges, a patching failure was behind a co-ordinated cyber attack on Denmark, and more
🔥
Three Ways Varonis Helps You Fight Insider Threats
🔥
SystemBC, a SWISS KNIFE Proxy Malware, Used by Numerous Ransomware Groups
🔥
IPStorm Botnet With 23,000 Proxies for Malicious Traffic Dismantled
🔥
Truepill Mail-Order Pharmacy Hack Affects Nearly 2.4 Million People
🔥
Info Stealers Thrive in Hot Market for Stolen Data
🔥
Digital pharmacy startup Truepill says hackers accessed sensitive data of 2.3 million patients
🔥
Rackspace Records $5M in Expenses Related to 2022 Ransomware Attack
🔥
Cyber Espionage Operation on Embassies Linked to Russia’s Cozy Bear Hackers
🔥
PJ&A says cyberattack exposed data of nearly 9 million patients
🔥
Cyberattack on North Carolina County Allowed Hackers to Access Data
🔥
NY Governor Wants New Cybersecurity Rules for Hospitals After Multiple Attacks
🔥
Toronto Public Library confirms data stolen in ransomware attack
🔥
9 million patients had data stolen after US medical transcription firm hacked
🔥
Medical Transcriber's Hack Breach Affects at Least 9 Million
🔥
Samsung hit by new data breach impacting UK store customers
🔥
FBI Says Enhanced Partnerships Help Combat Ransomware Surge
🕵️
SASE Converge ‘23 Showcases the Potential and Impact of AI-Powered SASE
🕵️
ISC Stormcast For Wednesday, November 15th, 2023 https://isc.sans.edu/podcastdetail/8746, (Wed, Nov 15th)
🕵️
State-Backed Hackers a Threat to Australia, Agency Warns
🕵️
What are You Working on Wednesday
🕵️
Addressing the State of AI’s Impact on Cyber Disinformation/Misinformation
🕵️
RADICL Adds $9 Million in Funding to Fortify Cyber Defenses of SMBs in Defense Industrial Base
🕵️
Ddostf DDoS Malware Attacking MySQL Servers in Windows Environments
🕵️
US Announces IPStorm Botnet Takedown and Its Creator’s Guilty Plea
🕵️
Pentesting vs. Pentesting as a Service: Which is better?
🕵️
SAINTCON 2023 - Utah, USA - 27 videos
🕵️
Application Security Startup Aikido Security Raises €5 Million
🕵️
Hackers Abuse Google Forms to Bypass Anti-spam Filters
🕵️
Data Security Firm ALTR Banks $25M Series C
🕵️
AI-Manipulated Media Through Deepfakes and Voice Clones: Their Potential for Deception
🕵️
It’s Official: Scams Via Email and Text are Inescapable as Nearly Every American Receives Fake Messages Daily
🕵️
Defining Cybersecurity with Eugene Spafford - Computerphile [25:49]
🕵️
EU's LIBE Rejects Mass Content Scanning in CSAM Proposal
🕵️
Microsoft unveils expansion of AI for security and security for AI at Microsoft Ignite
🌐
Redline Dropped Through MSIX Package, (Wed, Nov 15th)
🌐
MySQL Servers, Docker Hosts Infected With DDoS Malware
🌐
UK faces “enduring and significant” cyber threats to critical infrastructure, sa...
🌐
US Announces IPStorm Botnet Takedown And It's Creator's Guilty Plea
🌐
U.S. Takes Down IPStorm Botnet, Russian-Moldovan Mastermind Pleads Guilty
🌐
Amazon brings its home robot to businesses
🌐
Google Suing Cybercriminals Who Delivered Malware via Fake Bard Downloads
📡
Microsoft Fixes Critical Azure CLI Flaw That Leaked Credentials in Logs
📡
FBI Takes Heat From Industry For Not Making Arrests In MGM-Caesars Cases
📡
Fraud researchers impersonated on X to push crypto-stealing sites
📡
The OWASP Top 10: What They Are and How to Test Them
📡
Cyble Raises $6.2M; Expands Series B to $30.2M
📡
New Russian Hacking Group Pretends to be a Pentesting Training Organization
📡
Credit Card Skimming on the Rise for the Holiday Shopping Season
📡
Python Package Index Faces Security Crisis With Validated Leaks
📡
Citrix Hypervisor gets hotfix for new Reptar Intel CPU flaw
📡
Fraudsters make $50,000 a day by spoofing crypto researchers
📡
Microsoft fixes Windows Server VMs broken by October updates
📡
Vulcan Cyber, which scans software for security vulnerabilities, lands $55M cash infusion