98Articles
8Categories
2023-12-13Date
🐛
Sophos Backports Fix for CVE-2022-3236 for EOL Firewall Firmware
KEV
🐛
Hackers are exploiting critical Apache Struts flaw using public PoC
🐛
CISA and Partners Release Advisory on Russian SVR-affiliated Cyber Actors Exploiting CVE-2023-42793
🐛
CVE-2023-21751 Azure DevOps Server Spoofing Vulnerability
🐛
Enhancing Cyber Resilience: Insights from the CISA Healthcare and Public Health Sector Risk and Vulnerability Assessment
⚠️
Rhysida Ransomware Attacking Government & IT Industries Worldwide
⚠️
Sophos Patches EOL Firewalls Against Exploited Vulnerability
KEV
⚠️
Operation Blacksmith: Lazarus Group Exploits Log4j Flaws to Deploy RATs
⚠️
Systemic Security Failures Aided US Air Force Discord Leaker
⚠️
Microsoft Warns of Hackers Exploiting OAuth for Cryptocurrency Mining and Phishing
⚠️
Surveillance by the US Postal Service
⚠️
AI dominates cybersecurity megatrends for 2024: Report
⚠️
1,450+ pfSense Servers Vulnerable to Remote Code Execution Attacks via Exploit Chain
⚠️
Microsoft’s 2023 Final Patch: 34 Vulnerabilities Including Critical 0-Day Fixed
⚠️
How the EU AI Act regulates artificial intelligence: What it means for cybersecurity
⚠️
UK government vulnerable to ‘catastrophic ransomware’ attack: Report
⚠️
Sophos Firewall Code Injection Flaw: Let Attackers Execute Remote Code
⚠️
Congress Finds Pharmacies Give Patient Records to Law Enforcement Without Warrants
⚠️
Best practices for cloud configuration security
⚠️
Think Tank Report Labels NSO, Lazarus As Cyber Mercenaries
⚠️
BazaCall Phishing Scammers Now Leveraging Google Forms for Deception
⚠️
Zero Networks Raises $20 Million Series B to Prevent Attackers From Spreading in Corporate Networks
⚠️
Apple will no longer give police users’ push notification data without a warrant
⚠️
CISA: Russian hackers target TeamCity servers since September
⚠️
Lawmakers Urge HHS to Shield Pharmacy Records From Police
⚠️
Microsoft Warns of OAuth Attacks Tied to Cryptomining
⚠️
CISA Warns of Russian Hackers Targeting JetBrains Software
⚠️
FCC Approves Major Updates to Data Breach Notification Rules
📋
Microsoft's Final 2023 Patch Tuesday: 33 Flaws Fixed, Including 4 Critical
📋
Microsoft's Final 2023 Patch Tuesday Fixes 33 Flaws, Including Four Critical Ones
📋
Chrome 120 Update Patches High-Severity Vulnerabilities
📋
Final Patch Tuesday Of 2023 Goes Out With A Bang
📢
UK Downplays Ransomware Threat at Its Peril, Says Parliamentary Committee
📢
UK Ministry of Defence Fined $440K for Afghan Evacuation Data Breach
📢
How To Fight Long-Game Social Engineering
📢
CISA Seeks Public Opinion on Google Workspace Secure Configuration Baselines
📢
Ivanti security advisory (AV23-761)
📢
Harry Coker to Serve as Second National Cyber Director
📢
GitLab security advisory (AV23-763)
📢
Atlassian security advisory (AV23-762)
🔥
LW ROUNDTABLE: Cybersecurity takeaways of 2023 — and what’s ahead in 2024 ( part 1)
🔥
Update: Widespread Security Flaws Blamed for PSNI Data Breach
🔥
Cyber Security Today, Dec. 13, 2023 - Mystery surrounds the outage at a ransomware gang's site, and more
🔥
Major Cyber Attack Paralyzes Kyivstar - Ukraine's Largest Telecom Operator
🔥
Largest Ukrainian Telecom Operator Kyivstar Hit by Cyberattack
🔥
Press and pressure: Ransomware gangs and the media
🔥
Ukraine’s Intelligence Claims Destructive Cyberattack on Russia’s State Tax Service
🔥
Dubai’s Largest Taxi App DTC Exposes Data on Over 220,000 People
🔥
Guardz collects $18M to expand its AI-based security platform for SMBs
🔥
Update: Ransomware Group Publishes Stolen Medical Data
🔥
Cyberattack Cripples Ukraine's Largest Telecom Provider
🔥
New cybercrime market 'OLVX' gains popularity among hackers
🔥
New Underground Market Comes Online Just inTime for the Holidays
🔥
Ransomware Groups' Latest Tactic: Weaponized Marketing
🔥
LockBit ransomware now poaching BlackCat, NoEscape affiliates
🔥
French police arrests Russian suspect linked to Hive ransomware
🔥
Ukraine Fingers Russian Military Hackers for Kyivstar Outage
🕵️
ISC Stormcast For Wednesday, December 13th, 2023 https://isc.sans.edu/podcastdetail/8776, (Wed, Dec 13th)
🕵️
Credential Harvesting with PowerShell and SpecterInsight
🕵️
Harry Coker Confirmed as National Cyber Director
🕵️
How to Analyze Malware’s Network Traffic in A Sandbox
🕵️
Quishing: New Sophisticated Phishing Attacks on the Rise
🕵️
Cloud Engineer Sentenced for Deleting Ex-employer’s Code Repos & Logs
🕵️
Zero Networks Raises $20 Million to Secure Access to Enterprise Assets
🕵️
AI and Everything Else - Benedict Evans | Slush 2023
🕵️
Cybertrucks | Viagra | Struts | Atlassian | Log4Shell | Pharmacies | Jason Wood & More! – SWN348
🕵️
2023 Fraud Highlights: Check Fraud, Scams, Account Takeover
🕵️
Apple Testing New Stolen Device Protection Feature for iPhones
🕵️
MITRE Unveils EMB3D Threat Model for Embedded Devices Used in Critical Infrastructure
🕵️
What are You Working on Wednesday
🕵️
Chinese APT Volt Typhoon Linked to Unkillable SOHO Router Botnet
🕵️
Phishing Remains the Most Common Attack Technique, With Malicious URL Use Increasing 144%
🕵️
Undercover Threat: North Korean Operatives Infiltrate U.S. Companies Through Job Platforms
🕵️
Congressional Watchdog Finds Gaps in US Federal AI Efforts
🕵️
Nmap Peek - View your Nmap files in VSCode
🕵️
New AI Safety Initiative Aims to Set Responsible Standards for Artificial Intelligence
🕵️
Network Device Supply Chains and Lateral Movement - BTS #20
🕵️
A Year in Review on Offensive Security, Defensive Landscapes, and Global Implications -... - BTS #19
🕵️
UK in No Rush to Legislate AI, Technology Secretary Says
🕵️
Stealthy KV-botnet hijacks SOHO routers and VPN devices
🕵️
Embracing AI with guest Alex Sharpe, Managing Director at Sharpe42 PSW #810
🕵️
Santa | SEC | Google | Qakbot | VMWARE | AI | Turing | Voight-Kampff |Jason Wood & More! – SWN350
🌐
Cloud Engineer Wreaks Havoc on Bank’s Network After Firing
🌐
Malicious Python Script with a TCL/TK GUI, (Wed, Dec 13th)
🌐
Cluster of Malicious Python Packages in PyPI Discovered Distributing Malware
📡
OAuth Apps Used to Automate BEC and Cryptomining Attacks
📡
From the Northern Lights to Freediving: Sophos’ Wellbeing Day
📡
DonorView Exposes One Million Records for Unknown Time Frame
📡
FCC Reminds Mobile Phone Carriers They Must do More to Prevent SIM Swaps
📡
Google Using Clang Sanitizers to Protect Android Against Cellular Baseband Vulnerabilities
📡
Apple introduces protection to prevent thieves from getting your passwords
📡
Nearly A Million Non-Profit Donors' Details Left Exposed In Unsecured Database
📡
Apple Sets Trap To Catch iMessage Impersonators
📡
Invoices for delivery of non-existent correspondence | Kaspersky official blog
📡
BazarCall attacks abuse Google Forms to legitimize phishing emails
📡
Microsoft seizes domains used to sell fraudulent Outlook accounts
📡
Delivering trust with DNS security
📡
Microsoft disrupts cybercrime gang behind 750 million fraudulent accounts