87Articles
9Categories
2023-12-21Date
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-49897 FXC AE1021, AE1021PE OS Command Injection Vulnerability CVE-2023-47565 QNAP VioStor NVR OS Command Injection Vulnerability These types …
KEV
🐛
Urgent: New Chrome Zero-Day Vulnerability Exploited in the Wild - Update ASAP
KEV
🐛
Hackers Exploiting Old MS Excel Vulnerability to Spread Agent Tesla Malware
🐛
Google Rushes to Patch Eighth Chrome Zero-Day This Year
🐛
ESET Patches High-Severity Vulnerability in Secure Traffic Scanning Feature
🐛
Google Addressed a New Actively Exploited Chrome Zero-Day
KEV
🐛
Chromium: CVE-2023-7024 Heap buffer overflow in WebRTC
🐛
MLflow vulnerability enables remote machine learning model theft and poisoning
⚠️
Supply Chain - PSW #811
⚠️
Learning About Firmware Security - Xeno Kovah - PSW #811
⚠️
Why 2024 will be the year of the CISO
⚠️
Mozilla Patches Firefox Vulnerability Allowing Remote Code Execution, Sandbox Escape
⚠️
German Police Seized the Dark Web Marketplace Kingdom Market
⚠️
Indian Banking Customers Targeted by Phishing Campaign Distributing Trojan as Fake Verification Tool
⚠️
German Authorities Dismantle Dark Web Hub 'Kingdom Market' in Global Operation
⚠️
HCL Investigating Ransomware Attack on Isolated Cloud Environment
⚠️
Data Leak at Real Estate Wealth Network Exposes 1.5 Billion Ownership Records
⚠️
Data Leak Exposes User Information From Car-Sharing Service Blink Mobility
⚠️
Ivanti Patches Dozen Critical Vulnerabilities in Avalanche MDM Product
⚠️
EMBA: Open-Source Security Analyzer for Embedded Devices
⚠️
Fake F5 Vulnerability 'Update' Delivers Data Wiper to Israeli Victims
⚠️
Subdominator: Open-Source Tool for Detecting Subdomain Takeovers
⚠️
Google Rushes To Patch Eighth Chrome Zero Day This Year
⚠️
Blue Galaxy Energy: a new White-box Cryptanalysis Open Source Tool
⚠️
Hybrid online frauds likely to gain momentum in 2024: Report
⚠️
CISA Releases Two Industrial Control Systems Advisories
⚠️
Cisco to acquire cloud-native networking and security startup Isovalent
⚠️
Ivanti Releases Patches for 13 Critical Avalanche RCE Flaws
⚠️
Senate Confirms Biden's Pick to Lead NSA and CYBERCOM
⚠️
CISA Releases Microsoft 365 Secure Configuration Baselines and SCuBAGear Tool
⚠️
Ghidriff: Ghidra Binary Diffing Engine
⚠️
Google Flags 8th Chrome Zero-Day of the Year
KEV
⚠️
NIST Report Spotlights Cyber, Privacy Risks in Genomic Data
📢
[Control systems] FXC security advisory (AV23-785)
📢
CISA Finalizes Microsoft 365 Secure Configuration Baselines
📢
[Control systems] QNAP security advisory (AV23-786)
📢
HPE security advisory (AV23-787)
🔥
Behind the Scenes of Matveev's Ransomware Empire: Tactics and Team
🔥
Cost of a Data Breach Report 2023: Insights, Mitigators and Best Practices
🔥
Healthcare Software Provider Suffers Data Breach Impacting 2.7 Million Patients
🔥
Cyberattack on Ukraine’s Kyivstar Seems to Be Russian Hacktivists
🔥
ESO Solutions Data Breach Impacts 2.7 Million Individuals
🔥
ESO Solutions Data Breach Impacts 2.7 Million Individuals
🔥
Russian Water Utility Rosvodokanal Hit by Disruptive Cyberattack From Blackjack Group
🔥
Threat Thursday - CTI, vulnerabilities and discussions
🔥
Indian Tech Giant HCL Investigating Ransomware Attack
🔥
Cyber Risk Strategies in Hot Seat as SEC Rules Go Live
🔥
OpenAI rolls out imperfect fix for ChatGPT data leak flaw
🔥
Cancer Center Patients Become Attempted Victims of Data Extortion
🔥
Title insurance giant First American offline after cyberattack
🔥
Akira, again: The ransomware that keeps on taking
🔥
Breach Roundup: MongoDB Blames Phishing Email for Breach
🔥
First American takes IT systems offline after cyberattack
🕵️
How to Protect your Webserver from Directory Enumeration Attack ? Apache2 [Guest Diary], (Wed, Dec 20th)
🕵️
ISC Stormcast For Thursday, December 21st, 2023 https://isc.sans.edu/podcastdetail/8788, (Thu, Dec 21st)
🕵️
New OilRig Downloaders Abusing Microsoft Cloud APIs for C&C Communications
🕵️
Podcast. Simply Cyber Live with host Gerald Auger, Ph.D. The Phantom CISO: A Fireside Chat with Mishaal Khan
🕵️
FTC Proposes Strengthening Children’s Online Privacy Rules to Address Tracking, Push Notifications
🕵️
Celebrities Found in Unprotected Real Estate Database Exposing 1.5 Billion Records
🕵️
Interest in AI-Generated ‘Undressing’ Increases 2000% as it Becomes a Mainstream Online Business
🕵️
Underground Cyber Crime Marketplaces are Now Showing Up on the Open Web
🕵️
Cryptohack Roundup: Ledger to Reimburse Hack Victims
🕵️
Missing the Lock Icon in Chrome’s Address Bar? It’s a Move to Make You More Secure
🕵️
Microsoft: Hackers target defense firms with new FalseFont malware
🕵️
Cisco to Acquire Isovalent, Add eBPF Tech to Cloud Portfolio
🕵️
Lapsus$ hacker behind GTA 6 leak sentenced to life in a hospital
🕵️
Lapsus$ hacker behind GTA 6 leak gets indefinite hospital sentence
🕵️
Cisco Announces Isovalent Acquisition to Boost Security
🌐
New JavaScript Malware Targeted 50,000+ Users at Dozens of Banks Worldwide
🌐
Android malware Chameleon disables Fingerprint Unlock to steal PINs
🌐
Experts Detail Multi-Million Dollar Licensing Model of Predator Spyware
🌐
Chameleon Android Banking Trojan Variant Bypasses Biometric Authentication
🎙️
Smashing Security podcast #353: Phone hacking, Piers Morgan, and Carole’s Christmas cockup
📡
SimSpace raises $45M to simulate tech stacks for cyber training
📡
Live Webinar | Top Digital Fraud Threats and Predictions For 2024
📡
Crypto Scammers Abuse Twitter ‘Feature’ to Impersonate High-Profile Accounts
📡
The Impact of Prompt Injection in LLM Agents
📡
Digital gifts for Christmas and New Year | Kaspersky official blog
📡
New Phishing Attack Steals Instagram Backup Codes to Bypass 2FA Protection
📡
AI’s Efficacy is Constrained in Cybersecurity, but Limitless in Cybercrime
📡
Something Nasty Injected Login Stealing JavaScript Code Into 50k Online Banking Sessions
📡
Mozilla Decides Trusted Types Is A Worthy Security Feature
📡
Fake Delivery Websites Surge By 34% in December
📡
BidenCash darkweb market gives 1.9 million credit cards for free
📡
Microsoft deprecates Defender Application Guard for some Edge users
📡
Crypto drainer steals $59 million from 63k people in Twitter ad push
📡
Safeguard the joy: 10 tips for securing your shiny new device