109Articles
10Categories
2024-01-10Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-29357 Microsoft SharePoint Server Privilege Escalation Vulnerability These types of vulnerabilities are frequent attack vectors for malicious c…
KEV
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-21887 Ivanti Connect Secure and Policy Secure Command Injection Vulnerability CVE-2023-46805 Ivanti Connect Secure and Policy Secure Authenti…
KEV
🐛
CISA Flags 6 Vulnerabilities - Apple, Apache, Adobe , D-Link, Joomla Under Attack
KEV
🐛
SQLi Vulnerability in Cacti Could Lead to Remote Code Execution
🐛
Unauthenticated RCE in Adobe Coldfusion – CVE-2023-26360
🐛
Ivanti Releases Security Update for Connect Secure and Policy Secure Gateways
⚠️
Microsoft January 2024 Patch Tuesday, (Wed, Jan 10th)
⚠️
Microsoft's January 2024 Windows Update Patches 48 New Vulnerabilities
⚠️
Hackers Using Weaponized PDF Files to Deliver Qakbot Malware
⚠️
Beware! Hackers Using YouTube Channels to Deliver Lumma Malware
⚠️
Kyocera Printers Open to Path Traversal Attacks
⚠️
Microsoft January 2024 Patch Tuesday Fixes 49 Flaws, 12 RCE Bugs
⚠️
12 best cybersecurity podcasts as recommended by the professionals
⚠️
CISA Flags Six Vulnerabilities - Apple, Apache, Adobe, D-Link, Joomla Under Attack
⚠️
Free Decryptor Released for Black Basta and Babuk's Tortilla Ransomware Victims
⚠️
Kyocera Device Manager Vulnerability Exposes Enterprise Credentials
⚠️
Turkish ransomware campaign hacks into weak MSSQL servers: report
⚠️
Adobe Substance 3D Stager Let Attacker Execute Arbitrary Code
⚠️
Mirai-based NoaBot botnet deploys cryptominer on Linux servers
⚠️
Flaw in AI Plugin Exposes 50,000 WordPress Sites to Remote Attack
⚠️
DDoS Attack Traffic Surged in 2023, Cloudflare Finds
⚠️
Ivanti warns of Connect Secure zero-days exploited in attacks
KEV
⚠️
We Are Almost 3! Cloud Security Podcast by Google 2023 Reflections
⚠️
Cisco says critical Unity Connection bug lets attackers get root
⚠️
Cybercriminals Bully Cancer Patients With Swatting Threat
⚠️
Volexity Catches Chinese Hackers Exploiting Ivanti VPN Zero-Days
⚠️
Mandiant's X account hacked by crypto Drainer-as-a-Service gang
📋
Android’s January 2024 Security Update Patches 58 Vulnerabilities
📋
Windows 10 KB5034441 security update fails with 0x80070643 errors
📢
Fujitsu, facing heat over UK Post Office scandal, continues to rake in billions from government deals
📢
Jobs | QNAP | NIST | Spectral Blur | Stuxnet | Swatting | Volkswagen | Jason Wood & More! – SWN352
📢
Anecdotes Raises $25 Million for Enterprise GRC Platform
📢
Intel security advisory (AV24-019)
📢
EU lawmakers under pressure to fully disclose dealings with child safety tech maker, Thorn
📢
Ivanti security advisory (AV24-020)
📢
Cisco security advisory (AV24-021)
📢
EU Commission Examines OpenAI, Microsoft Relationship
📢
EU Enhances Cybersecurity Requirements for Agencies
🔥
SEC Chair Says Account on X Was Hacked
🔥
Data Breach Hits US Department of Transportation, Aviation Records Compromised
🔥
British Library: Finances are Healthy Amid Cyber Rebuild
🔥
SEC Twitter Hacked to Push Fake News of Bitcoin ETF Approval
🔥
Threat Actor Poses as Security Researcher Offering to Delete Data Stolen by Ransomware Attackers
🔥
Getting off the Attack Surface Hamster Wheel: Identity Can Help
🔥
If You Prepare, a Data Security Incident Will Not Cause an Existential Crisis
🔥
Pro-Ukraine Hackers Claim Breach of Russian Internet Provider
🔥
Babuk Tortilla Ransomware Decrypted After Hacker's Arrest
🔥
Crooks Pose As Researchers To Retarget Ransomware Victims
🔥
ShinyHunters member gets 3 years in prison for breaching 60 firms
🔥
Hacker Claims to Breach Indian ISP Hathway and Leaks Four Million Users' KYC Data
🔥
Apple AirDrop Hacked by China to Gain Access to Private Information
🔥
SEC’s Twitter account hacked to say Bitcoin ETFs approved. Politicians and lawyers demand investigation into security breach
🔥
Paraguay Warns of Black Hunt Ransomware Attacks After Tigo Business Breach
🔥
HMG Healthcare Says Data Breach Impacts 40 Facilities
🔥
Fidelity National Financial Details LoanCare Breach
🔥
Pro-Ukraine hackers breach Russian ISP in revenge for KyivStar attack
🔥
Fidelity National Financial: Hackers stole data of 1.3 million people
🕵️
ISC Stormcast For Wednesday, January 10th, 2024 https://isc.sans.edu/podcastdetail/8804, (Wed, Jan 10th)
🕵️
Hewlett Packard Enterprise to Acquire Juniper Networks for $14 Billion
🕵️
Water Curupira Hackers Launch Pikabot Malware Attack on Windows Machine
🕵️
Facial Scanning by Burger King in Brazil
🕵️
Dutch Engineer Used Water Pump to Get Billion-Dollar Stuxnet Malware Into Iranian Nuclear Facility: Report
🕵️
China Says State-Backed Experts Crack Apple’s AirDrop
🕵️
Black Basta-Affiliated Threat Actor Water Curupira Spreads Pikabot via Spam Campaign
🕵️
KnowBe4 Named a Leader in the Winter 2024 G2 Grid Report for Security Awareness Training
KEV
🕵️
SAP’s First Patches of 2024 Resolve Critical Vulnerabilities
🕵️
Here’s Some Bitcoin: Oh, and You’ve Been Served!
🕵️
AI Is Changing Security — 5 Predictions from Cortex
🕵️
What are You Working on Wednesday
🕵️
US Securities and Exchange Commission Probes X Account Hack
🕵️
DARKNET DIARIES EP 141: THE PIG BUTCHER
🕵️
CISO Tradecraft Podcast #163 - Operational Resilience
🕵️
NoaBot: Latest Mirai-Based Botnet Targeting SSH Servers for Crypto Mining
🕵️
HPE to Buy Juniper for $14B to Boost AI and Networking
🕵️
Fake 401K year-end statements used to steal corporate credentials
🕵️
[Security Masterminds] Revolutionizing Cybersecurity Training: How AI Is Changing the Game
🕵️
Beyond the Scams: Unraveling the Dark Tactics of Real-World Kidnapping Scams and Virtual Extortion
🕵️
Pikabot Malware Spreading Through Phishing Campaigns
🕵️
How Our Own Insecurity Fuels Global Threats
🕵️
ExtraHop Banks $100M in Growth Funding, Adds New Execs
🕵️
French Computer Hacker Jailed in US
🕵️
Supply Chain Risk Management - David Vaughn - BTS #21
🕵️
The Evolution of Purple Teaming with Jared Atkinson, Chief Strategist at SpecterOps – PSW #812
🕵️
5 ways to secure identity and access for 2024
🌐
Meet Ika & Sal: The Bulletproof Hosting Duo from Hell
🌐
Attack of the copycats: How fake messaging apps and app mods could bite you
🎙️
Cyber Security Today, Jan. 10, 2024 - Vulnerabilities found in internet-connected factory torque wrenches
📡
Vulnerabilities Found in High-Power Bosch Wrenches Popular With Carmakers
📡
FTC Bans Outlogic (X-Mode) From Selling Sensitive Location Data
📡
Twilio Will Discontinue its Authy Desktop 2FA App in August, Goes Mobile Only
📡
Sophos India Gets Great Place To Work Certification for Second Year
📡
PAM Provider Delinea Acquires Israeli Startup Authomize
📡
Myanmar Rebels Take Control of ‘Pig Butchering’ Scam City Amid Chinese Pressure on Junta
📡
Entire Population of Brazil Possibly Exposed in Massive Data Leak
📡
anecdotes Raises $25M in Series B Funding
📡
Believing they would be paid a fortune for having sex with women, hundreds of Indian men scammed out of cash
📡
Kyocera Device Manager Vuln Exposes Enterprise Credentials
📡
SAP's First Patches Of 2024 Resolve Critical Vulnerabilities
📡
Bitcoin ETF Hopefuls Still Expect SEC Approval Despite Social Media Hack
📡
This AI Chatbot Is Trained To Jailbreak Other Chatbots
📡
US Navy Sailor Swaps Sea For Cell After Accepting Bribes From Chinese Snoops
📡
Jeffrey Epstein email scams rear their ugly head
📡
FTC Settles Unprecedented Case Against Geolocation Data Broker
📡
Texas-based care provider HMG Healthcare says hackers stole unencrypted patient data
📡
Microsoft Exchange 2019 has reached end of mainstream support
📡
DOJ to up Tempo of Cybercrime Operations in 2024, Senior Official Says
📡
A startup’s guide to cyberthreats — threat modeling and proactive security
📡
Fallout Mounting From Recent Major Health Data Hacks
📡
Cybersecurity Deals Boom as Investment Dips, Pinpoint Reports