96Articles
8Categories
2024-01-16Date
🚨
CISA and FBI Release Known IOCs Associated with Androxgh0st MalwareToday, CISA and the Federal Bureau of Investigation (FBI) released a joint Cybersecurity Advisory (CSA), Known Indicators of Compromise Associated with Androxgh0st Malware , to disseminate known indicators of compromise (IOCs) and tactics, techniques, and procedures (TTPs) associ…
KEV
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2018-15133 Laravel Deserialization of Untrusted Data Vulnerability These types of vulnerabilities are frequent attack vectors for malicious cyber ac…
KEV
πŸ›
Patched Windows SmartScreen bug actively exploited in Phemedrone infections
KEV
πŸ›
Scans for Ivanti Connect "Secure" VPN Vulnerability (CVE-2023-46805, CVE-2024-21887), (Tue, Jan 16th)
πŸ›
Hackers begin mass exploiting Ivanti VPN zero-day flaws
πŸ›
Google Warns of Chrome Browser Zero-Day Being Exploited
πŸ›
VMware patches critical access control vulnerability in Aria Automation
⚠️
Hackers Weaponize Windows Flaw to Deploy Crypto-Siphoning Phemedrone Stealer
⚠️
Ivanti Connect Secure VPN Exploitation Goes Global
⚠️
Researchers Uncover Major Surge in Global Botnet Activity
⚠️
The OWASP AI Exchange: an open-source cybersecurity guide to AI components
⚠️
Over 178K SonicWall Firewalls Vulnerable to DoS, Potential RCE Attacks
⚠️
Government, Military Targeted as Widespread Exploitation of Ivanti Zero-Days Begins
⚠️
ShmooCon to take its final bow in 2025
⚠️
PixieFail: Nine vulnerabilities in Tianocore's EDK II IPv6 network stack.
⚠️
Remote Code Execution Vuln Found In Opera File Sharing Feature
⚠️
VMware Urges Customers To Patch Critical Aria Automation Vulnerability
⚠️
CISA: Critical SharePoint Bug Actively Exploited
KEV
⚠️
DOD Unveils First-Ever National Defense Industrial Strategy
⚠️
Remotely Exploitable β€˜PixieFail’ Flaws Found in Tianocore EDK II PXE Implementation
⚠️
Remote Code Execution Vulnerability Found in Opera File Sharing Feature
⚠️
180k Internet-Exposed SonicWall Firewalls Vulnerable to DoS Attacks, Possibly RCE
⚠️
VMware Urges Customers to Patch Critical Aria Automation Vulnerability
⚠️
Update: Cloud Vendor Returns Stolen Hospital Data
⚠️
Three Ways to Combat Rising OAuth SAAS Attacks
⚠️
Alert: Over 178,000 SonicWall Firewalls Potentially Vulnerable to Exploits - Act Now
⚠️
Atlassian warns of critical RCE flaw in older Confluence versions
⚠️
The Dual Role AI Plays in Cybersecurity: How to Stay Ahead
⚠️
Vulnerabilities Expose PAX Payment Terminals to Hacking
⚠️
CISA Releases Two Industrial Control Systems Advisories
⚠️
PixieFail flaws impact PXE network boot in enterprise systems
⚠️
Google fixes first actively exploited Chrome zero-day of 2024
KEV
⚠️
Citrix warns of new Netscaler zero-days exploited in attacks
KEV
⚠️
GitHub rotates keys to mitigate impact of credential-exposing flaw
πŸ“’
Case Study: The Cookie Privacy Monster in Big Global Retail
πŸ“’
You want the CISO Title & Pay? Responsibility Comes Also! - Malcolm Harkins - CSP #157
πŸ“’
FBI: Androxgh0st malware botnet steals AWS, Microsoft credentials
πŸ“’
Citrix security advisory (AV24-030)
πŸ“’
VMWare security advisory (AV24-031)
πŸ“’
Google Chrome security advisory (AV24-034)
πŸ“’
[Control systems] Integration Objects security advisory (AV24-033)
πŸ“’
[Control systems] SEW-EURODRIVE security advisory (AV24-032)
πŸ“’
White House Says Agencies On Track to Meet January AI Goals
πŸ“’
Atlassian security advisory (AV24-035)
πŸ“’
SBOMs & Supply Chains- BTS #22
πŸ”₯
Tura Scandinavia AB Encounters Another Cyberattack Following Intrusion in December
πŸ”₯
Mastermind Hacker Behind $2 Million Crypto Scam Arrested
πŸ”₯
Update: Mississippi Health System Ransomware Attack Affects 253,000
πŸ”₯
Hackers Abuse GitHub to Host Malicious Infrastructure
πŸ”₯
LockBit Ransomware Adds Two New Victims to Dark Web Portal
πŸ”₯
Threat Actor Puts GEICO Database for Sale on the Dark Web
πŸ”₯
Career fair helps tackle UK cyber security recruitment shortfall
πŸ”₯
Anonymous Sudan Claims London Internet Exchange Attack Over Yemen Strikes
πŸ”₯
Atari 400, Gitlab, Sonicwall, Juniper, Stats, Ivanti, Sharepoint, Jason Wood and More – SWN #354
πŸ”₯
Majorca city CalviΓ  extorted for $11M in ransomware attack
πŸ”₯
Atari 400, Gitlab, Sonicwall, Juniper, Stats, Ivanti, Sharepoint, Jason Wood and More - SWN #354
πŸ•΅οΈ
ISC Stormcast For Tuesday, January 16th, 2024 https://isc.sans.edu/podcastdetail/8810, (Tue, Jan 16th)
πŸ•΅οΈ
The Story of the Mirai Botnet
πŸ•΅οΈ
Hacker Conversations: HD Moore and the Line Between Black and White
πŸ•΅οΈ
BSidesDFW 2023
πŸ•΅οΈ
Webinar | Reactive to Proactive: Elevating OT Cybersecurity with Threat Intelligence
πŸ•΅οΈ
CyberheistNews Vol 14 #03 Red Flags for Phishing: Verizon Outlines Latest Scams to Watch Out For
πŸ•΅οΈ
The CISO’s guide to accelerating quantum-safe readiness
πŸ•΅οΈ
Ho, Ho, Hoooold on a Minute: A New Year Resolution That IoT Isn’t a Gift That Keeps on Taking
πŸ•΅οΈ
Partnering with Government to Strengthen Cyber Resilience in Poland
πŸ•΅οΈ
Atari 400 | Gitlab | Sonicwall | Juniper | Stats | Ivanti | Sharepoint | Jason Wood & More! – SWN354
πŸ•΅οΈ
Crypto-Seeking Drainer Scam-as-a-Service Operations Thrive
πŸ•΅οΈ
Beyond Hacktivism: Akamai CTO on Shifting Threat Landscape
πŸ•΅οΈ
Communicating Technical Topics Without Being Boring - Eve Maler - ASW #269
πŸ•΅οΈ
Malicious APKs Drain Bank Accounts
πŸ•΅οΈ
Cryptocurrency Drainer Distributed Through Phishing
πŸ•΅οΈ
LinkedIn is Being Used for *Dating* – It’s a Recipe for Disaster
πŸ•΅οΈ
Money Launderers, Fraudsters Flocking to Tether: UN Report
πŸ•΅οΈ
NC Health System Agrees to Pay $6.6M in Web Tracking Case
πŸ•΅οΈ
PixieFail: Nine vulnerabilities in Tianocore's EDK II IPv6 network stack
πŸ•΅οΈ
Mimecast Appoints Marc van Zadelhoff as New CEO
πŸ•΅οΈ
UK Privacy Watchdog Probes GenAI Privacy Concerns
πŸ•΅οΈ
Unified security operations with Microsoft Sentinel and Microsoft Defender XDR
πŸ•΅οΈ
K-12 Cybersecurity | News - PSW813
πŸ•΅οΈ
Creating Trust in Biometric Authentication for Identity Verification | News - ESW346
πŸ•΅οΈ
Google | Pax | LeftOverLocals | Mint | Sandstorm | DJI | Colossus | Aaran Leyland & More! – SWN355
πŸ•΅οΈ
Say Easy, Do Hard, Hiring a CISO, Part 2 - BSW #335
🌐
Inferno Malware Masqueraded as Coinbase, Drained $87 Million from 137,000 Victims
🌐
Tsurugi Linux Tailors User Experience for Digital Forensics and OSINT Investigations
🌐
Remcos RAT Spreading Through Adult Games in New Attack Wave
🌐
Inferno Malware Masqueraded as Coinbase, Drained $87 Million from 137,000 Victims
🌐
US Court Docs Expose Fake Antivirus Renewal Phishing Tactics
πŸ“‘
Growing Pains at the Bureau of Cyberspace and Digital Policy, Report Finds
πŸ“‘
Can TVs, smartphones, and smart assistants eavesdrop on your conversations? | Kaspersky official blog
πŸ“‘
White House Looks to Eliminate College Degree Requirements for Cyber Jobs With Federal Contractors
πŸ“‘
Hacker Conversations: HD Moore And The Line Between Black And White
πŸ“‘
Flipping the BEC Funnel: Phishing in the Age of GenAI
πŸ“‘
Snyk acquires Helios to bolster its AppSec platform
πŸ“‘
How to protect your organization from malicious macros (ITSAP.00.200)
πŸ“‘
MacOS info-stealers quickly evolve to evade XProtect detection
πŸ“‘
The 7 deadly cloud security sins and how SMBs can do things better