108Articles
9Categories
2024-01-18Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-35082 Ivanti Endpoint Manager Mobile (EPMM) and MobileIron Core Authentication Bypass Vulnerability These types of vulnerabilities are frequent…
KEV
🐛
Citrix NetScaler 0-day Vulnerability Exploited In The Wild, CISA Urges Patching
KEV
🐛
More Scans for Ivanti Connect "Secure" VPN. Exploits Public, (Thu, Jan 18th)
🐛
Frequent critical flaws open MLFlow users to imminent threats
🐛
Citrix Releases Security Updates for NetScaler ADC and NetScaler Gateway
🐛
CVE-2024-20721 Adobe Systems Incorporated: CVE-2024-20721 Improper Input Validation Denial of Service Vulnerability
🐛
Atlassian Releases Security Updates for Multiple Products
⚠️
FTC Joins Global Data Security and Privacy Investigative Consortium
⚠️
Indian Air Force Potentially Targeted With Info-Stealing Malware
⚠️
Clearview Resources Ltd Hit by Cyberattack, Suffers $1.5 Million in Damages
⚠️
PixieFail UEFI Flaws Expose Millions of Computers to RCE, DoS, and Data Theft
⚠️
K-12 Cybersecurity - Brian Stephens - PSW #813
⚠️
Canadian Citizen Gets Phone Back from Police
⚠️
TensorFlow CI/CD Flaw Exposed Supply Chain to Poisoning Attacks
⚠️
MFA Spamming and Fatigue: When Security Measures Go Wrong
⚠️
Ninety-Four Percent of Organizations Sustained Phishing Attacks Last Year
⚠️
Apple, AMD, Qualcomm, Imagination GPUs Open to Data Theft Using New LeftoverLocals Vulnerability
⚠️
Drupal Releases Security Advisory for Drupal Core
⚠️
TensorFlow CI/CD Flaw Exposed Supply Chain to Poisoning Attacks
⚠️
Atlassian Confluence Vulnerability Enables Remote Code Execution
⚠️
Incident Response Guide for the WWS Sector
⚠️
CISA Releases One Industrial Control Systems Advisory
⚠️
Unpatched Rapid SCADA Vulnerabilities Expose Industrial Organizations to Attacks
⚠️
Malware Exploiting 9Hits, Turns Docker Servers into Crypto Miners
⚠️
Oracle Releases Critical Patch Update Advisory for January 2024
⚠️
Why using Google OAuth in work applications is unsafe
⚠️
Oracle Quarterly Critical Patches Issued January 16, 2024
⚠️
Outlook Vulnerability Discovery and New Ways to Leak NTLM Hashes
⚠️
Creating Trust in Biometric Authentication for Identity Verification with Sabrina Gross – ESW #346
⚠️
CISA: Critical Ivanti auth bypass bug now actively exploited
KEV
⚠️
Three of four CISOs ready for job change
⚠️
Creating Trust in Biometric Authentication for Identity Verification - Sabrina Gross - ESW #346
⚠️
New Paper: “Future of the SOC: Evolution or Optimization — Choose Your Path” (Paper 4 of 4.5)
⚠️
Popular GPUs Used AI Systems Vulnerable to Memory Leak Flaw
⚠️
Protecting Your Network Security from Ivanti Zero-Day Threat
📢
Smashing Security podcast #355: Fishy Rishi, 23andMe, and the labour of love
📢
Chinese Drones Pose Threat to US Infrastructure, CISA Warns
📢
Pro-Russia Group Hit Swiss Government Sites After Zelensky Visit in Davos
📢
Oracle security advisory – January 2024 quarterly rollup (AV24-037)
📢
CISA, FBI and EPA Release Incident Response Guide for Water and Wastewater Systems Sector
📢
US govt wants BreachForums admin sentenced to 15 years in prison
📢
Privacy Fines: Tech Hub Ireland Leads EU in GDPR Sanctions
📢
Cryptohack Roundup: SEC Still Probing X Account Hack
🔥
Cooper Aerobics Data Security Incident Raises Concerns of Personal Information Exposure
🔥
Iranian Hackers Masquerade as Journalists to Spy on Israel-Hamas War Experts
🔥
National Bank of Angola Says it Mitigated Cyberattack
🔥
Hackers Deploying Androxgh0st Botnet Malware that Steals AWS, Microsoft Credentials
🔥
Docker hosts hacked in ongoing website traffic theft scheme
🔥
Outsmarting Ransomware’s New Playbook
🔥
Ransomware Group Targets Foxconn Subsidiary Foxsemicon
🔥
How Do You Protect Your APIs From DDoS Attacks?
🔥
Taiwanese Semiconductor Company Foxsemicon Suffers Ransomware Attack
🔥
As Hacks Worsen, SEC Turns up the Heat on CISOs
🔥
‘Swatting’ Becomes the Latest Extortion Tactic in Ransomware Attacks
🔥
Report: 75% of Organizations Hit by Ransomware in 2023
🔥
Credentials are Still King: Leaked Credentials, Data Breaches and Dark Web Markets
🔥
Kansas State University cyberattack disrupts IT network and services
🔥
Scammers Target Owners of Missing Pets
🔥
More Than Half of Data Breaches in the U.K.’s Legal Sector are Due to Insider Error
🔥
Breach Roundup: Microsoft's Effort to Store EU Data Locally
🔥
TeamViewer abused to breach networks in new ransomware attacks
🔥
Vans, Supreme owner VF Corp says hackers stole 35 million customers’ personal data
🔥
PHMSA Launches Initiatives to Bolster Pipeline Cybersecurity
🕵️
Iranian Hackers Masquerade as Journalists to Spy on Israel-Hamas War Experts
🕵️
ISC Stormcast For Thursday, January 18th, 2024 https://isc.sans.edu/podcastdetail/8814, (Thu, Jan 18th)
🕵️
Customer Information of Toyota Insurance Company Exposed Due to Misconfigurations
🕵️
Oleria Secures $33M Investment to Grow ID Authentication Business
🕵️
List Containing Millions of Credentials Distributed on Hacking Forum, but Passwords Old
🕵️
Russian APT Known for Phishing Attacks Is Also Developing Malware, Google Warns
🕵️
Energy Department to Invest $30 Million in Clean Energy Cybersecurity Solutions
🕵️
Google says Russian espionage crew behind new malware campaign
🕵️
AI trends: A closer look at machine learning’s role
🕵️
How AI-Powered Security Capabilities Implement Real-Time Cybersecurity
🕵️
Google: Russian FSB Hacking Group Turns to Malware
🕵️
Software Supply Chain Security Startup Kusari Raises $8 Million
🕵️
Multichain Inferno Drainer Abuse Web3 Protocols To Connect Crypto Wallets
🕵️
Russian COLDRIVER Hackers Expand Beyond Phishing with Custom Malware
🕵️
New Docker Malware Steals CPU for Crypto & Drives Fake Website Traffic
🕵️
Bigpanzi, PixieFAIL, Dark Xmas - PSW #813
🕵️
AHA: Rise in Scams Targeting IT Help Desks for Payment Fraud
🕵️
Microsoft at Legalweek: Secure data and gain efficiencies with Microsoft Purview eDiscovery enhanced by generative AI
🕵️
Iranian Hackers Targeting Middle East Experts
🕵️
White House Official Warns of AI Risks in 2024 Elections
🕵️
Dogs, AI, and Gyrogears (it's a slow security news week) - ESW #346
🌐
Bigpanzi Botnet Infects 170,000 Android TV Boxes With Malware
🌐
iShutdown Method Allows to Discover Spyware Infections on iPhones
🌐
Google TAG: Kremlin Cyber Spies Move Into Malware With Custom Backdoor
🌐
Feds Warn Chinese Drones Pose Risk To US Critical Infrastructure
🌐
Vast Botnet Hijacks Smart TVs For Prime Time Cybercrime
🌐
Google: Russian FSB hackers deploy new Spica backdoor malware
🌐
TA866 Returns with a Large Email Campaign
🎙️
Transatlantic Cable podcast episode 330 | Kaspersky official blog
📡
Jira down: Atlassian outage affecting multiple cloud services
📡
Vendor Email Attacks Surged by 137% in Financial Sector in 2023
📡
Swiss Government Reports Nuisance-Level DDoS Disruptions
📡
Researcher Uncovers Massive Password Dump Containing 71 Million Unique Credentials
📡
Buggy API on Insurance Firm TTIBI's Website Leaked Over 650,000 Email Messages
📡
Attribute-Based Encryption Could Spell the End of Data Compromise
📡
OpenAI Combats Election Misinformation Amid Growing Concerns
📡
How A 27-Year-Old Busted The Myth Of Bitcoin's Anonymity
📡
Researcher Uncovers One Of The Biggest Password Dumps In Recent History
📡
Illicit Crypto Addresses Received At Least $24.2 Billion In 2023
📡
Haier hits Home Assistant plugin dev with takedown notice
📡
Malicious Extortion Bot Targets Publicly Exposed PostgreSQL and MySQL Databases
📡
Web monitors say Gaza week-long internet outage is longest yet
📡
Microsoft tests instant access to Android photos in Windows 11
📡
Reduce Business Email Compromise with Collaboration
📡
Virtual kidnapping: How to see through this terrifying scam