98Articles
8Categories
2024-01-22Date
๐Ÿšจ
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-34048 VMware vCenter Server Out-of-Bounds Write Vulnerability These types of vulnerabilities are frequent attack vectors for malicious cyber acโ€ฆ
KEV
๐Ÿ›
Apache ActiveMQ Flaw Exploited in New Godzilla Web Shell Attacks
KEV
๐Ÿ›
Chinese Spies Exploited VMware vCenter Server Vulnerability Since 2021
๐Ÿ›
Patched Apache ActiveMQ bug abused to drop Godzilla web shells
KEV
๐Ÿ›
Hackers start exploiting critical Atlassian Confluence RCE flaw
๐Ÿ›
Limiting remote access exposure in hybrid work environments
๐Ÿ›
Hackers Targeting Critical Atlassian Confluence Vulnerability Days After Disclosure
KEV
๐Ÿ›
Scans/Exploit Attempts for Atlassian Confluence RCE Vulnerability CVE-2023-22527, (Mon, Jan 22nd)
๐Ÿ›
Many CVE Records Are Listing the Wrong Versions of Software as Being Affected
โš ๏ธ
Apache ActiveMQ Flaw Exploited in New Godzilla Web Shell Attacks
โš ๏ธ
Top 4 LLM threats to the enterprise
โš ๏ธ
IT Consultant in Germany Fined for Exposing Shoddy Security
โš ๏ธ
Russia-based group hacked emails of Microsoftโ€™s senior leadership
โš ๏ธ
Admin of the BreachForums Hacking Forum Sentenced to 20 Years Supervised Release
โš ๏ธ
China remains the biggest threat, according to the defense security community
โš ๏ธ
Cyberattack Hits Three English Councils at Once, as Outsourcer Civica Denies Blame
โš ๏ธ
52% of Serious Vulnerabilities We Find are Related to Windows 10
โš ๏ธ
Cybercriminals Leaked Massive Volumes of Stolen PII Data From Thailand in Dark Web
โš ๏ธ
North Koreaโ€™s ScarCruft APT group targets infosec pros
โš ๏ธ
New NTLM Hash Leak Attacks Target Outlook, Windows Programs
โš ๏ธ
Chinese Spies Exploited VMware vCenter Server Vulnerability Since 2021
โš ๏ธ
loanDepot says ransomware gang stole data of 16.6 million people
โš ๏ธ
Safeguarding AI: The path to trustworthy technology
โš ๏ธ
Multiple Vulnerabilities in VMware Products Could Allow for Remote Code Execution
โš ๏ธ
Ivanti: VPN appliances vulnerable if pushing configs after mitigation
โš ๏ธ
Apple fixes first zero-day bug exploited in attacks this year
โš ๏ธ
loanDepot cyberattack causes data breach for 16.6 million people
โš ๏ธ
News alert: Deloitte, Memcyco partner to deliver real-time โ€˜digital impersonationโ€™ solutions
โš ๏ธ
Apple Ships iOS 17.3, Warns of WebKit Zero-Day Exploitation
โš ๏ธ
Trello - 15,111,945 breached accounts
๐Ÿ“ข
CISAโ€™s 1,200 Pre-Ransomware Alerts Saved Organizations Millions in Damages
๐Ÿ“ข
New Guidance Urges US Water Sector to Boost Cyber Resilience
๐Ÿ“ข
Say Easy, Do Hard, Hiring a CISO, Part 2 - BSW #335
๐Ÿ“ข
Boardroom cyber expertise comes under scrutiny
๐Ÿ“ข
Dell security advisory (AV24-040)
๐Ÿ“ข
Deloitte Partners with Memcyco to Combat ATO and Other Online Attacks with Real-Time Digital Impersonation Protection Solutions
๐Ÿ“ข
IBM security advisory (AV24-041)
๐Ÿ“ข
Red Hat security advisory (AV24-042)
๐Ÿ“ข
Apple security advisory (AV24-043)
๐Ÿ“ข
What Smart CISOs and Mature Orgs Get That Others Donโ€™t About Cyber Compliance | News - PSW814
๐Ÿ”ฅ
Update: Ransomware Gang Claims Responsibility for Christmas Attack on Massachusetts Hospital
๐Ÿ”ฅ
Researchers Link 3AM Ransomware to Conti, Royal Cybercrime Gangs
๐Ÿ”ฅ
Cyber Security Today, Jan. 22, 2024 - the LockBit ransomware gang hits the Subway fast food chain, and this is the start of Data Privacy Week
๐Ÿ”ฅ
LockBit Gang Claims New Attack on the Sandwich Chain Subway
๐Ÿ”ฅ
DarkGate Malware Abuses AutoIT Scripting For Payload Obfustication
๐Ÿ”ฅ
Owner of Cybercrime Website BreachForums Sentenced to Supervised Release
๐Ÿ”ฅ
NS-STEALER Uses Discord Bots to Exfiltrate Your Secrets from Popular Browsers
๐Ÿ”ฅ
Tietoevry Ransomware Attack Causes Outages for Swedish Firms, Cities
๐Ÿ”ฅ
LoanDepot says 16.6 million customers had โ€˜sensitive personalโ€™ information stolen in cyberattack
๐Ÿ”ฅ
With hackers poisoning water systems, US agencies issue incident response guide to boost cybersecurity
๐Ÿ”ฅ
Ransomware Hit on Tietoevry Causes IT Outages Across Sweden
๐Ÿ”ฅ
Trezor support site breach exposes personal data of 66,000 customers
๐Ÿ”ฅ
DENHAM the Jeanmaker Confirms Cyberattack
๐Ÿ”ฅ
LoanDepot Breach: 16.6 Million People Impacted
๐Ÿ”ฅ
BreachForums Admin Gets 20 Years Of Supervised Release
๐Ÿ”ฅ
Subway's Data Torpedoed By LockBit, Ransomware Gang Claims
๐Ÿ”ฅ
Facebook Phishing Scams Target Concerned Friends and Family
๐Ÿ”ฅ
AI Does Not Scare Me, But It Will Make The Problem Of Social Engineering Much Worse
๐Ÿ”ฅ
LoanDepot Ransomware Attack: 16.6 Million Customers Affected
๐Ÿ”ฅ
Malicious web redirect scripts stealth up to hide on hacked sites
๐Ÿ”ฅ
France's OFAC to Tackle Cyberthreats Ahead of Olympics
๐Ÿ”ฅ
Report: Hackers Scammed $7.5M From HHS Grant Payment System
๐Ÿ”ฅ
SEC confirms X account was hacked in SIM swapping attack
๐Ÿ”ฅ
Mother of all breaches - a historic data leak reveals 26 billion records
๐Ÿ”ฅ
Microsoft's Latest Hack Sparks Major Security Concerns
๐Ÿ•ต๏ธ
ISC Stormcast For Monday, January 22nd, 2024 https://isc.sans.edu/podcastdetail/8818, (Mon, Jan 22nd)
๐Ÿ•ต๏ธ
France Fines Yahoo 10 Mn Euros Over Cookie Abuses
๐Ÿ•ต๏ธ
AI Bots on X (Twitter)
๐Ÿ•ต๏ธ
Mentorship Monday - Discussions for career and learning!
๐Ÿ•ต๏ธ
Domain Escalation โ€“ Backup Operator
๐Ÿ•ต๏ธ
Beware of Pirated MacOS Apps That Install Chinese Malware
๐Ÿ•ต๏ธ
North Korean Hackers Weaponize Fake Research to Deliver RokRAT Backdoor
๐Ÿ•ต๏ธ
Security Experts Describe AI Technologies They Want to See
๐Ÿ•ต๏ธ
Russian State-Sponsored Threat Actor Targets High Profile Individuals in Phishing Campaign
๐Ÿ•ต๏ธ
Prosecutors Add to Evidence Against Alleged Vastaamo Hacker
๐Ÿ•ต๏ธ
RoboJoe | Apple | VMWare | AI | Confluence | Scarcruft | Microsoft | Jason Wood & More! โ€“ SWN356
๐Ÿ•ต๏ธ
2024: The Year Cross-Platform Endpoint Management Finally Gets Good? | News - ESW347
๐Ÿ•ต๏ธ
Veolia | FeverWarn | SystemK | Fortra | Gitlab | Ring | Trickbot | Aaran Leyland & More! โ€“ SWN357
๐ŸŒ
Parrot TDS: A Persistent and Evolving Malware Campaign
๐ŸŒ
MavenGate Attack Could Let Hackers Hijack Java and Android via Abandoned Libraries
๐ŸŒ
On Point: Offensive Security for Mobile Network Operators
๐ŸŒ
Cracked macOS apps drain wallets using scripts fetched from DNS records
๐Ÿ“ก
Experts Call for US Cyber Safety Review Board Rethink
๐Ÿ“ก
FTC Bans InMarket for Selling Precise User Location Without Consent
๐Ÿ“ก
FTC Settles Second Case With Geolocation Data Broker in Two Weeks
๐Ÿ“ก
Groups Urge FTC to Scrutinize Google Location Data Practices
๐Ÿ“ก
French CNIL Imposes Fine of $11 Million on Yahoo
๐Ÿ“ก
Brave to End โ€˜Strictโ€™ Fingerprinting Protection as it Breaks Websites
๐Ÿ“ก
Zloader: No Longer Silent in the Night
๐Ÿ“ก
Inventor Of The NTP Protocol Dies At 85
๐Ÿ“ก
France Fines Yahoo 10 Million Euros Over Cookie Abuses
๐Ÿ“ก
New NTLM Hash Leak Targets Outlook, Windows Programs
๐Ÿ“ก
UK Expansion of Sophos Partnership with Cowbell
๐Ÿ“ก
DDoS Barrage Hits Monobank, Ukraineโ€™s Largest Mobile Bank, in Unprecedented Attack
๐Ÿ“ก
FTC orders Intuit to stop pushing "free" software that isn't really free
๐Ÿ“ก
Apple Updates Everything - New 0 Day in WebKit, (Mon, Jan 22nd)
๐Ÿ“ก
18X a Leader in Gartner Magic Quadrant for EPP
๐Ÿ“ก
18X a Leader in Gartner Magic Quadrant for EPP