100Articles
8Categories
2024-02-15Date
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2020-3259 Cisco ASA and FTD Information Disclosure Vulnerability CVE-2024-21410 Microsoft Exchange Server Privilege Escalation Vulnerability These…
KEV
🐛
Critical Exchange Server Flaw (CVE-2024-21410) Under Active Exploitation
KEV
🐛
Water Hydra’s Zero-Day Attack Chain Targets Financial Traders
🐛
New Critical Microsoft Exchange Bug Exploited as Zero-Day
🐛
Microsoft Warns of Exploited Exchange Server Zero-Day
⚠️
New HijackLoader Malware Uses Advanced Techniques to Avoid Detection
⚠️
Cisco Announces It is Laying Off Thousands of Workers
⚠️
Microsoft Patch Tuesday 2024: 73 Security Flaws, Including Two 0-Days Patched
KEV
⚠️
Zoom Patches Critical Privilege Elevation Flaw in Windows Apps
⚠️
DNS Server Vulnerability: Single DNS Packet can Bring Down the System
⚠️
Cybercriminals Get Productivity Boost With AI
⚠️
Chinese Hackers Using Deepfakes in Advanced Mobile Banking Malware Attacks
⚠️
Two Queens Men Sentenced for Hacking Into JFK Airport Taxi Dispatch System
⚠️
On the Insecurity of Software Bloat
⚠️
Harnessing Exploitability Information for Effective Prioritization
⚠️
Report: Threat Actors Intensify Focus on NATO Member States
⚠️
New Qbot malware variant uses fake Adobe installer popup for evasion
⚠️
Phishing Campaign Exploits Remote Desktop Software
⚠️
German Battery Maker Varta Halts Production After Cyberattack
⚠️
OpenAI Shuts Down Accounts Used to Generate Phishing Emails & Malware
⚠️
BigID adds access governance targeted at sensitive data and privileges
⚠️
Ivanti Uses End-of-Life Operating Systems, Software Packages
⚠️
New Jersey Law Enforcement Officers Sue 118 Data Brokers for Not Removing Personal Information
⚠️
ESET Patches High-Severity Privilege Escalation Vulnerability
⚠️
New Wi-Fi Authentication Bypass Flaws Expose Home, Enterprise Networks
⚠️
Why Sequoia is funding open source developers via a new equity-free fellowship
⚠️
Microsoft Confirms Windows Exploits Bypassing Security Features
⚠️
ESET Patches High-Severity Privilege Escalation Vulnerability
⚠️
Encryption Vital For Right to Privacy, European Court Rules
⚠️
Over 13,000 Ivanti gateways vulnerable to actively exploited bugs
KEV
⚠️
Three critical application security flaws scanners can’t detect
⚠️
Rhysida ransomware cracked! Free decryption tool released
⚠️
New Security Advisory Tab Added to the Microsoft Security Update Guide
⚠️
CISA Releases Seventeen Industrial Control Systems Advisories
⚠️
CISA and MS-ISAC Release Advisory on Compromised Account Used to Access State Government Organization
⚠️
Spyware startup Variston is losing staff, some say it’s closing
⚠️
Pretending to be Batman, self-destructing USB drives, and controlling your dreams - ESW #350
⚠️
Breach Roundup: Zeus Banking Trojan Leader Pleads Guilty
⚠️
OpenAI and Microsoft Terminate State-Backed Hacker Accounts
📢
CISA Reveals JCDC’s 2024 Cybersecurity Priorities
📢
North Korean Hackers Target South Korean President's Office
🔥
Smashing Security podcast #359: Declaring war on ransomware gangs, mobile muddles, and AI religion
🔥
Update: LockBit Claims Ransomware Attack on Fulton County, Georgia
🔥
North Korea successfully hacks email of South Korean President’s aide, gains access to sensitive information
🔥
How Nation-State Actors Target Your Business: New Research Exposes Major SaaS Vulnerabilities
🔥
ALPHV Ransomware Claims Hit on Canada’s Trans-Northern Pipelines
🔥
Number of Data Compromises Affecting U.S. Organizations Rises To 77%
🔥
Russian Turla Hackers Target Polish NGOs with New TinyTurla-NG Backdoor
🔥
LockBit claims cyberattack on Indian broker Motilal Oswal
🔥
Us Military Notifies 20,000 of Data Breach After Cloud Email Leak
🔥
Cyberattack Disrupts Production at Varta Battery Factories
🔥
Cryptohack Roundup: Cash Is Still King for Criminals
🔥
Cyberattacks on Hospitals Are Likely to Increase, Putting Lives at Risk, Experts Warn
🔥
US offers up to $15 million for tips on ALPHV ransomware gang
🔥
RansomHouse gang automates VMware ESXi attacks with new MrAgent tool
🔥
Prescriptive Mitigation Guidance, Power to ICS Security
🔥
Over Half of Malware Downloads Originate from SaaS Apps
🔥
Material: cybersecurity word of the year, thanks to the SEC - Amer Deeba - ESW #350
🔥
To Avoid Bankruptcy, EMR Firm Settles Lawsuit for $4M
🔥
News alert: Harter Secrest & Emery announces designation as NetDiligence-authorized Breach Coac
🕵️
ISC Stormcast For Thursday, February 15th, 2024 https://isc.sans.edu/podcastdetail/8854, (Thu, Feb 15th)
🕵️
OpenAI Shuts Down Accounts Linked to Five Nation-State Hacking Groups
🕵️
DDoS Hacktivism is Back With a Geopolitical Vengeance
🕵️
Banking Trojan GoldPickaxe Harvests Facial Biometrics
🕵️
GoldPickaxe Trojan Uses Biometric Data and Deepfake Tech to Scam Banks
🕵️
What are You Working on Wednesday (Special Thursday edition)
🕵️
Turla hackers backdoor NGOs with new TinyTurla-NG malware
🕵️
No Security Scrutiny for Half of Major Code Changes: AppSec Survey
🕵️
North Korea Turns to Designing Malware-Infected Gambling Websites for Cash
🕵️
OpenAI blocks state-sponsored hackers from using ChatGPT
🕵️
How to Analyse an Advanced Phishing Attack with ANY.RUN Threat Intelligence Lookup
🕵️
Banking Trojan Harvests Facial Biometrics for AI Deepfakes
🕵️
Material: cybersecurity word of the year, thanks to the SEC with Amer Deeba – ESW #350
🕵️
US Disrupts Russian Military Intelligence Botnet
🕵️
FBI Dismantles Ubiquiti Router Botnet Controlled by Russian Cyberspies
🕵️
Iran-Aligned Threat Actor "CharmingCypress" Launches Spear Phishing Attacks
🕵️
Russia Continues to Focus on Cyber Operations and Espionage
🌐
New ‘Gold Pickaxe’ Android, iOS malware steals your face for fraud
🌐
Backdoors That Let Cops Decrypt Messages Violate Human Rights, EU Courts Says
🌐
Ivanti Pulse Secure Found Using 11-Year-Old Linux Version and Outdated Libraries
🌐
6 Categories of Modern Threat Landscape | Empowering Business Continuity for Cyber Resilience
🌐
EMEA Live Panel | Defending against today's threat landscape with MDR
🌐
FBI disrupts Moobot botnet used by Russian military hackers
🌐
Zeus, IcedID malware gangs leader pleads guilty, faces 40 years in prison
🌐
All eyes on AI | Unlocked 403: A cybersecurity podcast
🌐
FBI disrupts Russian Moobot botnet infecting Ubiquiti routers
📡
[Guest Diary] Learning by doing: Iterative adventures in troubleshooting, (Thu, Feb 15th)
📡
France Uncovers Russian Disinformation Campaign
📡
Romantic AI Chatbots Fail the Security and Privacy Test
📡
Asset Management Firm Armis Acquires Honeypot Maker CTCI
📡
Corporate Users Getting Tricked into Downloading AnyDesk
📡
Feds Want To Ban The World's Cutest Hacking Device. Experts Say It's A Scapegoat
📡
New Wi-Fi Auth Bypass Flaws Expose Home, Enterprise Networks
📡
Three Terms Sure To Grab Attention: Russia, Nuclear, Anti-Satellite Weapon
📡
Microsoft, OpenAI Reveal ChatGPT Use By State-Sponsored Hackers
📡
Cybercriminals Are Stealing Face ID Scans To Break Into Bank Accounts
📡
U.S. Internet Corp. Leaked Years of Internal, Customer Emails
📡
Microsoft says it fixed a Windows Metadata server issue that’s still broken
📡
Nginx key developer starts a “freenginx” fork after dispute with parent firm
📡
Nginx core developer quits project in security dispute, starts “freenginx” fork