119Articles
8Categories
2024-02-29Date
๐Ÿšจ
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-29360 Microsoft Streaming Service Untrusted Pointer Dereference Vulnerability These types of vulnerabilities are frequent attack vectors โ€ฆ
KEV
๐Ÿ›
Lazarus Hackers Exploited Windows 0-Day to Gain Kernel read/write Access
๐Ÿ›
Chinese Hackers Exploiting Ivanti VPN Flaws to Deploy New Malware
๐Ÿ›
Windows Zero-Day Exploited by North Korean Hackers in Rootkit Attack
๐Ÿ›
Lazarus Group Exploits Windows Zero-Day for Kernel-Level Access
๐Ÿ›
Lazarus Hackers Exploited Windows Kernel Flaw as Zero-Day in Recent Attacks
๐Ÿ›
CISA and Partners Release Advisory on Threat Actors Exploiting Ivanti Connect Secure and Policy Secure Gateways Vulnerabilities
๐Ÿ›
Chromium: CVE-2024-1938 Type Confusion in V8
๐Ÿ›
Chromium: CVE-2024-1939 Type Confusion in V8
๐Ÿ›
CVE-2024-26196 Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability
โš ๏ธ
OpenCTI maker Filigran raises $16 million for its cybersecurity threat management suite
โš ๏ธ
Okta Security Push Pays Dividends Following String of Issues
โš ๏ธ
Why governance, risk, and compliance must be integrated with cybersecurity
โš ๏ธ
Lazarus Exploits Typos to Sneak PyPI Malware into Dev Systems
โš ๏ธ
FTCโ€™s Khan Warns Tech Industry That Agency Will Strictly Enforce AI Data Privacy
โš ๏ธ
Update: Chinese Group Runs Highly Persistent Ivanti Zero-Day Exploits
โš ๏ธ
How the โ€œFrontierโ€ Became the Slogan of Uncontrolled AI
โš ๏ธ
BobTheSmuggler: Open-source tool for undetectable payload delivery
โš ๏ธ
GTPDOOR Linux Malware Targets Telecoms, Exploiting GPRS Roaming Networks
โš ๏ธ
How to Prioritize Cybersecurity Spending: A Risk-Based Strategy for the Highest ROI
โš ๏ธ
The Imperative for Modern Security: Risk-Based Vulnerability Management
โš ๏ธ
Report: Most Commercial Code Contains High-Risk Open Source Bugs
โš ๏ธ
Top cybersecurity salaries shoot past $780k
โš ๏ธ
Meta Patches Facebook Account Takeover Vulnerability
โš ๏ธ
Windows Zero Day Exploited By North Korean Hackers In Rootkit Attack
โš ๏ธ
Meta Patches Facebook Account Takeover Vulnerability
โš ๏ธ
Report: Ads for Zero-Day Exploit Sales Surge 70% Annually
โš ๏ธ
CISA Releases Two Industrial Control Systems Advisories
โš ๏ธ
Anycubic 3D Printers Hacked Worldwide to Expose Security Flaw
โš ๏ธ
New Silver SAML Attack Evades Golden SAML Defenses in Identity Systems
โš ๏ธ
GTPDOOR Linux Malware Targets Telecoms, Exploiting GPRS Roaming Networks
โš ๏ธ
CISA, U.S. and International Partners Warn of Ongoing Exploitation of Multiple Ivanti Vulnerabilities
โš ๏ธ
Joint Cyber Security Advisory warns threat actors exploit multiple vulnerabilities in Ivanti Connect Secure and Policy Secure Gateways
โš ๏ธ
To defeat AI attacks, fight fire with more fire
โš ๏ธ
Majority of commercial codebases contain high-risk open-source code
โš ๏ธ
CISA warns against using hacked Ivanti devices even after factory resets
KEV
โš ๏ธ
Malware In Strange Places, Overheating, LockBit - PSW #818
โš ๏ธ
Golden Corral restaurant chain data breach impacts 183,000 people
โš ๏ธ
Fulton County, Security Experts Call LockBitโ€™s Bluff
โš ๏ธ
Lazarus Group Exploits Windows AppLocker Driver Zero-Day
โš ๏ธ
CISA cautions against using hacked Ivanti VPN gateways even after factory resets
KEV
โš ๏ธ
Blue Team toolkit: 6 open-source tools to assess and enhance corporate defenses
๐Ÿ“ข
President Biden Blocks Mass Transfer of Personal Data to High-Risk Nations
๐Ÿ“ข
Biden Executive Order Seeks to Cut China off From Americansโ€™ Sensitive Data
๐Ÿ“ข
Biden Crack Down Sale of Americansโ€™ Personal Data to China & Russia
๐Ÿ“ข
Cisco Patches High-Severity Vulnerabilities in Data Center OS
๐Ÿ“ข
HPE security advisory (AV24-112)
๐Ÿ“ข
CISA, FBI, and MS-ISAC Release Advisory on Phobos Ransomware
๐Ÿ“ข
Biden Administration Will Investigate National Security Risks Posed by Chinese-Made โ€˜Smart Carsโ€™
๐Ÿ“ข
Juniper security advisory (AV24-113)
๐Ÿ“ข
Breach Roundup: White House Calls for Memory-Safe Languages
๐Ÿ“ข
US Coast Guard Expands Cyber Command to Combat New Threats
๐Ÿ“ข
ICO Reprimands UK Home Office for Privacy Violations
๐Ÿ”ฅ
Smashing Security podcast #361: Wireless charging woe, AI romance apps, and ransomware revisited
๐Ÿ”ฅ
Millions of GitHub Repos Found Infected with Malicious Code
๐Ÿ”ฅ
LOCKBIT 3.0 Ransomware โ€“ Complete Malware Analysis Report
๐Ÿ”ฅ
Report: 69% of Organizations Infected by Ransomware in 2023
๐Ÿ”ฅ
German Applied Sciences University Announces Being Hit by Criminal Cyberattack
๐Ÿ”ฅ
Cyberattackers Lure EU Diplomats With Wine-Tasting Offers
๐Ÿ”ฅ
European Retailer Pepco Loses $16.8 Million Due to Phishing Attack
๐Ÿ”ฅ
Pharmaceutical giant Cencora discloses a data breach
๐Ÿ”ฅ
BlackCat Ransomware Gang Claims Attack on Change Healthcare
๐Ÿ”ฅ
Healthcare sector warned of ALPHV BlackCat ransomware after surge in targeted attacks
๐Ÿ”ฅ
UnitedHealth confirms ransomware gang behind Change Healthcare hack amid ongoing pharmacy outages
๐Ÿ”ฅ
20 million Cutout.Pro user records leaked on data breach forum
๐Ÿ”ฅ
DoE Invests $45 Million to Prevent Cyberattacks on US Energy Systems
๐Ÿ”ฅ
German Steelmaker Thyssenkrupp Confirms Ransomware Attack
๐Ÿ”ฅ
A government watchdog hacked a US federal agency to stress-test its cloud security
๐Ÿ”ฅ
Data Scientists Targeted by Malicious Hugging Face ML Models with Silent Backdoor
๐Ÿ”ฅ
LockBit Ransomware Returns to Attacks With New Encryptors, Servers
๐Ÿ”ฅ
Stages of LockBit Grief: Anger, Denial, Faking Resurrection?
๐Ÿ”ฅ
Update: BlackCat Ransomware Gang Claims They Stole 6TB of Change Healthcare Data
๐Ÿ”ฅ
FBI Is Focused on Election Integrity, Misinformation Threats
๐Ÿ”ฅ
Cryptohack Roundup: FTX Updates
๐Ÿ”ฅ
Rhysida Offers to Sell Children's Hospital Data for $3.4M
๐Ÿ•ต๏ธ
Passkeys - beyond passwords and OTP - in 4 minutes
๐Ÿ•ต๏ธ
ISC Stormcast For Thursday, February 29th, 2024 https://isc.sans.edu/podcastdetail/8874, (Thu, Feb 29th)
๐Ÿ•ต๏ธ
'Voltzite' Zaps African Utilities as Part of Volt Typhoon's Onslaught
๐Ÿ•ต๏ธ
Researchers Say Iranian Hackers Targeting Israeli Defense Sector
๐Ÿ•ต๏ธ
New Backdoor Targeting European Officials Linked to Indian Diplomatic Events
๐Ÿ•ต๏ธ
Chinese Mini PC Maker Acemagic Ships machines with Malware Pre-installed
๐Ÿ•ต๏ธ
Kali Linux 2024.1 Released โ€“ Whatโ€™s New
๐Ÿ•ต๏ธ
Report: Cyber Espionage Franceโ€™s Top Threat Ahead of 2024 Paris Olympics
๐Ÿ•ต๏ธ
HSCC Issues Cyber 'Call to Action' Plan for Health Sector
๐Ÿ•ต๏ธ
Iranian Hackers Target Aviation and Defense Sectors in Middle East
๐Ÿ•ต๏ธ
RSM US Deploys Stellar Cyber Open XDR Platform to Secure Clients
๐Ÿ•ต๏ธ
Ubiquiti Router Users Urged To Secure Devices Targeted By Russian Hackers
๐Ÿ•ต๏ธ
Iranian Hackers Target Aviation And Defense Sectors In Middle East
๐Ÿ•ต๏ธ
Discount Retail Giant Pepco Loses โ‚ฌ15 Million to Cybercriminals
๐Ÿ•ต๏ธ
Social Engineering: AI & Living Off The Land - Jayson E. Street - PSW #818
๐Ÿ•ต๏ธ
'Silver SAML' Haunts Entra ID SIngle Sign On Security
๐Ÿ•ต๏ธ
News alert: Silence Laboratories raises $4.1M for new privacy-preserving cryptography platform
๐ŸŒ
[Guest Diary] Dissecting DarkGate: Modular Malware Delivery and Persistence as a Service., (Thu, Feb 29th)
๐ŸŒ
Australian Spy Chief Fears Critical Infrastructure Sabotage
๐ŸŒ
Australian Spy Chief Fears Sabotage Of Critical Infrastructure
๐ŸŒ
Cryptojacking is No Longer the Sole Focus of Cloud Attackers
๐ŸŒ
European Diplomats Targeted by SPIKEDWINE Actors with WINELOADER Backdoor
๐ŸŒ
Your Supply Chain Is Your New Attack Surface
๐ŸŒ
New Bifrost malware for Linux mimics VMware domain for evasion
๐Ÿ“ก
Report: Business Logic Abuse Dominates as API Attacks Surge
๐Ÿ“ก
Silence Laboratories, a cryptographic security startup, secures funding
๐Ÿ“ก
Ukraine Expects Billion-Dollar Russian Disinformation Campaign to Peak This Spring
๐Ÿ“ก
Russian Hacktivists Continue Claiming DDoS Disruptions
๐Ÿ“ก
Popular video doorbells can be easily hijacked, researchers find
๐Ÿ“ก
BEAST Attack on AI Models can Break LLM Guardrails in a Minute
๐Ÿ“ก
Report: Vishing, Smishing, and Phishing Attacks Rise 1,265% Post-ChatGPT
๐Ÿ“ก
GitHub Besieged By Millions Of Malicious Repositories In Ongoing Attack
๐Ÿ“ก
GitHub Besieged by Millions of Malicious Repositories in Ongoing Attack
๐Ÿ“ก
BGE Attack on AES White-Boxes: Extending Blue Galaxy Energy for Decryption and Shuffled States
๐Ÿ“ก
Senator Asks FTC to Investigate Automakersโ€™ Data Privacy Practices
๐Ÿ“ก
Microsoft rolls back decision to stop Windows 11 22H2 preview updates
๐Ÿ“ก
Citrix, Sophos software impacted by 2024 leap year bugs
๐Ÿ“ก
Windows 11 'Moment 5' update released, here are the new features
๐Ÿ“ก
GitHub enables push protection by default to stop secrets leak
๐Ÿ“ก
Windows 11 KB5034848 preview update adds USB 80Gbps support
๐Ÿ“ก
Windows 10 KB5034843 update released with 9 new changes, fixes
๐Ÿ“ก
Brave browser launches privacy-focused AI assistant on Android
๐Ÿ“ก
A leaky database spilled 2FA codes for the worldโ€™s tech giants
๐Ÿ“ก
Fayeโ€™s Journey: From Security PM to Diversity Advocate at Microsoft