104Articles
9Categories
2024-03-06Date
🚨
CISA Warns of Pixel Phone Vulnerability ExploitationCISA adds Pixel Android phone (CVE-2023-21237) and Sunhillo SureLine (CVE-2021-36380) flaws to its known exploited vulnerabilities catalog. The post CISA Warns of Pixel Phone Vulnerability Exploitation appeared first on SecurityWeek .
KEV
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-23225 Apple iOS and iPadOS Memory Corruption Vulnerability CVE-2024-23296 Apple iOS and iPadOS Memory Corruption Vulnerability These ty…
KEV
πŸ›
Urgent: Apple Issues Critical Updates for Actively Exploited Zero-Day Flaws
KEV
πŸ›
Hackers Exploit WordPress Plugin Flaw to Deploy Godzilla Web Shell
πŸ›
VMware Issues Security Patches for ESXi, Workstation, and Fusion Flaws
πŸ›
Ubuntu 18.04 Security Updates for Linux Kernel Vulnerabilities
πŸ›
Apple Emergency Security Updates Fix Two New iOS Zero-Days
πŸ›
Apple warns users against critical memory corrupting attacks
πŸ›
Apple Releases iOS/iPadOS Updates with Zero Day Fixes
KEV
πŸ›
VMware Patches Critical ESXi Sandbox Escape Flaws
πŸ›
OpenNMS XSS Flaw Let Attackers Inject JavaScript Payload
πŸ›
Attack targets Docker, Hadoop, Confluence, and Redis with new payloads
πŸ›
TeamCity auth bypass bug exploited to mass-generate admin accounts
πŸ›
Critical TeamCity flaw now widely exploited to create admin accounts
⚠️
4 tabletop exercises every security team should run
⚠️
Hackers Install macOS Malware Using Weaponised Calendar Invites
⚠️
Urgent VMware Updates Address Critical ESXi Sandbox Escape Bugs
⚠️
Hackers Abuse QEMU Hardware Emulator for Stealthy C2 Communication
⚠️
Scanning and abusing the QUIC protocol, (Wed, Mar 6th)
⚠️
Improved, Stuxnet-Like PLC Malware Aims to Disrupt Critical Infrastructure
⚠️
CrowdStrike to Buy Israeli Data Defense Vendor Flow Security
⚠️
Organizations are Knowingly Releasing Vulnerable Applications
⚠️
VMware Releases Security Advisory for Multiple Products
⚠️
Cisco Releases Open Source Backplane Traffic Visibility Tool for OT
⚠️
Watching the bottom lineβ€”How a Zero Trust position can save time and money
⚠️
Exit Scam: BlackCat Ransomware Group Vanishes After $22 Million Payout
⚠️
Apple Blunts Zero Day Attacks With iOS 17.4 Update
⚠️
Hackers Exploit Misconfigured YARN, Docker, Confluence, Redis Servers for Crypto Mining
⚠️
Canada's anti-money laundering agency offline after cyberattack
⚠️
Apple Fixes iOS Kernel Zero-Days Being Exploited in the Wild
KEV
⚠️
Hacked WordPress sites use visitors' browsers to hack other sites
⚠️
ONCD Director Teases New Cybersecurity Implementation Plan
⚠️
Keynote by CISA Director Jen Easterly
πŸ“‹
Cyber Security Today, March 6, 2024 - VMware and Apple rush out security updates, a new ScreenConnect malware is found, and more
πŸ“‹
Android’s March 2024 Update Patches Critical Vulnerabilities
πŸ“‹
VMware fixes critical sandbox escape flaws in ESXi, Workstation, and Fusion
πŸ“’
How to Find and Fix Risky Sharing in Google Drive
πŸ“’
Hornetsecurity Buys Vade to Fuel Strength in France, Germany
πŸ“’
A New Way To Manage Your Web Exposure: The Reflectiz Product Explained
πŸ“’
Google Chrome security advisory (AV24-123)
πŸ“’
Ukraine claims it hacked Russian Ministry of Defence, stole secrets and encryption ciphers
πŸ“’
Super Tuesday: A Snapshot into CISA’s Mission to Secure the Electoral Process
πŸ“’
Drupal security advisory (AV24-125)
πŸ“’
Cisco security advisory (AV24-124)
πŸ“’
Apple security advisory (AV24-126)
πŸ“’
GitLab security advisory (AV24-127)
πŸ”₯
BlackCat Ransomware Group Implodes After Apparent $22M Payment by Change Healthcare
πŸ”₯
Alert: GhostSec and Stormous Launch Joint Ransomware Attacks in Over 15 Countries
πŸ”₯
Unveiling Earth Kapre aka RedCurl’s Cyberespionage Tactics With Trend Micro MDR, Threat Intelligence
πŸ”₯
Fidelity Customers' Financial Information Feared Stolen in Cyberattack
πŸ”₯
225,000+ ChatGPT Credentials Up For Sale on Dark Web Markets
πŸ”₯
BlackCat Ransomware Gang Suspected of Pulling Exit Scam
πŸ”₯
Data Breach Alert: American Express Credit Card Information Exposed
πŸ”₯
Fast-Growing RA Ransomware Group Goes Global
πŸ”₯
Crucial Red Sea data cables cut, telecoms firm says
πŸ”₯
Network Security Software AlgoSec Allegedly Breached
πŸ”₯
GhostLocker 2.0 Haunts Businesses Across Middle East, Africa & Asia
πŸ”₯
GhostSec Evolves With Website Compromise Tools
πŸ”₯
HHS Aiding Organizations Hit by Change Healthcare Cyberattack
πŸ”₯
Anatomy of a BlackCat Attack Through the Eyes of Incident Response
πŸ”₯
Anatomy Of A BlackCat Attack Through The Eyes Of Incident Response
πŸ”₯
Uncle Sam Intervenes As Change Healthcare Ransomware Fiasco Creates Mayhem
πŸ”₯
Duvel says it has "more than enough" beer after ransomware attack
πŸ”₯
New Research: Spike In DNS Queries Driving Phishing and Cyber Attacks
πŸ”₯
DPRK Hackers Breach South Korean Chipmakers, Steal Designs
πŸ”₯
The Next Big Bombs to Drop in the Change Healthcare Fiasco
πŸ”₯
PetSmart warns of ongoing credential stuffing attacks
πŸ”₯
PetSmart warns of credential stuffing attacks trying to hack accounts
πŸ•΅οΈ
CrowdStrike to Acquire Flow Security
πŸ•΅οΈ
ISC Stormcast For Wednesday, March 6th, 2024 https://isc.sans.edu/podcastdetail/8882, (Wed, Mar 6th)
πŸ•΅οΈ
New APT Group 'Lotus Bane' Behind Recent Attacks on Vietnam's Financial Entities
πŸ•΅οΈ
Project DDoSia – Russian Hackers Planning a Massive DDoS Attack
πŸ•΅οΈ
George Kurtz: There's a Difference Between Price, Total Cost
πŸ•΅οΈ
Hackers use Zoom & Google Meet to Attack Android & Windows users
πŸ•΅οΈ
DarkNet Diaries Ep 143: Jim Hates Scams - 66 minutes
πŸ•΅οΈ
Surveillance through Push Notifications
πŸ•΅οΈ
SecurityWeek to Host AI Risk Summit June 25-26 at the Ritz-Carlton, Half Moon Bay CA
πŸ•΅οΈ
Cyber Insights 2024: OT, ICS and IIoT
πŸ•΅οΈ
AI in Cybersecurity β€” A CISO’s Perspective
πŸ•΅οΈ
Cloud Security Firm Sweet Security Raises $33 Million, 6 Months After Emerging From Stealth
πŸ•΅οΈ
Linux Malware Campaign Targets Misconfigured Cloud Servers
πŸ•΅οΈ
Fresh $100 Million Claroty Funding Brings Total to $735 Million
πŸ•΅οΈ
Volt Typhoon And The Disruption Of The U.S. Cyber Strategy
πŸ•΅οΈ
Europe Vows to Unify the Fight Against Cyberthreats
πŸ•΅οΈ
Cloudflare Boosts Cloud Connectivity with Nefeli Acquisition
πŸ•΅οΈ
Chicago Man Sentenced to Eight Years in Prison for Phishing Scheme
πŸ•΅οΈ
Enhancing protection: Updates on Microsoft’s Secure Future Initiative
πŸ•΅οΈ
Large online dictionary leaks nearly 7M records
πŸ•΅οΈ
Claroty Gets $100M for Global Growth, Microsegmentation M&A
🌐
U.S. Cracks Down on Predatory Spyware Firm for Targeting Officials and Journalists
🌐
New WogRAT Malware Abuses Online Notepad Service to Store Malicious Code
🌐
Researchers Warn of Stuxnet-Style Web-Based PLC Malware
🌐
Hackers target Docker, Hadoop, Redis, Confluence with new Golang malware
🌐
Whoops! ACEMAGIC ships mini PCs with free bonus pre-installed malware
🌐
Linux Malware Campaign Targets Misconfigured Cloud Servers
🌐
ChatGPT Credentials Snagged By Infostealers On 225k Infected Devices
πŸ“‘
AI Auctions: Collectibles, Taylor Swift, Jordan Bots
πŸ“‘
AI Auctions: Collectibles, Taylor Swift, Jordan Bots
πŸ“‘
Android and Windows RATs Distributed Via Online Meeting Lures
πŸ“‘
Axonius, a Specialist in Cyber Asset Management, secures $200M at a $2.6B Valuation
πŸ“‘
DTEX Systems Raises $50M in Series E Funding
πŸ“‘
What Are the Highest-Paying Cybersecurity Specialties?
πŸ“‘
Hackers impersonate U.S. government agencies in BEC attacks
πŸ“‘
Top 10 scams targeting seniors – and how to keep your money safe