124Articles
9Categories
2024-03-07Date
🚨
CISA Adds Android Pixel and Sunhillo SureLine Bugs to its Known Exploited Vulnerabilities CatalogThe CISA added Android Pixel and Sunhillo SureLine vulnerabilities to its Known Exploited Vulnerabilities catalog, with the potential for local information disclosure and OS command injection.
KEV
🚨
CISA Adds One Known Exploited JetBrains Vulnerability, CVE-2024-27198, to CatalogCISA has added one new vulnerability to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-27198 JetBrains TeamCity Authentication Bypass Vulnerability CISA urges organizations to review the following JetBrains blog post and app…
KEV
🐛
Hackers Exploiting iOS 0-Day To Attack iPhones – Patch Now!
🐛
Cisco Small Business Wireless Access Points Flaw Let Attackers Inject Commands
🐛
Kimsuky Exploits ScreenConnect Bugs, Drops ToddlerShark
🐛
Critical TeamCity Vulnerability Exploitation Started Immediately After Disclosure
KEV
🐛
TeamCity supply chain bugs receive massive exploitation
🐛
Update: Critical TeamCity Flaw Now Widely Exploited to Create Admin Accounts
🐛
CVE-2024-26167 Microsoft Edge for Android Spoofing Vulnerability
🐛
CVE-2024-2173
🐛
CVE-2024-2174
🐛
CVE-2024-2176
🐛
VMware patches critical flaws that could allow attackers to escape VMs
KEV
⚠️
WoTLabs - 21,994 breached accounts
⚠️
Beyond the table stakes: CISO Ian Schneller on cybersecurity’s evolving role
⚠️
Online Trade (Онлайн Трейд) - 3,805,265 breached accounts
⚠️
Hackers Abuse QEMU to Covertly Tunnel Network Traffic in Cyberattacks
⚠️
New Linux Malware Attacking Apache, Docker, Redis & Confluence Servers
⚠️
Ex-Google engineer charged with theft of AI tech for Chinese firms
⚠️
Hacked WordPress Sites Using Visitors’ Browsers For Distributed Brute Force Attacks
⚠️
Linux Malware Targets Misconfigured Apache Hadoop, Confluence, Docker, and Redis Servers
⚠️
How Public AI Can Strengthen Democracy
⚠️
Hackers Switch From Crypto Drainer to Distributed WordPress Brute Force Attacks
⚠️
Server Killers Alliances: Here is the List of Hacker Groups
⚠️
CISA Announces New Efforts to Help Secure Open Source Ecosystem
⚠️
Critical TeamCity Vulnerability Exploitation Started Immediately After Disclosure
⚠️
Kimsuky Gang Joins Rush To Exploit New ScreenConnect Bugs
⚠️
Hacked WordPress Sites Abusing Visitors' Browsers for Distributed Brute-Force Attacks
⚠️
RiskInDroid Performs Open-Source Risk Analysis of Android Apps
⚠️
ITRC Finds Online Job Scams on the Rise
⚠️
Apple Releases Security Updates for iOS and iPadOS
⚠️
Leveraging Sourcetrail to a mapping tool, meet Numbat and Pyrrha
⚠️
AnyCubic fixes exploited 3D printer zero day flaw with new firmware
⚠️
Cisco Releases Security Updates for Secure Client
⚠️
CISA Releases One Industrial Control Systems Advisory
⚠️
Facing the Reality of Risk Prioritization - Dan DeCloss - PSW #819
⚠️
CISA and NSA Release Cybersecurity Information Sheets on Cloud Security Best Practices
⚠️
DCNextGen, Memory Safety And More! - PSW #819
⚠️
WhatDR or What Detection Domain Needs Its Own Tools?
⚠️
AI and Ransomware Top the List of Mid-Market IT Cyber Threats
⚠️
Is it unnecessary to cover one's webcam on Linux?
⚠️
CISA Launches New Efforts to Secure Open Source Ecosystem
⚠️
Zama Raises $73M in Series A Led by Multicoin Capital & Protocol Labs for Fully Homomorphic Encryption
📋
CISA, NSA share best practices for securing cloud services
📢
Ukraine's GUR hacked the Russian Ministry of Defense
📢
EU Agrees 'Cyber Solidarity Act' to Bolster Incident Response and Recovery
📢
Switzerland: Play ransomware leaked 65,000 government documents
📢
Apple security advisory (AV24-128)
🔥
Smashing Security podcast #362: Ransomware fraud, pharmacy chaos, and suicide
🔥
Hackers Use Number of Legitimate Tools in Ransomware Attacks
🔥
Update: CMS Rolls Out Provider Flexibilities Amid Fallout From Change Healthcare Cyberattack
🔥
Update: Europol, DOJ, NCA Deny Involvement in Recent ALPHV/BlackCat ‘Shutdown’
🔥
Fidelity Investments Notifying 28,000 People of Data Breach
🔥
Human vs. Non-Human Identity in SaaS
🔥
Capita Says Cyberattack Contributed to Annual Loss of More Than $135 Million
🔥
PetSmart Warns of Credential Stuffing Attacks Trying to Hack Accounts
🔥
Belgian Ale Legend Duvel’s Brewery Borked As Ransomware Halts Production
🔥
Transatlantic Cable podcast episode 336 | Kaspersky official blog
🔥
AI Tools Put Companies at Risk of Data Exfiltration
🔥
Duvel Says It Has “More Than Enough” Beer After Ransomware Attack
🔥
Embedded PLC Web Servers a Vector to New Class of OT Malware
🔥
Ransomware Attackers Leak Sensitive Swiss Government Documents, Login
🔥
Canadian City Says Timeline for Recovery From Ransomware Attack ‘Unknown’
🔥
Minnesota's South St. Paul Public Schools Investigating Potential Cybersecurity Threat
🔥
Ransomware Attacks on Critical Infrastructure Are Surging
🔥
Early stage startup M&A on fire, funding healthy, and attackers are like lawyers? - ESW #352
🔥
EHRs Back at Kids' Hospital But Patient Portal Still Offline
🔥
Emergency. Ransomware halts beer production at Belgium’s Duvel brewery
🕵️
NSA Details Seven Pillars Of Zero Trust
🕵️
ISC Stormcast For Thursday, March 7th, 2024 https://isc.sans.edu/podcastdetail/8884, (Thu, Mar 7th)
🕵️
Watch Out for Spoofed Zoom, Skype, Google Meet Sites Delivering Malware
🕵️
PetSmart warns of Active Password Cracking Attacks
🕵️
Chinese chap charged with stealing Google’s AI datacenter secrets
🕵️
Welcoming the German Government to Have I Been Pwned
🕵️
New Python-Based Snake Info Stealer Spreading Through Facebook Messages
🕵️
TA4903 Threat Actor Spoofs U.S. Government, Small Businesses in Phishing, BEC Bids
🕵️
VMware Critical Flaws Let Attackers Execute Remote Code
🕵️
New Fakext malware targets Latin American banks
🕵️
Beware of New Snake Python Infostealer Attacking Facebook Messenger Users
🕵️
Is protonVPN blocking VOIP?
🕵️
Cyber Insights 2024: A Dire Year for CISOs?
🕵️
Spinning YARN - A New Linux Malware Campaign Targets Docker, Apache Hadoop, Redis and Confluence
🕵️
SapphireStealer Sneaks In: Deceptive Legal Documents Prey on Russians
🕵️
TA4903 Phishing Campaigns Evolve, Targets US Government
🕵️
Customer Spotlight: MESA’s Strategy for Building Strong Security Culture and Email Defense
🕵️
Unit 42 MDR Recognized as a Leader in MDR
🕵️
FBI: Cybercrime Losses Exceeded $12.5 Billion in 2023
🕵️
Cayosoft Raises $22.5 Million for Microsoft AD Recovery Tech
🕵️
Nigerian BEC Scammer Pleads Guilty in US Court
🕵️
Cisco Patches High-Severity Vulnerabilities in VPN Product
🕵️
Cybercriminals Spoof US Government Organizations in BEC, Phishing Attacks
🕵️
Apple is Making Big App Store Changes in Europe Over New Rules. Could it Mean More iPhone Hacking?
🕵️
Chinese State Hackers Target Tibetans with Supply Chain, Watering Hole Attacks
🕵️
Cryptography Firm Zama Raises $73 Million for FHE Solution
🕵️
Cryptohack Roundup: Binance Layoffs
🕵️
Evolving Microsoft Security Development Lifecycle (SDL): How continuous SDL can help you build more secure software
🕵️
European Diplomats Targeted With Phony Invitations to a Wine-Tasting Party
🕵️
Ex-Google Exec Charged With AI Trade Secret Theft
🕵️
Empowering Minority Voters to Fight Election Misinformation
🌐
US Government Sanctions Intellexa Consortium Individuals and Entities Behind Predator Spyware Attacks
🌐
Reach Security taps a company’s existing tools to fight cyber threats
🌐
EMEA OnDemand | Defending against today's threat landscape with MDR
🌐
$12.5 billion lost to cybercrime, amid tidal wave of crypto investment fraud
📡
Ex-Google Engineer Arrested for Stealing AI Technology Secrets for China
📡
Why Cyber Maturity Assessment Should Become Standard Practice
📡
NSA Shares Zero-Trust Guidance to Limit Adversaries on the Network
📡
South Korean Police Develops Deepfake Detection Tool
📡
How cybercriminals scam women ahead of March 8 | Kaspersky official blog
📡
Five Ways to Keep API Integrations Secure
📡
Zama’s homomorphic encryption tech lands it $73M on a valuation of nearly $400M
📡
FBI: U.S. lost record $12.5 billion to online crime in 2023
📡
[Guest Diary] AWS Deployment Risks - Configuration and Credential File Targeting, (Thu, Mar 7th)
📡
Former Google Engineer Indicted For Stealing AI Secrets To Aid Chinese Companies
📡
Cisco Patches High Severity Vulnerabilities In VPN Product
📡
VMware Sandbox Escape Bugs Are So Critical, Patches Are Released For End-Of-Life Products
📡
Google engineer caught stealing AI tech secrets for Chinese firms
📡
Anonymous social apps face another reckoning as UNC System to ban Yik Yik, Fizz, Sidechat & Whisper
📡
Feds Get Second Guilty Plea in Prosecution of Nigerian-Led BEC Case
📡
Inspiring Inclusion: Sophos Celebrates International Women’s Day 2024
📡
Flipper Zero WiFi attack can unlock and steal Tesla cars
📡
Windows 10 KB5001716 update fails with 0x80070643 errors, how to fix
📡
Flipper Zero WiFi phishing attack can unlock and steal Tesla cars
📡
MiTM phishing attack can let attackers unlock and steal a Tesla
📡
Evasive Panda leverages Monlam Festival to target Tibetans