95Articles
10Categories
2024-04-04Date
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-29745 Android Pixel Information Disclosure Vulnerability CVE-2024-29748 Android Pixel Privilege Escalation Vulnerability These types of…
KEV
🐛
Ivanti Rushes Patches for 4 New Flaw in Connect Secure and Policy Secure
🐛
Google Fixed Another Chrome Zero-Day Exploited at Pwn2Own
🐛
Ivanti Releases Security Update for Ivanti Connect Secure and Policy Secure Gateways
🐛
XZ - Backdoors and The Fragile Supply Chain - PSW #823
🐛
Getting Vulnerability Management Back on the Rails - Patrick Garrity - ESW #356
🐛
CVE-2024-29981 Microsoft Edge (Chromium-based) Spoofing Vulnerability
🐛
Chromium: CVE-2024-3156 Inappropriate implementation in V8
🐛
Chromium: CVE-2024-3158 Use after free in Bookmarks
🐛
Chromium: CVE-2024-3159 Out of bounds memory access in V8
🐛
CVE-2024-29049 Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability
⚠️
Google patches critical vulnerability for Androids with Qualcomm chips
⚠️
Chinese APT group deploys defense-evading tactics with new UNAPIMON backdoor
⚠️
Gesture Jacking – New Attack That Deceives Website Visitors
⚠️
General Data Protection Regulation (GDPR): What you need to know to stay compliant
⚠️
Researchers Observed Visual Studio Code Extensions Stealing Users’ Sensitive Data
⚠️
Magento Shoplift Malware Targets Both WordPress and Magento CMS on E-Commerce Sites
⚠️
Cyberattack forces Omni Hotels to shut down its IT systems
⚠️
New HTTP/2 Vulnerability Exposes Web Servers to DoS Attacks
⚠️
Critical Vulnerability in Progress Flowmon Allows Remote Access to Systems
⚠️
Pixel Phone Zero-Days Exploited by Forensic Firms
KEV
⚠️
Targeted Phishing Linked to 'The Com' Surges in the US, the UK, and Canada
⚠️
Cyberattack Causes Disruptions at Omni Hotels
⚠️
Google Patches Exploited Pixel Vulnerabilities
⚠️
Center Identity Launches Patented Passwordless Authentication for Businesses
⚠️
CISA Releases Two Industrial Control Systems Advisories
⚠️
Google patches Pixel phone zero-days after exploitation by “forensic companies”
⚠️
Ivanti CEO Vows Cybersecurity Makeover After Zero-Day Blitz
⚠️
Testing in Detection Engineering (Part 8)
⚠️
Breach Roundup: Omni Hotels Acknowledges Cyber Incident
⚠️
Google Fixes Two Pixel Zero-Days Exploited by Forensic Firms
⚠️
Microsoft, Okta, CyberArk Lead Workforce Identity Rankings
⚠️
Ivanti Pledges Security Overhaul the Day After 4 More Vulns Disclosed
⚠️
Critical Security Flaw Exposes 1 Million WordPress Sites to SQL Injection
📋
Microsoft fixes Outlook security alerts bug caused by December updates
📢
CISA Joins the Minimum Viable Secure Product Working Group
📢
New Rules for Shipbuilding Focus on IT/OT Cybersecurity
📢
[Control systems] ABB security advisory (AV24-180)
🔥
Hackers Claiming Breach of Five Eyes Intelligence Group (FVEY) Documents
🔥
Rhadamanthys Stealer Delivered in Transportation Campaign
🔥
What makes a ransomware attack eight times as costly? Compromised backups
🔥
Jackson County shuts down over ransomware attack
🔥
Unveiling the Fallout: Operation Cronos' Impact on LockBit Following Landmark Disruption
🔥
Hosting Providers VMware ESXi Servers Hit by New SEXi Ransomware
🔥
Microsoft Exchange State-Linked Hack Entirely Preventable, Cyber Review Board Finds
🔥
SurveyLama Data Breach Impacts 4.4 Million Users
🔥
US Cancer Center Data Breach Impacting 800,000
🔥
New SEXi Ransomware Gang Targets VMware ESXi Servers
🔥
US Cancer Center Data Breach Impacting 800,000
🔥
Hackers Hijacked Notepad++ Plugin to Execute Malicious Code
🔥
AT&T To Face Lawsuit Following Breach Impacting 73 Million Customers
🔥
New Phishing Campaign Targets Oil & Gas with Evolved Data-Stealing Malware
🔥
US cancer center data breach exposes info of 827,000 patients
🔥
Hoya’s optics production and orders disrupted by cyberattack
🔥
Health Data Thefts Keep Coming; Millions Affected in 2024
🔥
New Latrodectus malware replaces IcedID in network breaches
🔥
Have you heard about AI? Lots of AI news. Also, RSA conference, and RooBadges! - ESW #356
🕵️
ISC Stormcast For Thursday, April 4th, 2024 https://isc.sans.edu/podcastdetail/8924, (Thu, Apr 4th)
🕵️
Microsoft’s Security Chickens Have Come Home to Roost
🕵️
Zoom Paid Out $10 Million via Bug Bounty Program Since 2019
🕵️
Surveillance by the New Microsoft Outlook App
🕵️
New HTTP/2 DoS Attack Potentially More Severe Than Record-Breaking Rapid Reset
🕵️
Cloud Threat Detection Firm Permiso Raises $18 million
🕵️
Cloud security uncertainty: Do you know where your data is?
🕵️
IT Leaders Can’t Stop AI and Deepfake Scams as They Top the List of Most Frequent Attacks
🕵️
Building secure applications: Key insights on authentication and authorization from Cerbos and Microsoft Entra | Cerbos
🕵️
Kobold letters – Why HTML emails are a risk to your organization
🕵️
A Vigilante Hacker Took Down North Korea’s Internet. Now He’s Taking Off His Mask
🕵️
Cryptohack Roundup: Thieves Steal Money, Seek Praise
🕵️
Vietnam-Based Hackers Steal Financial Data Across Asia with Malware
🕵️
'Many-Shot Jailbreaking' Defeats Gen AI Security Guardrails
🕵️
Catfishing Campaign Targets Members of the UK Government
🕵️
Apple Users Become the Latest Targets of MFA Attacks
🕵️
It's A Minifilter! - PSW #823
🕵️
DOE Looks to Universities to Fix Energy Sector Cybersecurity
🕵️
The Power of AI Assistants and Advanced Threat Detection
🕵️
Phishing Attacks Targeting Political Parties, Germany Warns
🕵️
Explore Microsoft’s AI innovations at RSA Conference 2024
🌐
Distinctive Campaign Evolution of Pikabot Malware
🌐
The Biggest Takeaways from Recent Malware Attacks
🌐
Visa warns of new JSOutProx malware variant targeting financial orgs
🎙️
Transatlantic Cable podcast episode 341 | Kaspersky official blog
📡
Live Webinar Today | Navigating the SEC Rules for Enhanced Cybersecurity in IT and OT Environments
📡
‘The Manipulaters’ Improve Phishing, Still Fail at Opsec
📡
Considerations for Operational Technology Cybersecurity
📡
Report: 73% Brace for Cybersecurity Impact on Business in the Next Year or Two
📡
Scrut Automation Secures $10 Million in Growth Capital
📡
Fake Lawsuit Threat Exposes Privnote Phishing Sites
📡
Man Pleads Guilty To Stealing Former Coworker's Identity For 30 Years
📡
WordPress LayerSlide Plugin Bug Risks Password Hash Extraction
📡
Israel Used AI To Identify 37,000 Hamas Targets
📡
Ukraine Gives Award To Foreign Vigilantes For Hacks On Russia
📡
New HTTP/2 DoS attack can crash web servers with a single connection
📡
OnDemand | Navigating the SEC Rules for Enhanced Cybersecurity in IT and OT Environments
📡
Slicing up DoNex with Binary Ninja, (Thu, Apr 4th)