107Articles
9Categories
2024-04-17Date
๐Ÿšจ
#StopRansomware: Akira RansomwareSUMMARY Note: This joint Cybersecurity Advisory (CSA) is part of an ongoing #StopRansomware effort to publish advisories for network defenders that detail various ransomware variants and ransomware threat actors. These #StopRansomware advisories include recently and historically โ€ฆ
KEV
๐Ÿ›
Operation MidnightEclipse: Hackers Actively Exploiting Palo Alto Networks Zero-Day Flaw
๐Ÿ›
Update: Researchers Released Exploit Code for Actively Exploited Palo Alto Networks PAN-OS Bug
KEV
๐Ÿ›
Botnets Continue Exploiting CVE-2023-1389 for Wide-Scale Spread
๐Ÿ›
Critical Atlassian Flaw Exploited to Deploy Linux Variant of Cerber Ransomware
๐Ÿ›
Hackers Exploit Fortinet Flaw, Deploy ScreenConnect, Metasploit in New Campaign
๐Ÿ›
Exploitation of Palo Alto Firewall Vulnerability Picking Up After PoC Release
๐Ÿ›
Ivanti Patches Two Critical Avalanche Flaws in Major Update
๐Ÿ›
Critical Atlassian Flaw Exploited to Deploy Linux Variant of Cerber Ransomware
๐Ÿ›
Cerber Linux Ransomware Exploits Atlassian Servers to Take Full Control
๐Ÿ›
SAP users are at high risk as hackers exploit application vulnerabilities
๐Ÿ›
Palo Alto - Putting The Protecc In GlobalProtect (CVE-2024-3400) - watchTowr Labs
๐Ÿ›
Xiid SealedTunnel: Unfazed by Yet Another Critical Firewall Vulnerability (CVE-2024-3400)
๐Ÿ›
AWS and Google Cloud command-line tools can expose secrets in CI/CD logs
โš ๏ธ
LightSpy Hackers Target Indian Apple Device Users To Steal Sensitive Data
โš ๏ธ
Where in the world is your AI? Identify and secure AI across a hybrid environment
โš ๏ธ
Understanding CISAโ€™s proposed cyber incident reporting rules
โš ๏ธ
Passbolt: a bold use of HaveIBeenPwned
โš ๏ธ
Cisco Warns of Global Surge in Brute-Force Attacks Targeting VPN and SSH Services
โš ๏ธ
Cyber Security Today, April 17, 2024 - More suspicious attempts to take over open source projects, a data theft at a Cisco Duo partner, and more
โš ๏ธ
Cisco Warns Of Massive Brute-Force Attacks Targeting VPNs & SSH Services
โš ๏ธ
Several GTKWave Vulnerabilities Fixed in Debian
โš ๏ธ
Oracle Releases Biggest Security Update in 2024 โ€“ 372 Vulnerabilities Are Fixed โ€“ Update Now!
โš ๏ธ
Likely State Hackers Exploiting Palo Alto Firewall Zero-Day
โš ๏ธ
FGVulDet โ€“ New Vulnerability Detector to Analyze Source Code
โš ๏ธ
What should Security Operations teams take away from the IBM X-Force 2024 Threat Intelligence Index?
โš ๏ธ
Multiple botnets exploiting one-year-old TP-Link flaw to hack routers
โš ๏ธ
Ivanti Warns of Critical Flaws in Its Avalanche MDM Solution
โš ๏ธ
Cisco: Multiple VPN, SSH Services Targeted in Mass Brute-Force Attacks
โš ๏ธ
OpenAI's ChatGPT Can Exploit Real Vulnerabilities By Reading Advisories
โš ๏ธ
Palo Alto Networksโ€™ firewall bug under attack brings fresh havoc to thousands of companies
โš ๏ธ
Multiple Vulnerabilities in Google Chrome Could Allow for Remote Code Execution
โš ๏ธ
Cisco discloses root escalation flaw with public exploit code
โš ๏ธ
Exploited TP-Link Vulnerability Spawns Botnet Threats
โš ๏ธ
Key Lawmaker Heralds 'Landmark' Draft Federal Privacy Bill
โš ๏ธ
Multiple Vulnerabilities in Ivanti Avalanche Could Allow for Remote Code Execution
โš ๏ธ
Hackers hijack OpenMetadata apps in Kubernetes cryptomining attacks
โš ๏ธ
PCI 4.0 - PSW #825
โš ๏ธ
SoumniBot malware exploits Android bugs to evade detection
โš ๏ธ
Possible Chinese Hackers Use OpenMetadata to Cryptomine
โš ๏ธ
Hack on Clinic Serving Homeless Is Latest Hit to Underserved
โš ๏ธ
Oracle Quarterly Critical Patches Issued April 16, 2024
๐Ÿ“‹
Tor Browser 13.0.14 Released โ€“ Whatโ€™s New!
๐Ÿ“‹
Chrome 124, Firefox 125 Patch High-Severity Vulnerabilities
๐Ÿ“ข
Russia is Trying to Sabotage European Railways, Czech Minister Said
๐Ÿ“ข
Google Chrome security advisory (AV24-212)
๐Ÿ“ข
Atlassian security advisory (AV24-211)
๐Ÿ“ข
Oracle security advisory โ€“ April 2024 quarterly rollup (AV24-210)
๐Ÿ“ข
CISA, FBI, and ODNI Release Guidance for Securing Election Infrastructure Against the Tactics of Foreign Malign Influence Operations
๐Ÿ“ข
Cisco security advisory (AV24-213)
๐Ÿ“ข
Smashing Security podcast #368: Gary Barlow, and a scam turns deadly
๐Ÿ”ฅ
Iran Launched A Major Cyberattack Against Critical Infrastructure In Israel
๐Ÿ”ฅ
INC Ransom Group Exfiltrates Data Before Encrypting & Threatens Public Exposure
๐Ÿ”ฅ
BreachForums Down, But Not Out: Hackers Claim Attack, Admins Remain Unfazed
๐Ÿ”ฅ
โ€˜Junk gunโ€™ ransomware: Peashooters can still pack a punch
๐Ÿ”ฅ
Vorlon is trying to stop the next big API breach
๐Ÿ”ฅ
L00KUPRU Ransomware Attackers discovered in the wild
๐Ÿ”ฅ
LockBit 3.0 Variant Generates Custom, Self-Propagating Malware
๐Ÿ”ฅ
Russian APT Deploys New 'Kapeka' Backdoor in Eastern European Attacks
๐Ÿ”ฅ
Russian Sandworm hackers pose as hacktivists in water utility breaches
๐Ÿ”ฅ
The Evolving Threat of Ransomware โ€” A Call to Action for Cybersecurity
๐Ÿ”ฅ
Moldovan charged for operating botnet used to push ransomware
๐Ÿ”ฅ
Free Ransomware: LockBit Knockoffs and Imposters Proliferate
๐Ÿ”ฅ
Armis Buys Cyber Remediation Startup Silk Security for $150M
๐Ÿ•ต๏ธ
ISC Stormcast For Wednesday, April 17th, 2024 https://isc.sans.edu/podcastdetail/8942, (Wed, Apr 17th)
๐Ÿ•ต๏ธ
What are You Working on Wednesday
๐Ÿ•ต๏ธ
New Android Malware Mimic Google Chrome to Steal Banking Details
๐Ÿ•ต๏ธ
Podcast: Rob Lee on detecting cyber risk in IoT and industrial control systems
๐Ÿ•ต๏ธ
BSides Prague 2024 - 10 talks
๐Ÿ•ต๏ธ
Likely Sandworm Hackers Using Novel Backdoor 'Kapeka'
๐Ÿ•ต๏ธ
Outlook Login Panel Themed Phishing Attack Evaded All Antivirus Detections
๐Ÿ•ต๏ธ
The Global Menace of the Russian Sandworm Hacking Team
๐Ÿ•ต๏ธ
Using AI-Generated Legislative Amendments as a Delaying Technique
๐Ÿ•ต๏ธ
Oracle Patches 230 Vulnerabilities With April 2024 CPU
๐Ÿ•ต๏ธ
Attackers are pummeling networks around the world with millions of login attempts
๐Ÿ•ต๏ธ
Russian Sandworm Group Using Novel Backdoor to Target Ukraine
๐Ÿ•ต๏ธ
KnowBe4 Named a Leader in the Spring 2024 G2 Grid Report for Security Orchestration, Automation, and Response (SOAR) Software
๐Ÿ•ต๏ธ
North Korean Hackers Abuse DMARC To Legitimize Their Emails
๐Ÿ•ต๏ธ
Ivanti Patches 27 Vulnerabilities in Avalanche MDM Product
๐Ÿ•ต๏ธ
Recent OT and Espionage Attacks Linked to Russiaโ€™s Sandworm, Now Named APT44
๐Ÿ•ต๏ธ
Russian Sandworm Group Using Novel Backdoor to Target Eastern and Central Europe
๐Ÿ•ต๏ธ
Miggo Security Gets $7.5 Million Seed Funding to Build ADR Technology
๐Ÿ•ต๏ธ
Armis Acquires Silk Security for $150 Million
๐Ÿ•ต๏ธ
Recent OT And Espionage Attacks Linked To Russia's Sandworm, Now Named APT44
๐Ÿ•ต๏ธ
Kapeka: A New Backdoor in Sandwormโ€™s Arsenal of Aggression
๐Ÿ•ต๏ธ
FIN7 targets American automakerโ€™s IT staff in phishing attacks
๐Ÿ•ต๏ธ
Hacker Heroes - Winn Schwartau - PSW #825
๐Ÿ•ต๏ธ
EU Data Regulator Threatens Meta's 'Pay or Okay' Model
๐Ÿ•ต๏ธ
Cookie-Monster - BOF To Steal Browser Cookies & Credentials - RedPacket Security
๐ŸŒ
From Social Engineering to DMARC Abuse: TA427โ€™s Art of Information Gathering
๐Ÿ“ก
UK e-visa rollout begins today: no more immigration cards for millions
๐Ÿ“ก
Malicious PDF File Used As Delivery Mechanism, (Wed, Apr 17th)
๐Ÿ“ก
Misinformation and Hacktivist Campaigns Targeting the Philippines Skyrocket
๐Ÿ“ก
T-Mobile, Verizon Workers Get Texts Offering $300 for SIM Swaps
๐Ÿ“ก
How to prevent surveillance through banner ads | Kaspersky official blog
๐Ÿ“ก
GenAI: A New Headache for SaaS Security Teams
๐Ÿ“ก
UK e-visa rollout starts today for millions: no more physical immigration cards
๐Ÿ“ก
Microsoft: New Copilot app added by Edge doesnโ€™t collect data
๐Ÿ“ก
New Bill Would Create a Governing Body for Water System Cyber Standards
๐Ÿ“ก
Dark Web Monitoring: What's the Value?
๐Ÿ“ก
Microsoft: Copilot โ€˜appโ€™ on Windows Server mistakenly added by Edge
๐Ÿ“ก
Scammers Offer Cash To Phone Carrier Staff To Swap SIM Cards
๐Ÿ“ก
Ivanti Patches 27 Vulns In Avalanche MDM Product
๐Ÿ“ก
Attackers Are Pummeling Networks Around The World With Millions Of Login Attempts
๐Ÿ“ก
How to Start a Career in Cybersecurity
๐Ÿ“ก
Navigating the Future of Information Security: Insights and Strategies
๐Ÿ“ก
Congratulations to the Top MSRC 2024 Q1 Security Researchers!