156Articles
7Categories
2024-04-18Date
πŸ›
A Vuln is a Vuln, unless the CVE for it is after Feb 12, 2024, (Wed, Apr 17th)
πŸ›
Cisco Warns of a Command Injection and Privilege Escalation Flaw in Its IMC
πŸ›
Cybersecurity Pros Urge US Congress to Help NIST Restore NVD Operation
πŸ›
Attackers exploiting new critical OpenMetadata vulnerabilities on Kubernetes clusters | Microsoft Security Blog
πŸ›
Palo Alto ZeroDay Exploited in The Wild Following PoC Release
KEV
πŸ›
Cisco fixes vulnerabilities in Integrated Management Controller
πŸ›
CVE-2024-21409 .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
πŸ›
CVE-2024-28906 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28908 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28909 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28910 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28911 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28912 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28913 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28914 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28915 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28929 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28931 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28932 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28936 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28939 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28942 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28945 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29043 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29045 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29047 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
Chromium: CVE-2024-3832 Object corruption in V8
πŸ›
Chromium: CVE-2024-3914 Use after free in V8
πŸ›
Chromium: CVE-2024-3833 Object corruption in WebAssembly
πŸ›
Chromium: CVE-2024-3834 Use after free in Downloads
πŸ›
Chromium: CVE-2024-3837 Use after free in QUIC
πŸ›
Chromium: CVE-2024-3838 Inappropriate implementation in Autofill
πŸ›
Chromium: CVE-2024-3839 Out of bounds read in Fonts
πŸ›
Chromium: CVE-2024-3840 Insufficient policy enforcement in Site Isolation
πŸ›
Chromium: CVE-2024-3844 Inappropriate implementation in Extensions
πŸ›
Chromium: CVE-2024-3841 Insufficient data validation in Browser Switcher
πŸ›
Chromium: CVE-2024-3845 Inappropriate implementation in Network
πŸ›
Chromium: CVE-2024-3843 Insufficient data validation in Downloads
πŸ›
Chromium: CVE-2024-3847 Insufficient policy enforcement in WebUI
πŸ›
Chromium: CVE-2024-3846 Inappropriate implementation in Prompts
πŸ›
CVE-2024-28926 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28927 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28930 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28933 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28934 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28935 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28937 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28938 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28940 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28941 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28943 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-28944 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29044 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29046 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29048 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29982 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29983 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29984 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29985 Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2024-29987 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
πŸ›
CVE-2024-29986 Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability
⚠️
The Fall of LabHost: Law Enforcement Shuts Down Phishing Service Provider
⚠️
Are you a toxic cybersecurity boss? How to be a better CISO
⚠️
Hackers Exploit OpenMetadata Flaws to Mine Crypto on Kubernetes
⚠️
Armis Acquires AI-based Vulnerability Detection Firm Silk Security
⚠️
Cisco Warns of Global Surge in Brute-Force Attacks Targeting VPN and SSH Services
⚠️
Phishing-as-a-Service Platform LabHost Seized by Authorities
⚠️
Hackers Exploit Fortinet Flaw, Deploy ScreenConnect, Metasploit in New Campaign
⚠️
Consolidation blamed for Change Healthcare ransomware attack
⚠️
LabHost phishing service with 40,000 domains disrupted, 37 arrested
⚠️
Possible Chinese Hackers Use OpenMetadata for Cryptomining
⚠️
Other Attempts to Take Over Open Source Projects
⚠️
Phishing Platform LabHost Shut Down by Law Enforcement
⚠️
How to Conduct Advanced Static Analysis in a Malware Sandbox
⚠️
Cisco announces AI-powered Hypershield for autonomous exploit patching in the cloud
⚠️
Cisco Says PoC Exploit Available for Newly Patched IMC Vulnerability
⚠️
UK law enforcement busts online phishing marketplace
⚠️
Apex Legends hacker says game developers patched exploit used on streamers
⚠️
SoumniBot Exploiting Android Manifest Flaws to Evade Detection
⚠️
Oracle Releases Critical Patch Update Advisory for April 2024
⚠️
US Government and OpenSSF Partner on New SBOM Management Tool
⚠️
CISA Releases Three Industrial Control Systems Advisories
⚠️
Phishing Platform LabHost Shut Down By Law Enforcement
⚠️
Ransomware Victims Who Pay a Ransom Drops to Record Low
⚠️
CISA and Partners Release Advisory on Akira Ransomware
⚠️
Wiz is in talks to buy Lacework for $150-200M; security firm was last valued at $8.3B
⚠️
Novel Android Malware Targets Korean Banking Users
⚠️
Crazy money and crazy outcomes - cybersecurity acquisitions in all shapes and sizes - ESW #358
⚠️
Prevent Generative AI Data Leaks with Chrome Enterprise DLP
πŸ“’
Unpacking the NIST cybersecurity framework 2.0
πŸ“’
FIN7 Cybercrime Group Targeting U.S. Auto Industry with Carbanak Backdoor
πŸ“’
NCSC Says Newer Threats Need Network Defense Strategy
πŸ”₯
Food and Agriculture Sector Hit with More Than 160 Ransomware Attacks Last Year
πŸ”₯
What is Encryption in Malware? – Understand From Basics to XOR
πŸ”₯
Le Slip FranΓ§ais - 1,495,127 breached accounts
πŸ”₯
UnitedHealth Expects Up to $1.6B Hit From Change Healthcare Cyberattack This Year
πŸ”₯
LockBit Knockoffs and Imposters Proliferate After LockBit 3.0 Builder Leak
πŸ”₯
Moldovan Charged for Operating Botnet Used to Push Ransomware
πŸ”₯
LeSlipFrancais Data Breach: Customers’ Personal Information Exposed
πŸ”₯
Russian Sandworm Hackers Pose as Hacktivists in Water Utility Breaches
πŸ”₯
180k Impacted by Data Breach at Michigan Healthcare Organization
πŸ”₯
Recover from Ransomware in 5 Minutesβ€”We will Teach You How!
πŸ”₯
Cheap ransomware for sale on dark web marketplaces is changing the way hackers operate - Help Net Security
πŸ”₯
Company Says Change Healthcare Hackers Stole Sensitive Data
πŸ”₯
United Nations Agency Investigating Ransomware Attack Involving Data Theft
πŸ”₯
Change Healthcare data for sale on dark web as fallout from ransomware attack spirals out of control
πŸ”₯
3.5 million Omni Hotel guest details held to ransom by Daixin Team
πŸ”₯
Cryptohack Roundup: First Conviction in Smart Contract Hack
πŸ”₯
Cape dials up $61M from A16Z + more for mobile service that doesn’t use personal data
πŸ”₯
FBI: Akira ransomware raked in $42 million from 250+ victims
πŸ”₯
840-bed hospital in France postpones procedures after cyberattack
πŸ”₯
Hacking the Floodgates: U.S. Dams Face Growing Cyber Threats
πŸ”₯
Frontier Communications shuts down systems after cyberattack
πŸ”₯
Breach Roundup: LabHost Goes Down
πŸ•΅οΈ
ISC Stormcast For Thursday, April 18th, 2024 https://isc.sans.edu/podcastdetail/8944, (Thu, Apr 18th)
πŸ•΅οΈ
Malicious Google Ads Pushing Fake IP Scanner Software with Hidden Backdoor
πŸ•΅οΈ
Cisco Unveils AI-Native Enterprise Security Solution Hypershield
πŸ•΅οΈ
Nigeria & Romania Ranked Among Top Cybercrime Havens
πŸ•΅οΈ
Cisco Hypershield: AI-Powered Hyper-Distributed Security for Data Center
πŸ•΅οΈ
Unearthing APT44: Russia’s Notorious Cyber Sabotage Unit Sandworm | Google Cloud Blog
πŸ•΅οΈ
LastPass Warns of Deepfake Phishing Attempt
πŸ•΅οΈ
AI Voice Cloning and Bank Voice Authentication: A Recipe for Disaster?
πŸ•΅οΈ
Russian APT44 – The Most Notorious Cyber Sabotage Group Globally
πŸ•΅οΈ
FIN7 Hackers Attacking IT Employees Of Automotive Industry
πŸ•΅οΈ
FIN7 Targets American Automaker’s IT Staff in Phishing Attacks
πŸ•΅οΈ
Five Eyes Agencies Release New AI Security Guidance
πŸ•΅οΈ
Russia's Sandworm APT Linked To Attack On Texas Water Plant
πŸ•΅οΈ
Palo Alto Networks Recognized by Gartner as a Leader in SSE Report
πŸ•΅οΈ
SAP Applications Increasingly in Attacker Crosshairs, Report Shows
πŸ•΅οΈ
Multi-Data Platform SIEM Anvilogic Raises $45 Million
πŸ•΅οΈ
Jury Dishes Out Guilty Verdict in Mango Markets Fraud Case
πŸ•΅οΈ
Dark Web Sales Driving Major Rise in Credential Attacks
πŸ•΅οΈ
From Hackers to Streakers - How Counterintelligence Teams are Protecting the NFL - Joe... - ESW #358
🌐
New Android Trojan 'SoumniBot' Evades Detection with Clever Tricks
🌐
Malvertising Campaign Targeting IT Teams with MadMxShell Backdoor
🌐
OfflRouter Malware Evades Detection in Ukraine for Almost a Decade
🌐
Police smash LabHost international fraud network, 37 arrested
🌐
Google ad impersonates Whales Market to push wallet drainer malware
🌐
Fake cheat lures gamers into spreading infostealer malware
πŸ“‘
Armis Buys Cyber Remediation Startup Silk Security for $150M
πŸ“‘
Global Police Operation Disrupts 'LabHost' Phishing Service, Over 30 Arrested Worldwide
πŸ“‘
Insider Threats Surge 14% Annually as Cost-of-Living Crisis Bites
πŸ“‘
IT and Security Professionals Demand More Workplace Flexibility
πŸ“‘
Cybercriminals pose as LastPass staff to hack password vaults
πŸ“‘
Global Police Operation Disrupts 'LabHost' Phishing Service, Over 30 Arrested Worldwide
πŸ“‘
EU Tells Meta It Can't Paywall Privacy
πŸ“‘
Kremlin-Backed Actors Spread Disinformation Ahead Of US Elections
πŸ“‘
Lawmakers Are Kicking Warrantless Wiretapping Into Overdrive
πŸ“‘
Five Eyes Agencies Release New AI Security Guidance
πŸ“‘
Hydradancer: Faster USB Emulation for Facedancer
πŸ“‘
Microsoft Office LTSC 2024 preview available for Windows, Mac
πŸ“‘
Hackers are threatening to publish a huge stolen sanctions and financial crimes watchlist
πŸ“‘
Live Webinar | CybeRx - How to Automatically Protect Rockwell OT Customers from Today’s Cyber-Attacks
πŸ“‘
Why Health Firms Struggle with Cybersecurity Frameworks
πŸ“‘
From $8.3B to $200M: Why Lacework Is Examining a Sale to Wiz
πŸ“‘
The many faces of impersonation fraud: Spot an imposter before it’s too late