92Articles
9Categories
2024-06-13Date
🚨
CISA Adds Three Known Exploited Vulnerabilities to CatalogCISA has added three new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-32896 Android Pixel Privilege Escalation Vulnerability CVE-2024-26169 Microsoft Windows Error Reporting Service Improper Privilege Ma…
KEV
πŸ›
256,000+ Publicly Exposed Windows Servers Vulnerable to MSMQ RCE Flaw
πŸ›
Google Warns of Pixel Firmware Security Flaw Exploited as Zero-Day
KEV
πŸ›
Microsoft Windows Ntqueryinformationtoken Flaw Let Attackers Escalate Privileges
πŸ›
Ivanti EPM SQL Injection Flaw Let Attackers Execute Remote Code
πŸ›
Hackers Exploiting MS Office Editor Vulnerability to Deploy Keylogger
πŸ›
0-day Vulnerability In 10,000 Web Apps Exploited Using XSS Payloads
πŸ›
Exploit for Veeam Recovery Orchestrator auth bypass available, patch now
πŸ›
Chromium: CVE-2024-5841 Use after free in V8
πŸ›
Chromium: CVE-2024-5835 Heap buffer overflow in Tab Groups
πŸ›
Chromium: CVE-2024-5837 Type Confusion in V8
πŸ›
Chromium: CVE-2024-5844 Heap buffer overflow in Tab Strip
πŸ›
Chromium: CVE-2024-5833 Type Confusion in V8
πŸ›
Chromium: CVE-2024-5839 Inappropriate Implementation in Memory Allocator
πŸ›
Chromium: CVE-2024-5836 Inappropriate Implementation in DevTools
πŸ›
Chromium: CVE-2024-5834 Inappropriate implementation in Dawn
πŸ›
Chromium: CVE-2024-5843 Inappropriate implementation in Downloads
πŸ›
Chromium: CVE-2024-5831 Use after free in Dawn
πŸ›
Chromium: CVE-2024-5840 Policy Bypass in CORS
πŸ›
Chromium: CVE-2024-5842 Use after free in Browser UI
πŸ›
Chromium: CVE-2024-5838 Type Confusion in V8
πŸ›
Chromium: CVE-2024-5832 Use after free in Dawn
πŸ›
Chromium: CVE-2024-5830 Type Confusion in V8
πŸ›
CVE-2024-30058 Microsoft Edge (Chromium-based) Spoofing Vulnerability
πŸ›
CVE-2024-30057 Microsoft Edge for iOS Spoofing Vulnerability
πŸ›
Chromium: CVE-2024-5846 Use after free in PDFium
πŸ›
Chromium: CVE-2024-5847 Use after free in PDFium
πŸ›
Chromium: CVE-2024-5845 Use after free in Audio
πŸ›
CVE-2024-38083 Microsoft Edge (Chromium-based) Spoofing Vulnerability
⚠️
Mastering the tabletop: 3 cyberattack scenarios to prime your response
KEV
⚠️
CISA Warns of Scammers Impersonating as CISA Employees
⚠️
Pakistan-linked Malware Campaign Evolves to Target Windows, Android, and macOS
⚠️
Black Basta Exploits Patched Windows Privilege Escalation Bug
⚠️
How shadow IT and obsolete software menace enterprise infrastructure
⚠️
New Attack Technique 'Sleepy Pickle' Targets Machine Learning Models
⚠️
11 times the US government got hacked in 2023
⚠️
CISA Releases Twenty Industrial Control Systems Advisories
⚠️
GenAI, Security, and More Lies - Aubrey King - PSW #832
⚠️
Phishing With Deepfakes for HK$200 Million
⚠️
Cybercriminals Use New V3B Phishing Kit to Mimic 54 Different Banks in the European Union
⚠️
Breach Roundup: US Federal Cyber Incidents Go Up
⚠️
China Using Hacking Competitions to Develop Domestic Talent
⚠️
New York Times warns freelancers of GitHub repo data breach
⚠️
Bricking PCs and IoT Hacking - PSW #832
⚠️
Cryptohack Roundup: Norway Freezes Hacked Ronin Funds
⚠️
French Bug Bounty Platform YesWeHack Raises $28 Million
⚠️
Easily Exploitable Critical Vulnerabilities Found in Open Source AI/ML Tools
πŸ“’
RSAC Fireside Chat: What it will take to achieve Digital Trust in our hyper-connected future
πŸ“’
Smashing Security podcast #376: iOS 18 for cheaters, and a model cop extortionist?
πŸ“’
Why SaaS Security is Suddenly Hot: Racing to Defend and Comply
πŸ“’
Watch out! CISA warns it is being impersonated by scammers
πŸ”₯
Indian National Jailed For Hacked Servers Of Company That Fired Him
πŸ”₯
Ukraine Police Arrest Suspect Linked to LockBit and Conti Ransomware Groups
πŸ”₯
Scattered Spider Now Affiliated with RansomHub Following BlackCat Exit
πŸ”₯
White House Report Dishes Deet On All 11 Major Government Breaches From 2023
πŸ”₯
How ShrinkLocker ransomware leverages BitLocker | Kaspersky official blog
πŸ”₯
Learning From Others' Gaps in the Wake of Major Attacks
πŸ”₯
Toronto District School Board hit by a ransomware attack
πŸ”₯
Panera warns of employee data breach after March ransomware attack
πŸ”₯
Microsoft President Admits to Major Security Failures
πŸ”₯
Worker-Downloaded Malware Caused Ascension Ransomware Attack
πŸ”₯
Ascension hacked after employee downloaded malicious file
πŸ”₯
Truist BankΒ confirms breach after stolen data shows up on hacking forum
πŸ”₯
City of Cleveland Scrambling to Restore Systems Following Cyberattack
πŸ•΅οΈ
ISC Stormcast For Thursday, June 13th, 2024 https://isc.sans.edu/podcastdetail/9022, (Thu, Jun 13th)
πŸ•΅οΈ
The Art of JQ and Command-line Fu [Guest Diary], (Thu, Jun 13th)
πŸ•΅οΈ
New Cross-Platform Malware 'Noodle RAT' Targets Windows and Linux Systems
πŸ•΅οΈ
A CISO game plan for cloud security
πŸ•΅οΈ
AI and the Indian Election
πŸ•΅οΈ
Beware WARMCOOKIE Backdoor Knocking Your Inbox
πŸ•΅οΈ
Arid Viper Launches Mobile Espionage Campaign with AridSpy Malware
πŸ•΅οΈ
Pakistan's 'Cosmic Leopard' Is Targeting India With RATs
πŸ•΅οΈ
Treasury Seeks Industry, Academic Insight on AI Use, Risks
πŸ•΅οΈ
NetSPI Strengthens Attack Surface Management With Hubble Buy
πŸ•΅οΈ
Visual Studio Code Has a Malicious Extension Problem
πŸ•΅οΈ
Arid Viper poisons Android apps with AridSpy
πŸ•΅οΈ
Pyte Raises $5 Million for Secure Data Collaboration Solutions
πŸ•΅οΈ
Event Preview: AI Risk Summit + CISO Forum at the Ritz-Carlton, Half Moon Bay | June 25-26, 2024
πŸ•΅οΈ
AWS Announces Authentication and Malware Protection Enhancements
πŸ•΅οΈ
Know Your Adversary: Why Tuning Intelligence-Gathering to Your Sector Pays Dividends
πŸ•΅οΈ
Life360 Says Personal Information Stolen From Tile Customer Support Platform
πŸ•΅οΈ
Prevalence and Impact of Password Exposure Vulnerabilities in ICS/OT
🌐
Cybercriminals Employ PhantomLoader to Distribute SSLoad Malware
🌐
Kaspersky Researchers Punch Holes In Biometrics Hardware Security
🌐
Prevalence And Impact Of Password Exposure Vulns In ICS/OT
πŸŽ™οΈ
Transatlantic Cable podcast episode 351 | Kaspersky official blog
πŸ“‘
Phishing, BEC attackers target candidates in local election, among others
πŸ“‘
Apple Patches Possibly The First Ever Spatial Computing Hack
πŸ“‘
Microsoft President To Testify Over Security Lapses
πŸ“‘
YouTube tests harder-to-block server-side ad injection in videos
πŸ“‘
Download our cloud access security broker (CASB) enterprise buyer’s guide
πŸ“‘
Microsoft delays Windows Recall amid privacy and security concerns