96Articles
9Categories
2024-06-26Date
🚨
CISA Adds Three Known Exploited Vulnerabilities to CatalogCISA has added three new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2022-24816 GeoSolutionsGroup JAI-EXT Code Injection Vulnerability CVE-2022-2586 Linux Kernel Use-After-Free Vulnerability CVE-2020-13965 R…
KEV
🐛
Critical Vulnerability in MOVEit Transfer Let Hackers Gain Files Access
🐛
Authentication Bypasses in MOVEit Transfer and MOVEit Gateway
🐛
Exploitation Attempts Target New MOVEit Transfer Vulnerability
🐛
Apple Patches AirPods Bluetooth Vulnerability That Could Allow Eavesdropping
🐛
Apple Patches AirPods Bluetooth Vulnerability That Could Allow Eavesdropping
🐛
New MOVEit Transfer Vulnerability Under Active Exploitation - Patch ASAP!
⚠️
Over 110,000 Websites Affected by Hijacked Polyfill Supply Chain Attack
⚠️
The US Is Banning Kaspersky
⚠️
Cyber Security Today, June 26, 2024 - New vulnerability in MOVEit and a warning to WordPress administrators on poisoned plugins
⚠️
UK and US Law Enforcement Put Qilin Ransomware Criminals in the Crosshairs
⚠️
Zeek: Open-Source Network Traffic Analysis, Security Monitoring
⚠️
Siemens Sicam Vulnerabilities Could Facilitate Attacks on Energy Sector
⚠️
Practical Guidance For Securing Your Software Supply Chain
⚠️
New Credit Card Skimmer Targets WordPress, Magento, and OpenCart Sites
⚠️
Ollama AI Platform Flaw Let Attackers Execute Remote Code
⚠️
New North Korean Actor Distributing Malicious npm Packages To Compromise Organizations
⚠️
Threat Actor Claims 0Day Sandbox Escape RCE in Chrome Browser
⚠️
Orca bolsters cloud security offering with source code support
⚠️
Cloud security faces pressure from AI growth, multicloud use
⚠️
Continuous red-teaming is your only AI risk defense
⚠️
What is digital executive protection and how does it work?
⚠️
Microsoft-owned vendor blamed for massive healthcare breach
⚠️
Multiple Vulnerabilities in Siemens Power Automation Products
⚠️
Probllama: Ollama Remote Code Execution Vulnerability
⚠️
Joint advisory on exploring memory safety in critical open source projects
⚠️
CISA and Partners Release Guidance for Exploring Memory Safety in Critical Open Source Projects
⚠️
Hackers target new MOVEit Transfer critical auth bypass bug
⚠️
Hacker claims data breach of India’s eMigrate labor portal
⚠️
Bogus: LockBit's Claimed Federal Reserve Ransomware Hit
⚠️
Formerly legitimate Polyfill.io domain abused to serve malicious code
⚠️
Exploit for critical Fortra FileCatalyst Workflow SQLi flaw released
⚠️
CISA: Most critical open source projects not using memory safe code
⚠️
Simulated Phishing Tests Matter
⚠️
The Double-Edged Sword of AI: Empowering Cybercriminals and the Need for Heightened Cybersecurity Awareness
⚠️
Unlocking the potential of Generative AI starts with a secure foundation
⚠️
News Alert: FireTail unveils free access to its enterprise-level API security platform — to all
⚠️
Building the foundation for secure Generative AI
⚠️
Hackers Quick to Exploit MOVEit Authentication Flaw
⚠️
U.S. Federal Agencies Still Struggle to Recruit Cyber Talent
⚠️
Why Activist Investor Jana Is Pressing Rapid7 to Sell Itself
📢
Update: CISA Warns Chemical Facilities of Potential Data Theft
📢
Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution
📢
Sophos Provides Progress on its Pledge to CISA’s Secure by Design Initiative
📢
EU NIS 2 Directive: what it is and how to prepare for it | Kaspersky official blog
📢
GitLab security advisory (AV24-355)
🔥
Alejandro Cáceres, the hacker who took down North Korea’s internet from his home: ‘My attack was a response to their attempt to spy on me’
🔥
New Medusa Malware Variants Target Android Users in Seven Countries
🔥
Malicious JavaScript Snippets Served Due to Supply Chain Attack on Polyfills Site
🔥
P2Pinfect Worm Now Dropping Ransomware on Redis Servers
🔥
Chinese and N. Korean Hackers Target Global Infrastructure with Ransomware
🔥
OilRig Hackers Attacking Individuals And Organizations In The Middle East
🔥
P2Pinfect Redis Server with New Ransomware Payload
🔥
The EU Targets Russia’s LNG Ghost Fleet With Sanctions as Concern Mounts About Hybrid Attacks
🔥
P2Pinfect Worm Now Dropping Ransomware On Redis Servers
🔥
Transatlantic Cable podcast episode 353 | Kaspersky official blog
🔥
Attackers in Profile: menuPass and ALPHV/BlackCat
🔥
LockBit lied: Stolen data is from a bank, not US Federal Reserve
🔥
US charges Russian for allegedly helping GRU spies target Ukrainian government systems with data-destroying malware
🔥
Nuance Ex-Employee Indicted for Breach Affecting 1 Million
🔥
Smashing Security podcast #378: Julian Assange, inside a DDoS attack, and deepfake traumas
🕵️
ISC Stormcast For Wednesday, June 26th, 2024 https://isc.sans.edu/podcastdetail/9036, (Wed, Jun 26th)
🕵️
Russian Hackers Target Ukraine with XWorm RAT Malware Payload
🕵️
Polyfill Supply Chain Attack Hits Over 100k Websites
🕵️
FireTail Unveils Free Access for All to Cutting-Edge API Security Platform
🕵️
Microsoft Announced AI Tool Copilot for Security TI in Defender XDR
🕵️
Gaining and Retaining Security Talent: A Cheat Sheet for CISOs
🕵️
The dangers of anthropomorphizing AI: An infosec perspective
🕵️
What are You Working on Wednesday
🕵️
SANS New2Cyber Summit 2024 - 17 videos - SPANISH & ENGLISH
🕵️
Google Disrupts More China-Linked Dragonbridge Influence Operations
🕵️
Websites that support USB Dongle Authentication (hardware security keys)
🕵️
Google Unveils New Chrome Enterprise Core Features for IT, Security Teams
🕵️
WikiLeaks Founder Julian Assange Returns to Australia a Free Man After US Legal Battle Ends
🕵️
Atos Takeover Bid Hits New Roadblock
🕵️
OpenAI Drops ChatGPT Access for Users in China, Russia, Iran
🕵️
Leverage Platformization – Strengthen, Unify and Simplify Cybersecurity Tools
🕵️
What Setting Live Traps for Cybercriminals Taught Me About Security [Guest Diary], (Wed, Jun 26th)
🕵️
Mitigating Skeleton Key, a new type of generative AI jailbreak technique
🕵️
Working with a cybersecurity committee of the board
🌐
The Growing Threat of Malware Concealed Behind Cloud Services
🌐
New Medusa Android Trojan Targets Banking Users Across 7 Countries
🌐
Snowblind malware abuses Android security feature to bypass security
🌐
Polyfill Supply Chain Attack Hits Over 100k Websites
🌐
Cyber insurance as part of the cyber threat mitigation strategy
🎙️
Introducing… The AI Fix podcast
📡
Cyber Insurance and Cyber Defenses 2024: Lessons from IT and Cybersecurity Leaders
📡
Microsoft Blamed For Million-Plus Patient Record Theft At US Hospital Giant
📡
Ebay Seller Offers Stingray Device For $100,000
📡
Pentagon Taken To Task Over Background Check Security
📡
Windows 10 KB5039299 update released with 10 changes or fixes
📡
Windows 11 KB5039302 update released with 9 changes or fixes
📡
How the Kaspersky ban will hit resellers in the US
📡
Keeping Track of the Cybersecurity Job Market
📡
Cyber security guidance for democratic institutions: artificial intelligence (ITSAP.00.135)
📡
AI Coding Companions 2024: AWS, GitHub, Tabnine + More