76Articles
8Categories
2024-07-12Date
🚨
Top 10 open source software risks — and how to mitigate themCalls for a critical look at how open-source software (OSS) is secured and used have been increasing after a number of recent scares exposed vulnerabilities and risks, in particular the XZ Utils incident that revealed a backdoor inserted into a widely used OSS for compression and…
KEV
🐛
CVE-2024-6387 RedHat Openssh: CVE-2024-6387 Remote Code Execution Due To A Race Condition In Signal Handling
🐛
Multiple Threat Actors Exploit PHP Flaw CVE-2024-4577 to Deliver Malware
🐛
Known SSH-Snake bites more victims with multiple OSS exploitation
🐛
Critical Exim Mail Server Vulnerability Exposes Millions to Malicious Attachments
🐛
Attacks against the "Nette" PHP framework CVE-2020-15227, (Fri, Jul 12th)
⚠️
Weekly Update 408
⚠️
Exim vulnerability affecting 1.5 million servers lets attackers attach malicious files
⚠️
Coyote Banking Trojan Attacking Windows Users To Steal Login Details
⚠️
What is the CIA triad? A principled framework for defining infosec policies
⚠️
Veeam Flaw Becomes Ransomware Vector a Year After Patching
⚠️
Ever Wonder How Hackers Really Steal Passwords? Discover Their Tactics in This Webinar
⚠️
mSpy Data Breach: Millions of Customers’ Data Exposed
⚠️
Macau Government Websites Hit with Cyberattack by Suspected Foreign Hackers
⚠️
AT&T Details Massive Breach of Subscribers' Call Logs
⚠️
Year-Old Veeam Vulnerability Exploited in Fresh Ransomware Attacks
⚠️
Japanese Space Agency Spots Unspecified Zero-Day Attacks
⚠️
Australian Defence Force Private and Husband Charged with Espionage for Russia
⚠️
AT&T Details Massive Breach of Customers' Call and Text Logs
⚠️
More Vulnerability Shenanigans - PSW #834
⚠️
GitLab Patches Second Critical Pipeline Vulnerability In Last Month
⚠️
Exim Vulnerability Affects 1.5 Million Servers
⚠️
AT&T Discloses Breach of Customer Data
⚠️
DarkGate Malware Exploits Samba File Shares in Short-Lived Campaign
⚠️
Critical Exim Flaw Allows Attackers to Deliver Malicious Executables to Mailboxes
⚠️
Hackers Steal Phone, SMS Records for Nearly All AT&T Customers
⚠️
CRYSTALRAY Group Targets 1,500 Organizations in 6 Months
⚠️
Critical Exim bug bypasses security filters on 1.5 million mail servers
⚠️
Friday Squid Blogging: 1994 Lair of Squid Game
⚠️
Zeus Banking Malware Player Gets 9-Year Prison Term
⚠️
Detecting Living Off The Land attacks with Wazuh
📢
CISA Red Team Exercise Finds Critical Vulnerabilities in Federal Civilian Agency
📢
ISMG Editors: How Should We Handle Ransomware Code Flaws?
📢
White House Calls for Defending Critical Infrastructure
🔥
Hackers Using ClickFix Social Engineering Tactics to Deploy Malware
🔥
Ransomware Gangs Invest in Custom Data Stealing Malware
🔥
Advance Auto Parts Cyber Attack: Over 2 Million Users Data Exposed
🔥
RansomHub ransomware – what you need to know
🔥
AT&T says criminals stole phone records of ‘nearly all’ customers in new data breach
🔥
AT&T Data Breach: ‘Nearly All’ Wireless Customers Exposed in Massive Hack
🔥
Massive AT&T data breach exposes call logs of 109 million customers
🔥
Millions Impacted by Breach at Advance Auto Parts Linked to Snowflake Incident
🔥
Millions Impacted By Breach At Advance Auto Parts
🔥
Nearly All AT&T Cell Customers’ Call And Text Records Exposed
🔥
In Other News: Apple’s Spyware Warning, CDK Global Ransom Payment, Sibanye Cyberattack
🔥
Mobile surveillance software firm mSpy suffers data breach
🔥
What the AT&T phone records data breach means for you
🔥
Rite Aid confirms data breach after June ransomware attack
🔥
AT&T confirms arrest in data breach of more than 110 million customers
🔥
Should ransomware payments be banned? – Week in security with Tony Anscombe
🕵️
Joiners, Movers, Leavers, and Failures: Why is Identity Management Still Struggling? -... - ESW #367
🕵️
Rockyou2024 is a scam, Google has a whoopsie, and AI is giving folks indigestion - ESW #367
🕵️
ISC Stormcast For Friday, July 12th, 2024 https://isc.sans.edu/podcastdetail/9050, (Fri, Jul 12th)
🕵️
U.S. Seizes Domains Used by AI-Powered Russian Bot Farm for Disinformation
🕵️
Japan Warns of Attacks Linked to North Korean Kimsuky Hackers
🕵️
The NSA Has a Long-Lost Lecture by Adm. Grace Hopper
🕵️
Howto unlock KeepassDX with your Secure Element
🕵️
Brands are changing cybersecurity strategies due to AI threats
🕵️
China's APT41 Crew Adds A Stealthy Malware Loader And Fresh Backdoor To Its Toolbox
🕵️
🚨 The REAL Cost of Security Vulnerabilities! 🛡️💸 | Interview with Jason Kikta 🎙️
🕵️
Off-Topic Friday
🕵️
Autobahn, APT 40, Meliorator, RADIUS, AT&T, Apple, Josh Marpet, and More... - SWN #397
🕵️
FedNow's First Year: Mixed Bag of Achievements, Challenges
🌐
Exploring Compiled V8 JavaScript Usage in Malware
📡
Cytactic Raises $16M in Seed Funding
📡
OnDemand | BEC Aware: Three Actionable Steps to Activate Security Culture in UK
📡
The Stark Truth Behind the Resurgence of Russia’s FIN7
📡
Justifying Your Hybrid Cloud Network Security Investment
📡
Computer Company Breaks Quantum Supremacy Record Set By Google
📡
OpenSSH Bug Leaves RHEL And RHELatives Vulnerable
📡
Gay Furry Hackers Say They Have Disbanded After Raiding Project 2025's Heritage Foundation
📡
Netgear warns users to patch auth bypass, XSS router flaws
📡
SIEM benefits for medium-sized business | Kaspersky official blog
📡
Netgear warns users to patch auth bypass, XSS router flaws
📡
Gaining Better Visibility Into Medical Devices, IoT, OT
📡
DNS hijacks target crypto platforms registered with Squarespace