95Articles
10Categories
2024-07-17Date
🚨
CISA Adds Three Known Exploited Vulnerabilities to CatalogCISA has added three new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-34102 Adobe Commerce and Magento Open Source Improper Restriction of XML External Entity Reference (XXE) Vulnerability CVE-2024-28995…
KEV
🚨
Introducing Full Content Inspection: The New Standard in Network Security, and Why it’s NecessaryNetwork security controls are no longer reliable or sufficient. They are easily evaded, prone to false positives, and feed a costly ecosystem of alert management and incident response. According to pen testing by Positive Technologies, an external attacker can breach an organizat…
KEV
πŸ›
Critical Apache HugeGraph Vulnerability Under Attack - Patch ASAP
πŸ›
The Potential Impact of the OpenSSH Vulnerabilities CVE-2024–6387 and CVE-2024-6409
πŸ›
APT exploits Windows zero-day to launch zombie IE attack
πŸ›
Apache HugeGraph Vulnerability Exploited in Wild
KEV
πŸ›
Void Banshee APT exploited "lingering Windows relic" in zero-day attacks
πŸ›
CVE-2024-38156 Microsoft Edge (Chromium-based) Spoofing Vulnerability
⚠️
Microsoft's Bug Reporting Criticized, Disney Hacked, and Kaspersky Exits US. Cyber Security Today Special Edition from Hashtag Trending
⚠️
Sometimes the cybersecurity tech industry is its own worst enemy
⚠️
Scattered Spider Adopts RansomHub and Qilin Ransomware for Cyber Attacks
⚠️
Kubernetes Exposed: Exploiting the Kubelet API
⚠️
Beware! of New Phishing Tactics Mimic as HR Attacking Employees
⚠️
Kaspersky to Quit US This Weekend
⚠️
Report: Nearly One in Three Software Development Professionals Unaware of Secure Practices
⚠️
WP Time Capsule Plugin Update Urged After Critical Security Flaw
⚠️
Cloudflare Reports that Almost 7% of All Internet Traffic Is Malicious
⚠️
Cisco SSM On-Prem bug lets hackers change any user's password
⚠️
Aqua Security Lays Off 10% of Workforce Amid CNAPP Upheaval
⚠️
EPSS - The Exploit Prediction Scoring System - Jay Jacobs, Wade Baker - BTS #34
⚠️
Vulnerability in Cisco Smart Software Manager lets attackers change any user password
πŸ“‹
Chrome 126 Updates Patch High-Severity Vulnerabilities
πŸ“‹
Firmware Update Hides Bluetooth Fingerprints
πŸ“’
JPCERT/CC Warns of MirrorFace Attacks Against Japanese Organizations
πŸ“’
CISA Announces Key Leadership Appointments in Cybersecurity and Stakeholder Engagement
πŸ“’
5 steps to automate user access reviews and simplify IT compliance
πŸ“’
Cisco security advisory (AV24-400)
πŸ“’
HPE security advisory (AV24-399)
πŸ“’
Google Chrome security advisory (AV24-402)
πŸ“’
Oracle security advisory – July 2024 quarterly rollup (AV24-401)
πŸ“’
CISA Releases Playbook for Infrastructure Resilience Planning
πŸ“’
Cisco security advisory (AV24-403)
πŸ“’
Cisco security advisory (AV24-404)
πŸ“’
CISA Appoints New Cybersecurity, Stakeholder Group Leaders
πŸ”₯
UnitedHealth Sticks to 2024 Outlook Despite Strong Quarter With Costs From Massive Cyberattack High
πŸ”₯
Rite Aid Says Hack Impacts 2.2M People as Ransomware Gang Threatens to Leak Data
πŸ”₯
Ransomware Leak Site Posts Jumped 20% in Q2
πŸ”₯
Change Healthcare's Breach Costs Could Reach $2.5 Billion
πŸ”₯
MNGI Digestive Health Data Breach Impacts 765,000 Individuals
πŸ”₯
Virtual Event Today: Cloud & Data Security Summit | 2024
πŸ”₯
FIN7 Group Advertises Security-Bypassing Tool on Dark Web Forums
πŸ”₯
Ransomware Attack Disrupts Bassett Furniture Manufacturing Facilities
πŸ”₯
Rite Aid breach exposes 2.2 million customer records
πŸ”₯
Yacht giant MarineMax data breach impacts 123,000 individuals
πŸ”₯
Yacht giant MarineMax data breach impacts over 123,000 people
πŸ”₯
HardBit ransomware – what you need to know
πŸ”₯
Volcano Demon Group Attacking Organizations With LukaLocker Ransomware
πŸ”₯
New AI System Shields Virtual Power Plants From Cyberattacks
πŸ”₯
UK ICO Reprimands London Hackney Council for 2020 Hack
πŸ”₯
UK Labour Introduces Cyber Security and Resilience Bill
πŸ”₯
Ransomware Continues To Pile On Costs For Critical Infrastructure Victims
πŸ”₯
New Ransomware Threat Group Calls Attack Victims to Ensure Payments
πŸ”₯
[NEW FREE TOOL]: Reveal Your Network's Hidden Weaknesses with KnowBe4's BreachSim Data Exfiltration Simulator
πŸ”₯
The State of Ransomware in Critical Infrastructure 2024
πŸ•΅οΈ
Who You Gonna Call? AndroxGh0st Busters! [Guest Diary], (Tue, Jul 16th)
πŸ•΅οΈ
NATO to Establish New Cyber Center in Belgium
πŸ•΅οΈ
ISC Stormcast For Wednesday, July 17th, 2024 https://isc.sans.edu/podcastdetail/9056, (Wed, Jul 17th)
πŸ•΅οΈ
GUEST ESSAY: Consumers, institutions continue to shoulder burden for making mobile banking secure
πŸ•΅οΈ
China-linked APT17 Targets Italian Companies with 9002 RAT Malware
πŸ•΅οΈ
ChatGPTriage: How can CISOs See and Control Employees’ AI Use?
πŸ•΅οΈ
Oracle Patches 240 Vulnerabilities With July 2024 CPU
πŸ•΅οΈ
Paris 2024 Olympics to Face Complex Cyber Threats
πŸ•΅οΈ
CEO Chris O'Malley on Why LogRhythm, Exabeam Opted to Merge
πŸ•΅οΈ
What are You Working on Wednesday
πŸ•΅οΈ
Interpol Arrests 300 People in a Global Crackdown on West African Crime Groups Across 5 Continents
πŸ•΅οΈ
Resonance Launches Harmony to Monitor and Detect Threats to Web2 and Web3 Apps
πŸ•΅οΈ
Pindrop Security Raises $100 Million to Expand Deepfake Detection Technology
πŸ•΅οΈ
Proud Diamond Sponsor at Black Hat USA
πŸ•΅οΈ
Over 400,000 Life360 user phone numbers leaked via unsecured API
πŸ•΅οΈ
North Korean Hackers Update BeaverTail Malware to Target MacOS Users
πŸ•΅οΈ
Atlassian Patches High-Severity Vulnerabilities in Bamboo, Confluence, Jira
πŸ•΅οΈ
Malvertising Campaign Impersonates Microsoft Teams
πŸ•΅οΈ
Notorious FIN7 hackers sell EDR killer to other threat actors
πŸ•΅οΈ
Inside Arctic Wolf's SecOps Growth Strategy From MDR to ITDR
πŸ•΅οΈ
Securing AI in the Cloud: Insights From Orca Security's CEO
πŸ•΅οΈ
Connect with Microsoft Security at Black Hat USA 2024​​
🌐
Fake AWS Packages Ship Command and Control Malware in JPEG Files
🌐
Hidden dangers of free VPN services | Kaspersky official blog
🌐
Iran Phishes Israeli Orgs With Custom BugSleep Backdoor
πŸŽ™οΈ
Smashing Security podcast #381: Trump shooting conspiracy, Squarespace account hijack, and the butt stops here
πŸ“‘
Beware of BadPack: One Weird Trick Being Used Against Android Devices
πŸ“‘
Well-Established Cybercriminal Ecosystem Blooms in Iraq
πŸ“‘
Baffle to offer tenant-level data encryption to AWS users
πŸ“‘
G2 Names Sophos a Leader for Endpoint Protection, EDR, XDR, Firewall, and MDR
πŸ“‘
Tether Freezes $29 Million of Cryptocurrency Connected To Cambodian Marketplace Accused of Fueling Scams
πŸ“‘
Navigating Insider Risks: Are your Employees Enabling External Threats?
πŸ“‘
Hacktivist Groups Target Romania Amid Geopolitical Tensions
πŸ“‘
β€œKonfety” Mobile Ad Fraud Campaign Found Using Unique Obfuscation Method
πŸ“‘
Deepfake-detecting firm Pindrop lands $100M loan to grow its offerings
πŸ“‘
Sophos Endpoint: Providing a smooth transition for Kaspersky customers
πŸ“‘
Atlassian Patches High Severity Vulns In Bamboo, Confluence, Jira
πŸ“‘
Rite Aid Says Hack Impacts 2.2 Million People
πŸ“‘
Social Engineering Defense - An Emerging Career
πŸ“‘
Exchange Online adds Inbound DANE with DNSSEC for security boost
πŸ“‘
Court's Web Tracker Ruling: What HIPAA Entities Should Know