110Articles
8Categories
2024-07-18Date
🚨
CISA Adds OSGeo GeoServer GeoTools Bug to its Known Exploited Vulnerabilities CatalogThe US Cybersecurity and Infrastructure Security Agency (CISA) issued a directive to federal agencies to fix a critical vulnerability in GeoServer, a popular open-source server, that is actively being exploited.
KEV
🐛
Cisco Warns of Critical Flaw Affecting On-Prem Smart Software Manager
🐛
Cisco SSM On-Prem Bug Lets Hackers Change Any User’s Password
🐛
Chromium: CVE-2024-6779 Out of bounds memory access in V8
🐛
Chromium: CVE-2024-6773 Type Confusion in V8
🐛
Chromium: CVE-2024-6772 Inappropriate implementation in V8
🐛
Chromium: CVE-2024-6775 Use after free in Media Stream
🐛
Chromium: CVE-2024-6776 Use after free in Audio
🐛
Chromium: CVE-2024-6778 Race in DevTools
🐛
Chromium: CVE-2024-6777 Use after free in Navigation
🐛
Chromium: CVE-2024-6774 Use after free in Screen Capture
⚠️
Beware the tools that can bring risk to a Windows network
⚠️
Attackers abuse URL protection services to hide phishing links in emails
⚠️
Report: Half of SMEs Unprepared for Cyber-Threats
⚠️
Cybercriminals Exploit Attack on Donald Trump for Crypto Scams
⚠️
New TE.0 HTTP Request Smuggling Flaw Impacts Google Cloud Websites
⚠️
SAP AI Core Vulnerabilities Expose Customer Data to Cyber Attacks
⚠️
TAG-100: New Threat Actor Uses Open-Source Tools for Widespread Attacks
⚠️
Ivanti Issues Hotfix for High-Severity Endpoint Manager Vulnerability
⚠️
Hackers Exploiting Legitimate RMM Tools With BugSleep Malware
⚠️
SubSnipe: Open-Source Tool for Finding Subdomains Vulnerable to Takeover
⚠️
Trump’s assassination attempt exploited in new crypto doubling scams
⚠️
Critical Cisco bug lets hackers add root users on SEG devices
⚠️
Pentagon Leaker Jack Teixeira to Face Military Court-Martial, Air Force Says
⚠️
Port Shadow Attack Allows VPN Traffic Interception, Redirection
⚠️
Power9, Talos-II PC, the most open source modern PC you can get
⚠️
TAG-100 Actors Using Open-Source Tools To Attack Gov & Private Orgs
⚠️
Octo Tempest Know for Attacking VMWare ESXi Servers Added RansomHub & Qilin to Its Arsenal
⚠️
Recent Adobe Commerce Vulnerability Exploited In Wild
KEV
⚠️
Vulnerability In Cisco Smart Software Manager Lets Attacker Change Any User Password
⚠️
CISA Releases Three Industrial Control Systems Advisories
⚠️
Oracle Releases Critical Patch Update Advisory for July 2024
⚠️
Recent Adobe Commerce Vulnerability Exploited in Wild
KEV
⚠️
Ivanti Releases Security Updates for Endpoint Manager
⚠️
SolarWinds fixes 8 critical bugs in access rights audit software
⚠️
Cisco Releases Security Updates for Multiple Products
⚠️
From Email to Human Behavior: Abnormal Security's Evolution
⚠️
Vulnerability Chains - PSW #835
⚠️
3D Printing For Hackers - David Johnson - PSW #835
⚠️
SAP security holes raise questions about the rush to AI
⚠️
Oracle Quarterly Critical Patches Issued July 16, 2024
⚠️
Google Cloud Security Threat Horizons Report #10 Is Out!
⚠️
Cryptohack Roundup: $230M WazirX Exploit in India
⚠️
Researcher finds flaw in a16z website that exposed some company data
📢
UK to Introduce Watered-Down Version of Mandatory Reporting for Ransomware Attacks
📢
Mitel security advisory (AV24-405)
📢
SolarWinds security advisory (AV24-406)
📢
Announcing OpenAI ChatGPT Enterprise Compliance Integration
📢
ServiceNow security advisory (AV24-407)
📢
Ivanti security advisory (AV24-408)
📢
OpenAI Rolls Out Compliance API and Integrations for ChatGPT Enterprise
📢
Chile Leads Latin America With New Cybersecurity Governance
🔥
Scattered Spider Chooses RansomHub, Qilin for Latest Attacks
🔥
India’s WazirX confirms security breach following a $230M ‘suspicious transfer’
🔥
Mysterious Chinese Hacking Group ‘GhostEmperor’ Spotted for First Time in Two Years
🔥
Ransomware Costs at Critical Infrastructure Organizations Soar
🔥
MarineMax Notifying 123,000 of Data Breach Following Ransomware Attack
🔥
UnitedHealth’s Cyberattack Response Costs to Surpass $2.3 Billion This Year
🔥
Transatlantic Cable podcast episode 356 | Kaspersky official blog
🔥
MarineMax Notifying 123,000 Of Data Breach
🔥
FIN7 Is Peddling EDR-Nerfing Malware To Ransomware Operators
🔥
Operation Spincaster Targets Crypto Pig-Butchering Scams
🔥
Using Threat Intelligence to Predict Potential Ransomware Attacks
🔥
Breach Roundup: North Korean Hackers Target macOS Users
🔥
Cyber Threats Targeting the 2024 Paris Olympics
🔥
Change Healthcare Ransomware Attack May Cost Nearly $2.5 Billion
🔥
7 in 10 Organizations Experienced a Business Email Compromise Attack in the Last 12 Months
🕵️
ISC Stormcast For Thursday, July 18th, 2024 https://isc.sans.edu/podcastdetail/9058, (Thu, Jul 18th)
🕵️
Chinese APT Targets Italian Government Agencies and Companies Using 9002 RAT
🕵️
Threat group FIN7 adapts with new tactics and tools, researchers say
🕵️
Rising Tides: Alyssa Miller on ‘Do Better, be Better’ and ‘See Past the Technology’ to Advance Cybersecurity
🕵️
Cisco Patches Critical Vulnerabilities in Secure Email Gateway, SSM
🕵️
Okta Announces SaaS Startup Competition
🕵️
North Korean Hackers Update BeaverTail Malware to Target MacOS Users
🕵️
Ctera Raises $80 Million From PSG Equity
🕵️
MacOS Users Beware Of Weaponized Meeting App From North Korean Hackers
🕵️
[Dasharo Coreboot] Verified Boot and secure updates - How to do them securely and openly?
🕵️
SAP AI Core Vulnerabilities Allowed Service Takeover, Customer Data Access
🕵️
Gen AI Spending Slows as Businesses Exercise Caution
🕵️
Criminal Gang Physically Assaulting People for Their Cryptocurrency
🕵️
What is Emotional Intelligence? Understanding Diverse Learning Styles with Jessica Hoffman!
🕵️
Microsoft-Signed Chinese Adware Opens the Door to Kernel Privileges
🕵️
Chinese Hacking Group APT41 Infiltrates Global Shipping and Tech Sectors, Mandiant Warns
🕵️
Cyber Fail: Attack of the Zombie APIs!
🕵️
[Dasharo Coreboot] Intel's HBFA-FL fuzzer for UEFI CI-CD fuzzing
🕵️
How did the FBI access the trump rally shooters phone?
🕵️
DOD Testing Generative AI Tools to Enhance Contracting
🕵️
Judge Dismisses Most SEC Fraud Claims Against SolarWinds
🌐
Intimate image abuse – Kaspersky new survey indicates alarming trends | Kaspersky official blog
🌐
Alert: HotPage Adware Disguised as Ad Blocker Installs Malicious Kernel Driver
🌐
Malware Scammers Gearing Up For 2024 Summer Olympics
🌐
Revolver Rabbit gang registers 500,000 domains for malware campaigns
📡
Israel’s startup scene shows reslience despite nine months of war
📡
Meta Halts AI Use in Brazil Following Data Protection Authority's Ban
📡
Global Police Swoop on Black Axe Cybercrime Syndicate
📡
Coast Guard Battles Cyberthreats Amid Industry Resistance
📡
Most GitHub Actions Workflows are Insecure in Some Way
📡
Weak Credentials Behind Nearly Half of All Cloud-Based Attacks, Research Finds
📡
Russia-linked FIN7 Hackers Sell Their Security Evasion Tool to Other Groups on Darknet
📡
Automated Threats Pose Increasing Risk to the Travel Industry
📡
Microsoft: Windows 11 23H2 now available for all eligible devices
📡
AppSec Webinar: How to Turn Developers into Security Champions
📡
Hackers could create traffic jams thanks to flaw in traffic light controller, researcher says
📡
Pentagon Leaker Jack Teixeira To Face Military Court-Martial
📡
Firms Skip Security Reviews of Updates About Half the Time
📡
Microsoft fixes bug blocking Windows 11 Photos from starting
📡
USPS shared customer postal addresses with Meta, LinkedIn and Snap
📡
Canadian Common Criteria Program Instructions
📡
Top 'Privacy by Design' Considerations for Medical Devices
📡
HotPage: Story of a signed, vulnerable, ad-injecting driver