99Articles
8Categories
2024-07-23Date
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2012-4792 Microsoft Internet Explorer Use-After-Free Vulnerability CVE-2024-39891 Twilio Authy Information Disclosure Vulnerability These ty…
KEV
🐛
A CVE in the universal Turing machine from 1967, that doesn't matter
🐛
New Exploit Variation Against D-Link NAS Devices (CVE-2024-3273), (Tue, Jul 23rd)
🐛
CVE-2024-38176 GroupMe Elevation of Privilege Vulnerability
🐛
CVE-2024-38164 GroupMe Elevation of Privilege Vulnerability
⚠️
Wiz walks away from Google’s $23B acquisition offer: Read the CEO’s note to employees
⚠️
Threat Actors Taking Advantage of CrowdStrike BSOD Bug to Deliver Malware
⚠️
Cursed tapes: Exploiting the EvilVideo vulnerability on Telegram for Android
⚠️
NHIs may be your biggest — and most neglected — security hole
⚠️
Chinese APT group Daggerfly revamps malware toolkit with new backdoors
⚠️
Early IT takeaways from the CrowdStrike outage
⚠️
From RA Group to RA World: Evolution of a Ransomware Group
⚠️
Law Enforcement Disrupts DDoS-for-Hire Service DigitalStress
⚠️
Magento Sites Targeted with Sneaky Credit Card Skimmer via Swap Files
⚠️
Meta Given Deadline to Address E.U. Concerns Over 'Pay or Consent' Model
⚠️
FrostyGoop Malware Used to Shut down Heat in Ukraine Attack
⚠️
Telegram Zero-Day Enabled Malware Delivery
⚠️
Hackers Abusing Google Cloud For Phishing
⚠️
Telegram Zero-Day Enabled Malware Delivery
⚠️
Evolving from Security to Trust, more than Just Compliance - Mike Towers - CSP #184
⚠️
DDoS-for-hire site DigitalStress taken down by police, suspected owner arrested
⚠️
CISA Releases Four Industrial Control Systems Advisories
⚠️
Learn Modern SOC and D&R Practices Using Autonomic Security Operations (ASO) Principles
⚠️
Phishing Campaigns Abuse Cloud Platforms to Target Latin America
⚠️
Where Generative AI Can Actually Help Security (And Where It Doesn't) - Allie Mellen, ... - ASW #292
⚠️
ICS malware FrostyGoop disrupted heating in Ukraine, remains threat to OT worldwide
📢
Strengthen Your Cybersecurity: Understanding the NIS 2 Directive
📢
HPE advisory (AV24-415)
📢
Statement from CISA Director Easterly on Leadership Changes at CISA
📢
CrowdStrike failure: What you need to know
📢
What Biden Dropping Out Could Mean for Federal Cyber Policy
📢
Red Hat security advisory (AV24-416)
🔥
Play Ransomware’s Linux Variant Attacking VMware ESXi Servers
🔥
Hackers shut down heating in Ukrainian city with malware, researchers say
🔥
Ransomware Takedowns Leave Criminals Scrambling for Stability
🔥
Two Russian Nationals Charged for Cyber Attacks against U.S. Critical Infrastructure
🔥
Popular Ukrainian Telegram Channels Hacked to Spread Russian Propaganda
🔥
New ICS Malware 'FrostyGoop' Targeting Critical Infrastructure
🔥
CyberheistNews Vol 14 #30 The SEC Fines a Public Company 2 Million+ For Ransomware Negligence
🔥
VMware ESXi Servers Targeted By New Linux Ransomware Variant
🔥
Ransomware Attack Shuts Down Three Dozen Los Angeles Courts
🔥
British teen arrested in connection with MGM Resorts ransomware attack
🔥
Verizon to pay $16 million in TracFone data breach settlement
🔥
How a North Korean Fake IT Worker Tried to Infiltrate Us
🔥
FrostyGoop malware attack cut off heat in Ukraine during winter
🔥
Crypto Data Breach Continues to Fuel Phishing Scams Years Later
🔥
BreachForums v1 hacking forum data leak exposes members’ info
🔥
DeFi exchange dYdX v3 website hacked in DNS hijack attack
🔥
Proactive Network Security: Lessons From CrowdStrike Outage
🔥
Building cyber-resilience: Lessons learned from the CrowdStrike incident
🕵️
ISC Stormcast For Tuesday, July 23rd, 2024 https://isc.sans.edu/podcastdetail/9064, (Tue, Jul 23rd)
🕵️
NCA Shut’s Down the Most Popular “digitalstress” DDoS-for-hire Service
🕵️
Wiz to Pursue IPO as It Walks Away From $23 Billion Google Deal
🕵️
FrostyGoop ICS Malware Left Ukrainian City’s Residents Without Heating
🕵️
Ukrainian Institutions Targeted Using HATVIBE and CHERRYSPY Malware
🕵️
Wiz shocks the tech world as it rejects Google’s $23 billion bid
🕵️
Chinese Cyberespionage Group Expands Malware Arsenal
🕵️
2017 ODNI Memo on Kaspersky Labs
🕵️
Google abandons plans to drop third-party cookies in Chrome
🕵️
The Patchwork group has updated its arsenal, launching attacks for the first time using Brute Ratel
🕵️
ViperSoftX Malware Poses As eBooks On Torrents
🕵️
CrowdStrike Speeding Up Remediation of Systems Hit by Blue Screen of Death
🕵️
What to Know About the Kids Online Safety Act and Its Chances of Passing
🕵️
The AI Fix #8: Emergence, a rancid donkey, and the world’s funniest joke
🕵️
Beware Of Dating Apps Exposing Your Personal And Location Details To Cyber Criminals
🕵️
Chinese Hackers Target Taiwan and US NGO with MgBot Malware
🕵️
Patience & Self Awareness in a Fast Paced World with Jason Albuquerque
🕵️
Closing CISO-CEO Communication Gap Requires a Common Business Language - Sumedh Thakar - BSW #357
🕵️
Risk Management Insights: What CEOs and Boards Really Need - Jeff Recor - BSW #357
🕵️
Google Will Keep Third-Party Cookies in Chrome
🕵️
CrowdStrike CEO Called to Testify to Congress Over Cybersecurity Firm’s Role in Global Tech Outage
🕵️
Strengthening Cybersecurity in Healthcare
🕵️
Transforming Knowledge Management With Generative AI
🕵️
Is Your Bank Really Calling? How to Protect Yourself from Financial Impersonation Fraud
🕵️
Killer Robots, Crowdstrike, Southwest, Play, FrostyGoop, Josh Marpet and More - SWN #400
🕵️
Mexico's Largest ERP Provider ClickBalance Exposes 769 Million Records
🕵️
SAPwned, Squarespace Domain Hijacks, AIs Fixing Code, Infosec Investments - ASW #292
🕵️
Canadian Startup Protexxa Attracts $10 Million Series A Financing
🕵️
CrowdStrike Cleanup: Vast Majority of Systems Restored
🕵️
Report: HHS Needs to Beef Up Cloud Security and Skills
🕵️
Hackers Froze Ukrainian Heating Systems in Winter
🕵️
Hamster Kombat’s 250 million players targeted in malware attacks
🕵️
Chinese hackers deploy new Macma macOS backdoor version
🌐
Fake CrowdStrike repair manual pushes new infostealer malware
📡
Google Abandons Plan to Phase Out Third-Party Cookies in Chrome
📡
UK: NCA Infiltrates DDoS-for-Hire Site as Suspected Controller Arrested in Northern Ireland
📡
How to Securely Onboard New Employees Without Sharing Temporary Passwords
📡
Sophos Germany Team Saddles Up for a Volunteering Day at Horse Therapy Farm
📡
Why CrowdStrike-Style Chaos Is Here To Stay
📡
Google Won't Kill Third Party Cookies After All
📡
Global Cops Power Down World's Most Prolific DDoS Dealership
📡
Modern WAF Capabilities: Distinguishing Beneficial Bots from Malicious Automation
📡
QR Codes: Convenience or Cyberthreat?
📡
CrowdStrike global outage: Sophos guidance
📡
Sophos Firewall v20 MR2 is now available
📡
Phish-Friendly Domain Registry “.top” Put on Notice
📡
Impact of Microsoft Copilot+ Recall on corporate cybersecurity
📡
Windows 10 KB5040525 fixes WDAC issues causing app failures, memory leak
📡
The tap-estry of threats targeting Hamster Kombat players