81Articles
8Categories
2024-09-09Date
🚨
CISA Adds Three Known Exploited Vulnerabilities to CatalogCISA has added three new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2016-3714 ImageMagick Improper Input Validation Vulnerability CVE-2017-1000253 Linux Kernel PIE Stack Buffer Corruption Vulnerability CVE-…
KEV
🐛
Apache OFBiz patches new critical remote code execution flaw
KEV
🐛
Updating secure boot is crucial to keeping systems secure and working properly
🐛
IBM webMethods Integration Server Vulnerabilities Exposes Systems to Arbitrary Command Execution
🐛
Red Hat Issues Critical Patch for Pulpcore Authentication Bypass Flaw (CVE-2024-7923)
🐛
Critical Flaw in IBM webMethods Integration Demand Immediate Action
🐛
Progress Software Issues Patch for Vulnerability in LoadMaster and MT Hypervisor
🐛
Critical GeoServer Flaw Enabling Global Hack Campaigns
🐛
Critical SonicWall Vulnerability Possibly Exploited in Ransomware Attacks
🐛
HAProxy Vulnerability CVE-2024-45506 Under Active Exploit: Urgent Patching Required
🐛
Critical Kibana Flaws Expose Systems to Arbitrary Code Execution
🐛
Akira Ransomware Actively Exploiting SonicWall firewall RCE Vulnerability
⚠️
5.9 terabytes of sensitive medical data leaked: Cyber Security Today for Monday, September 9th, 2024
⚠️
Young Gamers Under Attack, Here is the List of Games Targeted
⚠️
Absolute Purchases Syxsense to Tackle Cyber Vulnerabilities
⚠️
SonicWall SSLVPN Access Control Flaw is Now Exploited in Akira Ransomware Attacks
⚠️
Australia Threatens to Force Companies to Break Encryption
⚠️
Protecting Against Business Email Compromise (BEC): A Comprehensive Guide
⚠️
Chinese Hackers Exploit Visual Studio Code in Southeast Asian Cyberattacks
⚠️
How to defend against brute force and password spray attacks
⚠️
Payment gateway data breach affects 1.7 million credit card owners
⚠️
Patch Alert Issued for Veeam Backup & Replication Software
⚠️
Meta fixes easily bypassed WhatsApp ‘View Once’ privacy feature
⚠️
Progress Software Fixes Critical LoadMaster Vulnerability
⚠️
US Prepares to Gather AI Foundational Model Developer Info
⚠️
Critical SonicWall SSLVPN bug exploited in ransomware attacks
📢
What’s next after the CISO role?
📢
Feds Indicted Two Alleged Administrators of WWH Club Dark Web Marketplace
📢
[Control systems] CISA ICS security advisories (AV24-500)
📢
Ubuntu security advisory (AV24-501)
📢
CISA Releases Election Security Focused Checklists for Both Cybersecurity and Physical Security
📢
Dell security advisory (AV24-503)
📢
Red Hat security advisory (AV24-502)
📢
CISA Director Jen Easterly Remarks at the 39th Annual National Conference in Detroit
📢
IBM security advisory (AV24-505)
📢
Progress security advisory (AV24-504)
📢
Cybersecurity and the Business - Theresa Lanowitz - BSW #363
🔥
TIDRONE Espionage Group Targets Taiwan Drone Makers in Cyber Campaign
🔥
Thousands of Avis car rental customers had personal data stolen in cyberattack
🔥
New RAMBO Attack Allows Air-Gapped Data Theft via RAM Radio Signals
🔥
300,000 Impacted by Data Breach at Car Rental Firm Avis
🔥
New RAMBO Attack Uses RAM Radio Signals to Steal Data from Air-Gapped Networks
🔥
Highline Public Schools closes schools following cyberattack
🔥
Acadian Ambulance Notifying Nearly 3 Million of Data Theft
🔥
Chinese hackers use new data theft malware in govt attacks
🔥
300K Victims Compromised in Avis Car Rental Breach
🕵️
ISC Stormcast For Monday, September 9th, 2024 https://isc.sans.edu/podcastdetail/9130, (Mon, Sep 9th)
🕵️
U.S. Offers $10 Million for Info on Russian Cadet Blizzard Hackers Behind Major Attacks
🕵️
Unmasking PackXOR: The FIN7 Packer Exposed
🕵️
Predator Spyware Resurfaces With Fresh Infrastructure
🕵️
One Million US Kaspersky Customers Transferred to Pango’s UltraAV
🕵️
Wireshark 4.4's IP Address Functions, (Mon, Sep 9th)
🕵️
Two Indicted in US for Running Dark Web Marketplaces Offering Stolen Information
🕵️
Blind Eagle Targets Colombian Insurance Sector with Customized Quasar RAT
🕵️
TIDRONE APT targets drone manufacturers in Taiwan
🕵️
German Cyber Agency Investigating APT28 Phishing Campaign
🕵️
Google Pushes Rust in Legacy Firmware to Tackle Memory Safety Flaws
🕵️
Hackers Target Taiwan UAV, Military Industries
🕵️
FBI Report Says Cryptocurrency Scams Surged in 2023
🕵️
Election-Themed Scams Are on the Rise
🕵️
Use of Malicious Links Surges by 133% in Q1, Setting the Tone for the First Half of 2024
🕵️
C-Suite & Boardroom Blind Spots While Aligning Cybersecurity Strategy with Business - BSW #363
🕵️
Darktrace CEO Swap: Gustafsson Steps Down; Popelka Steps Up
🕵️
Predator spyware operation is back with a new infrastructure
🕵️
New RAMBO Attack Uses RAM Radio Signals to Steal Data from Air-Gapped Networks
🌐
Earth Preta Evolves its Attacks with New Malware and Strategies
🌐
New Android SpyAgent Malware Uses OCR to Steal Crypto Wallet Recovery Keys
🌐
New RAMBO Attack Steals Data Using RAM in Air-Gapped Computers
🌐
Predator Spyware Resurfaces With Fresh Infrastructure
🌐
Quad7 botnet targets more SOHO and VPN routers, media servers
📡
Industry Moves for the week of September 9, 2024 - SecurityWeek
📡
Feds Warn Health Sector to Patch Apache Tomcat Flaws
📡
Wing Security SaaS Pulse: Continuous Security & Actionable Insights — For Free
📡
LummaC2 Stealer and Malicious Chrome Extension Wreak Havoc
📡
Webinar: How to Protect Your Company from GenAI Data Leakage Without Losing It’s Productivity Benefits
📡
Sextortion Scam Now Use Your “Cheating” Spouse’s Name as a Lure
📡
One More Tool Will Do It? Reflecting on the CrowdStrike Fallout
📡
COLDRIVER Crooks Take Pro Democracy NGOs For A Phishy Ride
📡
Cisco Merch Shoppers Stung In Magecart Attack
📡
New RAMBO Attack Allows Air-Gapped Data Theft Via RAM Radio Signals
📡
Bug lets anyone bypass WhatsApp’s ‘View Once’ privacy feature