93Articles
9Categories
2024-09-16Date
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-43461 Microsoft Windows MSHTML Platform Spoofing Vulnerability CVE-2024-6670 Progress WhatsUp Gold SQL Injection Vulnerability These ty…
KEV
πŸ›
Top 10 ransomware groups to watch
πŸ›
CISA Urges Agencies to Upgrade or Remove End-of-Life Ivanti Appliance
πŸ›
Ivanti CSA Vulnerability Exploited in Attacks Days After DIsclosure
KEV
πŸ›
Windows Vulnerability Abused Braille β€œSpaces” in Zero-Day Attacks
πŸ›
Spring Framework Vulnerability Let Attackers obtain Any Files from the System
πŸ›
Exploit code released for critical Ivanti RCE flaw, patch now
⚠️
Cybercriminals Exploit HTTP Headers for Credential Theft via Large-Scale Phishing Attacks
⚠️
Crimson Palace Returns With New Hacking Tolls And Tactics
⚠️
Python Libraries Exploited for Malicious Intent
⚠️
SolarWinds Patches Critical Vulnerability in Access Rights Manager
⚠️
Cybercriminals Exploit HTTP Headers for Credential Theft via Large-Scale Phishing Attacks
⚠️
Patch management: A dull IT pain that won’t go away
⚠️
Microsoft Says Recent Windows Vulnerability Exploited as Zero-Day
KEV
⚠️
Medusa Ransomware Exploiting Fortinet Flaw For Sophisticated Ransomware Attacks
⚠️
Azure API Management Vulnerability Let Attackers Escalate Privileges
⚠️
Windows MSHTML Zero-Day Vulnerability Exploited In The Wild
KEV
⚠️
Google Fixes GCP Composer Flaw That Could've Led to Remote Code Execution
⚠️
D-Link fixes critical RCE, hardcoded password flaws in WiFi 6 routers
⚠️
Legacy Ivanti Cloud Service Appliance Being Exploited
⚠️
Microsoft summit plots end of kernel access for EDR security clients
⚠️
Ivanti Vulnerability Again Forces Emergency Patches
⚠️
CISA warns of Windows flaw used in infostealer malware attacks
⚠️
China Using Powerful Hacking Firms to Run Its Espionage War
⚠️
CloudImposer RCE Vulnerability Targets Google Cloud Platform
⚠️
Consolidating C-Suite Tech Roles as Security Budgets and Workforce Growth Flatline - BSW #364
πŸ“‹
Critical Vulnerabilities Impact Million of D-Link Routers, Patch Now!
πŸ“’
Irish Data Protection Regulator to Investigate Google AI
πŸ“’
Applications are Open for IoT Device Cyber Certifiers
πŸ“’
Master Your PCI DSS v4 Compliance with Innovative Smart Approvals
πŸ“’
North Korean Hackers Target Cryptocurrency Users on LinkedIn with RustDoor Malware
πŸ“’
FBI, CISA Warn of Fake Voter Data Hacking Claims
πŸ“’
FBI, CISA Warn Of Fake Voter Data Hacking Claims
πŸ“’
Entro Security Labs Releases Non-Human Identities Research Security Advisory
πŸ“’
Chrome switching to NIST-approved ML-KEM quantum encryption
πŸ“’
IBM security advisory (AV24-522)
πŸ“’
Ubuntu security advisory (AV24-521)
πŸ“’
[Control systems] CISA ICS security advisories (AV24-523)
πŸ“’
Dell security advisory (AV24-524)
πŸ“’
BEC Scams Have Caused $55 Billion in Losses Over the Past Ten Years
πŸ“’
CISA Releases Plan to Align Operational Cybersecurity Priorities for Federal Agencies
πŸ“’
New CISA Plan Aligns Federal Agencies in Cyber Defense
πŸ“’
Why Thoma Bravo Is Considering Taking SailPoint Public Again
πŸ”₯
Fortinet experiences another major breech with hacker claiming 440 GB of data stolen. Cyber Security Today for Monday, September 16, 2024
πŸ”₯
88,000 Impacted by Access Sports Data Breach Resulting From Ransomware Attack
πŸ”₯
Data Stolen in Ransomware Attack That Hit Seattle Airport
πŸ”₯
From Breach to Recovery: Designing an Identity-Focused Incident Response Playbook
πŸ”₯
Port of Seattle says August cyberattack was Rhysida ransomware
πŸ”₯
Ransomware Group Leaks Data Allegedly Stolen From Kawasaki Motors
πŸ”₯
Ransomware Group Leaks Data Stolen From Kawasaki Motors
πŸ”₯
23andMe Settles Class Action Breach Lawsuit For $30 Million
πŸ”₯
Clinical Considerations When Recovering From Ransomware
πŸ”₯
New Ransomware Threat Group, RansomHub, is so Effective, the NSA is Already Warning You About Them
πŸ”₯
Breach-Weary Snowflake Moves to MFA, 14-Character Passwords
πŸ”₯
Solving the Cybersecurity Data Problem - Padraic O'Reilly - BSW #364
πŸ”₯
Instituto Nacional de Deportes de Chile - 319,613 breached accounts
πŸ•΅οΈ
ISC Stormcast For Monday, September 16th, 2024 https://isc.sans.edu/podcastdetail/9138, (Mon, Sep 16th)
πŸ•΅οΈ
Mastercard Acquires Global Threat Intelligence Firm Recorded Future
πŸ•΅οΈ
Apple Drops Spyware Case Against NSO Group, Citing Risk of Threat Intelligence Exposure
πŸ•΅οΈ
Cyber Threats Intensify in Mexico; Espionage and Extortion Risks Grow
πŸ•΅οΈ
Hackers Target Selenium Grid Servers for Proxyjacking and Cryptomining Attacks
πŸ•΅οΈ
Mentorship Monday - Discussions for career and learning!
πŸ•΅οΈ
[4-Minute Survey] Share Your Thoughts on AI in InfoSec With Me?
πŸ•΅οΈ
Authorized Push Payment Fraud Responsible for Over Half of U.K. Frauds and Scams
πŸ•΅οΈ
SEC-T 2024
πŸ•΅οΈ
Microsoft starts developing tools to prevent another global IT outage
πŸ•΅οΈ
EasyDMARC Lands $20M for Email Security Authentication Tech
πŸ•΅οΈ
News alert: Entro Security Labs report reveals pervasive exposures in β€˜Non-Human Identities’
πŸ•΅οΈ
More US Sanctions Against Predator Spyware Maker Intellexa
πŸ•΅οΈ
SecurityWeek to Host 2024 Attack Surface Management Summit on Wednesday
πŸ•΅οΈ
US Sanctions Intellexa Executives as Surveillance Spyware Crackdown Expands
πŸ•΅οΈ
Apple Patches Major Security Flaws with iOS 18 Refresh
πŸ•΅οΈ
US Indicts Chinese National for Phishing for NASA Tech
πŸ•΅οΈ
CyberRiskTV Live Coverage from InfoSec World 2024 - Day 2
πŸ•΅οΈ
CyberRiskTV Live Coverage from InfoSec World 2024 - Day 1
🌐
1.3 Million Android-Based TV Boxes Backdoored
🌐
U.S. government expands sanctions against spyware maker Intellexa
🌐
US cracks down on spyware vendor Intellexa with more sanctions
πŸ“‘
Managing PE Files With Overlays, (Mon, Sep 16th)
πŸ“‘
Industry Moves for the week of September 16, 2024 - SecurityWeek
πŸ“‘
ColorTokens Buys Identity Security Provider PureID
πŸ“‘
WordPress to Require Two-Factor Authentication for Plugin Developers
πŸ“‘
Aembit Raises $25M to Tackle Nonhuman Identity Security Challenges
πŸ“‘
Largest Crypto Exchange in Indonesia Suffers $22 Million Theft
πŸ“‘
TikTok Is Getting Its Day In Court
πŸ“‘
The Ultimate Security Commitment – What’s Next?
πŸ“‘
Is Your Confidential Data Truly Protected? 😳
πŸ“‘
Microsoft rolls out Office LTSC 2024 for Windows and Mac
πŸ“‘
Kaspersky AI Technology Research Center | Kaspersky official blog
πŸ“‘
Sophos Firewall v21: Let’s Encrypt certificates
πŸ“‘
Microsoft fixes bug crashing Microsoft 365 apps when typing
πŸ“‘
EMEA Webinar | Secure Your Applications: Learn How to Prevent AI-Generated Code Risk
πŸ“‘
AI security bubble already springing leaks