113Articles
10Categories
2024-10-01Date
🚨
CISA Adds Four Actively Exploited Vulnerabilities to KEV CatalogThe CISA has alerted to four newly exploited vulnerabilities in its KEV catalog. The vulnerabilities include critical flaws in D-Link and DrayTek Vigor routers, Motion Spell GPAC, and SAP Commerce Cloud.
KEV
🐛
CISA Warns of Four Vulnerabilities that Exploited Actively in the Wild
KEV
🐛
Multiple Vulnerabilities Discovered in PHP, Prompting Urgent Security Updates
🐛
Critical XSS Flaw Discovered in Filament Necessitates Urgent Update for Laravel Developers
🐛
PoC Exploit Shows Local Privilege Escalation Risk in Linux
🐛
Critical GiveWP Flaw Puts 100k WordPress Sites at Risk
🐛
Researcher Details RCE Flaw (CVE-2024-36435) in Supermicro BMC IPMI Firmware
🐛
KartLANPwn Flaw Exploits Mario Kart 8 Deluxe LAN Play Feature for RCE
⚠️
One year until Windows 10 ends: Here’s the security impact of not upgrading
⚠️
150: mobman 2
⚠️
9 types of phishing attacks and how to identify them
⚠️
DragonForce Ransomware Expands RaaS, Targets Firms Worldwide
⚠️
Old Vulnerability Rated 9.9 Impacts All GNU/Linux Systems, Researcher Claims
⚠️
Critical SolarWinds Flaw Exposes 827 Instances, PoC Exploit Unveiled
⚠️
UMC Health System Diverts Patients Following Ransomware Attack
⚠️
Rackspace internal monitoring web servers hit by zero-day
⚠️
Hacking ChatGPT by Planting False Memories into Its Data
⚠️
Dragos Boosts OT Defense with Network Perception Acquisition
⚠️
CISA Warns of Four Vulnerabilities that Exploited Actively in the Wild
⚠️
Will AI Middle Managers Be the Next Big Disruption?
⚠️
Organizations Warned of Exploited SAP, Gpac and D-Link Vulnerabilities
KEV
⚠️
Dragos Acquires Network Perception to Boost Visibility
⚠️
Spooky action: Phantom domains create hijackable hyperlinks
⚠️
Rackspace Internal Monitoring Web Servers Hit By Zero Day
⚠️
Ransomware Forces Hospital To Turn Away Ambulances
⚠️
Organizations Warned Of Exploited SAP, Gpac, And D-Link Vulnerabilities
⚠️
CISA Releases Two Industrial Control Systems Advisories
⚠️
What are your pet peeves when it comes to tool selection? - Timothy Ball - CSP #194
⚠️
Police arrest four suspects linked to LockBit ransomware gang
⚠️
More LockBit Hackers Arrested, Unmasked as Law Enforcement Seizes Servers
⚠️
Russia exploited Evil Corp relationship for NATO attacks
⚠️
LockBit and Evil Corp Targeted In Anti-Ransomware Crackdown
⚠️
Ransomware attack forces UMC Health System to divert some patients
⚠️
New Survey Shows 40% of Respondents Never Received Cybersecurity Training From Their Employer
⚠️
Rackspace monitoring data stolen in ScienceLogic zero-day attack
⚠️
Europe Begins Drafting AI Code of Practice
⚠️
Third Party Zero-Day Bug Exploited in Rackspace Systems
⚠️
Arc browser launches bug bounty program after fixing RCE bug
⚠️
ASD’s ACSC, CISA, FBI, NSA, and International Partners Release Guidance on Principles of OT Cybersecurity for Critical Infrastructure Organizations
⚠️
A Vulnerability in Zimbra Collaboration Could Allow for Remote Code Execution
📋
PLANET Technology Switches Face Multiple Vulnerabilities, Urgent Firmware Updates Advised
📢
Google Workspace Announced New Password Policies, What is Changing
📢
Data of 300k digiDirect customers leaked in alleged attack
📢
JPCERT Shares Windows Event Log Tips to Detect Ransomware Attacks
📢
Staff Stories Spotlight Series: Cybersecurity Awareness Month 2024
📢
CISA Kicks Off 21st Anniversary of Cybersecurity Awareness Month
📢
Dell security advisory (AV24-546)
📢
IBM security advisory (AV24-547)
📢
Ubuntu security advisory (AV24-548)
📢
CYBER [Control systems] CISA ICS security advisories (AV24-549)
📢
Red Hat security advisory (AV24-550)
📢
[Control systems] CISA ICS security advisories (AV24-549)
📢
OpenPrinting CUPS security advisory (AV24-551)
📢
Experts Warn CISA’s Threat Sharing is in a 'Death Spiral'
📢
Cybersecurity Awareness Month needs a radical overhaul – it needs legislation
🔥
U.K. Hacker Charged in $3.75 Million Insider Trading Scheme Using Hacked Executive Emails
🔥
Free Sniper Dz Phishing Tools Fuel 140,000+ Cyber Attacks Targeting User Credentials
🔥
Logpoint Strengthens SIEM by Acquiring Muninn AI-Powered NDR
🔥
Malicious Actors Use Infected PyPI Packages to Target Roblox Da Hood Game Cheaters
🔥
JPCERT shares Windows Event Log tips to detect ransomware attacks
🔥
North Korea Hackers Linked to Breach of German Missile Manufacturer
🔥
US reaches $31.5 million settlement with T-Mobile over data breaches
🔥
[Cybersecurity Awareness Month] Responding to Cyber Incidents the ‘Inside Man’ Way: Fiona's Approach
🔥
UK unmasks LockBit ransomware affiliate as high-ranking hacker in Russia state-backed cybercrime gang
🔥
BudTrader - 2,721,185 breached accounts
🔥
How the FBI and Mandiant caught a ‘serial hacker’ who tried to fake his own death
🔥
T-Mobile to Pay Millions to Settle With FCC Over Data Breaches
🔥
Evil Corp hit with new sanctions, BitPaymer ransomware charges
🔥
T-Mobile promises to try not to get hacked again
🔥
The Rise of Deepfake Scams: A Wake-Up Call After US Senator Becomes Latest Victim
🔥
Evil Corp Protected by High-Ranking FSB Official, Police Say
🔥
Evil Corp Protected by Ex-Senior FSB Official, Police Say
🔥
2 Calif. Medical Groups Split Citing Cyberattack Dispute
🕵️
ISC Stormcast For Tuesday, October 1st, 2024 https://isc.sans.edu/podcastdetail/9160, (Tue, Oct 1st)
🕵️
New Cryptojacking Attack Targets Docker API to Create Malicious Swarm Botnet
🕵️
Patchwork APT Group Unleashes Nexe Backdoor for Cyber Espionage
🕵️
Apono Raises $15.5 Million for Cloud Access Platform
🕵️
The Playstation Network is down in a global outage
🕵️
Western Digital My Cloud Devices Flaw Let Attackers Execute Arbitrary Code
🕵️
New Cryptojacking Attack Targets Docker API to Create Malicious Swarm Botnet
🕵️
Cracking the Cloud: The Persistent Threat of Credential-Based Attacks
🕵️
Microsoft Unveils Copilot Vision AI Tool, but Highlights Security After Recall Debacle
🕵️
AI-Powered Rhadamanthys Stealer Targets Crypto Wallets with Image Recognition
🕵️
Systems used by courts and governments across the US riddled with vulnerabilities
🕵️
Threat Actors Behind MFA Bypass Service ‘OTP Agency’ Plead Guilty to Fraud
🕵️
News alert: Introducing Mayhem Security — ForAllSecure unveils name change, fresh focus
🕵️
Cybersecurity Awareness Month: Securing our world—together
🕵️
New PyPI Malware Poses as Crypto Wallet Tools to Steal Private Keys
🕵️
Death Stars, Recall, Microsoft, Brocade, AI, Josh Marpet, and more... - SWN #418
🕵️
Jana Partners Increases Stake in Rapid7, Eyes Potential Sale
🕵️
Palo Alto Networks Prevents Data Loss at Enterprise Scale with NVIDIA
🌐
Sophisticated RAT Hides Behind P. Diddy Scandal Lures
🌐
Fake League of Legends Download Ads Spread Lumma Stealer
🌐
New Octo Android Malware Version Impersonates NordVPN, Google Chrome
🎙️
The AI Fix #18: ChatGPT’s false memories, and would an inner critic stop AI hallucinations?
📡
Phishing Attacks on Australia Disguised as Atlassian
📡
Rhadamanthys Stealer Adds Innovative AI Feature in Version 0.7.0
📡
Sophos announced as inaugural sponsor of The Hacking Games
📡
5 Actionable Steps to Prevent GenAI Data Leaks Without Fully Blocking AI Usage
📡
Eon emerges from stealth with $127M to bring a fresh approach to back up cloud infrastructure
📡
Logpoint Strengthens SIEM by Acquiring Muninn AI-Powered NDR
📡
Authorities Warn of Growing Iranian Spear Phishing Threat Against Journalists and Diplomats
📡
Cybersecurity Experts Praise Veto Of California's AI Safety Bill
📡
Systems Used By Courts And Governments Across The US Riddled By Vulnerabilities
📡
Cloud Security Firm Apono Raises $15.5 Million to Expand AI-Powered Access Management
📡
Hurricane Helene Aftermath - Cyber Security Awareness Month, (Tue, Oct 1st)
📡
Microsoft fixes Windows KB5043145 reboot loops, USB and Bluetooth issues
📡
Windows 11 24H2 now rolling out, here are the new features
📡
Download the Emerging Cybersecurity Issues Enterprise Spotlight
📡
The complete agenda for the Disrupt Stage at TechCrunch Disrupt 2024
📡
SophosAI at Virus Bulletin ’24: Using multimodal AI as a “sixth sense” for cyber defense
📡
Microsoft fixes Outlook email sending issue for users with many folders
📡
Why system resilience should mainly be the job of the OS, not just third-party applications