89Articles
9Categories
2024-10-10Date
🚨
CISA Added Fortinet & Ivanti Vulnerabilities that Exploited in the WildThe Cybersecurity and Infrastructure Security Agency (CISA) has recently updated its Known Exploited Vulnerabilities Catalog, adding critical vulnerabilities from Fortinet and Ivanti. These vulnerabilities are actively exploited in the wild, posing significant risks to organizati…
KEV
🚨
CISA Adds Fresh Ivanti Vuln, Critical Fortinet Bug To Hall Of Shame
🐛
Firefox Zero-Day Under Attack: Update Your Browser Immediately
🐛
Hartkodierte Zugangsdaten in Solarwinds-Software
🐛
CISA Warns of Critical Fortinet Flaw as Palo Alto and Cisco Issue Urgent Security Patches
KEV
🐛
Multiple VMware NSX Vulnerabilities Let Attackers Gain Root Access
🐛
Hackers Exploiting Zero-day Flaw in Qualcomm Chips to Attack Android Users
🐛
Experts Warn of Critical Unpatched Vulnerability in Linear eMerge E3 Systems
🐛
Mozilla Warns Of Firefox Zero-Day Actively Exploited In Cyber Attacks
KEV
🐛
Chromium: CVE-2024-9603 Type Confusion in V8
🐛
Chromium: CVE-2024-9602 Type Confusion in V8
⚠️
Cybersecurity bill could make ransomware payment reporting mandatory
⚠️
Encryption backdoor debates rage across the planet, promising a difficult 2025 for CISOs
⚠️
What’s old is new again: AI is bringing XSS vulnerabilities back to the spotlight
⚠️
Top 6 IDS/IPS tools — plus 4 open-source alternatives
⚠️
Cyber insurance explained: Costs, terms, how to know it’s right for your business
⚠️
Cybercriminals Use Unicode to Hide Mongolian Skimmer in E-Commerce Platforms
⚠️
Star Health Insurance CISO sold customer data, hacker claims
⚠️
Foxit PDF Reader Vulnerability Let Attackers Execute Arbitary Code
⚠️
6 Simple Steps to Eliminate SOC Analyst Burnout
⚠️
Risk, reward and reality: Has enterprise perception of the public cloud changed?
⚠️
SpyCloud Embeds Identity Analytics in Cybercrime Investigations Solution to Accelerate Insider and Supply Chain Risk Analysis & Threat Actor Attribution
⚠️
Firefox 131 Update Patches Exploited Zero-Day Vulnerability
⚠️
Siemens Device PIN Susceptible To Remote Brute Force In Older Model
⚠️
Best Practices to Configure BIG-IP LTM Systems to Encrypt HTTP Persistence Cookies
⚠️
SpyCloud Embeds Identity Analytics in Cybercrime Investigations Solution to Accelerate Insider and Supply Chain Risk Analysis & Threat Actor Attribution
⚠️
Microsoft Outlook bug blocks email logins, causes app crashes
⚠️
CISA Releases Twenty-One Industrial Control Systems Advisories
⚠️
The Code of Honor: Embracing Ethics in Cybersecurity - Ed Skoudis - PSW #846
⚠️
Using Chrome's accessibility APIs to find security bugs
⚠️
Fidelity Investments says data breach affects over 77,000 people
⚠️
A Vulnerability in Mozilla Firefox Could Allow for Arbitrary Code Execution
⚠️
Attackers are using QR codes sneakily crafted in ASCII and blob URLs in phishing emails
⚠️
Hackerangriff auf Automobilzulieferer Optibelt
⚠️
Was ist Cyber Threat Intelligence?
⚠️
Ransomware-Tool killt EDR-Software
⚠️
Akira and Fog ransomware now exploit critical Veeam RCE flaw
⚠️
European Council Adopts Cyber Resilience Act
📋
GitLab warns of critical arbitrary branch pipeline execution flaw
📋
The Saga Continues - PSW #846
📋
Breach Roundup: Gobal Signal Exchange to Curb Online Fraud
📢
CISA Warns of Critical Fortinet Flaw as Palo Alto and Cisco Issue Urgent Security Patches
📢
Relyance lands $32M to help companies comply with data regulations
📢
Join Ars in DC for infrastructure, cocktails, and spycraft on October 29
📢
GitLab security advisory (AV24-579)
📢
SonicWall security advisory (AV24-580)
📢
5 Tipps für mehr Sicherheit im KI-Zeitalter
📢
Relyance AI Raises $32M to Take on AI Governance Challenges
📢
SSA Struggling to Modernize Fraud Prevention Tech, GAO Warns
📢
Mitsubishi Chemical wird erpresst
📢
Operation Cronos Is Disrupting LockBit, Says UK Official
🔥
The Internet Archive slammed by DDoS attack and data breach
🔥
Marriott Pays $52M to Settle US States' Breach Litigation
🔥
Internet Archive hacked, data breach impacts 31 million users
🔥
Fidelity says data breach exposed personal data of 77,000 customers
🔥
The Top 10 Countries Most Targeted by Cyberattacks
🔥
Juniper extends security platform to streamline threat detection, incident response
🔥
Ransomware attack leaks social security numbers of over 230,000 Comcast customers
🔥
Abusix and Red Sift Form New Partnership, Leveraging Automation to Mitigate Cyber Attacks
🔥
Internet Archive Data Breach Exposes 31 Million Accounts
🔥
Underground ransomware claims attack on Casio, leaks stolen data
🔥
Marriott settles with FTC, to pay $52 million over data breaches
🔥
Cyberangriff bei Dick’s Sporting Goods
🔥
New York State Enacts New Cyber Requirements for Hospitals
🔥
Neue Ransomware zielt auf ESXi-Server
🕵️
ISC Stormcast For Thursday, October 10th, 2024 https://isc.sans.edu/podcastdetail/9174, (Thu, Oct 10th)
🕵️
GPTHoney: A new class of honeypot [Guest Diary], (Thu, Oct 10th)
🕵️
Crowdstrike wehrt sich gegen Action1-Gerüchte
🕵️
EDR und XDR bleiben wichtig
🕵️
Knox Native macht Samsung-Geräte Behörden-sicher
🕵️
Wireshark 4.4.1 Released, What’s new!
🕵️
Deebot Robot Vacuums Are Using Photos and Audio to Train Their AI
🕵️
Hackers Hide Remcos RAT in GitHub Repository Comments
🕵️
Multiple VMware NSX Vulnerabilities Let Attackers Gain Root Access
🕵️
How CKW Is Building a Smart Energy Grid
🕵️
Cryptohack Roundup: Australia Nabs Crypto in Ghost Takedown
🕵️
US, UK warn of Russian APT29 hackers targeting Zimbra, TeamCity servers
🕵️
Microsoft Sway für Quishing-Angriffe missbraucht
🕵️
Datenleck bei IT-Dienstleister Sybit
🕵️
Wertachkliniken von Hackern lahmgelegt
🕵️
News alert: SpyCloud accelerates supply chain risk analysis with new ‘IDLink’ correlation capability
🕵️
​​Cyber Signals Issue 8 | Education under siege: How cybercriminals target our schools​​
🌐
OpenAI Blocks 20 Global Malicious Campaigns Using AI for Cybercrime and Disinformation
📡
US Charges 3 Companies, 15 People With Cryptocurrency Fraud
📡
Doctor Web Refutes Hackers' Claim Of User Data Theft
📡
Internet Archive Leaks User Info And Succumbs To DDoS
📡
Bypass Apache Superset restrictions to perform SQL injections
📡
Ukraine arrests rogue VPN operator providing access to Runet
📡
Telekopye transitions to targeting tourists via hotel booking scam