95Articles
9Categories
2024-10-15Date
🚨
CISA Adds Three Known Exploited Vulnerabilities to CatalogCISA has added three new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-30088 Microsoft Windows Kernel TOCTOU Race Condition Vulnerability CVE-2024-9680 Mozilla Firefox Use-After-Free Vulnerability CVE-202…
KEV
🐛
Fortigate SSLVPN Vulnerability Exploited in the Wild
KEV
🐛
87,000+ Fortinet devices still open to attack
🐛
Angular-base64-update Demo Script Exploited (CVE-2024-42640), (Tue, Oct 15th)
🐛
CVE-2024-38139 Microsoft Dataverse Elevation of Privilege Vulnerability
🐛
CVE-2024-38204 Imagine Cup site Information Disclosure Vulnerability
🐛
CVE-2024-38190 Power Platform Information Disclosure Vulnerability
⚠️
WordPress Plugin Jetpack Patches Major Vulnerability Affecting 27 Million Sites
⚠️
10 most critical LLM vulnerabilities
⚠️
Governments fear election interference, but it’s an enterprise cybersecurity problem too
⚠️
Splunk Enterprise Vulnerabilities let Attackers Execute Remote Code
⚠️
Researchers Uncover Hijack Loader Malware Using Stolen Code-Signing Certificates
⚠️
Open Source Package Entry Points May Lead to Supply Chain Attacks
⚠️
Critical Vulnerability Patched in 101 Releases of WordPress Plugin Jetpack
⚠️
Command-jacking used to launch malicious code on open-source platforms
⚠️
Alleged Cisco data breach could affect Microsoft, Barclays, and SAP developer data
⚠️
The Rise of Zero-Day Vulnerabilities: Why Traditional Security Solutions Fall Short
⚠️
Splunk Enterprise Update Patches Remote Code Execution Vulnerabilities
⚠️
Iranian Cyberspies Exploiting Recent Windows Kernel Vuln
⚠️
Splunk Enterprise Update Patches Remote Code Execution Vulns
⚠️
Log4j Still Being Exploited Nearly 3 Years Later
⚠️
CISA Releases Two Industrial Control Systems Advisories
⚠️
New Malware Campaign Uses PureCrypter Loader to Deliver DarkVision RAT
⚠️
ErrorFather Hackers Attacking & Control Android Device Remotely
⚠️
GitHub Patches Critical Vulnerability in Enterprise Server
⚠️
Guidance: Framing Software Component Transparency: Establishing a Common Software Bill of Materials (SBOM)
⚠️
Safer with Google: Advancing Memory Safety
KEV
⚠️
CISA Warns Actively Exploited Vulnerabilities, Including Windows Kernel Flaw and Firefox Zero-Day
KEV
⚠️
Sri Lankan Police Arrest Over 200 Chinese Scammers
⚠️
Oracle Quarterly Critical Patches Issued October 15, 2024
📢
Staff Stories Spotlight Series: Cybersecurity Awareness Month 2024
📢
A Message to Election Officials from CISA Director Jen Easterly
📢
Dell security advisory (AV24-584)
📢
IBM security advisory (AV24-585)
📢
Ubuntu security advisory (AV24-586)
📢
CSO – neuer Web-Auftritt, noch bessere Information
📢
[Control systems] CISA ICS security advisories (AV24–587)
📢
Mozilla security advisory (AV24-588)
📢
Google Chrome security advisory (AV24-589)
📢
GitHub security advisory (AV24-590)
📢
Breach of Italian Prime Minister’s Bank Info Under Scrutiny
🔥
Canadian Quantum computing used in Chinese researcher's early advances to break military level encryption: Cyber Security Today for Tuesday, October 14, 2024
🔥
Cisco investigates breach after stolen data for sale on hacking forum
🔥
Hackers Allegedly Selling Data Stolen from Cisco
🔥
44% of U.S. Organizations Experienced One or More Ransomware Attacks in the Last Year
🔥
Pokémon Developer Game Freak Reportedly Hacked, Stolen Data on Unannounced Games as Well as Nintendo Switch 2 Codename Leaked Online
🔥
Why are we still confused about cloud security?
🔥
New Linux Variant of FASTCash Malware Targets Payment Switches in ATM Heists
🔥
Volkswagen Says IT Infrastructure Not Affected After Ransomware Gang Claims Data Theft
🔥
Bringing new theft protection features to Android users around the world
🔥
EDRSilencer red team tool used in attacks to bypass security
🔥
UMC Recovers EHR; Other Systems Offline 3 Weeks Post-Attack
🕵️
Chinese researchers break RSA encryption with a quantum computer
🕵️
New FASTCash malware Linux variant helps steal money from ATMs
🕵️
ISC Stormcast For Tuesday, October 15th, 2024 https://isc.sans.edu/podcastdetail/9180, (Tue, Oct 15th)
🕵️
Silent Threat: Red Team Tool EDRSilencer Disrupting Endpoint Security Solutions
🕵️
China Accuses U.S. of Fabricating Volt Typhoon to Hide Its Own Hacking Campaigns
🕵️
New CounterSEVeillance and TDXDown Attacks Target AMD and Intel TEEs
🕵️
More Details on Israel Sabotaging Hezbollah Pagers and Walkie-Talkies
🕵️
What Spending 3 Hours in IKEA Taught Me About Cybersecurity Awareness
🕵️
EDRSilencer: The Red Team Tool Turned Cybercriminal Weapon
🕵️
Splunk Enterprise Vulnerabilities let Attackers Execute Remote Code
🕵️
Organizations Slow to Protect Doors Against Hackers: Researcher
🕵️
KnowBe4 Named a Leader in the Fall 2024 G2 Grid Report for Security Awareness Training
KEV
🕵️
Radically Simplifying Cybersecurity
🕵️
CyberheistNews Vol 14 #42 [Heads Up] Majority of U.S. Execs Now Rank Cyber Threats as #1 Risk
🕵️
CISO Conversations: Julien Soriano (Box) and Chris Peake (Smartsheet)
🕵️
Budget Planning Guide 2025: Security And Risk - Jeff Pollard - BSW #368
🕵️
Setting the Tone at the Top as CISOs and C-Suite Remain at Odds - BSW #368
🕵️
Have you consider your team’s cognitive biases when selecting tools? - Dustin Sachs - CSP #196
🕵️
HORUS Protector Delivering AgentTesla, Remcos, Snake, NjRat Malware
🕵️
Perl & PHP Vulns, Fuzzing & Parsers, Protecting Multi-Hosted Tenants, Secure Design - ASW #303
🕵️
TrickMo Banking Trojan Can Now Capture Android PINs and Unlock Patterns
🕵️
Election Day is Close, the Threat of Cyber Disruption is Real
🕵️
Escalating cyber threats demand stronger global defense and cooperation
🕵️
Stego, uBlock, PPTP, Log4J, Command Jacking, Windows 10, Feet, Josh Marpet, and More. - SWN #422
🕵️
2025 Is the Year of AI PCs; Are Businesses Onboard?
🕵️
Cybercriminals Are Increasingly Helping Russia and China Target the US and Allies, Microsoft Says
🕵️
European Police Make Headway Against Darknet Drug Markets
🕵️
Netskope Purchases Dasera to Strengthen Cloud Data Security
🌐
Finland seizes servers of 'Sipultie' dark web drugs market
🎙️
The AI Fix #20: Elon’s androids, emotional support chickens, and an AI Fix super fan
📡
European cyber insurance startup Stoïk secures $27 million
📡
What to do if you receive a sextortion email | Kaspersky official blog
📡
New CounterSEVeillance And TDXDown Attacks Target AMD And Intel TEEs
📡
Ward Christensen, BBS Inventor And Architect Of Our Online Age, Dies At 78
📡
Pentagon Shares New Cybersecurity Rules For Gov't Contractors
📡
Over 200 malicious apps on Google Play downloaded millions of times
📡
New FIDO proposal lets you securely move passkeys across platforms
📡
Some Americans are still using Kaspersky’s antivirus despite U.S. government ban
📡
Attacking the Samsung Galaxy A* Boot Chain
📡
Amazon says 175 million customer now use passkeys to log in
📡
SimpliSafe’s new outdoor monitoring service combines AI with human agents
📡
Amazon says 175 million customers now use passkeys to log in
📡
Quishing attacks are targeting electric car owners: Here’s how to slam on the brakes