96Articles
8Categories
2024-10-23Date
🚨
CISA Warns Recent Microsoft SharePoint RCE Flaw Exploited in AttacksCISA has added a recent Microsoft SharePoint Server remote code execution vulnerability to the KEV catalog. The post CISA Warns Recent Microsoft SharePoint RCE Flaw Exploited in Attacks appeared first on SecurityWeek .
KEV
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation , as confirmed by Fortinet. CVE-2024-47575 Fortinet FortiManager Missing Authentication Vulnerability These types of vulnerabilities are frequent a…
KEV
🐛
Red Hat NetworkManager Flaw Allows Hackers to Gain Root Access
🐛
CISA Warns of Active Exploitation of Microsoft SharePoint Vulnerability (CVE-2024-38094)
KEV
🐛
Fortinet warns of new critical FortiManager flaw used in zero-day attacks
🐛
Lazarus hackers used fake DeFi game to exploit Google Chrome zero-day
🐛
CVE-2024-0132 NVIDIA: CVE-2024-0132 Container Toolkit 1.16.1 and Earlier Time-of-check Time-of Use Vulnerability
🐛
CVE-2024-43577 Microsoft Edge (Chromium-based) Spoofing Vulnerability
🐛
VMware patches security vulnerability twice
⚠️
Four firms charged, fined over handling of SolarWinds hack disclosures
⚠️
Mallox Ransomware Vulnerability Lets Victims Decrypt Files
⚠️
Security priorities emphasize CISO role on the rise
⚠️
CISA proposes new security requirements for businesses exposed to cyber espionage
KEV
⚠️
Hacker Advertises "Top Secret US Space Force (USSF) Military Technology Archive"
⚠️
Samsung Zero-Day Vuln Under Active Exploit, Google Warns
⚠️
CISA Warns Recent Microsoft SharePoint RCE Flaw Exploited in Attacks
⚠️
Mallox Ransomware Vulnerability Let Victims Decrypt Files
⚠️
FortiGate admins report active exploitation 0-day. Vendor isn’t talking.
⚠️
VMware fixes bad patch for critical vCenter Server RCE flaw
⚠️
IcePeony Hackers Exploiting Public Web Servers To Inject Webshells
⚠️
Socket Raises $40 Million for Supply Chain Security Tech
⚠️
Hackers exploit 52 zero-days on the first day of Pwn2Own Ireland
⚠️
FortiGate Admins Report Active Exploitation 0-Day. Vendor Isn't Talking.
⚠️
News alert: INE Security shares cyber hygiene guidance for small- and medium-sized businesses
⚠️
3 crucial considerations for your security awareness and training program
⚠️
New Grandoreiro Banking Malware Variants Emerge with Advanced Tactics to Evade Detection
⚠️
New Research: 140% Increase in Callback Phishing
⚠️
Fortinet Confirms Zero-Day Exploit Targeting FortiManager Systems
⚠️
Fortinet Discloses Actively Exploited Zero-Day
KEV
⚠️
Embargo Ransomware Disables Security Defenses
⚠️
Applying a ‘three-box solution’ to identity security strategies
⚠️
The rise of the machines and the growing AI identity attack surface
⚠️
A Vulnerability in Fortinet FortiManager Could Allow for Remote Code Execution
📢
HPE security advisory (AV24-605)
📢
CISA, DOJ Propose Rules for Protecting Personal Data Against Foreign Adversaries
📢
Staff Stories Spotlight Series: Cybersecurity Awareness Month 2024
📢
Google Chrome security advisory (AV24-606)
📢
AI Industry Coalition Seeks to Codify US Safety Institute
📢
[Control systems] ABB security advisory (AV24-607)
📢
Cisco security advisory (AV24-609)
📢
Fortinet security advisory (AV24-608)
🔥
Ransomware Gangs Use LockBit's Fame to Intimidate Victims in Latest Attacks
🔥
Threat Actors Allegedly Selling Database of 1,000 NHS Email Accounts
🔥
Sophos übernimmt Secureworks
🔥
Grayscale Investments Data Breach Exposes 693K User Records Reportedly Affected
🔥
Deutsche Unternehmen stecken immer mehr Geld in IT-Security
🔥
Unmasking Prometei: A Deep Dive Into Our MXDR Findings
🔥
Tricky CAPTCHA Caught Dropping Lumma Stealer Malware
🔥
NotLockBit Ransomware Can Target macOS Devices
🔥
Avast Releases Free Decryptor for Mallox Ransomware
🔥
Permiso State of Identity Security 2024: A Shake-up in Identity Security Is Looming Large
🔥
Avast Releases Free Decryptor For Mallox Ransomware
🔥
Ransomware Gang Attack Tactics Have Shifted
🔥
Smashing Security podcast #390: When security firms get hacked, and your new North Korean remote worker
🔥
Embargo ransomware: Rock’n’Rust
🕵️
ISC Stormcast For Wednesday, October 23rd, 2024 https://isc.sans.edu/podcastdetail/9192, (Wed, Oct 23rd)
🕵️
User-Experience-Irrwege: 5 Fehler, die Ihre Sicherheit gefährden
🕵️
Tor Browser 14.0 Released With New Android Circuit Options
🕵️
White Hat Hackers Earn $500,000 on First Day of Pwn2Own Ireland 2024
🕵️
Massive data leak hits Mexican healthcare sector with over 5 million at risk
🕵️
Microsoft blocks Windows 11 24H2 update for some PCs following bug onslaught
🕵️
IBM Boosts Guardium Platform to Address Shadow AI, Quantum Cryptography
🕵️
The Global Surveillance Free-for-All in Mobile Ad Data
🕵️
Latrodectus Malware Increasingly Used by Cybercriminals
🕵️
SIGA Launches OT Cybersecurity Suite for CISOs
🕵️
AI hallucinations can pose a risk to your cybersecurity
🕵️
Researchers Reveal 'Deceptive Delight' Method to Jailbreak AI Models
🕵️
Democratising Cybersecurity
🕵️
Reality Defender Banks $33M to Tackle AI-Generated Deepfakes
🕵️
Meta Tests Facial Recognition to Curb Deepfake Scams
🕵️
Google SynthID Adding Invisible Watermarks to AI-Generated Content
🕵️
Has the time come for integrated network and security platforms?
🕵️
Are Automatic License Plate Scanners Constitutional?
🕵️
Cloud Defender Stream.Security Raises $30M, Eyes US Growth
🕵️
White House Reviewing Updates to HIPAA Security Rule
🕵️
SIEM: Shakeup in Event Management - What's Happening in the SIEM market today? - Seth ... - ESW #377
🕵️
Risky Business #767 – SEC fines Check Point, Mimecast, Avaya and Unisys over hacks
🌐
Think You’re Secure? 49% of Enterprises Underestimate SaaS Risks
🌐
Russia Hit By DDoS During BRICS Summit
📡
Researchers Reveal 'Deceptive Delight' Method to Jailbreak AI Models
📡
Addressing the cybersecurity skills shortage in SMBs
📡
ID card selfie: pros and cons | Kaspersky official blog
📡
Engaging with Security Researchers: Embracing a “See Something, Say Something” Culture
📡
Mobile devices and business travellers (ITSAP.00.087)
📡
Everybody Loves Bash Scripts. Including Attackers., (Wed, Oct 23rd)
📡
White Hat Hackers Earn $500,000 On First Day Of Pwn2Own Ireland 2024
📡
Millions At Risk From Hardcoded Creds In Popular iOS And Android Apps
📡
SophosAI team presents three papers on AI applied to cybersecurity at CAMLIS
📡
Google to let businesses create curated Chrome Web Stores for extensions
📡
Wiz hopes to hit $1B in ARR in 2025 before an IPO, after turning down Google’s $23B
📡
Congratulations to the Top MSRC 2024 Q3 Security Researchers!
📡
WhatsApp now encrypts contact databases for privacy-preserving synching
📡
Panel Discussion | Unsolved Problems in Application Security
📡
Why Vetting AI Vendor Security Is Critical in Healthcare
📡
Windows 11 KB5044380 preview update lets you remap the Copilot key
📡
How to Thrive in a Distributed Team