96Articles
10Categories
2024-10-31Date
🚨
CISA’s guides can help you demand – and receive – secure software from the get-goYour team is in charge of identifying and procuring new software for your firm, so you check out the options in the marketplace, read reviews, and test the software. But how do you know it’s secure? Not a day goes by that there isn’t an incident reported that reminds us that we’r…
KEV
🐛
LiteSpeed Cache Plugin Vulnerability Poses Significant Risk to WordPress Websites
🐛
Take action now to plug Windows Themes vulnerability, says expert
🐛
Chromium: CVE-2024-10488 Use after free in WebRTC
🐛
Chromium: CVE-2024-10487: Out of bounds write in Dawn
⚠️
CyberPanel Vulnerabilities Exploited in Ransomware Attacks Shortly After Disclosure
⚠️
OT security becoming a mainstream concern
⚠️
The rise of the vCISO: From niche to necessity?
⚠️
Digital Detritus: The engine of Pacific Rim and a call to the industry for action
⚠️
Yahoo Discloses NetIQ iManager Flaws Allowing Remote Code Execution
⚠️
Fortinet launches its first standalone endpoint DLP product
⚠️
Windows Themes 0-Day Bug Exposes Users To NTLM Credential Theft
⚠️
Yahoo Discloses NetIQ iManager Flaws Allowing Remote Code Execution
⚠️
5 wichtige Handlungsempfehlungen für CISOs
⚠️
LottieFiles Issues Warning About Compromised "lottie-player" npm Package
⚠️
CISA Releases Four Industrial Control Systems Advisories
⚠️
qBittorrent fixes flaw exposing users to MitM attacks for 14 years
⚠️
Sophos Used Custom Implants to Surveil Chinese Hackers Targeting Firewall Zero-Days
⚠️
New LightSpy Spyware Version Targets iPhones with Increased Surveillance Tactics
⚠️
Fraudsters exploit US General Election fever, FBI warns
⚠️
Privilege escalation through TPM Sniffing when BitLocker PIN is enabled
⚠️
14-Year Vulnerability in qBittorrent Leaves Millions Exposed to RCE Attacks
⚠️
Suspected pro-Ukraine cyberattack knocks out parking enforcement in Russian city.
⚠️
Cryptohack Roundup: US Claws Back Stolen Crypto
⚠️
EDR Is Dead, EDR Is Not Dead - PSW #849
⚠️
ISMG Editors: Law Enforcement's Ransomware Crackdown
⚠️
Hackers target critical zero-day vulnerability in PTZ cameras
⚠️
Elections vs. Corporate Security: Why It's Not the Same
⚠️
Sophos Discloses Half Decade of Sustained Chinese Attack
⚠️
Foreign Threat Actor Conducting Large-Scale Spear-Phishing Campaign with RDP Attachments
⚠️
Sophos reveals 5-year battle with Chinese hackers attacking network devices
⚠️
Chinese threat actor Storm-0940 uses credentials from password spray attacks from a covert network
⚠️
​​7 cybersecurity trends and tips for small and medium businesses to stay protected
⚠️
Breach Roundup: S&P Says Poor Remediation A Material Risk
📋
Microsoft wants $30 if you want to delay Windows 11 switch
📢
Google Chrome security advisory (AV24-625)
📢
Roger Grimes on Prioritizing Cybersecurity Advice
📢
​​Microsoft now a Leader in three major analyst reports for SIEM
🔥
Enterprise Identity Threat Report 2024: Unveiling Hidden Threats to Corporate Identities
🔥
Mystic Valley Elder Services Data Breach Impacts 87,000 People
🔥
North Korean govt hackers linked to Play ransomware attack
🔥
2024 looks set to be another record-breaking year for ransomware — and it’s likely going to get worse
🔥
Pacific Rim: Learning to eat soup with a knife
🔥
Large Peruvian bank warns of data theft after dark web post emerges.
🔥
North Korean Nation State Threat Actor Using Play Ransomware
🔥
Over a thousand online shops hacked to show fake product listings
🔥
LottieFiles hacked in supply chain attack to steal users’ crypto
🔥
Medusa Ransomware Hack of Pathology Lab Affects 1.8 Million
🔥
Microsoft: Chinese hackers use Quad7 botnet to steal credentials
🔥
Stalker Online - 1,385,472 breached accounts
🔥
Month in security with Tony Anscombe – October 2024 edition
🕵️
October 2024 Activity with Username chenzilong, (Thu, Oct 31st)
🕵️
ISC Stormcast For Thursday, October 31st, 2024 https://isc.sans.edu/podcastdetail/9204, (Thu, Oct 31st)
🕵️
Prosecutors Seek a 17-Year Prison Term for Pentagon Secrets Leaker Jack Teixeira
🕵️
API Security Matters: The Risks of Turning a Blind Eye
🕵️
Designing a Future-focused Cybersecurity Investment Strategy
🕵️
Hackers steal 15,000 cloud credentials from exposed Git config files
🕵️
Honeypot Surprise: Researchers Catch Attackers Exposing 15,000 Stolen Credentials in S3 Bucket
🕵️
Animation Tool Lottie Player Hit by Supply Chain Attack, Causes $723K Bitcoin Theft.
🕵️
Quishing: A growing threat hiding in plain sight
🕵️
Pacific Rim: Inside the Counter-Offensive—The TTPs Used to Neutralize China-Based Threats
🕵️
Banking on AI to Defend the Financial Services Sector
🕵️
BSides PDX, Portland
🕵️
Threat actors use copyright infringement phishing lure to deploy infostealers.
🕵️
Tracking World Leaders Using Strava
🕵️
Phish ’n’ Ships Fakes Online Shops to Steal Money and Credit Card Information.
🕵️
Every Doggo Has Its Day: Unleashing the Xiū Gǒu Phishing Kit.
🕵️
Detectify Eyes AppSec Expansion After Insight Partners Buy
🕵️
Shadow IT and Security Debt - Dave Lewis - PSW #849
🕵️
Cyble Sensors Detect New Attacks On LightSpeed, GutenKit WordPress Plugins.
🕵️
Shadow IT and Security Debt - Dave Lewis - PSW #849
🕵️
[PDF] New Tradecraft of Iranian Cyber Group Aria Sepehr Ayandehsazan aka Emennet Pasargad.
🕵️
Cybercriminals Are Stealing Cookies to Bypass Multifactor Authentication.
🕵️
Zenity Gets $38M Series B for Agentic AI Security Expansion
🕵️
Mac Malware Threat: Hackers Seek Cryptocurrency Holders
🌐
LottieFiles hit in npm supply chain attack targeting users' crypto
🌐
Noma is building tools to spot security issues with AI apps
🌐
FakeCall Malware Menaces Android Devices
🌐
LottieFiles Supply Chain Attack Exposes Users To Wallet Drainer
🌐
Backdoor in coding test on GitHub | Kaspersky official blog
🎙️
Smashing Security podcast #391: The secret Strava service, deepfakes, and crocodiles
📡
Pacific Rim timeline: Information for defenders from a braid of interlocking attack campaigns
📡
From the frontlines: Our CISO’s view of Pacific Rim
📡
Pacific Rim: What’s it to you?
📡
Chinese Attackers Accessed Canadian Government Networks For Five Years
📡
Prosecutors Seek A 17-Year Prison Term For Pentagon Secrets Leaker Jack Teixeira
📡
Cynet delivers 426% ROI in Forrester Total Economic Impact Study
📡
Microsoft fixes Windows 10 bug causing apps to stop working
📡
$15,000 Just for Internet?! Rural America’s Fiber Problem
📡
Windows 11 Task Manager says no apps are active after preview update
📡
LiteSpeed Cache WordPress plugin bug lets hackers get admin access
📡
OneDrive and Teams—It’s ALL Just SharePoint? 😲
📡
The Only Thing Constant In Life Is... Not AppSec. What's Next in 2025
📡
Windows 11 Task Manager bug shows wrong number of running processes
📡
Microsoft delays Windows Recall again, now by December
📡
AI Pulse: Election Deepfakes, Disasters, Scams & more