102Articles
8Categories
2024-11-04Date
🚨
CISA Adds Two Known Exploited Vulnerabilities to CatalogCISA has added two new vulnerabilities to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-8957 PTZOptics PT30X-SDI/NDI Cameras OS Command Injection Vulnerability CVE-2024-8956  PTZOptics PT30X-SDI/NDI Cameras Authenticat…
KEV
🐛
A new SharePoint vulnerability is already being exploited
KEV
⚠️
5 Top Cybersecurity-Zertifizierungen: So pushen Sie Ihre CISO-Karriere
⚠️
Wie Business Integration die Cybersicherheit stärkt
⚠️
Securing Your SaaS Application Security
⚠️
Costly and struggling: the challenges of legacy SIEM solutions
KEV
⚠️
New FakeCall Malware Variant Hijacks Android Devices for Fraudulent Banking Calls
⚠️
MediaTek High Severity Vulnerabilities Let Attackers Escalate Privileges
⚠️
Cisco says DevHub site leak won’t enable future breaches
⚠️
Okta Verify Agent for Windows Flaw Let Attackers Steal User Passwords
⚠️
Enterprises look to AI to bridge cyber skills gap — but will still fall short
KEV
⚠️
Cyber Threats That Could Impact the Retail Industry This Holiday Season (and What to Do About It)
⚠️
Google’s AI Tool Big Sleep Finds Zero-Day Vulnerability in SQLite Database Engine
⚠️
A Massive Hacking Toolkit From “You Dun” Threat Group Developed To Lauch Massive Cyber Attack
⚠️
Embargo Ransomware Actors Abuses Safe Mode To Disable Security Solutions
⚠️
Microsoft SharePoint RCE bug exploited to breach corporate network
⚠️
German Police Disrupt DDoS-for-Hire Platform dstat[.]cc; Suspects Arrested
⚠️
New Windows Zero-Day Vulnerability Let Attackers Steal Credentials From Victim’s Machine
⚠️
Google Says Its AI Found SQLite Vulnerability That Fuzzing Missed
⚠️
As scams targeting the U.S. 2024 presidential election flood the darknet, here’s how to shore up cybersecurity defenses
⚠️
Critical Flaws in Ollama AI Framework Could Enable DoS, Model Theft, and Poisoning
⚠️
Today's Hybrid Work Era: Integrated Approach & Implementing Identity - ESW #382
⚠️
Recall, Russia, Win 10, Phish n Ships, Midnight Blizzard, Rob Allen, and More... - SWN #427
⚠️
Custom "Pygmy Goat" malware used in Sophos Firewall hack on govt network
⚠️
Celebrating 5 Million Learners: The Evolution of KnowBe4's Compliance Plus
⚠️
Your Salesforce Data, Your Responsibility: Best Practices for Data Protection
⚠️
Police Doxing of Criminals Raising Ransomware-Attack Stakes
⚠️
Bypassing ChatGPT Safety Guardrails, One Emoji at a Time
⚠️
ABB Smart Building Software Flaws Invite In Hackers
⚠️
Nokia investigates breach after hacker claims to steal source code
📢
Hackers Downgrading Remote Desktop Security Setting For Unauthorized Access
📢
Live Webinar | Cyber Threats in Financial Services: An Adversary-Focused Strategy Beyond Compliance
📢
Your KnowBe4 Compliance Plus Fresh Content Updates from October 2024
📢
CISA Director Easterly Seeks To Quell Concerns About Election Security
📢
IBM security advisory (AV24-628)
📢
Dell security advisory (AV24-627)
📢
Ubuntu security advisory (AV24-629)
📢
[Control systems] CISA ICS security advisories (AV24-631)
📢
Red Hat security advisory (AV24-630)
📢
Android security advisory – November 2024 Monthly Rollup (AV24-632)
📢
CISA Director Sees No Threats Impacting Election Outcome
📢
Joint Statement from CISA and EAC in Support of State and Local Election Officials
📢
Joint ODNI, FBI, and CISA Statement
🔥
Z-lib - 9,737,374 breached accounts
🔥
China is an increasing threat in Cyber Security: Cyber Security Today for Monday, November 4, 2024
🔥
(PDF neutering) Not all PDFs are documents; some are apps! Insurance company sent me a form to sign as a PDF with JavaScript. Is it a tracker?
🔥
City of Columbus Ransomware Attack Impacts 500,000 People
🔥
Russia, Iran, And China Influence U.S. Elections, Microsoft Warns
🔥
Interlock Ransomware Puts FreeBSD Servers in Critical Danger Worldwide
🔥
Chinese Hackers Attacking Microsoft Customers With Sophisticated Password Spray Attacks
🔥
210,000 Impacted by Saint Xavier University Data Breach
🔥
City of Columbus: Data of 500,000 stolen in July ransomware attack
🔥
Columbus says ransomware gang stole personal data of 500,000 Ohio residents
🔥
Cyberattack disrupts classes at Irish technology university.
🔥
Grenzen zwischen Cyberspionage und Cybercrime verschwimmen
🔥
Thousands Of Hacked TP-Link Routers Used In Yearslong Account Takeovers
🔥
Mickey Mouse Operation Hacked By Former Employee
🔥
210,000 Impacted By Saint Xavier University Data Breach
🔥
Schneider Electric confirms dev platform breach after hacker steals data
🔥
Attack Hits Small Rural Georgia Hospital, Nursing Home
🔥
Western Sydney University Suffers Third Major Breach in 2024
🕵️
ISC Stormcast For Monday, November 4th, 2024 https://isc.sans.edu/podcastdetail/9206, (Mon, Nov 4th)
🕵️
Threat Actors Allegedly Claiming Leak of Dell Partner Portal Data
🕵️
Businesses Worldwide Targeted in Large-Scale ChatGPT Phishing Campaign
🕵️
Siemens and Rockwell Tackle Industrial Cybersecurity, but Face Customer Hesitation
🕵️
Russian Hackers Attacking Ukraine Military With Malware Via Telegram
🕵️
Singapore’s Government Directed ISPs To Block Access To Ten Inauthentic Websites
🕵️
Sophos Versus the Chinese Hackers
🕵️
SYS01 InfoStealer Malware Attacking Meta Business Page To Steal Logins
🕵️
FBI Seeking Information on Chinese Hackers Targeting Sophos Firewalls
🕵️
Massive Midnight Blizzard Phishing Attack Using Weaponized RDP Files
🕵️
Sophisticated Phishing Attack Targeting Ukraine Military Sectors
🕵️
Evasive Panda Attacking Cloud Services To Steal Data Using New Toolkit
🕵️
Ermittler zerschlagen Drogen-Marktplatz und DDoS-Dienst
🕵️
US Sentences Nigerian to 26 Years in Prison for Stealing Millions Through Phishing
🕵️
Supply Chain Attack Using Ethereum Smart Contracts to Distribute Multi-Platform Malware.
🕵️
Attackers Abuse DocuSign API to Send Authentic-Looking Invoices At Scale.
🕵️
Mentorship Monday - Discussions for career and learning!
🕵️
Hackers Claim Access to Nokia Internal Data, Selling for $20,000.
🕵️
What if securing buildings was as easy as your smartphone? - Blaine Frederick - ESW #382
🕵️
Funding, AI controls your PC, Cyberstarts stops Sunrise, public cyber goes private - ESW #382
🕵️
If Social Engineering Is 70% - 90% of Attacks, Why Aren’t We Acting Like It?
🕵️
Marcus Hutchins' Video Is WILD – And Here’s Why You Need to Watch It
🕵️
DocuSign's Envelopes API abused to send realistic fake invoices
🕵️
SEC Moves to Get Foreign Testimony in SolarWinds Fraud Case
🕵️
UK Banks Urged to Gird for CrowdStrike-Like Outage
🕵️
How Microsoft Defender for Office 365 innovated to address QR code phishing attacks
🕵️
Top Financial, Cyber Experts Gathering for ISMG's NYC Summit
🌐
Windows infected with backdoored Linux VMs in new phishing attacks
🌐
SOC Around the Clock: World Tour Survey Findings
📡
Analyzing an Encrypted Phishing PDF, (Mon, Nov 4th)
📡
Industry Moves for the week of November 4, 2024 - SecurityWeek
📡
Microsoft confirms Windows Server 2025 blue screen, install issues
📡
THN Recap: Top Cybersecurity Threats, Tools, and Practices (Oct 28 - Nov 03)
📡
Solving the painful password problem with better policies
📡
Why The Long Name? Okta Discloses Auth Bypass Bug Affecting 52-Character Usernames
📡
Hackers Achieve The Inevitable: They Got Nintendo's Alarmo To Play Doom
📡
US Sentences Nigerian Phisher To 26 Years In Prison
📡
The Math Behind the Cyber Resilience Stack: A Three-Layered Defense Strategy
📡
Windows Server 2025 released—here are the new features
📡
Expert Insights: Securing Your Cloud Data Across the Attack Timeline
📡
Defense-in-Depth: Not Deep Enough