71Articles
9Categories
2024-12-19Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-12356  BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) Command Injection Vulnerability These types of vulnerabili…
KEV
🐛
Fortinet Warns of Critical FortiWLM Flaw That Could Lead to Admin Access Exploits
🐛
Chromium: CVE-2024-12692 Type Confusion in V8
🐛
Chromium: CVE-2024-12695 Out of bounds write in V8
🐛
Chromium: CVE-2024-12693 Out of bounds memory access in V8
🐛
Chromium: CVE-2024-12694 Use after free in Compositing
⚠️
Multiple Vulnerabilities in Sophos Firewall Could Allow for Remote Code Execution
⚠️
Web Hacking Service ‘Araneida’ Tied to Turkish IT Firm
⚠️
UAC-0125 Abuses Cloudflare Workers to Distribute Malware Disguised as Army+ App
⚠️
NIST’s International Cybersecurity and Privacy Engagement Update – New Translations
⚠️
Command Injection Exploit For PHPUnit before 4.8.28 and 5.x before 5.6.3 [Guest Diary], (Tue, Dec 17th)
⚠️
CISA Releases Eight Industrial Control Systems Advisories
⚠️
Malicious Supply Chain Attacking Moving From npm Community To VSCode Marketplace
⚠️
Young Living Essential Oils - 1,128,951 breached accounts
⚠️
From reactive to proactive: Redefining incident response with unified, cloud-native XDR
⚠️
US eyes ban on TP-Link routers amid cybersecurity concerns
⚠️
So entgiften Sie Ihre Sicherheitskultur
⚠️
Top security solutions being piloted today — and how to do it right
⚠️
Die 10 häufigsten LLM-Schwachstellen
⚠️
Sehr geehrter CEO,
⚠️
European authorities say AI can use personal data without consent for training
⚠️
Black Friday chaos: The return of Gozi malware
⚠️
When Public Payphones Become Smart Phones - Inbar Raz - PSW #855
⚠️
I’m Lovin’ It: Exploiting McDonald’s APIs to hijack deliveries and order food for a penny
⚠️
BeyondTrust Patches Critical Vulnerability Discovered During Security Incident Probe
📢
From Naturalization to Cyber Advocacy: CISA Region 3’s Chris Ramos Inspires New U.S. Citizens
📢
CISA Releases Mobile Security Guidance After Chinese Telecom Hacking
📢
Juniper Warns of Mirai Botnet Targeting SSR Devices with Default Passwords
📢
CISA Mandates Cloud Security for Federal Agencies by 2025 Under Binding Directive 25-01
📢
BitView - 63,127 breached accounts
📢
CISA Releases Draft of National Cyber Incident Response Plan
📢
CISA Releases Best Practice Guidance for Mobile Communications
📢
New Microsoft guidance for the CISA Zero Trust Maturity Model
🔥
US government urges high-ranking officials to lock down mobile devices following telecom breaches
🔥
Smashing Security podcast #398: Fake CAPTCHAs, Harmageddon, and Krispy Kreme
🔥
LW ROUNDTABLE:  Predictive analytics, full-stack visualization to solidify cyber defenses in 2025
🔥
Python-Based NodeStealer Version Targets Facebook Ads Manager
🔥
schenkYOU - 237,349 breached accounts
🔥
2024 roundup: Top data breach stories and industry trends
🔥
The Number One Threat - PSW #855
🔥
Hackers LOVE When You Skip This Security Step!
🔥
BADBOX Botnet Hacked 74,000 Android Devices With Customizable Remote Codes
🕵️
Mailbox Insecurity
🕵️
How to Implement Impactful Security Benchmarks for Software Development Teams
🕵️
Ukrainian Raccoon Infostealer Operator Sentenced to Prison in US
🕵️
Cisco to Acquire Threat Detection Company SnapAttack
🕵️
Thousands Download Malicious npm Libraries Impersonating Legitimate Tools
🕵️
ISC Stormcast For Thursday, December 19th, 2024 https://isc.sans.edu/podcastdetail/9262, (Thu, Dec 19th)
🕵️
Beware Of Malicious SharePoint Notifications That Delivers Xloader Malware
🕵️
North Korea-linked hackers accounted for 61% of all crypto stolen in 2024
🕵️
How They Took Down a Crime Ring Using Stolen Laptops! 😲
🕵️
Python-Based NodeStealer Version Targets Facebook Ads Manager
🕵️
BADBOX Botnet Is Back
🕵️
CERT-UA: Russia-linked UAC-0125 abuses Cloudflare Workers to target Ukrainian army
🕵️
Fortinet warns of FortiWLM bug giving hackers admin privileges
🕵️
Juniper Warns of Mirai Botnet Targeting SSR Devices with Default Passwords
🕵️
Okta Social Engineering Impersonation Report - Response and Recommendation
🕵️
Thousands of users in Europe getting malicious emails with DocuSign-enabled PDFs
🕵️
US considers banning TP-Link routers over cybersecurity risks
🕵️
Earth Koshchei Coopts Red Team Tools in Complex RDP Attacks
🌐
BadBox malware botnet infects 192,000 Android devices despite disruption
🌐
Android malware found on Amazon Appstore disguised as health app
🌐
Juniper warns of Mirai botnet scanning for Session Smart routers
🎙️
Unwrapping Christmas scams | Unlocked 403 cybersecurity podcast (ep. 9)
📡
Phishing platform Rockstar 2FA trips, and “FlowerStorm” picks up the pieces
📡
Microsoft 365 users hit by random product deactivation errors
📡
Windows 11 24H2 upgrades blocked on some PCs due to audio issues
📡
Dutch DPA Fines Netflix €4.75 Million for GDPR Violations Over Data Transparency
📡
Bugs in a major McDonald’s India delivery system exposed sensitive customer data
📡
FedRAMP ATO Boosts Zero Trust for Federal Agencies
📡
The best privacy services as a gift | Kaspersky official blog