> TODAY'S SUMMARY (109 articles)
Today's cybersecurity landscape reveals several critical developments. AWS AgentCore's security vulnerabilities, including weak VM isolation and excessive permissions, have been exposed, potentially facilitating attacks. In international law enforcement, Japan has extradited a Russian national linked to the Qilin ransomware gang to Germany, where further arrests have occurred, despite ongoing attacks by the group. The FBI has also arrested members of the ShinyHunters extortion group, underscoring the persistent threat of data breaches. Meanwhile, unpatched vulnerabilities in the AhsayCBS backup platform are being actively exploited for webshell deployment and cryptocurrency mining. A noticeable trend is the shift in ransomware tactics, with attackers increasingly opting for data theft rather than encryption. Lastly, the U.S. and allies have disrupted Chinese state-sponsored hacking tools, illustrating ongoing geopolitical cybersecurity tensions.
|
// AI-powered summary generated at 20:00
EMPIRE Distribution Inc. suffered a cyber incident where an unknown third party accessed internal systems and data, potentially exposing names, Social Security numbers, and bank account numbers. The incident occurred on July 7, 2025. EMPIRE has taken steps to investigate, assess, and improve the sec...
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
An unauthorized actor gained access to certain Peabody systems between June 13, 2025, and July 8, 2025, and copied certain data stored in those locations. The information included names and other data. A cyberattack was claimed by Interlock on July 18.
Prince George County Public Schools suffered a ransomware attack on or around July 6, 2025, which may have exposed employee and dependent personal information, including names, addresses, dates of birth, driver's license numbers, Social Security numbers, and benefits enrollment information. A cybera...
In my book Extreme Privacy, 5th Edition, I offer a script which will conduct a KnockKnock scan and parse the results for any potential malicious files running on your macOS machine. KnockKnock installs and executes fine with the commands in the book, but the script requires RipGrep in order to parse...
In my book OSINT Techniques, 11th Edition, I discuss the ability to use Google search operators to both isolate and eliminate specific data. This is more important than ever with the substantial increase of AI-generated content infiltrating our queries. We are testing some new techniques which pract...
Money Matters / Money Coach suffered a data security incident where an unauthorized outside party accessed and obtained a copy of data on a limited part of their server. The information accessed may have included name, home address, date of birth, social security numbers, and driver's license number...
Some admins of Hunters International are now part of the encryption-less cyber extortion group World Leaks
Taiwan warned that popular Chinese-owned apps, including TikTok and Weibo, are harvesting personal data and sending it back to servers in China
Cracking the code of a successful cybersecurity career starts here. Hear from ESET's Robert Lipovsky as he reveals how to break into and thrive in this fast-paced field.
Some schemes might sound unbelievable, but they’re easier to fall for than you think. Here’s how to avoid getting played by gamified job scams.
The EU’s Quantum Strategy includes plans to develop secure quantum communication infrastructure across the region
Extend AS, fournisseur du système de qualité EQS pour la commune de Drammen, a subi une attaque de données, entraînant la fuite de données non sensibles. L'incident a été signalé à l'autorité de contrôle des données et à la police. Les conséquences pour les employés et les habitants de la commune de...
Le CNFPT a été victime d’une cyberattaque le 4 juillet 2025, visant la plateforme des intervenants et permettant de dérober des documents. La plateforme a été désactivée et une enquête est en cours pour déterminer la nature des données personnelles dérobées. Le CNFPT a contacté les intervenants pour...
A severe flaw identified in the Forminator WordPress plugin allows arbitrary file deletion and potential site takeover
Air Serbia, la compagnie aérienne nationale de Serbie, est victime d'une cyberattaque qui a commencé le 4 juillet et qui a déjà duré 11 jours, entraînant des retards dans la distribution des bulletins de paie du personnel. L'attaque a compromis l'annuaire actif de l'entreprise et pourrait avoir entr...
L'attaque n'a pas été revendiquée, mais l'enseigne Qilin divulgue des données présentées comme issues des systèmes de Tape Ruvicha.
A critical Azure Machine Learning flaw allows privilege escalation, risking subscription compromise
Consero Global LLC suffered a data breach, providing its customers with complimentary credit monitoring services and identity protection. The breach led to the offer of free services, including credit monitoring, dark web monitoring, and identity theft insurance. Customers were required to enroll wi...
Rockrose Development L.L.C. suffered a data breach where unauthorized individuals accessed their systems and may have acquired confidential information. The breach may have included personally identifiable information such as names, Social Security numbers, and bank account information. A cyberattac...