> TODAY'S SUMMARY (88 articles)
Today's cybersecurity news highlights significant threats and trends. ASOS customers were targeted in a data breach where hackers stole personal details and shopping searches, prompting warnings about potential phishing attempts. In law enforcement, the FBI arrested members of the ShinyHunters group while also disrupting tools linked to the Flax Typhoon, a Chinese state-sponsored hacking group. Meanwhile, ransomware continues to pose a major risk, with new arrests and a trial involving a ransomware consultant accused of fraud. Citrix has issued critical patches for vulnerabilities in its NetScaler products, while researchers reported on the exploitation of flaws in AhsayCBS software. Lastly, a $10 million bounty has been offered for a Chinese hacker linked to a significant Microsoft Exchange Server attack, underscoring ongoing geopolitical cyber tensions.
|
// AI-powered summary generated at 16:00
Become a Cyber Advisor consultant and provide hands-on security advice tailored for SMEs.
Okta says over 46% of new customer registrations are bot-driven fraud attempts
Le Pembroke Regional Hospital est actuellement victime d'une incident de cybersécurité, ce qui a entraîné des retards et des annulations de services. L'hôpital a déclenché son plan de réponse aux incidents et a déployé des contre-mesures pour prévenir tout accès non autorisé à son réseau. Les patien...
Deux cliniques du groupe Humanomed en Autriche, Maria Hilf à Klagenfurt et celle de Villach-Warmbad, ont subi une attaque informatique, les pirates ont pu accéder à leur réseau via une faille dans un logiciel utilisé en radiologie. L'objectif de l'attaque n'est pas encore clair, mais il est possible...
This is a security advisory for a data leakage and exfiltration vulnerability in a popular, but now deprecated and unmaintained, Slack MCP Server from Anthropic.
If you are using this MCP server, or run an “MCP Store” that hosts it, it is advised that you analyze how this threat applies to your use...
A representative of NCSC-FI shared some lessons learned from a 2024 data breach affecting the Finnish capital
A long-running malware campaign targeting WordPress via a rogue plugin has been observed skimming data, stealing credentials and user profiling
Private key compromise accounted for 43.8% of crypto hacks in 2024, yet traditional smart contract audits rarely address architectural access control weaknesses. This post introduces a four-level maturity framework for designing protocols that can tolerate key compromise, progressing from single EOA...
Data breach at McLaren Health Care affecting over 743,000 individuals has been linked to a ransomware attack
Cobalt found that many security professionals believe a “strategic pause” in genAI deployment is necessary to recalibrate defenses
How today’s secure tools simplify your digital life, and reduce login stress and password fatigue
New ITRC data reveals identity crimes are down but impersonation scams now account for a third of all scams
The NCSC says its Cyber Advisor program is not growing fast enough
Microsoft Azure is probably the most widely used cloud platform in Switzerland, powering businesses of all sizes, from startups to multinational companies. According the the official Microsoft page over 95% of Fortune 500 companies rely on Microsoft Azure in one form or another. With this industry-w...
Draugnet is a new anonymous threat reporting platform built for the MISP ecosystem
Une cyberattaque a visé les systèmes téléphoniques de la Landesregierung, affectant notamment les centres de contrôle du trafic et les services d'urgence, mais les services de secours sont toujours opérationnels. Les autorités ont activé un système de secours pour maintenir les services essentiels....
La Prefeitura de Porto Nacional a été victime d'une attaque par ransomware, ce qui a compromis les systèmes internes et les services numériques. Les hackers n'ont pas réussi à copier les données en raison de leur grande quantité. Les systèmes affectés étaient les archives internes et le système de g...
A cyber-attack by pro-Iranian group Cyber Fattah has leaked personal information from the Saudi Games online
La ville de Green River est victime d'une attaque de ransomware qui a touché ses systèmes informatiques, mais il n'y a pas encore de preuve de fuite de données. L'attaque a paralysé les systèmes de la ville, mais les autres organisations locales n'ont pas été affectées. La ville travaille actuelleme...
Columbia University experienced a cyber incident where an unauthorized third-party gained access to their network and took certain files from their system. The affected data included names, dates of birth, Social Security numbers, and personal information. The university is offering two years of com...