[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> [MàJ] Vulnérabilité dans les produits Ivanti (03 avril 2025)
**\[Mise à jour du 11 avril 2025\]** Le CERT-FR a connaissance d'une preuve de concept publique permettant de provoquer une exécution de code arbitraire à distance. **[Mise à jour du 04 avril 2025]** Le CERT-FR a connaissance d'une preuve de concept publique permettant de provoquer un arrêt du...
> Manchester Credit Union
Le 17 avril, une cyberattaque contre Manchester Credit Union a été revendiquée sur le site vitrine de l'enseigne de rançongiciel Sarcoma. Le 3 avril, l'établissement financier disait rencontrer "actuellement des difficultés techniques qui affectent les paiements entrants". Des usagers déploraient pa...
> Cumberland County Hospital
Cumberland County Hospital a subi une attaque de ransomware qui a affecté 36 659 patients, les informations personnelles et médicales ont été compromises. L'hôpital a immédiatement pris des mesures pour contenir l'incident et a offert des services de surveillance de crédit et de protection contre la...
> 10 bonnes pratiques pour l’utilisation des téléphones mobiles (03 avril 2025)
Dans un contexte de prolifération des menaces ciblant les téléphones mobiles, l’ANSSI préconise d’adopter 10 règles de bonnes pratiques pour l’utilisation de ces équipements.
> National Association for Stock Car Auto Racing
Unauthorized access to the network occurred between March 31 and April 3, 2025, resulting in the acquisition of certain files containing personal information. The investigation determined that one or more of the files contained the name and Social Security number of one Maine resident. The attack wa...
> Madison Elementary School District #38
A ransomware attack via social engineering on a Madison employee resulted in the exposure of affected individuals' personal information. The incident occurred on or about April 7, 2025. The attack was claimed by Interlock.
> 10 best practice rules for using mobile phones (03 avril 2025)
With the proliferation of threats targeting mobile phones, ANSSI recommands adopting 10 best practice rules for using these devices.
> Rev Up Brands, LLC dba Revolution Dancewear
Revolution Dancewear experienced a data security incident where an unauthorized party accessed internal systems from March 16, 2025, to April 3, 2025, potentially impacting personal information. The company is offering complimentary credit monitoring and identity restoration services. No reports of...
> Knowledge Base Digest - March 2025
Known Issues Adding duplicate DHCP reservations in Web UI causes a loss of DHCP settings Endpoint Security error status 0xc0000428 on Windows 11 endpoints with Microsoft KB5052093 when they run dism.exe or sfc.exe WatchGuard Cloud managed access points detected as an Evil Twin false positive Cannot...
> Stripe API Skimming Campaign Unveils New Techniques for Theft
A novel skimming attack has been observed by Jscramber, using the Stripe API to steal payment information by injecting malicious scripts into pages
> Royal Mail Investigates Data Breach Affecting Supplier
A cyber threat actor has claimed to have leaked 144GB of data from Royal Mail users
> New Ebook Updates
We were informed this week that our digital book distributor (Sendowl) will be terminating our distribution plan on April 24th, 2025 and will be forcing migration into their new structure at that time. This new plan eliminates the option to send readers free PDF updates and applies a 6-fold overall...
> Gray Bots Surge as Generative AI Scraper Activity Increases
Gray bots surge as generative AI scraper activity increases, impacting web applications with millions of requests daily
> Bybit Heist Fuels Record Crypto-Theft Surge, Says CertiK
Hackers stole $1.67bn of cryptocurrencies in the first quarter of 2025, a 303% increase
> New online training helps board members to govern cyber risk
The NCSC’s CEO, Richard Horne on the new cyber governance resources giving Boards the tools they need to govern cyber security risks.
> North Korea's Fake IT Worker Scheme Sets Sights on Europe
Google has found a significant increase in North Korean actors attempting to gain employment as IT workers in European companies, leading to data theft and extortion
> Steam Surges to Top of Most Spoofed Brands List in Q1
Gaming community Steam appeared most often in phishing emails and texts detected by Guardio in Q1 2025
> Bureau du défenseur public fédéral de l'Arizona
Une cyberattaque par ransomware a frappé le bureau du défenseur public fédéral de l'Arizona, entraînant la perte d'accès aux fichiers de l'affaire de Ralph Menzies, condamné à mort. La défense a demandé et obtenu un délai pour déposer un mémoire sur la compétence mentale de Menzies, initialement pré...
> ICO Apologizes After Data Protection Response Snafu
The UK’s data protection regulator says it is overwhelmed with complaints from the public
> PAC Strapping Products, Inc.
PAC Strapping Products, Inc. experienced a ransomware incident that may have affected personal information, including names, credit/debit card numbers, and expiration dates. The company has taken measures to prevent a similar incident and is offering free credit monitoring services. The incident occ...