> TODAY'S SUMMARY (84 articles)
Today’s cybersecurity landscape reveals several critical threats and trends. A 25-year-old crypto thief was sentenced for a SIM-swapping scheme that stole nearly $260,000. Cisco and Splunk have patched multiple vulnerabilities that could allow unauthorized access or remote code execution. Meanwhile, attackers targeted a critical flaw in Atlassian products, exploiting it within hours of public disclosure. Notably, a Russian-aligned group, UAC-0099, utilized a new infostealer and RAT against Ukrainian personnel. Additionally, reports indicate that thousands of Android devices shipped with pre-installed ad-fraud malware. Finally, the FBI warns of ongoing FortiBleed attacks that lock victims out of their Fortinet devices, emphasizing the evolving nature of cyber threats.
|
// AI-powered summary generated at 16:01
Advice for Dixons Carphone customers following its data breach.
The NCSC's guidance for the risk management of high risk vendors in telecommunications networks.
The UK’s cybersecurity sector added thousands of workers and over £1bn in revenue in 2024
A brief guide to MIKEY-SAKKE, a protocol that allows organisations to provide secure communications with end-to-end encryption.
How organisations can map their supply chain dependencies, so that risks in the supply chain can be better understood and managed.
Edesur Dominicana a confirmé avoir été victime d'une attaque cybernétique, mais a affirmé que ses informations n'ont pas été compromises. L'entreprise a mené une enquête approfondie avec le Centre national de ciberseguridad pour évaluer la véracité des allégations des attaquants. Edesur a réaffirmé...
Guidance outlining the risks of locally installed products interacting with cloud services, and suggestions to help organisations manage this risk.
Good practises for the management of public domain names owned by your organisation.
La mairie de Palmeira a été victime d'une cyberattaque de type ransomware qui a rendu indisponible son service de messagerie institutionnel hébergé par GMAES TELECOM LTDA. L'entreprise responsable travaille à la récupération des services, mais la normalisation est retardée en raison de la complexité...
Why macros are a threat, and the approaches you can take to protect your systems.
Guidance for enterprise administrators, small businesses and home users in relation to the recently published 'Krack' vulnerability in Wi-Fi networks protected by WPA2.
Urban One, un conglomérat médiatique basé aux États-Unis, a subi une attaque de ransomware qui a compromis des informations personnelles sensibles de centaines d'individus. L'incident, découvert en mars 2025, a impliqué un accès non autorisé au réseau de l'entreprise, entraînant l'exfiltration de do...
This guidance provides a primer on the essential techniques, technologies and uses of access management.
Check that you're talking to a genuine NCSC employee, and not a criminal.
Blind Eagle has been running campaigns targeting the Colombian government with malicious .url files and phishing attacks
Advice for those concerned a device has been infected.
How to make sure your organisation is prepared for home working.
New York sues Allstate over data breach, alleging security failures that exposed the driver’s license numbers of nearly 200,000 individuals
Outlining the expectations for the minimum requirement for forensic visibility, to help network defenders secure organisational networks both before and after a compromise.
Advice for organisations experiencing a ransomware attack and the partner organisations supporting them.