> TODAY'S SUMMARY (84 articles)
Today’s cybersecurity landscape reveals several critical threats and trends. A 25-year-old crypto thief was sentenced for a SIM-swapping scheme that stole nearly $260,000. Cisco and Splunk have patched multiple vulnerabilities that could allow unauthorized access or remote code execution. Meanwhile, attackers targeted a critical flaw in Atlassian products, exploiting it within hours of public disclosure. Notably, a Russian-aligned group, UAC-0099, utilized a new infostealer and RAT against Ukrainian personnel. Additionally, reports indicate that thousands of Android devices shipped with pre-installed ad-fraud malware. Finally, the FBI warns of ongoing FortiBleed attacks that lock victims out of their Fortinet devices, emphasizing the evolving nature of cyber threats.
|
// AI-powered summary generated at 16:01
Attackers are actively exploiting an RCE flaw in Windows PHP-CGI implementations to target Japanese firms, deploying Cobalt Strike for persistence
Obtain persistence by creating a rogue OIDC Identity Provider.
Layoffs and cutbacks have been cited as major factors in a significant drop in job satisfaction among women working in cybersecurity, according to ISC2
Enisa identifies six sectors that it says must improve on NIS2 compliance
Vulnerability Scanning solutions offer a cost-effective way to discover and manage common security issues.
The DoJ has charged Chinese government and i-Soon employees for a series of for-profit data theft campaigns
This post concludes a four-month performance study of OpenSearch and
Elasticsearch search engines across realistic scenarios using OpenSearch
Benchmark (OSB). Our full report includes the detailed findings and
comparison results of several versions of these two applications.
Le ministère israélien de la Santé a annoncé une possible cyberattaque sur les ordinateurs du réseau médical Bikur Rofeh, qui fournit des services médicaux d'urgence. Les équipes de cybersécurité du réseau enquêtent sur l'incident pour déterminer si des données ont été compromises et dans quelle mes...
L'hébergeur Digital Forest a été victime d'un acte malveillant qui a affecté ses clients pendant plusieurs jours. Certains faisaient état de 5 jours d'indisponibilité quand d'autres indiquait que la situation était résolue au 11 mars.
Chinese espionage group Silk Typhoon is increasingly exploiting common IT solutions to infiltrate networks and exfiltrate data
Fusion Medical Staffing experienced a data security incident where unauthorized individuals acquired certain files containing personal information. The affected data included names, dates of birth, Social Security numbers, driver's licenses, and medical information. The organization has taken steps...
WatchGuard Technologies is announcing the end-of-sale (EOS) date for the Firebox T45 model. The T45 model will be replaced by the T45-PoE, which offers identical performance and functionality but also includes one PoE port.
Effective April 1, 2025, the T45 will no longer be available for purchase an...
Nonprofits are facing a surge in cyber-attacks as email threats rise 35%, targeting donor data and transactions
With Android Scam Detection for messages and calls, Google wants to push scam detection further than traditional spam detection
Zero trust architecture design principles 1.0 launched.
ISACA identified factors such as heavy workload and long hours as the primary causes of stress, while there has been high turnover of IT professionals in the past two years
New SANS Institute research finds that 50% of global organizations were hit by an OT security incident in the past year
Using the cloud securely should be your primary concern - not the underlying security of the public cloud.
By taking time to understand and communicate the impact of undesirable online behavior, you can teach your kids an invaluable set of life lessons for a new digital age
Remote system administration provides powerful and flexible access to systems and services.