> TODAY'S SUMMARY (51 articles)
Today's cybersecurity news highlights several significant threats and trends. The FBI has issued warnings about ongoing FortiBleed attacks, where attackers can lock organizations out of their own Fortinet firewalls, indicating a serious vulnerability for admins. In AI developments, Anthropic's new model is reportedly better at identifying vulnerabilities, while a Chinese hacker successfully utilized AI tools to breach South Korean banks. Additionally, there has been a rise in sophisticated phishing kits that include advanced session management features, targeting banking and government sectors across multiple regions. A critical vulnerability in Atlassian products is currently being exploited, and a recent ransomware recovery scheme has revealed fraudulent practices, underscoring the ongoing challenges in cybersecurity integrity.
|
// AI-powered summary generated at 12:00
Google Cloud's Key Management Service now features quantum-safe digital signatures to strengthen data integrity and prepare for emerging quantum computing challenges
Telstra found that 75% of cyber incidents impacting manufacturing firms originated from the targeting of IT systems connected to OT environments
The pioneering multi-media artist reveals the creative process behind her stage show called ARK, which challenges audiences to reflect on some of the most pressing issues of our times
Experts argue Britons are now less secure after their government effectively forced Apple to abandon end-to-end encryption
Following the largest-ever crypto theft, Bybit is offering researchers up to 10% of recovered funds
Key Takeaways Case Summary The intrusion started with the exploitation of CVE-2023-22527, a critical remote code execution vulnerability in Confluence, against a Windows server. The first indication of threat actor … Read More
Les collectivités territoriales gèrent de nombreux services selon leurs compétences, en matière administrative et régalienne, mais également sur de nombreux aspects de la vie sociale, territoriale et économique d’un territoire. Les conséquences d’attaques informatiques peuvent donc être majeures...
Une cyberattaque a mis hors ligne le registre australien des essais cliniques (ANZCTR) depuis le 28 février, empêchant les chercheurs de poursuivre leurs expériences. Les informations de contact et les mots de passe des utilisateurs ont été exposés, mais aucune donnée de santé n'a été compromise. Le...
Le centre médical Brunswick de Pointe-Claire a été victime d'une cyberattaque ciblant ses systèmes d'information, entraînant la fuite de données de patients. L'attaque a visé les systèmes d'information du centre médical, mais les détails sur la nature et l'ampleur de la fuite de données ne sont pas...
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
BMS Holdings, LP suffered a data breach where an unauthorized actor gained access to their network between February 5 and February 24, 2025, and copied certain files. The breach may have impacted personal information, including names, addresses, and other sensitive data. BMS is offering credit monit...
Wear, Howell, Strickland, Quinn and Law, CPAs experienced a data breach after an unknown actor gained unauthorized access to their network between February 11 and 19, 2025. The breach may have involved personal information, including names and other data elements. The organization is offering compli...
Two weeks ago, the Washington Post reported that the U.K. government had issued a secret order to Apple demanding that the company include a “backdoor” into the company’s end-to-end encrypted iCloud Backup feature. From the article: The British government’s undisclosed order, issued last month, requ...
Industrial Acceptance Corporation suffered a ransomware event resulting in the unauthorized acquisition of personal information concerning 226 residents of Maine. The incident occurred on February 24, 2025, and was discovered on the same date. The affected information included individuals' names, So...
Le système informatique de l'agence de promotion de l'investissement à Hong Kong a été victime d'une attaque de logiciel de rançon, affectant notamment le système de gestion des clients, le réseau interne et certains sites web. L'expert en cybersécurité, Fang Baoqiu, estime que l'attaque est probabl...
Chinese threat actor Salt Typhoon used JumbledPath, a custom-built utility, to gain access to a remote Cisco device, said the network provider
Le gouvernement du comté d'Anne Arundel a été victime d'une cyberattaque, apparemment une attaque de rançon (ransomware) menée par le groupe INC ransomware, qui a entraîné la mise hors ligne de certains services publics. Les autorités enquêtent sur l'incident et travaillent à restaurer l'accès aux s...
Le Tribunal municipal de Cleveland enquête sur une cyberattaque survenue le dimanche soir, qui a entraîné la fermeture des systèmes affectés en mesure de précaution. Les systèmes resteront hors ligne jusqu'à ce que le tribunal comprenne mieux la situation, et le tribunal sera fermé le 24 février, sa...
Health Net Federal Services has agreed to pay over $11m over alleged false cybersecurity reporting
Risk Management Services, L.L.C. suffered a data security incident due to a subcontractor's failure to follow established security protocols. The incident may have involved personal information such as full name, residential address, social security number, date of birth, and medical information. Th...