> TODAY'S SUMMARY (51 articles)
Today's cybersecurity news highlights several significant threats and trends. The FBI has issued warnings about ongoing FortiBleed attacks, where attackers can lock organizations out of their own Fortinet firewalls, indicating a serious vulnerability for admins. In AI developments, Anthropic's new model is reportedly better at identifying vulnerabilities, while a Chinese hacker successfully utilized AI tools to breach South Korean banks. Additionally, there has been a rise in sophisticated phishing kits that include advanced session management features, targeting banking and government sectors across multiple regions. A critical vulnerability in Atlassian products is currently being exploited, and a recent ransomware recovery scheme has revealed fraudulent practices, underscoring the ongoing challenges in cybersecurity integrity.
|
// AI-powered summary generated at 12:00
The head of the Australian Security Intelligence Organisation gave his Annual Threat Assessment for the year ahead
Venture capital firm Insight Partners, which counts Recorded Future, SentinelOne and Wiz in its portfolio, confirmed an intrusion into its systems via a social engineering attack
Updated Incident - Medical Data Breach, 19 February 2025: Australian IVF provider Genea in cyber incident. Genea patients frustrated by lack of communication amid data breach.
The post Incident: Australian IVF provider Genea in cyber incident | iTnews appeared first on Australian Information Securit...
Google has warned that Russian state-backed hackers are targeting Signal to eavesdrop on persons of interest in Ukraine
Hudson Rock has found evidence that infostealers have compromised hundreds of US military and defense contractor credentials
Un fournisseur australien leader de services de fécondation in vitro (IVF) a été ciblé par une cyberattaque. L'incident a entraîné une indisponibilité temporaire de certaines fonctionnalités, mais les détails sur l'ampleur de l'attaque et les données compromises ne sont pas encore disponibles. Les é...
La mairie de Paranhos, au Brésil, a été victime d'une cyberattaque, les hackers ayant accédé aux systèmes de ressources humaines, de comptabilité et de taxation. Les criminels ont exigé 12 000 réaux pour ne pas divulguer des informations sensibles. Il n'est pas précisé si les systèmes de la mairie o...
ESET Server Security for Microsoft Windows Server version 12.0.12003.0 has been released and is available for download.
Paratus Namibia a signalé une cyberattaque sur son système informatique interne, qui a perturbé certaines de ses systèmes d'information et a affecté ses opérations. L'opérateur télecoms enquête actuellement pour déterminer l'étendue de la violation de sécurité. Aucune autre information n'a été commu...
Raymond Ltd a signalé un incident de cybersécurité qui a affecté certains de ses actifs informatiques, mais n'a pas impacté ses systèmes et opérations principaux. L'incident n'a pas non plus affecté les opérations des clients et des magasins. L'entreprise a pris des mesures pour atténuer l'impact de...
ESET PSA plugin Service Release 2.2 is now available by logging in to the ESET PSA plugin portal.
Le comté de Gaines, au Texas, a subi une faille de sécurité dans son réseau le 19 février 2025. Une enquête a été menée avec l'aide d'experts indépendants pour déterminer l'ampleur de l'incident. Il a été découvert que des informations personnelles, notamment des noms, des dates de naissance et des...
Blake Jones Law Firm LLC experienced a data breach between February 16, 2025, and February 19, 2025, where data from certain systems was accessed or acquired without authorization. The breach involved the potential exposure of names and Social Security numbers of Maine residents. The firm has offere...
Significant OpenSSH flaws are exposing systems to man-in-the-middle and denial-of service attacks
Trend Micro found that Chinese espionage group Mustang Panda is deploying malware via legitimate Microsoft tools, enabling it to bypass ESET antivirus applications
La cybersécurité foisonne d’acronymes, de termes techniques et souvent anglophones, elle est traversée par des évolutions technologiques, normatives et réglementaires rapides. Le cœur de la mission du Clusif est de diffuser les enjeux de cybersécurité et d’éclairer sur l’état du savoir en la matière...
A new Snake Keylogger variant, responsible for over 280 million blocked infection attempts worldwide, has been identified targeting Windows users
The BlackLock or Eldorado ransomware gang could be the year’s fastest-growing ransomware-as-a-service group
Some employment scams take an unexpected turn as cybercriminals shift from “hiring” to “firing” staff
Proofpoint also identified two new threat actors operating components of web inject campaigns, TA2726 and TA2727