> TODAY'S SUMMARY (51 articles)
Today's cybersecurity news highlights several significant threats and trends. The FBI has issued warnings about ongoing FortiBleed attacks, where attackers can lock organizations out of their own Fortinet firewalls, indicating a serious vulnerability for admins. In AI developments, Anthropic's new model is reportedly better at identifying vulnerabilities, while a Chinese hacker successfully utilized AI tools to breach South Korean banks. Additionally, there has been a rise in sophisticated phishing kits that include advanced session management features, targeting banking and government sectors across multiple regions. A critical vulnerability in Atlassian products is currently being exploited, and a recent ransomware recovery scheme has revealed fraudulent practices, underscoring the ongoing challenges in cybersecurity integrity.
|
// AI-powered summary generated at 12:00
Massive IoT data breach exposed 2.7 billion records including Wi-Fi credentials
A new Everfox survey shows a growing consensus among regulated organizations in favor of a strategic shift away from detecting cyber threats to preventing them
Ever wondered what it's like to hack for a living – legally? Learn about the art and thrill of ethical hacking and how white-hat hackers help organizations tighten up their security.
February Patch Tuesday sees Microsoft fix four zero-days, including two under active exploitation
The US and its allies have sanctioned Russian bulletproof hoster Zservers for abetting ransomware attacks
Detailing the discovery and impact of the whoAMI cloud image name confusion attack, which could allow attackers to execute code within AWS accounts due to a vulnerable pattern in AMI retrieval.
Cistec, un fournisseur suisse de système d'information clinique, a été victime d'une attaque par ransomware le 12 février 2025, visant les services connectés à l'Active Directory. Les systèmes clients et les données des patients n'ont pas été touchés, et l'entreprise a immédiatement arrêté ses systè...
Le bureau du procureur général de Virginie a été victime d'une cyberattaque sophistiquée, ce qui a entraîné la fermeture de ses systèmes informatiques et la suspension de l'accès à internet et à ses systèmes de courriel. Les enquêteurs de la police d'État de Virginie et du FBI ont été notifiés et mè...
ESET Mail Security for Microsoft Exchange Server version 10.1.10017.0, ESET Security for Microsoft SharePoint Server version 10.0.15008.0 and ESET Server Security for Microsoft Windows Server version 11.1.12009.0 have been released and are available for download from the ESET website or upgrade from...
La State Bar of Texas, la deuxième plus grande association du barreau aux États-Unis, a subi une violation de données après que le groupe de ransomware INC ait revendiqué une attaque contre l'organisation. Les attaquants ont pu voler des informations, notamment des noms complets et d'autres données,...
Baillie Lumber Co., L.P. experienced a data breach where an unauthorized actor gained access to certain files within their network from February 6, 2025, to February 12, 2025, potentially copying files containing name and Social Security number information.
An Alabama man has admitted hacking into the US Security and Exchange Commission’s X account using SIM swap fraud to gain access
Lansing Community College experienced a data breach due to unauthorized access to its systems, potentially exposing personal information of students and staff. The breach occurred on February 12, 2025, and was discovered on February 18, 2025. The college is offering 24 months of complimentary credit...
Chinese hackers are infiltrating the networks of suppliers of “sensitive” manufacturers, according to a Check Point report to be published in the coming weeks
Gcore reported a 56% year-over-year rise in DDoS attacks in H2 2024, highlighting a steep long-term growth tend for the attack technique
Deepfake fraud, synthetic identities, and AI-powered scams make identity theft harder to detect and prevent – here's how to fight back
Ransomware groups are adopting agile techniques in a quantity-over-quality approach, according to a new report from Huntress
Four Europeans were arrested in Phuket, believed to be members of the Phobos ransomware group
Le port d'Ostende a subi une cyberattaque dans la nuit de lundi à mardi, affectant son système "Ensor" qui gère les données des navires. Bien que le système soit temporairement hors service, les opérations portuaires ne sont pas perturbées. Une équipe d'experts travaille à rétablir le système rapide...
Apple has patched a zero-day vulnerability being exploited in targeted attacks