> TODAY'S SUMMARY (3 articles)
Today's cybersecurity news highlights a critical vulnerability in SonicWall's core product, identified as CVE-2026-102255, which has been rated a 10 in severity, indicating an urgent need for patching. Additionally, a ransomware fixer has been accused of defrauding clients by charging them more than the ransom amounts, pocketing the difference instead of providing legitimate decryption services. This underscores ongoing issues with trust and reliability in the cybersecurity space. As these incidents unfold, organizations must remain vigilant and prioritize updates and threat mitigation strategies.
|
// AI-powered summary generated at 04:00
Diplomatic entities in Kazakhstan and Central Asia have been targeted by UAC-0063 using weaponized Word docs deploying HATVIBE malware
Microsoft confirmed an outage of its multi-factor authentication system impacting access to Microsoft 365, causing login failures and service disruption
Le district scolaire d'Aurora, dans le Colorado, est victime d'une panne d'internet de trois jours qui affecte tous les campus et bureaux, obligeant à reporter les heures de début des cours. L'incident a commencé lundi matin après la détection d'une activité suspecte sur le réseau du district. Les é...
Researchers at Check Point said FunkSec operators appear to use AI for malware development
A new WEF report highlighted growing disparities in the cyber capabilities of different types of organizations and regions
Le CHU de Grenoble a été ciblé par une tentative d'intrusion informatique depuis le 13 janvier, mais grâce à ses procédures de sécurité, aucune exfiltration de données médicales n'a été détectée pour l'instant. Des mesures conservatoires ont été mises en place, notamment la réinitialisation des mots...
Three Russian men have been indicted on money laundering charges connected to cryptocurrency mixers
Telefonica has confirmed a breach of its internal ticketing system exposing more than 236,000 lines of customer data
La société allemande D-Trust GmbH a été victime d'une cyberattaque sur son portail de demande de cartes de signature et de sceau, qui a pu entraîner la fuite de données personnelles des demandeurs. Les cartes de signature et de sceau émises ne sont pas compromises et peuvent continuer à être utilisé...
La clinique Columbia Eye a détecté une intrusion dans son réseau informatique entre le 9 et le 13 janvier 2025, affectant l'accès à certains systèmes et exposant potentiellement des données personnelles. Les informations compromises pourraient inclure des noms, coordonnées, dates de naissance et cod...
Extensibility in Burp Suite is about giving you and your team the power to customize, enhance, and extend Burp Suite to match your testing needs and objectives. This comprises a powerful suite of tool
Conduent Business Services LLC experienced a cyber incident that impacted a limited portion of their network, resulting in unauthorized access to some files associated with Point32 Health. The incident occurred from October 21, 2024, to January 13, 2025. The affected files contained personal informa...
L'Université de Technologie d'Eindhoven (TU Eindhoven) a été victime d'une cyberattaque, ce qui a obligé l'université à déconnecter son réseau interne pour éviter de nouveaux dommages. En conséquence, les cours sont annulés pour au moins un jour et les étudiants ne peuvent pas accéder à leurs courri...
CrowdStrike warned it had observed a phishing campaign impersonating the firm’s recruitment process to lure victims into downloading cryptominer
Le 12 janvier 2025, Newport Advisory a détecté une activité suspecte sur son réseau et a immédiatement mis son système hors ligne, averti les autorités et lancé une enquête avec des experts en cybersécurité. Celle-ci a révélé que certains fichiers avaient été copiés depuis le réseau fin décembre 202...
DTiQ Technologies, Inc. experienced unauthorized access to a portion of their network between December 31, 2024, and January 12, 2025, resulting in the exposure of customer information. The incident was discovered on January 12, 2025, and the company has since taken steps to investigate and mitigate...
A large-scale cyber-attack has targeted the information system of Slovakia’s land registry, impacting the management of land and property records
An unauthorized actor accessed the CMS network between January 9, 2025, and January 12, 2025, and certain information contained within those systems may have been viewed or copied. The information that could have been subject to unauthorized access includes name, financial account information, and S...
Le réseau informatique de la ville de Bourne a été compromis lors d'une cyberattaque survenue le samedi 11 janvier, selon un communiqué conjoint publié par le département de police et la ville le 12 janvier. Les services de police et le système d'urgence 9-1-1 restent entièrement opérationnels, et l...
The US medical billing firm is notifying over 360,000 customers that their personal, financial and medical data may have been exposed