> TODAY'S SUMMARY (151 articles)
Today's cybersecurity news highlights several significant threats and trends. The U.S. is offering a $10 million reward for Zhang Yu, a key figure in the Hafnium hacking campaign, which compromised thousands of systems. In a concerning incident, attackers hijacked top-level domains to issue fake security certificates for major organizations, including Google, posing a severe risk of trusted brand impersonation. Additionally, vulnerabilities in Microsoft, Adobe, and Atlassian products have been disclosed, prompting urgent updates as exploitation attempts have already begun. The FBI and Secret Service are warning about the ongoing FortiBleed credential-stealing campaign, which has impacted over 86,000 devices. Finally, a data breach in Arizona's court system exposed information on over 1.3 million individuals, underscoring the persistent threat of cyberattacks on sensitive data.
|
// AI-powered summary generated at 20:00
Le département de la Réunion a été victime d'une cyberattaque le 13 novembre, mais grâce à l'intervention rapide des équipes informatiques, la fuite de données a été limitée. Les réseaux informatiques ont été temporairement interrompus pour éviter tout risque de propagation, et une cellule de crise...
La ville d'Aschaffenburg en Bavière a été victime d'une cyberattaque qui a entraîné la mise hors ligne de son système d'information pour éviter de nouveaux dommages. Les citoyens ne peuvent plus contacter la ville par e-mail ou par téléphone, et le Rathaus est fermé car les employés ne peuvent plus...
Australian Transport Ransomware Attack, 13 November 2024: Ransomware gang Akira claims breach of Queensland-based transport company Followmont Transport. Akira "We will upload 230Gb of data including NDAs, passports, lot,’s of driver licenses, medical documents, detailed financial information.
The p...
Le Cégep de Sorel-Tracy, ainsi que son campus de Varennes, ont été visés par une cyberattaque. En réponse, le Service des technologies de l’information, en collaboration avec une firme experte, a pris des mesures immédiates et mène une investigation approfondie. Les systèmes informatiques de l’établ...
Une enquête est en cours après que la société Alberta Innovates a été victime d'une cyberattaque. Les détails de l'incident ne sont pas encore disponibles, mais l'enquête vise à déterminer l'ampleur de la violation et à identifier les responsables. Les autorités travaillent à sécuriser les systèmes...
The TA455 phishing campaign used fake job offers on LinkedIn to deploy malware
LKQ Corporation, un géant de la pièce automobile, a été victime d'une cyberattaque qui a perturbé l'une de ses unités commerciales au Canada, permettant aux acteurs menaçants de voler des données de l'entreprise. L'incident a eu un impact négatif sur les opérations de l'unité commerciale pendant que...
L'organisation à but non lucratif Youth Eastside Services a subi une cyberattaque en novembre 2024, lorsqu'un tiers non autorisé a accédé à son système informatique et a pu consulter des informations sensibles sur les consommateurs, notamment des données de santé et d'assurance. L'enquête a révélé q...
New phishing tool GoIssue targets GitHub, enabling mass phishing, and has been linked to the GitLoker extortion campaign
Le 13 novembre 2024, Conrey Insurance Brokers a détecté une activité inhabituelle sur son réseau et a immédiatement lancé une enquête. Celle-ci a révélé qu’un accès non autorisé avait eu lieu entre le 12 et le 13 novembre 2024. Un examen approfondi des données concernées a été mené, et s’est achevé...
On 13 November 2024, Pound Road Medical Centre (PRMC) was alerted to activity on their systems which indicated a potential cyber incident had occurred. They commenced an urgent investigation into that activity and took immediate action to contain the incident. Unfortunately, the investigations ident...
Panaseer claims 72% of security leaders are taking out personal indemnity insurance as board scrutiny increases
watchTowr has found a flaw in Citrix’s Session Recording Manager that can be exploited to enable unauthenticated RCE against Citrix Virtual Apps and Desktops
eCapital suffered a cyber-attack that may have exposed some personal information, including names and other data elements. The attackers likely sought financial gain rather than the information itself. The company has taken steps to prevent a reoccurrence and is offering identity monitoring services...
Jamf observed North Korean attackers embedding malware within Flutter applications to target macOS devices, potentially to test a new way of weaponizing malware
Halliburton has reported a $35m loss associated with an August ransomware breach
The Jewish Federation of Greater Pittsburgh experienced unauthorized access to their network on or about November 12, 2024. Some files may have been accessed or removed by the unauthorized individual(s) between November 5, 2024, and November 12, 2024. The impacted files may have contained personal i...
The World Economic Forum has shared recommendations on how to build on the success of existing partnerships to accelerate the disruption of cybercriminal activities
The new Remcos RAT variant identified in a new phishing campaign exploits CVE-2017-0199 via malicious Excel files
Eckerd Connects experienced a cybersecurity incident involving unauthorized access to their network, potentially exposing personal information between November 3, 2024, and November 11, 2024. The incident was discovered on November 11, 2024, and an investigation was conducted. Complimentary identity...