> TODAY'S SUMMARY (151 articles)
Today's cybersecurity news highlights several significant threats and trends. The U.S. is offering a $10 million reward for Zhang Yu, a key figure in the Hafnium hacking campaign, which compromised thousands of systems. In a concerning incident, attackers hijacked top-level domains to issue fake security certificates for major organizations, including Google, posing a severe risk of trusted brand impersonation. Additionally, vulnerabilities in Microsoft, Adobe, and Atlassian products have been disclosed, prompting urgent updates as exploitation attempts have already begun. The FBI and Secret Service are warning about the ongoing FortiBleed credential-stealing campaign, which has impacted over 86,000 devices. Finally, a data breach in Arizona's court system exposed information on over 1.3 million individuals, underscoring the persistent threat of cyberattacks on sensitive data.
|
// AI-powered summary generated at 20:00
Interlock employs both “big-game hunting” and double extortion tactics against its victims
An ICO audit of AI recruitment tools found numerous data privacy issues that may lead to jobseekers being discriminated against and privacy compromised
Australian Business Email Compromise BEC Nov 2024: Sydney hospital loses $2m to alleged BEC fraud. A business email compromise (BEC) scam that cost a Sydney hospital $2 million has led to the man behind it being charged.
The post Incident: Sydney hospital loses $2m to alleged BEC fraud | iTnews appe...
TikTok Technology Canada, Inc, the subsidiary of Chinese group ByteDance, will have to cease its operations in Canada
The UK’s National Cyber Security Centre has released malvertising guidance for brands and their ad partners
Le secteur de la santé est un secteur hautement critique, qui intègre une typologie d’acteurs variée allant des acteurs liés à la gestion du système de santé, aux prestataires de soins, en passant par les industriels de produits de santé et les fournisseurs et prestataires pour le secteur de la...
CIISec report reveals the average wage for UK security professionals is now over ÂŁ87,000
Trend Micro’s Robert McArdle says cybercriminals use of AI is far more limited than many realize, and pales in comparison to defenders' use of the technology
Le Département des Hautes-Pyrénées a été victime d'une cyberattaque qui a paralysé sa messagerie depuis jeudi matin, obligeant les usagers à utiliser d'autres canaux de communication. Selon le directeur général des services, l'incident a été isolé à la seule messagerie et tout est sous contrôle, san...
Le groupe de supermarchés Ahold Delhaize a été victime d'une cyberattaque aux États-Unis, ce qui a entraîné la mise hors ligne de certains systèmes pour les protéger. Cela a affecté certaines pharmacies et activités de commerce électronique, notamment le site web de la filiale Hannaford. Les équipes...
A cyber-attack targeting telematics provider Microlise has disrupted tracking services for key clients like DHL and Serco
Finastra, une entreprise de technologie financière, a annoncé une violation de données après la découverte d'une cyberattaque en novembre 2024, qui a permis à un tiers non autorisé d'accéder à des informations sensibles, notamment des noms et des informations de compte financier. L'enquête a révélé...
An unauthorized party gained access to Century Support Services' computer systems, potentially accessing personal information including names, dates of birth, Social Security numbers, and medical information. The incident occurred on or about November 7, 2024, and was discovered on or about May 30,...
Organizations remain unprepared to defend against known and predictable attacks like ransomware
Winos4.0 malware, derived from Gh0strat, targets Windows users via game-related applications, enabling remote control of affected systems
Australian Manufacturing Cyber Attack, 06 Nov 2024: Western Australia - Australian engineering, construction and maintenance services company Goodline has confirmed with Cyber Daily that threat actors launched a cyber attack on its systems. 600 gigabytes of data exfiltrated as a result of threat act...
The Nigerian police have arrested 113 foreign individuals and their 17 Nigerian collaborators for their alleged involvement in high-level cybercrimes
Google wants to ensure a smooth transition towards required MFA across all Google Cloud accounts with a phased rollout running throughout 2025
Mizuno USA, une filiale du fabricant de matériel de sport Mizuno, a confirmé avoir été victime d'une cyberattaque entre août et octobre 2024, durant laquelle des hackers ont volé des fichiers contenant des informations personnelles. L'attaque a été revendiquée par le groupe de ransomware BianLian, q...
A man suspected of breaching hundreds of Snowflake accounts has been arrested