[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (48 articles)

|

// AI-powered summary generated at 12:00

> Data Breach at MC2 Data Leaves 100 Million at Risk of Fraud
The data leak exposed personal data of 100m US citizens, resulting from a misconfigured database made accessible online
> Over a Third of Employees Secretly Sharing Work Info with AI
A CybSafe survey found that 52% of workers have not yet received any training on safe AI use
> University Medical Center (UMC)
Le Centre Médical Universitaire (UMC) de Lubbock, au Texas, a été victime d'une attaque par rançon (ransomware) qui a perturbé ses systèmes, obligeant l'hôpital à détourner les patients vers d'autres établissements de santé locaux. Les services d'urgence et les cliniques de soins non urgents du cent...
> Cybercriminals Hack UK Rail Network Wi-Fi
UK train stations, including London Euston and Manchester Piccadilly, faced a cyber-attack displaying Islamophobic messages
> First Mobile Crypto Drainer Found on Google Play
Researchers discover mobile crypto drainer malware hidden in WalletConnect app garnering 10,000 downloads
> CDC Biodiversité
CDC Biodiversité a été victime d'une cyberattaque par ransomware depuis le 26 septembre 2024. Une cellule de crise a été mise en place pour investiguer et résoudre l'incident, avec pour priorité la protection des informations des clients, fournisseurs et collaborateurs. L'objectif est de rétablir un...
> NIST Scraps Passwords Complexity and Mandatory Changes in New Guidelines
The institute no longer requires regular password changes unless the authenticator has been compromised
> Malicious Ads Hide Infostealer in League of Legends ‘Download’
Bitdefender is warning League of Legends fans not to fall for a phishing campaign designed to spread Lumma Stealer malware
> Aurdel
Aurdel, filiale d'une entreprise de produits informatiques, Dist IT, a été victime d'une cyberattaque qui a causé un impact financier. L'attaque a commencé jeudi et les systèmes ont été mis hors ligne pour minimiser les dégâts, ce qui a entraîné des retards dans les livraisons. Les auteurs de l'atta...
> Fleet Landing
L'affidé Qilin responsable de la cyberattaque contre Bertelkamp Automation a déposé, sur les serveurs de la franchise, des données qu'il attribue à Fleet Landing. La cyberattaque n'a pas été revendiquée sur le site vitrine de la franchise.
> 82% of Phishing Sites Now Target Mobile Devices
82% of all phishing sites target mobile devices, with 76% using HTTPS to appear secure
> American Addiction Centers
Une cyberattaque par ransomware en septembre dernier a exposé les informations de santé sensibles de plus de 400 000 personnes au sein d'American Addiction Centers, une chaîne de centres de réhabilitation pour la dépendance aux États-Unis. Les données volées incluent des numéros de sécurité sociale,...
> Barton Gilman LLP
Barton Gilman LLP suffered a data breach where personal information of a limited number of individuals was removed from their network due to unauthorized access between September 13, 2024, and September 26, 2024. The types of information involved include names and other personal data. The breach occ...
> US House Bill Addresses Growing Threat of Chinese Cyber Actors
House GOP unveiled a bill to combat Chinese cyber threats to US infrastructure, led by CISA and FBI
> WatchGuard Firebox SSO Client and Agent Vulnerabilities
On September 25, 2024, researchers from RedTeam-Pentesting.de published a report that details three vulnerabilities in the Firebox SSO Client & Agent software. The Firebox Authentication Gateway (SSO Agent) versions up to and including 12.10.2 and the Firebox Single Sign-On Client versions up to...
> Red Teaming in the age of EDR: Evasion of Endpoint Detection Through Malware Virtualisation
Authors: Boudewijn Meijer && Rick Veldhoven Introduction As defensive security products improve, attackers must refine their craft. Gone are the days of executing malicious binaries from disk, especially ones well known to antivirus and Endpoint Detection and Reponse (EDR) vendors. Now, atta...
> Red Teaming in the age of EDR: Evasion of Endpoint Detection Through Malware Virtualisation
Authors: Boudewijn Meijer && Rick Veldhoven Introduction As defensive security products improve, attackers must refine their craft. Gone are the days of executing malicious binaries from disk, especially ones well known to antivirus and Endpoint Detection and Reponse (EDR) vendors. Now, atta...
> CrowdStrike Apologizes for IT Outage, Defends Microsoft Kernel Access
Adam Meyers, CrowdStrike VP for counter-adversary operations, appeared before a US congressional committee to answer questions about its July faulty software update
> Red Teaming in the age of EDR: Evasion of Endpoint Detection Through Malware Virtualisation
Authors: Boudewijn Meijer && Rick Veldhoven Introduction As defensive security products improve, attackers must refine their craft. Gone are the days of executing malicious binaries from disk, especially ones well known to antivirus and Endpoint Detection and Reponse (EDR) vendors. Now, atta...
> Thousands of US Congress Emails Exposed to Takeover
Some 3191 email addresses for congressional staff are available on the dark web