> TODAY'S SUMMARY (132 articles)
Today's cybersecurity landscape highlights several critical issues and emerging threats. A significant privacy battle is brewing in California over updates to wiretapping laws that may limit private lawsuits against internet tracking. At the Pwn2Own Ireland event, hackers successfully exploited 32 zero-day vulnerabilities, showcasing the rapid pace at which security flaws are being targeted. In a concerning data breach, the FBI has removed a contractor linked to the exposure of sensitive employee information due to a missed patch, raising alarms about operational security in federal agencies. Meanwhile, ASOS confirmed a data breach that involved unauthorized push notifications claiming to leak customer data. Additionally, multiple vulnerabilities affecting Atlassian products and a critical flaw in Dell's System Update could allow attackers to gain unauthorized access. Overall, there is an evident rise in exploitation of known vulnerabilities and an increasing trend in data breaches across various sectors.
|
// AI-powered summary generated at 20:00
In June 2024, Bunkhouse Management, LLC discovered unauthorized activity on its systems, during which an individual accessed and copied files containing personal data. The exposed information included names, Social Security or taxpayer identification numbers, driver’s license numbers, health and med...
Australian Entertainment Privacy Breach, 31 May 2024: Ticketek Australia says customers' names, emails and dates of birth may have been accessed in cyber security breach. The announcement comes just days after rival company Ticketmaster was reportedly attacked by a hacker group which stole customer...
The BBC said that personally identifiable information of current and former employees has been breached following an incident affecting its pension scheme
The large volume of attendees mixed with interconnected infrastructure provides opportunities for threat actors to wreak havoc during the Paris Olympics
Australian Childcare Privacy Breach, 31 May 2024: Victoria’s largest childcare org Guardian Childcare, discloses data breach, it was targeted in cyberattack. In the data breach, attackers stole identification documents, potentially impacting thousands of families.
The post Incident: Victoria’s large...
Le système de gestion scolaire en ligne SchoolHandle, utilisé par des écoles privées et catholiques, a été victime d'une cyberattaque le 31 mai. Une enquête judiciaire et une investigation policière sont en cours, et les clients potentiels affectés ont été notifiés. Les écoles ont demandé à leurs ut...
Le 31 mai 2024, Divaris Consolidated Investments, Inc. a détecté un accès non autorisé à son réseau informatique. L’entreprise a immédiatement sécurisé ses systèmes et lancé une enquête approfondie avec des experts en cybersécurité, révélant le 4 avril 2025 que des fichiers contenant des information...
The operation targeted several significant malware droppers, including IcedID, SystemBC, Pikabot, Smokeloader and Bumblebee
The cyber-attack, which occurred in December 2023, forced First American to shut down some systems
[Mise à jour du 31 mai 2024] Des preuves de concept sont désormais disponibles publiquement sur Internet. De plus, l'éditeur indique avoir détecté des tentatives de compromission à partir du 7 avril 2024. **[Publication Initiale]** Une vulnérabilité a été découverte dans les produits Check Point....
A global law enforcement operation has disrupted the 911 S5 botnet, a global network of compromised devices used to facilitate criminal activity
1Password’s Steve Won discusses why modern security solutions, such as passkeys, can substantially reduce the risk of credential-based attacks
Entre le 27 et le 29 mai 2024, une opération de démantèlement de plusieurs infrastructures liées à des codes cybercriminels a été menée dans le cadre d’une coopération judiciaire internationale impliquant les autorités allemandes, néerlandaises, danoises, françaises, britanniques et américaines....
La Newfoundland Broadcasting Company Limited, propriétaire de NTV et OZFM, a été victime d'une cyberattaque récente. L'incident n'a pas affecté les opérations de diffusion de NTV et OZFM, mais a entraîné un accès non autorisé à certaines informations dans l'environnement système. L'entreprise travai...
Le Pocahontas Medical Clinic, un fournisseur de services de santé basé dans l'Arkansas, a annoncé une violation de données suite à une cyberattaque en mai 2024, qui a permis à un tiers non autorisé d'accéder à des informations sensibles de patients, notamment des numéros de sécurité sociale et des i...
Proofpoint discovered over 125,000 emails linked to this scam cluster in the past year
The package posed as an API management tool and downloaded trojanized Windows binaries
In the previous post we demonstrated how instructions embedded in untrusted data can invoke ChatGPT’s memory tool. The examples we looked at included Uploaded Files, Connected Apps and also the Browsing tool.
When it came to the browsing tool we observed that mitigations were put in place and older...
The Internet Archive said sustained DDoS attacks have disrupted access to its preserved web pages and other historical archives
Formula One team Williams Racing shares how it prioritizes data security with password management to safeguard sensitive information