> TODAY'S SUMMARY (132 articles)
Today's cybersecurity landscape highlights several critical issues and emerging threats. A significant privacy battle is brewing in California over updates to wiretapping laws that may limit private lawsuits against internet tracking. At the Pwn2Own Ireland event, hackers successfully exploited 32 zero-day vulnerabilities, showcasing the rapid pace at which security flaws are being targeted. In a concerning data breach, the FBI has removed a contractor linked to the exposure of sensitive employee information due to a missed patch, raising alarms about operational security in federal agencies. Meanwhile, ASOS confirmed a data breach that involved unauthorized push notifications claiming to leak customer data. Additionally, multiple vulnerabilities affecting Atlassian products and a critical flaw in Dell's System Update could allow attackers to gain unauthorized access. Overall, there is an evident rise in exploitation of known vulnerabilities and an increasing trend in data breaches across various sectors.
|
// AI-powered summary generated at 20:00
CEI Vision Partners, LLC discovered a data breach after an unknown, unauthorized third party gained temporary access to their computer network between May 24, 2024, and May 27, 2024. The breach may have involved personal information, including names, contact information, dates of birth, Social Secur...
La bibliothèque publique de Seattle a été victime d'une cyberattaque par ransomware, qui a rendu inaccessible ses services en ligne, y compris son catalogue et son système de prêt. Les systèmes ont été mis hors ligne pour enquêter sur l'incident et restaurer la sécurité. La bibliothèque est toujours...
MediSecure confirmed that limited health data of customers was posted onto a dark web forum, with a 6.5TB dataset reportedly put up for sale
Microsoft has warned of surging gift card fraud and sophisticated approaches from the group Storm-0539
Le comté d'Albany enquête sur une possible cyberattaque ayant potentiellement compromis ses serveurs, avec une analyse complète en cours en collaboration avec le Département de la Sécurité Intérieure de l'État de New York et l'équipe d'intervention en cas d'incident cybernétique des services d'urgen...
Actors in the clear and dark web are distributing fake source codes of the Pegasus spyware for financial gain
Une cyberattaque a visé la société Mobitwin, qui fournit un service de transport pour les personnes à mobilité réduite, ce qui a rendu inaccessible le système de réservation en ligne. Les utilisateurs ne peuvent plus planifier leurs déplacements et les données des clients ne sont plus accessibles. L...
Le système en ligne de l'Autorité de la ville sécurisée d'Islamabad a été mis hors ligne après une tentative d'intrusion informatique, qui a permis à des hackers d'accéder au serveur principal et à des données sensibles. Les responsables ont fermé tous les accès au système pour prévenir d'éventuels...
According to Enea, these campaigns use cloud storage platforms to host malicious websites, sending links via SMS to bypass firewalls
Le district scolaire spécial de Louisiane a été victime d'une cyberattaque par ransomware Akira le 24 mai, qui a pu compromettre les informations personnelles des employés, notamment les numéros de sécurité sociale et les informations médicales. Les autorités ont été informées et des mesures de sécu...
Resecurity reported a 300% spike in cyber-attacks post-#OpIsrael, intensifying since #OpIndia last year
Over half of CISA’s known exploited vulnerabilities disclosed since February 2024 have not yet been analyzed by NIST’s National Vulnerability Database
Le département de la Justice et du Développement constitutionnel (DJ&CD) d'Afrique du Sud a été victime d'une cyberattaque qui a affecté les paiements de soutien aux enfants. Une équipe d'enquête a été assemblée pour examiner les activités suspectes et les paiements manuels ont été mis en place pour...
National Records of Scotland said sensitive personal data was part of information published online following a ransomware attack on NHS Dumfries and Galloway
A newly patched GitHub Enterprise Server bug has a CVSS score of 10
The JATC suffered a cybersecurity attack that impacted its computer network, resulting in unauthorized access to sensitive information, including names, Social Security numbers, and driver's license numbers. The incident occurred between May 17, 2024, and May 23, 2024. The JATC has taken steps to se...
The Police Service of Northern Ireland has been fined £750K following a serious data breach last year
OpenAI recently introduced a memory feature in ChatGPT, enabling it to recall information across sessions, creating a more personalized user experience.
However, with this new capability comes risks. Imagine if an attacker could manipulate your AI assistant (chatbot or agent) to remember false infor...
This data comes from SlashNext’s mid-year State of Phishing 2024 report
The plugin is used by over 20,000 sites and enables users to create customizable community websites