> TODAY'S SUMMARY (61 articles)
Today's cybersecurity landscape reveals several critical threats and trends. A data breach at Denmark's Central Population Register exposed the personal information of 8.8 million individuals, highlighting vulnerabilities in data access protocols. Meanwhile, a new Linux malware strain, ClingSTUN, is transforming vulnerable IoT devices into proxy nodes, leveraging public infrastructure for malicious traffic routing. Apple is tightening full disk access controls in macOS to mitigate AI-related risks, reflecting a growing concern over AI's potential threats. Additionally, credential stuffing attacks have compromised Domino's customer accounts, and a critical flaw in Dell System Update allows attackers to gain root access, prompting immediate patching. As AI accelerates the weaponization of known vulnerabilities, organizations must prioritize robust security measures to counter these evolving risks.
|
// AI-powered summary generated at 12:01
The UK and the US have signed a partnership to coordinate the work of their respective AI Safety Institutes
Sophos reveals âunprecedentedâ levels of RDP compromise in ransomware attacks in 2023
About a year ago we talked about how developers canât intrinsically trust LLM responses and common threats that AI Chatbots face and how attackers can exploit them, including ways to exfiltrate data.
One of the threats is unfurling of hyperlinks, which can lead to data exfiltration and is something...
Proofpoint has spotted a new infostealer campaign using malicious links in YouTube video descriptions
L'Université New Mexico Highlands a été la cible d'une attaque par ransomware la semaine derniÚre, entraßnant l'annulation des cours et des perturbations dans les systÚmes de paie des employés. Bien qu'il n'y ait pas encore d'indication que les données des étudiants ou des employés aient été comprom...
The telecommunications giant said that the published dataset comprises information from 2019 or earlier
Kaspersky said cybercriminals harvested 50.9 login credentials per infected device in 2023
Les bureaux d'Ă©valuation, de collecte et d'enregistrement des actes du comtĂ© de Jackson seront fermĂ©s mercredi et peut-ĂȘtre le reste de la semaine en raison d'une attaque de ransomware dĂ©couverte mardi par le dĂ©partement informatique du comtĂ©. Les autres systĂšmes du comtĂ© n'ont pas Ă©tĂ© affectĂ©s et l...
A backdoor in XZ Utils, a widely used file-compressing software in Linux systems, could have led to a critical supply chain attack had a Microsoft researcher not spotted it in time
Hundreds of Indians forced into cybercrime by Cambodian gangs have been rescued
En raison d'une cyber-attaque contre Prepay Technologies, la société qui gÚre une grande partie du réseau de recharge d'AUCORSA (machines à bord des bus et terminaux de recharge dans les établissements), ces services sont temporairement inopérants. Les travaux de récupération sont accélérés avec la...
FTC figures reveal a three-fold increase in losses from impersonation scams over the past three years
Le systÚme de communication radio de l'agence de sécurité publique P25 de Riley County, au Kansas, a été interrompu lundi matin en raison d'un incident de cybersécurité. En réponse, le conseil des commissaires du comté de Riley a déclaré une situation d'urgence pour demander des ressources supplémen...
On April 2, 2024, Mewborn & DeSelms detected a network disruption and launched an investigation, determining that files may have been accessed without authorization on May 30, 2024. On or about January 31, 2025, the firm learned that the potentially affected data included personal information such a...
CISA has revealed the first draft for an update of the Cyber Incident Reporting for Critical Infrastructure (CIRCIA) Act of 2022
La mairie de Loon-Plage a été victime d'une cyberattaque par ransomware le 1er avril, ce qui a paralysé temporairement les services municipaux. Aucune rançon n'a été payée et la situation a été rétablie grùce aux interventions du service informatique. La municipalité va renforcer les consignes de vi...
DOYON, LIMITED a touché par une faille de sécurité externe, une attaque par hacking, le 1er avril 2024. Elle a été revendiquée par Black Basta le 17 avril suivant.
Trail of Bits is excited to introduce Ruzzy, a coverage-guided fuzzer for pure Ruby code and Ruby C extensions. Fuzzing helps find bugs in software that processes untrusted input. In pure Ruby, these bugs may result in unexpected exceptions that could lead to denial of service, and in Ruby C extensi...
Le 1er avril 2024, KemperSports a dĂ©tectĂ© une activitĂ© suspecte sur son rĂ©seau informatique. Lâentreprise a immĂ©diatement lancĂ© une enquĂȘte qui a rĂ©vĂ©lĂ© quâelle avait Ă©tĂ© victime dâune cyberattaque, avec un accĂšs Ă certains systĂšmes contenant des informations personnelles protĂ©gĂ©es. KemperSports a e...
En avril 2024, Inszone a dĂ©tectĂ© une activitĂ© inhabituelle sur son rĂ©seau. Lâentreprise a pris des mesures et fait appel Ă des spĂ©cialistes en cybersĂ©curitĂ© pour mener une enquĂȘte approfondie. Celle-ci a rĂ©vĂ©lĂ© quâune certaine quantitĂ© de donnĂ©es stockĂ©es avait pu ĂȘtre acquise sans autorisation, ce...