> TODAY'S SUMMARY (61 articles)
Today's cybersecurity landscape reveals several critical threats and trends. A data breach at Denmark's Central Population Register exposed the personal information of 8.8 million individuals, highlighting vulnerabilities in data access protocols. Meanwhile, a new Linux malware strain, ClingSTUN, is transforming vulnerable IoT devices into proxy nodes, leveraging public infrastructure for malicious traffic routing. Apple is tightening full disk access controls in macOS to mitigate AI-related risks, reflecting a growing concern over AI's potential threats. Additionally, credential stuffing attacks have compromised Domino's customer accounts, and a critical flaw in Dell System Update allows attackers to gain root access, prompting immediate patching. As AI accelerates the weaponization of known vulnerabilities, organizations must prioritize robust security measures to counter these evolving risks.
|
// AI-powered summary generated at 12:01
Sermo experienced a data security incident involving a ransomware event with the group Black Basta claiming responsibility. Unauthorized access to and acquisition of information from Sermo’s network environment took place between March 19, 2024, and April 10, 2024. The incident resulted in the expos...
Sandu Boris Diaconu was involved in conspiracy to commit access device and computer fraud
The voluntary FCC program will allow smart device manufacturers to demonstrate to consumers that their product has met robust cybersecurity standards
Today, Trail of Bits is publishing Attacknet, a new tool that addresses the limitations of traditional runtime verification tools, built in collaboration with the Ethereum Foundation. Attacknet is intended to augment the EF’s current test methods by subjecting their execution and consensus clients t...
Seven years into its ethical hacking program, the Pentagon received its 50,000th vulnerability report on March 15
The flaws, identified by KTrust, enable attackers to bypass rate limits and brute force protection mechanisms
La Unimed Cuiabá a subi une cyberattaque dans la nuit du lundi 18 mars, entraînant une indisponibilité temporaire de son système informatisé pour la libération des demandes de soins médicaux. Malgré l'attaque, les données personnelles et sensibles n'ont pas été compromises, et aucun soin n'a été int...
A Microsoft report found that 87% of UK organizations are either vulnerable or at high-risk of cyber-attacks, and urged investment in AI as a security tool
Scottish NHS trust reveals patient and staff data may have been taken in security breach
Le comté de Henry en Illinois a été victime d'une cyberattaque par ransomware le 18 mars, affectant plusieurs de ses systèmes, mais les services d'urgence comme le 911 restent opérationnels. Le groupe de ransomware Medusa a revendiqué l'attaque et exige une rançon de 500 000 dollars, avec un histori...
The International Monetary Fund says it is still looking into a recent compromise of multiple email accounts
La ville de Pensacola a subi une cyberattaque potentielle pendant le week-end, affectant son système téléphonique non urgent, mais sans impacter les services d'urgence comme la police et les pompiers. Les autres départements essentiels, tels que le port et l'aéroport international de Pensacola, fonc...
La South China Athletic Association a été victime d'une cyberattaque le dimanche 17 mars, entraînant une possible compromission des données personnelles de quelque 70 000 individus, incluant noms, dates de naissance, numéros d'identification et adresses. L'association a réagi en fermant les équipeme...
Vulnerability data has stopped being added to the most widely used software vulnerability database for over a month, putting organizations at risk – and nobody knows why
L'infrastructure informatique de Polycab a été ciblée par une attaque de ransomware le 17 mars 2024, mais l'entreprise a déclaré que ses systèmes principaux et ses opérations n'ont pas été affectés. Les systèmes de l'entreprise fonctionnent actuellement normalement, toutes les usines sont opérationn...
Le district scolaire de Whitko Community Schools a subi une panne de son système informatique en mars 2024, initialement attribuée à un problème de alimentation électrique, mais finalement identifiée comme une attaque de ransomware. Aucune preuve de vol de données sensibles n'a été trouvée et le dis...
An AppOmni researcher detailed a misconfiguration in the HSE COVID Vaccination Portal, exposing the health and personal data of over a million Irish citizens
Le centre de santé Birth Choice of San Marcos a subi une violation de données à la suite d'une cyberattaque visant son fournisseur National Diagnostic Imaging (NDI). L'incident a permis à un tiers non autorisé d'accéder à des informations sensibles, notamment des noms, des dates de naissance, des in...
Le Deutsches Meeresmuseum de Stralsund a été la cible d'une cyberattaque, suite à laquelle il est impossible d'acheter des billets en ligne via le site du musée. Les visiteurs peuvent toujours accéder aux sites du musée Ozeaneum et Natureum aux heures habituelles, mais les billets ne peuvent être ac...
The vote saw 352 members of Congress supporting the bill while only 65 opposed it