> TODAY'S SUMMARY (61 articles)
Today's cybersecurity landscape reveals several critical threats and trends. A data breach at Denmark's Central Population Register exposed the personal information of 8.8 million individuals, highlighting vulnerabilities in data access protocols. Meanwhile, a new Linux malware strain, ClingSTUN, is transforming vulnerable IoT devices into proxy nodes, leveraging public infrastructure for malicious traffic routing. Apple is tightening full disk access controls in macOS to mitigate AI-related risks, reflecting a growing concern over AI's potential threats. Additionally, credential stuffing attacks have compromised Domino's customer accounts, and a critical flaw in Dell System Update allows attackers to gain root access, prompting immediate patching. As AI accelerates the weaponization of known vulnerabilities, organizations must prioritize robust security measures to counter these evolving risks.
|
// AI-powered summary generated at 12:01
MarineMax, l'un des plus grands vendeurs de bateaux au monde, a signalé à la Securities and Exchange Commission (SEC) une cyberattaque qui a perturbé ses opérations, débutée dimanche. La société a mis en œuvre ses protocoles de réponse aux incidents et de continuité des activités, entraînant des per...
Un fournissur IT basé à Graz, qui gère environ 80 bases de données pour des sociétés immobilières, a été victime d'une cyberattaque le week-end dernier, ce qui pourrait avoir entraîné une fuite de données étendue. La base de données clients de Klagenfurt Wohnen, un baileur appartenant à la ville, po...
We’re digging up the archives of vulnerabilities that Trail of Bits has reported over the years. This post shares the story of two such issues: a denial-of-service (DoS) vulnerability hidden in JSON Web Tokens (JWTs), and an oversight in the Linux kernel that could enable circumvention of critical k...
Le conseil municipal de Leicester City a fermé certains de ses systèmes informatiques suite à un incident de cybersécurité. Richard Sword, directeur stratégique des développements urbains et des quartiers, a confirmé cette mesure préventive. Cette action fait suite à des incidents similaires qui ont...
Le cabinet Wacks Law Group a découvert, le 9 mars 2024, une violation de données, impliquant un accès non autorisé à des informations personnelles sensibles dans son réseau informatique. L'incident a fait l'objet d'une enquête approfondie qui a révélé que des informations telles que les noms, numéro...
Darktrace reveals a novel phishing campaign where attackers leveraged legitimate Dropbox infrastructure to steal credentials before bypassing MFA
UnitedHealth said it expects Change Healthcare’s key systems to be restored by March 18, amid reports it paid a $22m ransom to BlackCat
La Kärntner Landesversicherung (KLV), une compagnie d'assurance autrichienne, a été la cible d'une cyberattaque durant le week-end, mais grâce à son système d'alarme, les dommages ont été largement évités et les données des clients n'ont probablement pas été affectées. Cependant, des restrictions te...
Zscaler’s ThreatLabz discovered malware spreading SpyNote RAT to Android and NjRAT/DCRat to Windows
ESET researchers said the attackers strategically leveraged the Monlam Festival, targeting individuals associated with Tibetan Buddhism
L'entreprise Beyers Koffie a été victime d'une cyberattaque, suivant un incident similaire qui a affecté la brasserie Duvel-Moortgat plus tôt dans la semaine. La production chez Duvel-Moortgat a dû être arrêtée en conséquence de l'attaque. Les répercussions exactes de l'attaque sur Beyers Koffie ne...
Ransomware losses in the US rose by 74% to $59.6m in 2023, according to reported incidents to the FBI
AI scientist Inma Martinez predicts governments will start requiring ‘frontier’ AI labs full disclosure on the purpose of the tools they are developing
La Administradora de Subsidios Sociales (ADESS) de la République Dominicaine a été victime d'une cyberattaque par le groupe criminel « Blackcat », qui a temporairement affecté ses systèmes opérationnels. L'intervention rapide des équipes de sécurité informatique, en collaboration avec diverses autor...
Sensitive data from Switzerland government departments were leaked by the Play ransomware group after an attack on Xplain, including classified documents and log in credentials
Alleged Chinese spy Linwei Ding is accused of stealing proprietary IP from Google
Le bailleur social Opheor a été victime de deux attaques informatiques le 7 mars. Les données confidentielles stockées par le bailleur n’ont pas été volées. Une plainte a été déposée.
Security experts warn of mass exploitation of critical TeamCity vulnerability
Le 30 avril 2024, Panda Express a informé l'Attorney General du Maine d'une cyberattaque survenue entre le 7 et le 11 mars 2024, ayant permis à une partie non autorisée d'accéder à des informations sensibles de consommateurs. Suite à une enquête avec l'aide d'experts en sécurité des données, Panda E...
Articles
How do I find audit log messages for operator management on the WatchGuard website?
Access point actions that result in a reboot of the device or a restart of the radios that disconnect wireless clients
Users cannot log in to computers with the Logon app installed when they are offline or...