> TODAY'S SUMMARY (22 articles)
Today's cybersecurity news highlights several critical vulnerabilities and emerging threats. Dell has addressed multiple serious flaws in its PowerEdge servers, particularly a critical vulnerability (CVE-2026-86360) that allows for root access, urging customers to apply patches immediately. Similarly, a major flaw in Atlassian's Data Center products permits unauthenticated attackers to access sensitive files, requiring immediate user action. Additionally, Denmark reported a significant data breach exposing personal information of 8.8 million individuals. The ClingSTUN Linux backdoor is also a concern, exploiting IoT devices through public STUN servers. Lastly, new ClickFix attacks are leveraging browser cache to execute malicious payloads, indicating a shift in attack vectors. Organizations are advised to bolster their security measures in light of these threats.
|
// AI-powered summary generated at 08:01
Kaspersky’s recent report said the shortage is particularly acute in Europe, Russia and Latin America
The White House Executive Order will give new powers to the US Coast Guard to manage cyber threats in ports and issue cybersecurity standards
Le service d'immigration du Malawi a suspendu la délivrance des passeports à la suite d'une cyberattaque sur son système informatique, qualifiée de "grave atteinte à la sécurité nationale" par le président Lazarus Chakwera. Les pirates informatiques ont demandé une rançon, mais le gouvernement a ref...
Since emerging in May 2023, the group claims to have victimized 77 companies and public institutions
Compromising valid identities became the top initial access vector in 2023 while phishing dropped to second place, IBM found in a new report
Cencora Inc a révélé, le 27 février, avoir été victime d'une cyberattaque au cours de laquelle des données, potentiellement comprenant des informations personnelles, ont été dérobées de ses systèmes d'information. L'activité non autorisée a été détectée le 21 février et la société a immédiatement pr...
ESET researchers reveal a Russian threat actor has targeted Ukrainian citizens with PYSOPs messages warning of impacts such as food and medicine shortages from the war
The UK’s National Cyber Security Centre has produced new guidance for smaller firms on PBX attacks
Impac Mortgage Holdings, Inc. experienced a data breach where an unknown actor may have accessed certain files and folders containing protected information between February 21, 2024, and March 20, 2024. A cyberattack was claimed by Medusa on March 23, 2024.
It now takes threat actors on average just 62 minutes to move laterally from initial access, Crowdstrike claims
ReversingLabs uncovered two suspicious packages on PyPI: NP6HelperHttptest and NP6HelperHttper
Today we are disclosing a denial-of-service vulnerability that affects the Pedersen distributed key generation (DKG) phase of a number of threshold signature scheme implementations based on the Frost, DMZ21, GG20, and GG18 protocols. The vulnerability allows a single malicious participant to surrept...
Cado Security said this campaign introduces unique techniques to compromise the security of Redis servers
The attack, which has been claimed by Anonymous Sudan, has been confirmed to have impacted IT services at the universities of Cambridge and Manchester
La Berliner Hochschule für Technik (BHT) a été victime d'un "incident de sécurité", entraînant l'indisponibilité de son site web, de son système de messagerie électronique et de ses téléphones. Il est suggéré que l'attaque pourrait impliquer un ransomware qui chiffre les données et demande une ranço...
Arctic Wolf found that the median ransomware demand was $600,000 in 2023, a 20% rise on the previous year
A former employee at Stratford-on-Avon District Council stole residents’ emails to promote his business
Continental Aerospace, un fabricant de moteurs basé à Mobile en Alabama, est actuellement victime d'une cyberattaque qui perturbe ses opérations. L'entreprise a annoncé sur son site web le 20 février qu'elle travaillait avec des experts pour résoudre le problème et espère reprendre ses activités nor...
UK’s National Crime Agency has led an international operation to disrupt the LockBit ransomware group
Change Healthcare, une importante entreprise technologique dans le secteur de la santé aux États-Unis, a confirmé avoir subi une cyberattaque entraînant une interruption de son réseau. L'incident a débuté tôt mardi matin sur la côte Est des États-Unis, et l'entreprise a pris des mesures immédiates p...