> TODAY'S SUMMARY (3 articles)
Today's cybersecurity news highlights several significant threats. A security researcher has identified a KVM guest-host escape flaw in Firecracker MicroVMs, potentially impacting AWS environments. Dell has released patches for 18 critical vulnerabilities in its Container Storage Modules (CSM), which could allow attackers to gain unauthorized access to storage and Kubernetes systems. Additionally, the hacking group ShinyHunters has exploited a zero-day vulnerability in PeopleSoft, raising alarms about increased risks for enterprises using the Oracle software. Organizations are advised to implement stringent security measures in response to these emerging threats.
|
// AI-powered summary generated at 04:00
Australian Travel Agency Breach, 11 January 2024: Melbourne travel agency Inspiring Vacations, exposes customer data after leaving database publicly accessible. The leaked data, includes passport images, travel visa certificates, travel itineraries, and partial credit card numbers.
The post Incident...
[Mise à jour du 4 mars 2024] Ivanti a publié le 29 février des recommandations de résolution pour les Ivanti Connect Secure ou Policy Secure en machine virtuelle [16]. [Mise à jour du 15 février 2024] l'éditeur a publié le 15 février des correctifs pour les versions suivantes, qui n'en...
Law enforcement operations on cybercriminal infrastructure have proven efficient at hindering malware activity but are far from being a silver bullet, according to Recorded Future
Cyber-attacks and misinformation top WEF's list of global risks, with cybercrime poised to exploit tech advancements and AI dominance raising concerns about vulnerability
La sociĂ©tĂ© Lush est en train d'enquĂȘter sur une cyberattaque et a pris des mesures immĂ©diates pour sĂ©curiser ses systĂšmes. BasĂ©e Ă Poole, l'entreprise collabore avec des spĂ©cialistes externes en informatique forensique pour mener une enquĂȘte approfondie. Lush a Ă©galement informĂ© les autoritĂ©s compĂ©t...
The Arctic Wolf report found that 14.3% of officials believe their state is not prepared at all to deal with election-targeted cyber incidents, including phishing and disinformation campaigns
Market.Us found that the global cyber insurance market will be worth $90.6bn by 2033, driven by increasing cyber-threats and growing regulations
RE&S Holdings, une entreprise japonaise opérant dans le secteur de la restauration, a été victime d'une attaque de ransomware, avec un accÚs non autorisé à ses serveurs. Malgré l'impact sur les données stockées, la société a activé son plan de continuité d'activité, affirmant qu'aucun impact signifi...
State-backed Ukrainian hacking group Blackjack has launched a destructive attack against a Moscow-based ISP in retaliation for Kyivstar attack
Critical Hyper-V flaw is one of 12 remote code execution vulnerabilities fixed this Patch Tuesday
The Open Source Technology Improvement Fund (OSTIF) counters an often overlooked challenge in the open-source world: the same software projects that uphold todayâs internet infrastructure are reliant on, in OSTIFâs words, a âsurprisingly small group of people with a limited amount of timeâ for all d...
The vulnerability could lead to remote code execution on affected systems
The figure comes from XM Cyberâs 2024 State of Security Posture Report, exploring how organizations approach cybersecurity challenges
Australian Retail Breach, 09 January 2024: Australian retailer The Iconic, promises refunds after a spate of fraudulent transactions on customer accounts. While not directly hacked, the unauthorised third party used a technique known as âcredential stuffingâ.
The post Incident: The Iconic promises r...
2023 saw an increased number of deals in the cybersecurity industry, but the overall investment in the sector dropped, Pinpoint revealed
Cisco Talos announced that a decryption key for the Babuk Tortilla ransomware variant is available for victims to download
Articles
AP430CR LAN Port 2 and reset button discontinued on new devices
Cannot log in to a Management Server with WatchGuard System Manager, server service stopped
RADIUS traffic sent from a FireCluster might use the active member management IP address
Deactivation of activation service API for AP...
A Nigerian national has been sentenced to a decade behind bars for his role in romance and BEC scam
Mortgage lender LoanDepot has revealed a ransomware breach resulting in stolen and encrypted data
Leverage a flaw in Cognito's API to enumerate accounts in User Pools.