> TODAY'S SUMMARY (3 articles)
Today's cybersecurity news highlights several significant threats. A security researcher has identified a KVM guest-host escape flaw in Firecracker MicroVMs, potentially impacting AWS environments. Dell has released patches for 18 critical vulnerabilities in its Container Storage Modules (CSM), which could allow attackers to gain unauthorized access to storage and Kubernetes systems. Additionally, the hacking group ShinyHunters has exploited a zero-day vulnerability in PeopleSoft, raising alarms about increased risks for enterprises using the Oracle software. Organizations are advised to implement stringent security measures in response to these emerging threats.
|
// AI-powered summary generated at 04:00
Emsisoft has called for a complete ban on ransomware payments after another record-breaking year of attacks
A Nigerian man is facing a 100-year jail term after being arrested on multimillion-dollar BEC charges
La ville de Beckley a été ciblée par une cyberattaque qui a affecté son réseau informatique, selon un communiqué de presse de la ville. Les autorités sont en train d'enquêter sur l'origine de l'attaque, d'en déterminer l'étendue et l'impact complet, et de vérifier si des données ont été compromises....
Le Paraguay est en état d'alerte suite à une cyberattaque présumée de type ransomware qui a touché la division corporate d'une entreprise de télécommunications, affectant plus de 300 entreprises locales. La Direction Générale des Technologies de l'Information et de la Communication des Forces Milita...
The European Central Bank (ECB) will undertake a stress test on 109 European banks’ cyber-attack response capabilities after IT risk management shortfalls identified
Le Long Island Plastic Surgical Group, un cabinet de chirurgie plastique basé à Garden City, a été victime d'une cyberattaque en janvier, entraînant la compromission des données de 161 707 patients, notamment des informations personnelles et médicales. L'enquête a révélé que des données telles que l...
CloudSEK explored some of the techniques threat actors have been using to forge or steal X Gold accounts since Elon Musk’s firm introduced its new verified accounts program
Ukraine’s security services revealed Russia has hacked surveillance cameras to spy on air defense activities and critical infrastructure in Kyiv ahead of missile strikes
We at Trail of Bits perform security reviews for a seemingly endless stream of applications that use zero-knowledge (ZK) proofs. While fast new arithmetization and folding libraries like Halo2, Plonky2, and Boojum are rapidly gaining adoption, Circom remains a mainstay of ZK circuit design. We’ve wr...
Imaging giant Xerox says it suffered a security incident, as ransomware group INC Ransom claims scalp
California-based XCast Labs says it will settle FTC charges of facilitating illegal robocalls
Australian Court Ransomware Attack, 02 January 2024: Cyber attack on Victoria's court system may have exposed recordings of sensitive cases. The Qilin ransomware attacked the court system’s audio-visual archive, which staff discovered on December 21
The post Incident: Cyber attack on Victoria’s cour...
Orbit Chain said that the stolen cryptocurrency currently remains unmoved
Court Services Victoria said the incident may have compromised recordings involving people whose identities are protected
L'organisme de tarification à l'importation Itac a été ciblé par une attaque de ransomware, entraînant la prise de mesures immédiates telles que la fermeture des serveurs affectés, la mise à niveau des pare-feu et des antivirus, et le lancement d'une enquête approfondie. Itac a reconnu que des infor...
A Chinese foreign exchange student has been found after online scammers extorted money from his parents
Researchers at SRLabs have revealed a new suite of decryption tools for Black Basta ransomware
Le bureau du shérif du comté de Lancaster a été victime d'une cyberattaque, révélée publiquement lors d'une réunion du conseil de surveillance de Lancaster fin mars. L'attaque, survenue au début de l'année 2024, a été identifiée comme un ransomware, mais les mesures de sécurité en place ont limité l...
La commune de Saint-Philippe a été ciblée par une attaque par rançongiciel le 1er janvier, entraînant la mise hors service de plusieurs services numériques, dont l'état civil et le bureau électoral. Une plainte a été déposée à la suite de cette cyberattaque et la mairie travaille avec une société sp...
Five years ago I gave a Lightning Talk at the 35th Chaos Communication Congress called “Pass the Cookie and Pivot to the Clouds”. It was a talk about my very first blog post on Embrace The Red just a few weeks earlier in December 2018.
Fast forward to 2023… it was great to attend the 37C3 in person...