[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> Sprinter Sports
La chaîne de magasins de sport Sprinter Sports, anciennement connue sous les noms Perry Sport et Aktiesport, a été victime d'une cyberattaque, au cours de laquelle les criminels ont accédé au système de commande et aux données de compte des clients. L'entreprise a mené une enquête approfondie avec d...
> Japan Aerospace Exploration Agency (JAXA)
L'agence spatiale japonaise, JAXA, a été victime d'une cyberattaque, mais les informations compromises ne concernent pas les opérations importantes liées aux fusées et aux satellites. L'attaque a été découverte après un avertissement d'une organisation externe et une enquête interne, mais l'agence n...
> Incident: UPDATE NDIA data breach claimed to impact 11,000 “records” | iTnews
Australian Insider Threat, 29 November 2023: National Disability Insurance Agency NDIA data breach claimed to impact 11,000 "records". NDIA staffer charged with leaking participants' data, acting NDIA provider also arrested. The post Incident: UPDATE NDIA data breach claimed to impact 11,000 “recor...
> Undetected Android Trojan Expands Attack on Iranian Banks
Zimperium’s latest findings include the identification of 245 new app variants
> Ardent Health Services Grapples With Ransomware Disruption
Non-urgent procedures are being rescheduled, emergency room patients redirected to other hospitals
> CVE-2022-21766: Mediatek CCCI Kernel Driver Stack Buffer Overflow
We have identified a new stack buffer overflow vulnerability in Mediatek’s Linux Kernel driver implementation of cellular-to-application processor communication interface (CCCI). The vulnerability can be exploited by a malicious (compromised) baseband runtime to achieve arbitrary code execution in t...
> Deepfake Digital Identity Fraud Surges Tenfold, Sumsub Report Finds
AI-powered tools are among the top fraud techniques used by threat actors in 2023, according to Sumsub’s third annual Identity Fraud Report
> Cybercriminals Hesitant About Using Generative AI
An analysis of dark web forums revealed many threat actors are skeptical about using tools like ChatGPT to launch attacks
> CVE-2022-21744: Mediatek Baseband GPRS PNCD Heap Buffer Overflow
We have identified a new heap buffer overflow vulnerability in Mediatek’s baseband implementation. The vulnerability can be exploited to achieve arbitrary code execution in the baseband runtime. The vulnerability we are disclosing in this advisory affected a wide range of Mediatek devices, including...
> Americans Receive Two Billion Spam Calls Per Month
Truecaller warns malicious calls make up the majority
> CISA Warns Congress on Chemical Industry Terror Attacks
Security agency wants to resume critical CFATS inspections
> CVE-2022-21765: Mediatek CCCI Kernel Driver OOB Write
We have identified a new out-of-bound write vulnerability in Mediatek’s Linux Kernel driver implementation of cellular-to-application processor communication interface (CCCI). The vulnerability can be exploited by a malicious (compromised) baseband runtime to achieve arbitrary code execution in the...
> Ukraine Police Dismantle Major Ransomware Group
Affiliate deployed LockerGoga, MegaCortex, Hive and Dharma
> CVE-2022-21769: Mediatek CCCI Kernel Driver OOB Read
We have identified a new out-of-bound read vulnerability in Mediatek’s Linux Kernel driver implementation of cellular-to-application processor communication interface (CCCI). The vulnerability can be exploited by a malicious (compromised) baseband runtime to leak information from the kernel runtime...
> CVE-2023-21517: Samsung Baseband LTE ESM TFT Heap Buffer Overflow
We have identified a new heap buffer overflow vulnerability in Samsung’s baseband implementation (mainly used in Exynos chipsets). The vulnerability can be exploited to achieve arbitrary code execution in the baseband runtime. The vulnerability we are disclosing in this advisory affected a wide rang...
> Grimme
La nuit de lundi à mardi, la fabrique de machines agricoles Grimme, située à Damme, a été la cible d'une cyberattaque, ce qui a entraîné l'arrêt de la production et le renvoi des employés chez eux. Les conséquences de l'attaque ne sont pas encore claires, mais l'IT interne a détecté l'incident assez...
> CVE-2023-30644: Samsung RIL Stack Buffer Overflow
We have identified a new stack buffer overflow vulnerability in Samsung’s Android Radio Interface Layer implementation. The vulnerability can be exploited by a malicious (compromised) baseband runtime to achieve denial of service in Android in the radio context. The vulnerability we are disclosing i...
> CVE-2023-30645: Samsung RIL Heap Buffer Overflow
We have identified a new heap buffer overflow vulnerability in Samsung’s Android Radio Interface Layer implementation. The vulnerability can be exploited by a malicious (compromised) baseband runtime to achieve arbitrary code execution in Android in the radio context. The vulnerability we are disclo...
> Landkreis Vorpommern-RĂĽgen
Les systèmes informatiques de l'administration du district de Vorpommern-Rügen en Allemagne ont été déconnectés d'Internet pour des raisons de sécurité suite à une suspicion de cyberattaque. La gestion administrative n'est actuellement accessible que par téléphone, et la police criminelle a été aler...
> CVE-2023-30646: Samsung RIL Heap Buffer Overflow
We have identified a new heap buffer overflow vulnerability in Samsung’s Android Radio Interface Layer implementation. The vulnerability can be exploited by a malicious (compromised) baseband runtime to achieve arbitrary code execution in Android in the radio context. The vulnerability we are disclo...