La chaîne de magasins de sport Sprinter Sports, anciennement connue sous les noms Perry Sport et Aktiesport, a été victime d'une cyberattaque, au cours de laquelle les criminels ont accédé au système de commande et aux données de compte des clients. L'entreprise a mené une enquête approfondie avec d...
L'agence spatiale japonaise, JAXA, a été victime d'une cyberattaque, mais les informations compromises ne concernent pas les opérations importantes liées aux fusées et aux satellites. L'attaque a été découverte après un avertissement d'une organisation externe et une enquête interne, mais l'agence n...
Australian Insider Threat, 29 November 2023: National Disability Insurance Agency NDIA data breach claimed to impact 11,000 "records". NDIA staffer charged with leaking participants' data, acting NDIA provider also arrested.
The post Incident: UPDATE NDIA data breach claimed to impact 11,000 “recor...
Zimperium’s latest findings include the identification of 245 new app variants
Non-urgent procedures are being rescheduled, emergency room patients redirected to other hospitals
We have identified a new stack buffer overflow vulnerability in Mediatek’s Linux Kernel driver implementation of cellular-to-application processor communication interface (CCCI). The vulnerability can be exploited by a malicious (compromised) baseband runtime to achieve arbitrary code execution in t...
AI-powered tools are among the top fraud techniques used by threat actors in 2023, according to Sumsub’s third annual Identity Fraud Report
An analysis of dark web forums revealed many threat actors are skeptical about using tools like ChatGPT to launch attacks
We have identified a new heap buffer overflow vulnerability in Mediatek’s baseband implementation. The vulnerability can be exploited to achieve arbitrary code execution in the baseband runtime.
The vulnerability we are disclosing in this advisory affected a wide range of Mediatek devices, including...
Truecaller warns malicious calls make up the majority
Security agency wants to resume critical CFATS inspections
We have identified a new out-of-bound write vulnerability in Mediatek’s Linux Kernel driver implementation of cellular-to-application processor communication interface (CCCI). The vulnerability can be exploited by a malicious (compromised) baseband runtime to achieve arbitrary code execution in the...
Affiliate deployed LockerGoga, MegaCortex, Hive and Dharma
We have identified a new out-of-bound read vulnerability in Mediatek’s Linux Kernel driver implementation of cellular-to-application processor communication interface (CCCI). The vulnerability can be exploited by a malicious (compromised) baseband runtime to leak information from the kernel runtime...
We have identified a new heap buffer overflow vulnerability in Samsung’s baseband implementation (mainly used in Exynos chipsets). The vulnerability can be exploited to achieve arbitrary code execution in the baseband runtime.
The vulnerability we are disclosing in this advisory affected a wide rang...
La nuit de lundi à mardi, la fabrique de machines agricoles Grimme, située à Damme, a été la cible d'une cyberattaque, ce qui a entraîné l'arrêt de la production et le renvoi des employés chez eux. Les conséquences de l'attaque ne sont pas encore claires, mais l'IT interne a détecté l'incident assez...
We have identified a new stack buffer overflow vulnerability in Samsung’s Android Radio Interface Layer implementation. The vulnerability can be exploited by a malicious (compromised) baseband runtime to achieve denial of service in Android in the radio context.
The vulnerability we are disclosing i...
We have identified a new heap buffer overflow vulnerability in Samsung’s Android Radio Interface Layer implementation. The vulnerability can be exploited by a malicious (compromised) baseband runtime to achieve arbitrary code execution in Android in the radio context.
The vulnerability we are disclo...
Les systèmes informatiques de l'administration du district de Vorpommern-Rügen en Allemagne ont été déconnectés d'Internet pour des raisons de sécurité suite à une suspicion de cyberattaque. La gestion administrative n'est actuellement accessible que par téléphone, et la police criminelle a été aler...
We have identified a new heap buffer overflow vulnerability in Samsung’s Android Radio Interface Layer implementation. The vulnerability can be exploited by a malicious (compromised) baseband runtime to achieve arbitrary code execution in Android in the radio context.
The vulnerability we are disclo...