> TODAY'S SUMMARY (114 articles)
Today's cybersecurity landscape reveals several critical threats and trends. A member of the ShinyHunters hacking group has been detained in Jordan, cooperating with the FBI amid ongoing investigations into a significant data breach involving employee information. Meanwhile, vulnerabilities in Citrix NetScaler and Rejetto HFS have been actively exploited, with warnings from CISA regarding their severity and potential impact. Additionally, Denmark's population registry suffered a breach affecting 8.8 million individuals, raising concerns about data security in governmental databases. In the healthcare sector, IQVIA faced a hefty fine for inadequate data anonymization, underscoring the ongoing scrutiny over data protection practices. Lastly, Google has paused its open-source bug bounty program due to an influx of invalid AI-generated reports, reflecting challenges in managing AI vulnerabilities.
|
// AI-powered summary generated at 20:00
A Lloyd's research found that the US alone would experience a $1.1trn loss in the “hypothetical but plausible” risk scenario
The Five Eyes intelligence agencies want start-ups dealing with cutting-edge technology to bolster their protections against nation-state threats
Fairmont Federal Credit Union experienced a data security incident between September 30, 2023, and October 18, 2023, which may have resulted in unauthorized access to personal information. The incident was discovered on January 2-3, 2024, and an investigation was conducted. The credit union is offer...
Cybercriminals are harvesting sensitive medical data from plastic surgery offices as leverage for extortion demands
Kaspersky said the campaign exploiting USB drives first came to light in early 2023
\[Mise à jour du 02 novembre 2023\] La version 17.3.8a est disponible. \[Mise à jour du 31 octobre 2023\] Les détails techniques de la vulnérabilité CVE-2023-20198 sont désormais disponibles publiquement. Cette vulnérabilité était déjà massivement exploitée. Tous les équipements exposant...
Proofpoint have identified at least four distinct threat clusters
FIDO Alliance’s third Online Authentication Barometer showed that AI-powered phishing is slowly prompting users to switch passwords for multi-factor authentication methods
La Real Sociedad, un club de football basé à Saint-Sébastien, a été victime d'une cyberattaque affectant plusieurs de ses serveurs contenant des données personnelles de ses abonnés, actionnaires et fans. Les informations compromises incluent les noms, prénoms, numéros de cartes d'identité, adresses...
The tech giant has issued guidance to mitigate exploitation of the flaw, which has the highest severity rating
A new survey found that three-quarters of organizations in the UK are yet to address the five key requirements for compliance
La Commission des jeux de l'État de New York a confirmé que son système d'exploitation central desservant les salles de machines à sous de l'État a été touché par une attaque de cybersécurité, ce qui a notamment entraîné la fermeture du casino Jake 58 à Islandia, dans le comté de Suffolk, pendant pl...
Le district scolaire de Hopewell Area a été la cible d'une attaque de ransomware sophistiquée, dont l'origine est toujours en cours d'investigation. Le surintendant Dr. Jeff Beltz a déclaré que des progrès substantiels ont été réalisés pour restaurer le réseau et que les appareils des étudiants n'on...
The threat actors attempted to escalate privileges using the open-source GodPotato tool
Une cyberattaque a affecté certains services en ligne fournis par le Registre des actes de Cabarrus County, notamment l'accès public en ligne aux registres fonciers et aux index des naissances, décès et mariages. En réponse à l'incident, les responsables des services informatiques de Cabarrus ont mi...
Hacktivists claim DDoS attacks against Israeli websites as cybersecurity experts urge caution in believing these cyber-criminals’ claims
Reports emerged over the weekend regarding a zero-day exploit in the messaging app
La Psychiatrie Baselland en Suisse a été victime d'une cyberattaque, au cours de laquelle une grande partie de son infrastructure informatique a été cryptée par des pirates. En conséquence, les systèmes informatiques ont été arrêtés pour des raisons de sécurité et la communication interne et externe...
The US government highlighted the operations of the NoEscape group, which is believed to be a rebrand of Russian threat actor Avaddon
A new version of the RomCom backdoor was used to lure attendees of the June 2023 Women Political Leaders Summit