> TODAY'S SUMMARY (10 articles)
Today's cybersecurity news highlights several critical developments. Google has paused its Open Source Software Vulnerability Reward Program due to an influx of AI-generated, invalid vulnerability reports. In law enforcement news, an alleged leader of the ShinyHunters hacking group was arrested in Jordan and is aiding the FBI in identifying other members. Microsoft's official X account was compromised, promoting a crypto token, leading to an ongoing investigation. Additionally, a newly discovered zero-day vulnerability in Citrix NetScaler has been exploited shortly after previous flaws were patched. Finally, attackers are increasingly abusing legitimate remote monitoring and management (RMM) software, as indicated by a recent report showing it was involved in 45% of endpoint incidents.
|
// AI-powered summary generated at 08:00
A number of popular crypto wallet providers have been affected by the vulnerabilities, including Coinbase WaaS, Zengo and Binance
Check Point highlighted the necessity of understanding the the entire attack process of ransomware groups
Trail of Bits has developed a suite of open-source libraries designed to streamline the creation and deployment of eBPF applications. These libraries facilitate efficient process and network event monitoring, function tracing, kernel debug symbol parsing, and eBPF code generation. Previously, deploy...
Information involved in the incident includes names, dates of birth and medical claims information
Tracked as CVE-2023-34034, the flaw has a CVSS score of 9.8
Une cyberattaque de type ransomware a perturbé le Multiple Listing Service (MLS) de Rapattoni, un outil en ligne essentiel pour les agents immobiliers, rendant les nouvelles annonces immobilières et les portes ouvertes introuvables et certaines données inaccessibles. L'attaque a eu lieu mercredi et...
The accidental release of PSNI police officers’ names and department has raised huge safety fears
Suspected Indonesian admin arrested in multi-national operation
La Fondation de Verdeil, la plus grande institution semi-gouvernementale pour les mineurs dans le canton de Vaud, a été victime d'une cyberattaque le 8 août, avec un serveur crypté et des perturbations dans les opérations, en particulier dans les bureaux et la communication. La directrice générale,...
UK financial regulator in new consumer awareness campaign
Another busy Patch Tuesday for sysadmins
Le Centre médical Mayanei Hayeshua en Israël a été victime d'une cyberattaque qui a perturbé ses services, notamment en désactivant les systèmes informatiques de tenue de dossiers. Les auteurs de l'attaque ne sont pas encore identifiés. En raison de l'attaque, l'hôpital n'accepte pas de nouveaux pat...
Plaintiffs claim hospital didn't secure data and worsened the situation by delaying notification
The elusive ransomware group, Royal, might be collaborating with Hive and Black Basta
L'école nationale vétérinaire, agroalimentaire et de l'alimentation de Nantes, Oniris, a été victime d'une cyberattaque le lundi 7 août. Les données copiées par les attaquants comprennent les noms, prénoms et adresses mail professionnelles du personnel de l'établissement. Une plainte a été déposée e...
Cisco Talos said what sets this operation apart is the novel approach to delivering ransom notes
The attackers accessed personal data of anyone in the UK who was registered to vote between 2014 and 2022
Le Service de Santé de Madeira (Sesaram) au Portugal a été la cible d'une cyberattaque qui a provoqué une "dysfonction de son réseau informatique", entraînant la suspension des activités cliniques non urgentes. L'attaque a été décrite comme délibérée et malveillante, visant à perturber le fonctionne...
Pushed to the edges by efficient EDRs, threat actors are forced to use living-off-the-land techniques
NPO Mashinostroyeniya is under sanctions for supporting Kremlin war machine