> TODAY'S SUMMARY (10 articles)
Today's cybersecurity news highlights several critical developments. Google has paused its Open Source Software Vulnerability Reward Program due to an influx of AI-generated, invalid vulnerability reports. In law enforcement news, an alleged leader of the ShinyHunters hacking group was arrested in Jordan and is aiding the FBI in identifying other members. Microsoft's official X account was compromised, promoting a crypto token, leading to an ongoing investigation. Additionally, a newly discovered zero-day vulnerability in Citrix NetScaler has been exploited shortly after previous flaws were patched. Finally, attackers are increasingly abusing legitimate remote monitoring and management (RMM) software, as indicated by a recent report showing it was involved in 45% of endpoint incidents.
|
// AI-powered summary generated at 08:00
Analysis by Comparitech found that manufacturers have lost $46.2bn from ransomware attacks in downtime alone since 2018
Les systèmes informatiques de Crozer Health, situé dans le comté de Delaware, ont été victimes d'une attaque de ransomware par le propriétaire de l'entreprise, Prospect Medical Holdings Inc. Le ransomware est un type de logiciel malveillant qui crypte les fichiers, les rendant inutilisables jusqu'à ...
La Commission des services électriques de Montréal (CSEM) a été victime d'une cyberattaque par le gang LockBit le 3 août, qui a demandé une rançon de deux millions de dollars américains, refusée par la CSEM. L'attaque a affecté les conduites d'électricité et de télécommunication souterraines de Mont...
Sophos security researchers shared the findings in a report published today
La société Campbell Soup Co. a signalé une cyberintrusion dans une partie de son réseau informatique à la fin de son quatrième trimestre fiscal. L'entreprise a immédiatement pris des mesures pour enquêter, contenir et éliminer la menace, en engageant des experts en cybersécurité et en informant les...
Le district scolaire de Renton a été victime d'une attaque par ransomware en août 2023, menaçant de divulguer 200 Go de données volées, notamment des informations médicales. L'attaque a exposé les numéros de sécurité sociale, les informations bancaires et les données de santé de 30 373 personnes. Le...
Mitiga’s research demonstrated two potential attack scenarios
Halcyon said that Cloudzy has been playing a pivotal role in facilitating cyber-criminal activities
Articles
False Trj/RansomDecoy.A detection in WatchGuard Endpoint Security products
Firebox rejects a network connection with "tcp invalid connection state" log message
I lost the password and recovery key for my AuthPoint password vault
Network security scan shows AuthPoint Gateway service ports v...
We discovered a critical vulnerability in Incognito Chain that would allow an attacker to mint arbitrary tokens and drain user funds. Incognito offers confidential transactions through zero-knowledge proofs, so an attacker could have stolen millions of dollars of shielded funds without ever being de...
Reported ransomware attacks targeting municipalities, education and healthcare in 2023 has quadrupled compared with 2021
Nikita Kislitsin is currently being detained in Kazakhstan
L'école de droit postuniversitaire BPP a été victime d'une cyberattaque, empêchant les étudiants d'accéder à leurs travaux de cours alors que les examens approchent. Les systèmes de BPP ont été infiltrés par une tierce partie non autorisée. BPP travaille avec des spécialistes en cybersécurité pour é...
Nozomi Networks warns of escalating threats
Agency says two bugs are being chained in attacks
Je suis désolé, mais l'article que vous avez fourni ne contient pas d'informations sur une cyberattaque. Il semble être une page de paywall qui propose différents abonnements pour accéder au contenu du site. Il n'y a pas de détails sur une cyberattaque contre l'entreprise automobile Joyson à Aschaff...
L'Association du Barreau Fédéral Allemand (BRAK), qui représente les avocats allemands au niveau national et international, enquête sur une cyberattaque survenue dans son bureau de Bruxelles. L'attaque a été revendiquée par le groupe de rançongiciels NoEscape. BRAK travaille avec une entreprise de s...
A common attack vector that LLM apps face is data exfiltration, in particular data exfiltration via Image Markdown Injection is a common vulnerability. Microsoft fixed the vulnerability in Bing Chat, ChatGPT is still vulnerable as Open AI “won’t fixed” the issue, and Anthropic just mitigated this vu...
Le 2 août 2023, les systèmes informatiques et le réseau d'Acadia Health, LLC, connu sous le nom de 'Just Kids Dental' (JKD), ont été attaqués par un acteur malveillant. Un programme a été utilisé pour chiffrer les réseaux informatiques et les données de JKD, y compris les systèmes de stockage de cer...
Cado Security said the malware acts as a botnet and is compatibille with both Windows and Linux