> TODAY'S SUMMARY (2 articles)
Today's cybersecurity news highlights ongoing trends in threat detection and data analysis. ISC Stormcast discusses recent vulnerabilities and emerging attack vectors, emphasizing the need for proactive security measures. Meanwhile, a recent experiment involving TTY logs reveals insights into actor and bot behavior following successful logins, underscoring the importance of monitoring command activities. The analysis of these logs can aid in identifying malicious actions and enhancing incident response strategies. Overall, there's a continued focus on improving threat intelligence and understanding attacker methodologies.
|
// AI-powered summary generated at 04:00
La société Parathon by JDA eHealth Systems, spécialisée dans la gestion du cycle de revenus dans le secteur de la santé, a confirmé avoir été victime d'une cyberattaque le 27 juillet 2023, au cours de laquelle des informations de santé protégées de patients ont été accédées et 560 Go de données ont...
Likelihood of a firm falling victim to a VEC attack rose from 45% in June 2022 to 70% in May 2023
The issue arises from the logging of credentials in hex encoding in platform system audit logs
Trail of Bits is thrilled to announce the Testing Handbook, the shortest path for developers and security professionals to derive maximum value from the static and dynamic analysis tools we use at Trail of Bits. Why did we create the Testing Handbook? At Trail of Bits, we have spent countless hours...
Reports said Ilya Sachkov was suspected of passing on state secrets
The tool can craft phishing emails, create undetectable malware and identify vulnerable sites
\[Mise à jour du 15 septembre 2023\] Correction de la vulnérabilité CVE-2023-35082 Le 21 août 2023, l'éditeur a publié une mise à jour du bulletin complémentaire de sécurité \[3\] pour annoncer la disponibilité d'un correctif concernant la vulnérabilité CVE-2023-35082. Ce correctif est inclus...
SonicWall’s report finds that ransomware rebounded in Q2 2023 following a major reduction in Q1
Extortionists know their targets have low tolerance for outages
La société Softproject GmbH, un fournisseur de services BiPRO basé en Allemagne, a été la cible d'une cyberattaque par ransomware nommée "CryTox". L'attaque a entraîné le chiffrement d'une partie de l'infrastructure d'application de l'entreprise, bien que les enquêtes initiales n'aient pas révélé de...
Attackers could covertly gain remote control of devices
Alliance wants to improve visibility and patching
Le 25 juillet 2023, nous avons confirmé qu'il y avait un accès non autorisé à notre serveur. Actuellement, afin d'éviter la propagation des dommages, nous bloquons la communication avec l'extérieur et enquêtons par des experts externes. On s'attend à ce qu'il prenne un certain temps pour identifier...
Decoy Dog used DNS for C2 and is suspected to be employed in ongoing nation-state cyber-attacks
Mandiant said the compromise resulted from a sophisticated spear-phishing campaign
La semaine dernière, les écoles de la paroisse de St. Landry ont été victimes d'une attaque de ransomware. Le surintendant Milton Batiste III a confirmé l'attaque et travaille actuellement avec la police de l'État de Louisiane pour enquêter. Il n'est pas encore clair quelles données ont été obtenues...
FortiGuard Labs described the vulnerabilities in an advisory published on Monday
A new report shows that 50% of all UK businesses have a basic cyber security skills gap, and 33% have an advanced skills gap
L'entreprise de télévision galicienne CRTVG a été la cible d'une cyberattaque sophistiquée. Selon Rafael Villaverde, PDG de cloud.gal et expert en cybersécurité, l'attaque a probablement commencé par un email trompeur qui a été cliqué par un employé du département des ressources humaines. Une fois l...
SOCRAdar and Falcon Feeds reported that the threat actor allegedly started selling the dataset