[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (2 articles)

|

// AI-powered summary generated at 04:00

> Incident: Australian vocational and trades education centre hit by Lockbit | iTWire
Australian Education Ransomware Attack, 19 July 2023: Australian Academy of Vocational Education and Trades trading as Academia, has been hit by the Windows ransomware group Lockbit 3.0. The attackers have given the organisation a deadline of 24 July to get in touch and presumably negotiate a ransom...
> [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway (19 juillet 2023)
Le 18 juillet 2023, Citrix a publié un avis de sécurité concernant plusieurs vulnérabilités. La plus critique, dont l'identifiant CVE est CVE-2023-3519, permet à un attaquant non authentifié d'exécuter du code arbitraire à distance. L'équipement est vulnérable s'il est configuré en tant que...
> Ellensburg School District
Vers le 19 juillet 2023, le district scolaire d’Ellensburg a subi une perturbation réseau affectant certains systèmes. Dès la découverte, Ellensburg a pris des mesures immédiates et engagé des spécialistes externes pour enquêter sur la nature et l’étendue de l’incident. L’enquête approfondie a révél...
> Trail of Bits’s Response to OSTP National Priorities for AI RFI
The Office of Science and Technology Policy (OSTP) has circulated a request for information (RFI) on how best to develop policies that support the responsible development of AI while minimizing risk to rights, safety, and national security. In our response, we highlight the following points: To ensu...
> New Vulnerabilities Found in Adobe ColdFusion
Rapid7 has observed that some vulnerabilities in Adobe ColdFusion were still being exploited several days after the patches were published
> CISA Unveils Guide to Aid Firms Transition to Cloud Security
It mentions the CSET, SCuBAGear, Untitled Goose Tool, Decider and Memory Forensic on Cloud
> Incident: Fortescue Metals admits it suffered breach, Cl0p claims credit | iTWire
Australian Mining Cyber Incident, 18 July 2023: Iron ore giant Fortescue Metals targeted by Russian ransomware group. Australian mining company confirms hack occurred on 28 May but data disclosed ‘was not confidential in nature’. The post Incident: Fortescue Metals admits it suffered breach, Cl0p cl...
> drIBAN Fraud Operations Target Corporate Banking Customers
The web injects allow cyber-criminals to manipulate legitimate web pages' content in real time
> JumpCloud Confirms Data Breach By Nation-State Actor
The attack vector was identified as data injection into the firm's commands framework
> Ortivus
Le système de dossiers médicaux électroniques d'Ortivus est actuellement indisponible pour certains clients basés au Royaume-Uni en raison d'une cyberattaque. Pour l'instant, aucun patient n'a été directement affecté et aucun autre système n'a été attaqué. Seuls les clients du centre de données hébe...
> Suspected Scareware Fraudster Arrested After Decade on the Run
Ukrainian said to have caused victim losses of $70m
> WooCommerce Bug Exploited in Targeted WordPress Attacks
Wordfence claims over 157,000 sites have been hit so far
> Estée Lauder Companies Inc.
La société Estée Lauder Companies Inc. a identifié une cyberattaque, où un tiers non autorisé a eu accès à certains de ses systèmes. Suite à la découverte de l'incident, l'entreprise a désactivé certains de ses systèmes et a commencé une enquête avec l'aide d'experts en cybersécurité. L'entreprise p...
> IT Security Pro Jailed for Attempted Extortion
Hertfordshire man pleaded guilty in May
> The Body Shop Japan
Le système de The Body Shop Japan a subi une cyberattaque par ransomware le 18 juillet, provoquant des retards de livraison et d'autres impacts sur les services. Aucune preuve n'a été trouvée que des données aient été transférées à l'extérieur du système de l'entreprise, mais l'incident est toujours...
> Danbury school district
Le district scolaire de Danbury a été victime d'une attaque par rançongiciel le 18 juillet 2023, entraînant des coûts de 202 274 dollars pour la sécurité réseau et la surveillance du crédit, sans payer de rançon. Le conseil municipal a approuvé une demande de financement de plus de 600 000 dollars p...
> BreachForums Admin Pleads Guilty to Hacking Charges
The guilty plea also covered a separate count of possession of child pornography
> Ukraine's CERT-UA Exposes Gamaredon's Rapid Data Theft Methods
The group utilize malware like GAMMASTEEL to rapidly exfiltrate files within 30-50 minutes
> To SOC or not to SOC ?
For environments that are secure by design, a 'full-fat SOC' is not always required.
> Sorillus RAT and Phishing Attacks Exploit Google Firebase Hosting
eSentire found the threat after detecting suspicious code in a manufacturing customer's network