[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (2 articles)

|

// AI-powered summary generated at 04:00

> EU Urged to Prepare for Quantum Cyber-Attacks
A discussion paper from the European Policy Centre sets out recommendations for an EU quantum cybersecurity agenda
> Russian Charged with Tech Smuggling and Money Laundering
Man accused of aiding the Kremlin with dual-use tech
> [MàJ] Vulnérabilité dans Zimbra Collaboration Suite (17 juillet 2023)
\[Mise à jour du 26 juillet 2023\] Publication du correctif de sécurité par l'éditeur Le 26 juillet 2023, l'éditeur a publié un correctif de sécurité \[1\] pour cette vulnérabilité immatriculée CVE-2023-37580. Il est donc fortement recommandé de déployer le correctif P41 pour toutes les versions...
> Health Tech Vendor to Pay $31m After Kickback Allegations
NextGen Healthcare was accused of violating False Claims Act
> Acting White House Cyber Director Withdraws Nomination
Reports suggest personal debt behind Kemba Walden’s decision
> TOMRA
L'entreprise TOMRA a été la cible d'une cyberattaque importante affectant directement certains de ses systèmes de données. Les autorités compétentes ont été informées et toutes les ressources internes et externes ont été mobilisées pour contenir et neutraliser l'incident. L'attaque a été découverte...
> Helix
La société de laboratoire Helix a subi une cyberattaque dans la nuit du 15 au 16 juillet, entraînant des retards dans la délivrance des résultats d'analyses, mais aucune fuite de données personnelles n'a été signalée. Les pirates ont tenté d'implanter un "ransomware", un logiciel malveillant qui cry...
> AI Tool WormGPT Enables Convincing Fake Emails For BEC Attacks
Security expert Daniel Kelley worked with the SlashNext team on the research
> George County
Les systèmes informatiques officiels du comté de George, dans le Mississippi, ont été la cible d'une cyberattaque de type ransomware, décrite par les responsables du comté comme une "attaque de force brute de tous les côtés". L'attaque, qui a commencé le samedi, a réussi à pénétrer les systèmes le d...
> Image to Prompt Injection with Google Bard
A prompt injection scenario that I, and others, have been wondering about in the past, is the potential risk associated with chatbots being able to analyze images. Could this ability open up the way for Indirect Prompt Injection attacks? Recently, Google added the ability to uploading and analyze im...
> New Threat Actor Launches Cyber-attacks on Ukraine and Poland
Cisco Talos said the malicious campaigns started in April 2022 and are currently ongoing
> LokiBot Malware Targets Windows Users in Office Document Attacks
Fortinet suggests attackers are leveraging vulnerabilities like CVE-2021-40444 and CVE-2022-30190
> Evaluating blockchain security maturity
Holistic security reviews should reveal far more than simple bugs. Often, these bugs indicate deeper issues that can be challenging to understand and address. Given the time-boxed nature of reviews, security engineers may not have the opportunity to identify all bugs caused by these problems—and the...
> Chinese APT Favorite Backdoor Found in Pakistani Government App
Trend Micro found a backdoor previously exploited by various Chinese threat actors in a popular application used by Pakistan’s government agencies
> NCSC Shares Alternatives to Using a SOC
Security agency’s advice could help save time and money
> Université d'Uppsala
L'Université d'Uppsala a été la cible d'une cyberattaque suspectée d'être d'origine russe. L'attaque a été rendue possible par le détournement d'un compte utilisateur d'un des employés de l'université. Découverte le 14 juillet par le département de sécurité, l'incident a été signalé à la police. L'u...
> Ransomware Costs Financial Services $32bn in Five Years
The figure accounts for losses due to downtime alone
> UK Financial Regulator Urges Banks to Tackle AI-Based Fraud
Prime Minister wants UK to be a global center of AI regulation
> HealthEC LLC
HealthEC LLC, une entreprise de technologie de santé, a informé d'une activité suspecte sur son réseau entre le 14 et le 23 juillet 2023, où des données sensibles de clients ont été potentiellement compromises, incluant des informations personnelles et médicales. L'entreprise a commencé à notifier l...
> New CVSS Version Unveiled Amid Rising Cyber Threats
FIRST has released details of version 4.0 of the standard, which aims to address criticisms of CVSS 3.1