> TODAY'S SUMMARY (14 articles)
Today's cybersecurity landscape highlights several critical threats and developments. Debian has issued advisories for significant vulnerabilities, including an authentication bypass in ruby-rack-session and multiple denial-of-service and arbitrary code execution vulnerabilities in Wireshark. The FBI is making progress against the ShinyHunters group with the arrest of a suspect in Jordan who is cooperating with investigators. Additionally, the China-aligned cyber espionage group TA419 is targeting U.S. AI policy experts with sophisticated credential phishing attacks. Meanwhile, Warlock ransomware continues to exploit unpatched SharePoint vulnerabilities to attack critical infrastructure globally. These incidents underscore the ongoing challenges posed by advanced persistent threats and the evolving tactics of cybercriminals.
|
// AI-powered summary generated at 20:00
The cybersecurity firm confirms that it has observed AI being used to generate malware
D'après cet article, l'entreprise Heidelberg Materials a été victime d'une cyberattaque. Cette attaque a affecté les systèmes numériques de l'entreprise à Slite. L'attaque a eu lieu jeudi 25 mai. Aucune information n'est donnée sur les conséquences de cette attaque. Un photojournaliste nommé Erik Da...
Le fabricant de paracétamol Granules India a signalé une importante perturbation de ses opérations suite à une cyberattaque. L'attaque a entraîné des changements significatifs dans les systèmes informatiques de l'entreprise, provoquant une interruption majeure de ses activités. Granules India a isol...
Researchers detail the DLL side-loading technique used to deploy malware that facilitates credential theft and lateral movement
L'Université de Düsseldorf a de nouveau été victime d'une cyberattaque. Les pirates ont eu accès aux e-mails, y compris à l'accès au chancelier Martin Goch.
Illicit North Korean IT workers send the money they made from abroad to fund Kim’s regime, US Treasury Department said
Jessica Berlin, an independent consultant, calls for private sector task force to defend democracies
La chaîne de magasins La Cordée a été victime d'un "cyber-incident" qui affecte ses systèmes de paiement, son réseau internet et son système téléphonique. Les activités dans les sept magasins physiques sont affectées, mais le site web fonctionne normalement. Les détails de l'attaque sont gardés conf...
Becky will be officially inducted into the Hall of Fame during Infosecurity Europe 2023
Organizations now acknowledge that having clean and recoverable backups is a critical element of a good business continuity plan
Un concessionnaire automobile dans le district de Straubing a été victime d'une attaque de ransomware. Les données ont été chiffrées et les propriétaires de l'entreprise ont contacté la police. Une équipe spéciale de la police a été déployée pour aider à enquêter sur l'attaque. Le montant des dommag...
The survey also revealed that UK CEOs have a low level of understanding of cyber risks
La ville de Saint-Brevin-les-Pins a été victime d'une cyberattaque. Tous les services municipaux ont été impactés, sauf le standard qui fonctionne par internet. Les équipes sont mobilisées pour redémarrer les serveurs en toute sécurité. L'accueil des usagers est assuré malgré la situation. La munici...
L'Agence de Coopération Intermunicipale en Santé Pé da Serra (Acispes) a été victime d'une cyberattaque. Toutes les fonctions administratives et assistentielles ont été temporairement suspendues. La situation est en cours d'investigation et les mesures nécessaires ont été prises. La santé publique e...
Rewards range from $750 for certain MiTM scenarios to $30,000 for some ACE vulnerabilities
Proliance Surgeons a informé 437 392 patients d'une violation de données suite à une attaque par ransomware qui a entraîné le chiffrement de fichiers et le vol de données personnelles, y compris des informations médicales et d'identification. La cyberattaque a été détectée pour la première fois le 2...
The attack targeted Israeli websites and has been linked to a nation-state actor from Iran
According to Kaspersky, GoldenJackal has been active since 2019
Read the official announcement on the PyPI blog as well! For the past year, we’ve worked with the Python Package Index to add a new, more secure authentication method called “trusted publishing.” Trusted publishing eliminates the need for long-lived API tokens and passwords, reducing the risk of sup...
With over 50,000 downloads, the screen recording app was initially legitimate, but the malicious functionality was later implemented