> TODAY'S SUMMARY (3 articles)
Today's cybersecurity news highlights several key threats and trends. The suspected member of the ShinyHunters group, known as "Rey," has been detained in Jordan, aiding the FBI in identifying other group members involved in digital extortion. Meanwhile, a new China-aligned cyber espionage group, TA419, has been targeting U.S. AI policy experts through credential phishing campaigns tied to Microsoft. This indicates a rising trend in nation-state actors focusing on critical technology sectors. Additionally, ongoing analysis of User Agent Strings in honeypot logs reveals continued interest in understanding attacker behaviors. These developments underscore the persistent threats from both cybercriminal groups and state-sponsored actors in the evolving cybersecurity landscape.
|
// AI-powered summary generated at 08:00
Jumpsec report identified Karakurt, Lockbit and Vice Society among groups responsible
Akamai warns of new Mirai-like botnet written in Go
Le 4 avril 2023, le Centre médical Maimonides a découvert un accès non autorisé à des informations de patients sur l'un de ses serveurs. L'enquête a révélé que le pirate avait accédé au serveur du 18 mars 2023 au 4 avril 2023. Les informations potentiellement consultées comprenaient les noms, les ad...
Juniper Research says most of the pain will be felt in the US
La mairie de Peisey-Nancroix a été victime d'une cyber-attaque qui a crypté toutes ses données informatiques. Les données personnelles des services municipaux pourraient avoir été extraites et/ou diffusées. Les conséquences de cette attaque peuvent être des fraudes ou l'usurpation d'identité. La mai...
Most of these apps rely on clipper malware to steal the contents of the Android clipboard
Four of these vulnerabilities enabled potential attackers to perform remote code execution
\[mise à jour du 11 mai 2023\] Possibilité de contournement du correctif proposé par l'éditeur par le biais de la CVE-2023-29324 \[mise à jour du 20 avril 2023\] clarification de la recommandation pour le filtrage du flux SMB \[mise à jour du 29 mars 2023\] complément d'information et...
SentinelOne shared details about the new campaign in an advisory published on Thursday
Negligence could have caused "significant damage"
Le journal a été victime d'une cyberattaque par ransomware en mars. Malgré cela, ils ont réussi à publier le journal chaque semaine en créant les pages à partir de zéro. En avril, il y a eu un incendie à l'usine d'impression habituelle du journal. Ils ont dû trouver une nouvelle usine d'impression d...
Organizations outside Ukraine could be targeted
Tens of thousands of mailboxes targeted
Cyberattaque revendiquée par Black Basta début juin.
The critical vulnerability allows remote code execution and was assigned a CVSS v3.1 score of 9.8
The operation seized four servers, 7TB of data and 1909.4 Bitcoins (roughly $47.3m)
Le système scolaire du comté de Jefferson a été victime d'une attaque informatique par ransomware pendant les vacances de printemps. L'équipe technologique a immédiatement pris des mesures pour stopper l'attaque et a informé les autorités locales et étatiques. Le ransomware est une forme de logiciel...
The Chancellor of the Duchy of Lancaster, Oliver Dowden, confirmed the plans earlier today
Tool won't democratize cybercrime, agency argues
Tl;dr: Trail of Bits has launched a practice focused on machine learning and artificial intelligence, bringing together safety and security methodologies to create a new risk assessment and assurance program. This program evaluates potential bespoke risks and determines the necessary safety and secu...