> TODAY'S SUMMARY (3 articles)
Today's cybersecurity news highlights several key threats and trends. The suspected member of the ShinyHunters group, known as "Rey," has been detained in Jordan, aiding the FBI in identifying other group members involved in digital extortion. Meanwhile, a new China-aligned cyber espionage group, TA419, has been targeting U.S. AI policy experts through credential phishing campaigns tied to Microsoft. This indicates a rising trend in nation-state actors focusing on critical technology sectors. Additionally, ongoing analysis of User Agent Strings in honeypot logs reveals continued interest in understanding attacker behaviors. These developments underscore the persistent threats from both cybercriminal groups and state-sponsored actors in the evolving cybersecurity landscape.
|
// AI-powered summary generated at 08:00
Covert crackdown on Mahsa Amini protests continues
Threat actor claims to have info on 170,000 victims
Entre le 2 février et le 9 mars de cette année, Cummins Behavioral Health Systems (CBHS), une organisation à but non lucratif basée en Indiana, a été victime d'une cyberattaque. L'incident a été découvert lorsque CBHS a trouvé une note de rançon dans leur système le 9 mars, sans aucune donnée chiffr...
Ivanti warns of "human-sized" security gaps
The White House and a bipartisan group of 12 senators have endorsed the legislation
Le journal catholique "Our Sunday Visitor" a subi une cyberattaque. Des données sensibles de ses abonnés ont été exposées. Le journal a lancé une enquête et contacté les autorités. Les informations exposées incluent des données personnelles et financières. Le journal prévoit d'envoyer des notificati...
Asec recorded attacks in May and October 2022
The campaign lured Facebook business accounts with Google ads and fake Facebook profiles
Une cyberattaque a eu lieu entre le 2 et le 7 mars et a touché les comptes de recouvrement de dettes des hôpitaux et des cabinets médicaux locaux. Les fichiers volés contenaient des informations personnelles telles que les noms, adresses, numéros de sécurité sociale et autres informations de compte....
Activity linked to Pakistani state group APT36
Data Protection and Digital Information Bill designed to reduce paperwork
WatchGuard has been authorized by the CVE Program as a Certified Numbering Authority (CNA). As a CNA, WatchGuard can now assign Common Vulnerability Exposure (CVE) IDs and publish CVE records for product security disclosures discovered internally and by external researchers. Information technology a...
Trend Micro stops a record 146 billion discrete threats
New campaign leverages a new version of the SoulSearcher loader and the Soul modular framework
Once in a while I go build some fun new tools to adopt new tech. Just last week OpenAI made their gpt-3.5-turbo model accessible via API endpoints.
Update: The latest version also supports GPT-4.
So, I thought it’s time to start building a tool to leverage it.
What is yolo? Do you know those moments...
The findings come from Microsoft, in an advisory published on Monday
A Catalonia government statement attributed the attack to the threat actor known as RansomHouse
Le réseau informatique de l'American Bar Association a été compromis par un tiers non autorisé. Les noms d'utilisateur et les mots de passe des membres ont été obtenus. Les mots de passe étaient "hashés" et "salés", ce qui signifie qu'ils étaient cryptés. Les membres sont encouragés à changer leurs...
Russian state-backed hackers is shifting from disruption tactics, with the likes of wiper attacks, to cyber espionage
Tool bloat is making it harder to detect and contain attacks