[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> Two Vulnerabilities Found in Galaxy App Store
Both issues reportedly affected only Samsung devices running Android 12 and below
> Most Federal Agencies Ignored GAO's Cybersecurity Recommendations
Out of the 335 public recommendations issued since 2010, 190 still needed to be implemented
> CVE-2023-24068 && CVE-2023-24069: Abusing Signal Desktop Client for fun and for Espionage
Identification While using signal, it was observed that the preview of an image was still visible even after having deleted the image because the image had been “replied” to. After looking through multiple files, the culprit directory was identified. C:\Users\foo\AppData\Roaming\Signal\attachments.n...
> Ad Fraud Scheme Tops 12 Billion Daily Bid Requests
Vastflux operation injected obfuscated JavaScript into ads
> Riot Games Halts Work After Cyber-Attack
Compromise impacts developer's ability to release updates
> Harnessing the eBPF Verifier
During my internship at Trail of Bits, I prototyped a harness that improves the testability of the eBPF verifier, simplifying the testing of eBPF programs. My eBPF harness runs in user space, independently of any locally running kernel, and thus opens the door to testing of eBPF programs across diff...
> New Government Cyber Advice for ÂŁ100bn UK Charity Sector
NCSC report warns of surging threat to the third sector
> WhatsApp Hit with €5.5m fine for GDPR Violations
The case raised disagreements between Ireland's DPC and the European Data Protection Board
> Introducing RPC Investigator
A new tool for Windows RPC research. Trail of Bits is releasing a new tool for exploring RPC clients and servers on Windows. RPC Investigator is a .NET application that builds on the NtApiDotNet platform for enumerating, decompiling/parsing and communicating with arbitrary RPC servers. We’ve added v...
> "Workarounds" Helped Royal Mail Resume Shipping After Ransomware Attack
Thanks to technical “workarounds,” Royal Mail has been able to resume “limited” export services one week after being hit by cyber-attack
> Phishers Use Blank Images to Disguise Malicious Attachments
Researchers see another sophisticated attempt to obfuscate links
> AerCap Holdings
AerCap Holdings, acteur majeur dans le secteur de la location d'avions, a été victime d'une attaque par ransomware le 17 janvier, mais a affirmé avoir le plein contrôle de ses systèmes informatiques sans perte financière immédiate. La société, partiellement détenue par General Electric, qui a vu sa...
> API Attacker Steals Data on 37 Million T-Mobile Customers
Carrier says attack began in November 2022
> Massive Credential Stuffing Campaign Hits 35,000 PayPal Users
Payments giant says attacks happened in early December
> Le département de l'éducation de Bâle
Des hackers ont réussi à s'introduire dans le système informatique du département de l'éducation de Bâle, en Suisse, pour voler environ 1,2 téraoctet de données. Les hackers ont tenté d'extorquer de l'argent en échange de la restitution des données, mais le département n'a pas cédé à leur demande. L...
> Roaming Mantis' Hacking Campaign Adds DNS Changer to Mobile App
The new feature can infiltrate WiFi routers and undertake DNS hijacking
> ThreatModeler Makes DevSecOps More Accessible With New Marketplace
The store includes pre-built threat models that can be integrated into a development pipeline
> Le parti politique allemand SPD
Des comptes de messagerie électronique appartenant à des membres du comité directeur du SPD ont été piratés. Les pirates ont exploité une faille de sécurité dans un serveur Exchange et ont volé des données. La piste de l'attaque mène en Russie. Les autorités allemandes ont été informées et les perso...
> Mailchimp Hit By Another Data Breach Following Employee Hack
According to the company, the incident was limited to 133 accounts
> Ransomware Payments Fall by 40% in 2022
The Chainalysis report found that victim organizations are increasingly reluctant to pay ransom demands