> TODAY'S SUMMARY (17 articles)
Today's cybersecurity news highlights several significant threats and developments. A federal judge deemed the use of Flock for license plate searches as unconstitutional, raising concerns about mass surveillance. In a notable arrest, a member of the ShinyHunters hacking group was detained in Jordan and is cooperating with the FBI. Meanwhile, the Warlock group continues to exploit Microsoft SharePoint vulnerabilities to deploy ransomware. A data breach at the Technical University of Denmark has potentially exposed the information of 200,000 users. Additionally, new vulnerabilities were patched in Fortra's BoKS and GitLab's AI Gateway, underscoring ongoing security risks in software. Lastly, a new ransomware group, N0n, has emerged, indicating an uptick in cyber extortion activities.
|
// AI-powered summary generated at 20:00
The data comes from workforce cyber intelligence and security company Dtex
In a recent 8-K filing with the SEC, the firm said it reached an agreement with shareholders
Sigstore announced the general availability of its free and ecosystem-agnostic software signing service two weeks ago, giving developers a way to sign, verify and protect their software projects and the dependencies they rely on. Trail of Bits is absolutely thrilled to be a part of the project, and...
Between February and July, 81 victim organizations were listed on the groups' data leak sites
Concerns come amid worries over ransomware surge
How to abuse AWS Organizations' default behavior and lateral movement capabilities.
Some 90% of risk is still uninsured, warns industry giant
Man stole 50,000 Bitcoin from notorious dark web marketplace
The dropper hides behind a fake utility app with limited permissions and a small footprint
Medibank believes there is a limited chance paying a ransom would return customers' data
Le groupe aéronautique Satys, sous-traitant d'Airbus, a été victime d'une cyberattaque massive qui a nécessité la mise en place d'une cellule de crise et la restauration de ses systèmes informatiques. L'attaque a impliqué le ransomware Dagon, une évolution de MountLocker et de Quantum.
The app asked for several permissions, including camera, microphone, internet and storage
The cyber insurance market is beginning to stabilize following several years of steep rate increases, according to a recent report
Trail of Bits is publicly disclosing CVE-2022-35737, which affects applications that use the SQLite library API. CVE-2022-35737 was introduced in SQLite version 1.0.12 (released on October 17, 2000) and fixed in release 3.39.2 (released on July 21, 2022). CVE-2022-35737 is exploitable on 64-bit syst...
Another show of strength for the Cooperative Cyber Defence Centre of Excellence
DfE oversight leads to misuse of data on 28 million children
Des données médicales d'étudiants de San Diego ont été compromises lors d'une cyberattaque en octobre. Les noms et informations médicales des étudiants ont été compromis. Les responsables ont rapidement sécurisé le réseau, lancé une enquête et informé les autorités. Des mesures de sécurité supplémen...
Feds claim DDoS attacks are being aimed at critical infrastructure
The hacker behind a tool used by Black Basta had access to the source code used by FIN7