[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (17 articles)

|

// AI-powered summary generated at 20:00

> Phishers Abuse Microsoft Voicemail Service to Trick Users
Avanan spots campaign leveraging Dynamic 365 Customer Voice
> World's Most Expensive Observatory Floored by Cyber-Attack
ALMA suspends astronomical observations
> Everything you need to know about the OpenSSL 3.0.7 Patch (CVE-2022-3602 & CVE-2022-3786)
> TikTok Confirms Chinese Staff Can Access UK and EU User Data
The news comes from the social media giant’s head of privacy in Europe, Elaine Fox
> Cyber Threat Landscape Shaped by Ukraine Conflict, ENISA Report Reveals
The EU cybersecurity agency released its 10th annual threat landscape report on November 3, 2022
> Satys
Le groupe aéronautique Satys, sous-traitant d'Airbus, a été victime d'une cyberattaque massive qui a nécessité la mise en place d'une cellule de crise et la restauration de ses systèmes informatiques. L'attaque a impliqué le ransomware Dagon, une évolution de MountLocker et de Quantum.
> RomCom Weaponized KeePass and SolarWinds Instances to Target Ukraine, Maybe UK
The discovery comes from the BlackBerry Research & Intelligence Team
> Zurich and Mondelez Reach NotPetya Settlement, but Cyber-Risk May Increase
The parties have mutually resolved the matter, but details of the settlement were not provided
> Stranger Strings: An exploitable flaw in SQLite
Trail of Bits is publicly disclosing CVE-2022-35737, which affects applications that use the SQLite library API. CVE-2022-35737 was introduced in SQLite version 1.0.12 (released on October 17, 2000) and fixed in release 3.39.2 (released on July 21, 2022). CVE-2022-35737 is exploitable on 64-bit syst...
> Bot Warning for Retailers Ahead of Busy Shopping Season
Automated threats accounted for 62% of attacks last year
> UK Security Agency to Scan the Country for Bugs
NCSC wants to determine "the vulnerability of the UK"
> San Diego Unified School District
Des données médicales d'étudiants de San Diego ont été compromises lors d'une cyberattaque en octobre. Les noms et informations médicales des étudiants ont été compromis. Les responsables ont rapidement sécurisé le réseau, lancé une enquête et informé les autorités. Des mesures de sécurité supplémen...
> Threat Actor "OPERA1ER" Steals Millions from Banks and Telcos
More than 30 organizations compromised by off-the-shelf tools
> US Hacker Group Indicted For Million-Dollar RICO Conspiracy
The group banded together to engage in a sophisticated cybercrime and tax fraud scheme
> SOMDIAA
Une cyberattaque sur ses systèmes d’informations mettant au ralenti les opérations comptables durant une période de trois semaines environ. En date du 31 décembre 2022, l’ensemble des opérations ont pu être faite normalement sans aucune conséquence sur la clôture de l’année 2022.
> Android Apps With a Million Downloads Led Users to Phishing Sites
Chrome tabs remained open in the background, even while the smartphone was locked
> Dropbox Suffers Breach, 130 GitHub Repositories Compromised
Dropbox believes the actors behind the attack are the same that targeted GitHub users in September
> PenTest Magazine Open Source Toolkit: ropci
Great news! An article about ropci is in the latest free issue of the Pentest Magazine! The article has a lot more info then my ropci blog post or the info on the ropci Github repo. Get your copy and check it out! It also has an article about Nuclei, one of my favorite tools. Cheers. Link: https://p...
> Mobile Phishing Attacks on Government Staff Soar
Lookout report finds over-reliance on unmanaged devices
> Twitter Verified Status Users Flooded with Scams
Elon Musk’s arrival has opened the door for fraudsters