> TODAY'S SUMMARY (17 articles)
Today's cybersecurity news highlights several significant threats and developments. A federal judge deemed the use of Flock for license plate searches as unconstitutional, raising concerns about mass surveillance. In a notable arrest, a member of the ShinyHunters hacking group was detained in Jordan and is cooperating with the FBI. Meanwhile, the Warlock group continues to exploit Microsoft SharePoint vulnerabilities to deploy ransomware. A data breach at the Technical University of Denmark has potentially exposed the information of 200,000 users. Additionally, new vulnerabilities were patched in Fortra's BoKS and GitLab's AI Gateway, underscoring ongoing security risks in software. Lastly, a new ransomware group, N0n, has emerged, indicating an uptick in cyber extortion activities.
|
// AI-powered summary generated at 20:00
Noose tightens around notorious cybercrime group
UK security agency makes it easier to assess credibility of alerts
There are some neat TTPs that I don’t use frequently, and if the time arises, I need to dig up details again. So, I figured to write some of them down, starting with SSH Agent Hijacking.
What is SSH Agent Hijacking? Short story, if you have keys added to an SSH Agent an adversary with root permissio...
Researchers claim thousands of global customers were impacted
Rob Joyce was invited to speak during the Mandiant Worldwide Information Security Exchange (mWISE) event on October 18, 2022
With ECR permissions you can easily distribute a backdoor to production servers, developer's laptops, or CI/CD pipelines and own the environment by gaining privileged permissions.
Most of the funds were later returned following negotiations with the hacker
EY finds younger workers are prone to engage in risky behavior
Andrew Haberlandt During my summer internship at Trail of Bits, I worked on the fork of the RBPF JIT compiler that is used to execute Solana smart contracts. The RBPF JIT compiler plays a critical role on the Solana blockchain, as it facilitates the execution of contracts on validator nodes by defa...
For this year’s edition, ENISA introduced a new slogan for the event, #Choose2BeSafeOnline
New report provides in-depth look at novel NAS-based threat
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in August and September.
Articles
AuthPoint ADFS agent installation fails on secondary server
AuthPoint Gateway status is Not Installed or Not Connected after upgrade to...
Sonatype reveals scale of threats to open source ecosystem
The flaw could allow an attacker to connect to clients and control the Zoom Apps running in it
Earlier this year, I successfully completed my internship at Trail of Bits and secured a full-time position as a Blockchain Security Analyst. This post is not intended to be a technical description of the work I did during my internship. Rather, it is intended to describe my general experience as a...
Certain components in Java Swing will interpret text as HTML content if it starts with
The attackers reportedly remained active on some networks for more than a year
tl;dr: Our publicly available Semgrep ruleset now has 11 rules dedicated to the misuse of machine learning libraries. Try it out now! Picture this: You’ve spent months curating images, trying out different architectures, downloading pretrained models, messing with Kubernetes, and you’re finally read...
Gang exploited keyless entry systems to steal vehicles
Vinomofo the latest to suffer a serious security incident