> TODAY'S SUMMARY (17 articles)
Today's cybersecurity news highlights several significant threats and developments. A federal judge deemed the use of Flock for license plate searches as unconstitutional, raising concerns about mass surveillance. In a notable arrest, a member of the ShinyHunters hacking group was detained in Jordan and is cooperating with the FBI. Meanwhile, the Warlock group continues to exploit Microsoft SharePoint vulnerabilities to deploy ransomware. A data breach at the Technical University of Denmark has potentially exposed the information of 200,000 users. Additionally, new vulnerabilities were patched in Fortra's BoKS and GitLab's AI Gateway, underscoring ongoing security risks in software. Lastly, a new ransomware group, N0n, has emerged, indicating an uptick in cyber extortion activities.
|
// AI-powered summary generated at 20:00
Researchers at ESET found evidence of previously undocumented custom tools used by the hackers
We are all in it together, says the DoE's chief information officer
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in August and September.
Articles
AuthPoint ADFS agent installation fails on secondary server
AuthPoint Gateway status is Not Installed or Not Connected after upgrade to...
Google embeds in cloud security market with new software suite
The leak was caused by an access key being made publicly available on GitHub for almost five years
Earlier this year, I successfully completed my internship at Trail of Bits and secured a full-time position as a Blockchain Security Analyst. This post is not intended to be a technical description of the work I did during my internship. Rather, it is intended to describe my general experience as a...
Trend Micro found evidence of new PayPal scammers impersonating crypto-related businesses
The security risks posed by deepfake technology are increasing
tl;dr: Our publicly available Semgrep ruleset now has 11 rules dedicated to the misuse of machine learning libraries. Try it out now! Picture this: You’ve spent months curating images, trying out different architectures, downloading pretrained models, messing with Kubernetes, and you’re finally read...
Many admitted to sending messages on Teams they should not have
The websites of several major US airports were disrupted on October 10, 2022
Ukraine looks to enhance European integration with ENISA special partner status
Cyber-criminals could use the leaked source code to help launch attacks
A group of researchers have guessed 100% of six-character passwords using this attack
Schoenbohm accused of having maintained contacts with people involved with Russian security services
Some of the malicious apps are able to evade detection and continue to make it onto legitimate app stores
Factors contributing to mental health challenges included poor culture and the stressful nature of the work
The group focuses on utilizing open-source software for malicious purposes
In a joint advisory, three US agencies, NSA, CISA and FBI, warned about Chinese threat actors
The insurance market has detected “unusual activity” and turned off its systems