> TODAY'S SUMMARY (13 articles)
Today's cybersecurity landscape highlights significant threats and trends. A vulnerability under attack, traced to a China-hosted IP, underscores the need for robust bug-hunting tools like Anthropic's Mythos. The Warlock group, also linked to China, is exploiting Microsoft SharePoint vulnerabilities to deploy ransomware, while the Technical University of Denmark has suffered a breach exposing data for 200,000 users. Additionally, critical vulnerabilities in Fortra's BoKS and GitLab's AI Gateway have been patched, emphasizing ongoing security challenges. New developments in AI, such as doxx.net's platform to prevent AI misadventures, indicate a growing focus on managing AI risks.
|
// AI-powered summary generated at 16:01
The flaws affected the Flexlan FX3000 and FX2000 series wireless LAN devices made by Contec
Eset also said the same university was targeted during student protests in May 2020
En septembre 2022, Toulouse INP a été victime d'une cyberattaque avec le ransomware AvosLocker. L'attaque a été déclenchée via un compte étudiant compromis et a bloqué l'annuaire, les mécanismes d'authentification et les capacités d'accès physique aux bâtiments. Des mesures ont été prises pour rétab...
The report also suggested the Android spyware Joker took third place in the mobile index
Data leaks, breaches and intrusions caused headaches over past year
This week I learned about a design flaw with pip download, which allows an adversary to run arbitrary code.
I assumed that running pip install means anything could happen, but pip download seems a bit surprising.
Both seem useful for red teaming though.
Background This post from Yehuda Gelb named Au...
Overall incidents fell in H1 2022, according to FOI data
Redmond passes 1000 CVEs for the year already
Background If you haven’t done so yet, read my first Zix exploitation article: Spear Phishing with Zix: An Undisclosed Red Team Method for the Hungry APT, which established baselines to abuse the native organizational trust that Zix provides to perform spear phishing on the affected company. Shortly...
iOS 16 supports iPhone devices starting from the iPhone 8
The attacks have been underway since early 2021 and appear focused on intelligence gathering
Background If you haven’t done so yet, read my first Zix exploitation article: Spear Phishing with Zix: An Undisclosed Red Team Method for the Hungry APT, which established baselines to abuse the native organizational trust that Zix provides to perform spear phishing on the affected company. Shortly...
Some of the Steam accounts stolen were reportedly valued between $100,000 and $300,000
Mitel MiVoice appliance bug exploited in sophisticated attack
2.5 million people were affected, in a breach that could spell more trouble down the line.
Prime Minister warns of disruption at border crossings
Malware continues to infect QNAP devices
Researchers uncover a watering hole attack likely carried out by APT TA423, which attempts to plant the ScanBox JavaScript-based reconnaissance tool.
Iran would have directed several networks of cyber threat actors in support of its political goals
The flaws affect HP EliteBook devices and have CVSS scores between 7.5 and 8.2