[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (13 articles)

|

// AI-powered summary generated at 16:01

> Toulouse INP
En septembre 2022, Toulouse INP a été victime d'une cyberattaque avec le ransomware AvosLocker. L'attaque a été déclenchée via un compte étudiant compromis et a bloqué l'annuaire, les mécanismes d'authentification et les capacités d'accÚs physique aux bùtiments. Des mesures ont été prises pour rétab...
> Vulnerability in WordPress BackupBuddy Plugin Exploited By Hackers
Wordfence claimed to have blocked 4,948,926 attacks targeting this vulnerability
> Increased Mortality Rates Linked to Cyber-Attacks Against Healthcare Organizations
The report also found that 89% of them experienced an average of 43 attacks in the past 12 months
> Malicious Python Packages and Code Execution via pip download
This week I learned about a design flaw with pip download, which allows an adversary to run arbitrary code. I assumed that running pip install means anything could happen, but pip download seems a bit surprising. Both seem useful for red teaming though. Background This post from Yehuda Gelb named Au...
> Over Three-Quarters of Retailers Hit by Ransomware in 2021
Figure is more than 10% higher than cross-sector average
> Our Statement of Condolence - Queen Elizabeth II - 1926 - 2022
We are deeply saddened by the passing of Her Majesty Queen Elizabeth II. We send our sincerest condolences to the Royal Family.
> Stealing Data with Zix - Bypassing Data Loss Prevention Policies
Background If you haven’t done so yet, read my first Zix exploitation article: Spear Phishing with Zix: An Undisclosed Red Team Method for the Hungry APT, which established baselines to abuse the native organizational trust that Zix provides to perform spear phishing on the affected company. Shortly...
> Rapid7 Discusses SIGMA Spectrum Infusion Pump and WiFi Battery Vulnerabilities
The vulnerabilities, now fixed, allowed for a potential man in the middle attack
> Over 10% of Enterprise IT Assets Found Missing Endpoint Protection
The document analyzes data aggregated from visibility into more than 500,000 IT assets
> Stealing Data with Zix - Bypassing Data Loss Prevention Policies
Background If you haven’t done so yet, read my first Zix exploitation article: Spear Phishing with Zix: An Undisclosed Red Team Method for the Hungry APT, which established baselines to abuse the native organizational trust that Zix provides to perform spear phishing on the affected company. Shortly...
> Ransomware Campaigns Linked to Iranian Govt's DEV-0270 Hackers
DEV-0270 leverages exploits for newly disclosed vulnerabilities to gain access to devices
> Darktrace's Share Value Plummets as Thoma Bravo Buyout Falls Through
The buyout fell through hours before the UK company said that millions of pounds in revenue had been wrongly recognized in this year's accounts instead of last year's
> Student Loan Breach Exposes 2.5M Records
2.5 million people were affected, in a breach that could spell more trouble down the line.
> Researchers Reveal New Iranian Threat Group APT42
Group has been active since at least 2015
> The North Face Warns of Major Credential Stuffing Campaign
Apparel giant detects unusual activity on accounts
> Watering Hole Attacks Push ScanBox Keylogger
Researchers uncover a watering hole attack likely carried out by APT TA423, which attempts to plant the ScanBox JavaScript-based reconnaissance tool.
> NATO-Member Albania Cut Ties With Iran Over Cyber-Attack
Tehran denied any link, claiming Tirana’s action was “based on such baseless claims”
> Ukraine Shutters Two More Russian Bot Farms
Facilities used to spread Russian disinformation
> Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
Over 130 companies tangled in sprawling phishing campaign that spoofed a multi-factor authentication system.
> 'DangerousSavanna' Hackers Targeted Financial Institutions in Africa For Two Years
The campaign relied on spearphishing techniques to initiate infection chains