> TODAY'S SUMMARY (13 articles)
Today's cybersecurity landscape highlights significant threats and trends. A vulnerability under attack, traced to a China-hosted IP, underscores the need for robust bug-hunting tools like Anthropic's Mythos. The Warlock group, also linked to China, is exploiting Microsoft SharePoint vulnerabilities to deploy ransomware, while the Technical University of Denmark has suffered a breach exposing data for 200,000 users. Additionally, critical vulnerabilities in Fortra's BoKS and GitLab's AI Gateway have been patched, emphasizing ongoing security challenges. New developments in AI, such as doxx.net's platform to prevent AI misadventures, indicate a growing focus on managing AI risks.
|
// AI-powered summary generated at 16:01
Study highlights threat detection challenge for many organizations
Cops launched public awareness campaign in June to warn potential victims
Background If you haven’t done so yet, read my first Zix exploitation article: Spear Phishing with Zix: An Undisclosed Red Team Method for the Hungry APT, which established baselines to abuse the native organizational trust that Zix provides to perform spear phishing on the affected company. Shortly...
Instagram allowed children to run business accounts, which showed phone numbers and email addresses
Go-Ahead is working through its incident response plans
Background If you haven’t done so yet, read my first Zix exploitation article: Spear Phishing with Zix: An Undisclosed Red Team Method for the Hungry APT, which established baselines to abuse the native organizational trust that Zix provides to perform spear phishing on the affected company. Shortly...
The ransomware group claimed to have downloaded 700GB of data from GSE
Kaspersky also observed an increase in the number of programs that can steal secrets
2.5 million people were affected, in a breach that could spell more trouble down the line.
Overby-Seawell, a firm providing multiple clients with insurance services is alleged to have been the source of the breach
It reportedly targets the banking credentials of Android users via apps with 60,000 installations
Researchers uncover a watering hole attack likely carried out by APT TA423, which attempts to plant the ScanBox JavaScript-based reconnaissance tool.
The tool highlights the growth in attacks against online services and MFA authorization mechanisms
UK Treasury demands exchanges report suspected breaches
Over 130 companies tangled in sprawling phishing campaign that spoofed a multi-factor authentication system.
Personal info of "certain customers" was affected
US government still working out what went wrong
Recently I read this excellent post by Evan Sultanik about exploiting pickle files on Trail of Bits. There was also a DefCon30 talk about backdooring pickle files by ColdwaterQ.
This got me curious to try out backdooring a pickle file myself.
Pickle files - the surprises Surprisingly Python pickle f...
It would allow police to search billions of mobile device-based records, including GPS data
The bug was discovered by developer Jeff Johnson, who detailed his findings in a blog post