[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (7 articles)

|

// AI-powered summary generated at 12:00

> Escanor RAT Malware Deployed Via Microsoft Office and PDF Documents
The malware was first released for sale on January 26, 2022 as an HVNC implant, but later evolved
> Threat Actor Deploys Raven Storm Tool to Perform DDoS Attacks
The malware is reportedly capable of server takedown, Wi-Fi attacks and application layer attacks
> Fake Reservation Links Prey on Weary Travelers
Fake travel reservations are exacting more pain from the travel weary, already dealing with the misery of canceled flights and overbooked hotels.
> DDoS Protection Weaponized to Deliver RATs
New campaign disguised as fake Cloudflare pop-up
> Hackers Target ATM Maker for Bitcoins
General Bytes confirms serious attack last week
> iPhone Users Urged to Update to Patch 2 Zero-Days
Separate fixes to macOS and iOS patch respective flaws in the kernel and WebKit that can allow threat actors to take over devices and are under attack.
> Car Dealership Hit by Major Ransomware Attack
Holdcroft Motor Group says most systems back online now
> China-backed APT41 Group Hacked at Least 13 Victims in 2021
The majority of the attacks spotted relied primarily on SQL injections on targeted domains
> Google Patches Chrome’s Fifth Zero-Day of the Year
An insufficient validation input flaw, one of 11 patched in an update this week, could allow for arbitrary code execution and is under active attack.
> Microsoft: Cryptojackers Continue to Evolve to Be Stealthier and Spread Faster
Cryptojackers take advantage of legitimate system binaries on more than 200,000 devices daily
> Apple Warns of Critical Security Risk in Safari For iPhones, iPads and Macs
The vulnerability gave hackers the ability to infiltrate WebKit, the engine that powers Safari
> Using mutants to improve Slither
Improving static analysis tools can be hard; once you’ve implemented a good tool based on a useful representation of a program and added a large number of rules to detect problems, how do you further enhance the tool’s bug-finding power? One (necessary) approach to coming up with new rules […]
> Businesses Found to Neglect Cybersecurity Until it is Too Late
The UK government report found that many leaders only review cybersecurity practices following an incident
> Estonia Repels Biggest Cyber-Attack Since 2007
Tiny Baltic nation riles Russia by removing monuments
> The road to the apprenticeship
Finding talent is hard, especially in the blockchain security industry. The space is new, so you won’t find engineers with decades of experience with smart contracts. Training is difficult, as the technology evolves constantly, and online content quickly becomes outdated. There are also a lot of mis...
> UK Carrier Claims to Block One Million Vishing Calls Per Day
EE says AI tech is stopping international scams
> Cyber Tops Staff Retention as Biggest Business Risk
PwC report finds execs are paying more attention to risk management
> Knowledge Base Digest - July 2022
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in June and July (note that previously published June Knowledge Base digest was incomplete): Articles Why do I see a "failed to connect B channel" Firebox log message? Ho...
> Hackers Deploy Bumblebee Loader to Breach Target Networks
Most Bumblebee infections started by end-users executing LNK files
> ATMZOW JS Sniffer Campaign Linked to Hancitor Malware
ATMZOW infected at least 483 websites across four continents since the beginning of 2019