[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (7 articles)

|

// AI-powered summary generated at 12:00

> Zero-Day Bug Responsible for Massive Twitter Breach
Over five million accounts were exposed
> NHS Cyber-Attack Delays Ambulances
Digital supplier hit by suspected ransomware
> IHK Kassel-Marburg
Début août 2022, une attaque sophistiquée a visé les systèmes de l'organisation allemande IHK, incitant son fournisseur de services, IHK-GfI, à déconnecter ses 79 chambres de commerce de l'internet pour limiter les dégâts. Des experts du BSI et de la ZAC NRW soupçonnent des motivations d'espionnage...
> GwisinLocker Ransomware Targets Linux Systems in South Korea
The malware was detected in campaigns targeting firms in the industrial and pharmaceutical space
> Hackers Exploit Hostinger's Preview Domain Feature to Launch Phishing Campaigns
The new feature enables access to a site before it is accessible globally
> Semikron
L'attaque a conduit à l'arrêt de tous les équipements informatiques et au redémarrage sur une nouvelle infrastructure IT. Tous les départements de l'entreprise ont été affectés et la société a eu recours à l'activité partielle afin de compenser.
> Cybercrime a Key Revenue Stream For North Korea's Weapons Program
North Korea stole millions of dollars in crypto assets in at least one major hack
> Over 60% of Organizations Expose SSH to the Internet
ExtraHop study finds sensitive protocols are not being managed securely
> Shedding smart contract storage with Slither
You think you’ve found a critical bug in a Solidity smart contract that, if exploited, could drain a widely used cryptocurrency exchange’s funds. To confirm that it’s really a bug, you need to figure out the value at an obscure storage slot that has no getter method. Adrenaline courses […]
> UK Branded Europe’s “Capital of Card Fraud”
Think tank claims British consumers suffer the highest losses
> Chinese Info Ops Campaign Tied to PR Firm
Inauthentic internet assets used to improve China’s image abroad
> 'WannaCry' ransomware: guidance updates
Jon L provides an update on the NCSC's guidance on the 'WannaCry' ransomware.
> Hackers Exploit Atlassian Confluence Vulnerability to Deploy New 'Ljl' Backdoor
The TA likely used RAR and 7zip to archive files and folders from multiple directories
> CREST and OWASP Partner on Verification Standard Program
The standard is designed to provide buyers of application security assessment services with high levels of assurance
> CVE-2022-22256: Huawei HWLog KASLR Leak
In this advisory we are disclosing a vulnerability in the Huawei log device that allows any unprivileged process to learn the value of randomized kernel pointers. The vulnerability can be used to defeat KASLR mitigation. Huawei kernels are shipped with custom log devices (/dev/hwlog_dubai, /dev/hwlo...
> Gaming Sector Cyber-Attacks Up 167% in Last 12 Months
The US was the main target of attackers, followed by Switzerland, India, Japan and the UK
> Users Still in the Dark Over $5m Theft From Blockchain Firm Solana
Thousands of hot wallets drained in latest crypto blow
> CVE-2022-22252: Huawei HWLog Vmalloc Use-After-Free
In this advisory we are disclosing a vulnerability in the Huawei log device that allows any unprivileged process to disclose sensitive information from the kernel. Huawei kernels are shipped with custom log devices (/dev/hwlog_dubai, /dev/hwlog_exception and /dev/hwlog_jank) that facilitate better s...
> Ukraine Shutters Major Russian Bot Farm
Over one million bots used to spread disinformation, says Kyiv
> Experts Warn of Fake Football Ticket Scams
Fraudsters set to ramp up efforts as Premier League season approaches