[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (1 articles)

|

// AI-powered summary generated at 08:00

> Menaces liées aux vols de cookies et contre-mesures (27 mai 2022)
Les cookies de session de navigateur utilisés pour l'authentification représentent une cible privilégiée de plusieurs profils d'attaquants. Ils constituent un vecteur d'intrusion ou un levier de latéralisation particulièrement intéressant en permettant de contourner l'authentification...
> Report Explores Child’s Data Safety Legislation Across 50 Countries
Comparitech report calls for further protection of children’s data online as legislation in many countries deemed insufficient
> India's SpiceJet Strands Planes After Being Hit By Ransomware Attack
SpiceJet planes have been stranded following a ransomware attack on Tuesday
> Cyber threat Overview 2021 (23 mai 2022)
Version française: 🇫🇷 In this Cyber threat overview, ANSSI looks back at the major trends that have marked the cyber landscape in 2020-2021 and proposes short-term prospects for change. These trends are part of a continuing increase in the threat level. This is backed up by the fact that the...
> 18 Oil and Gas Companies Take Cyber Resilience Pledge
Energy corporations agree to cooperate on cybersecurity amid surging attacks on the sector
> Multi-Continental Operation Leads to Arrest of Cybercrime Gang Leader
The 37-year-old man is alleged to have spearheaded major phishing campaigns and business email compromise schemes
> Diligent Corporation
La société Diligent Corporation, fournisseur de logiciels en tant que service, a subi une violation de données confidentielles après que des hackers ont accédé à un système interne de son acquisition Steele Compliance en mai 2022. Les informations volées incluent des noms, adresses, adresses e-mail...
> Three-quarters of Security Pros Believe Current Cybersecurity Strategies Will Shortly Be Obsolete
New research shows companies are falling behind when it comes to developing strategies to protect themselves against cyber-attacks
> State of Cybersecurity Report 2022 Names Ransomware and Nation-State Attacks As Biggest Threats
Ransomware, nation-state attacks, and supply chains were cited as the biggest threats in the Infosecurity Group's annual report
> CVE-2021-37107: Huawei Peripheral DMA Memory Access Permission Bypass
Summary Last year we published research at Black Hat in which we disclosed multiple vulnerabilities in Huawei Kirin SoC’s DDR Controller (DMSS) Access Permission system which allowed some SoC cores or DMA-capable peripherals to directly access secure world memory and completely compromise the entire...
> Organizations Urged to Fix 41 Vulnerabilities Added to CISA’s Catalog of Exploited Flaws
The newly added vulnerabilities span six years, with the oldest disclosed in 2016
> Messages Sent Through Zoom Can Expose People to Cyber-Attack
Zoom has experienced several vulnerabilities in its software.
> CVE-2021-37109: Huawei Baseband MPU Security Protection Bypass via EDMA
Summary There is a vulnerability in the Huawei Kirin SoC’s DDR Controller (DMSS) Access Permission system which allows the baseband to bypass the Baseband’s MPU memory protections and circumvent RO and NX protections. The vulnerability was fixed in February 2022. Vulnerability Details CVE-2021-22430...
> UK Government Cybersecurity Advisory Board Applications Now Open
Applications for joining the Government Cyber Security Advisory Board are now open.
> GoodWill Ransomware Demands People Help the Most Vulnerable
Ransomware detected in India is calling upon people to assist in feeding, clothing and making healthcare accessible to the poor.
> CVE-2021-37115: Huawei DMSS Memory Access Management Configuration Unathorized Rewrite Via ASP DMA
Summary Last year we published research at Black Hat in which we disclosed multiple vulnerabilities in Huawei Kirin SoC’s DDR Controller (DMSS) Access Permission system which allowed some SoC cores or DMA-capable peripherals to directly access secure world memory and completely compromise the entire...
> 68% of Legal Sector Data Breaches Caused by Insider Threats
Over half of breaches were caused by human error, according to ICO's data
> Senate Report: US Government Lacks Comprehensive Data on Ransomware
The report said the federal government should prioritize data collection on ransomware attacks
> CVE-2021-39986: Huawei Baseband Memory Access Permission Bypass And DMSS Memory Access Management Configuration Unathorized Rewrite Via LPMCU
Summary Last year we published research at Black Hat in which we disclosed multiple vulnerabilities in Huawei Kirin SoC’s DDR Controller (DMSS) Access Permission system which allowed some SoC cores or DMA-capable peripherals to directly access secure world memory and completely compromise the entire...
> Ransomware Attacks Increasing at "Alarming" Rate
Ransomware breaches have increased by 13% – more than last five years combined – according to new report