[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> NSA Employee Accused of Sharing National Defense Secrets
Indictment alleges NSA employee used personal email account to send Top Secret info
> US Cyber Command Partners with APUS
American Public University System joins CYBERCOM’s Academic Engagement Network
> Vulnerability in OpenSSL library
CVSSv3 Score: 7.5 A security advisory was released affecting the version of OpenSSL library used in some Fortinet products:CVE-2022-0778:The BN_mod_sqrt() function, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli. Internally thi...
> UK Spy Chief Hails Government Cell Tackling Kremlin Fake News
GCHQ boss says intelligence is being declassified on an unprecedented scale
> Over Half of Data Security Incidents Caused by Insiders
Most EMEA organizations don’t have a strategy for dealing with them
> Abusing Managed Identities
Abusing Managed Identities
> IT Services Giant Admits $42m Fallout from Ransomware Attack
Atento case highlights the costs that can stem from serious breaches
> CISA Issues UPS Warning
Agency warns of attacks on internet-connected uninterruptible power supply devices
> Towards Practical Security Optimizations for Binaries
To be thus is nothing, but to be safely thus. (Macbeth: 3.1) It’s not enough that compilers generate efficient code, they must also generate safe code. Despite the extensive testing and correctness certification that goes into developing compilers and their optimization passes, they may inadvertentl...
> Cyber-Attack on California Healthcare Organization
Ransomware gang claims responsibility for attack on Partnership HealthPlan
> New Version of PCI DSS Designed to Tackle Emerging Payment Threats
v4.0 of PCI DSS includes a number of changes, including those designed to enable organizations to use innovative methods to tackle emerging threats
> Anonymous Blob Access
Finding and accessing files stored in Azure Storage Accounts without authentication.
> Australian Government to Invest $9.9bn in Cyber
Country seeks to triple cyber capabilities of its digital intelligence agency, ASD
> No Patch Available Yet for Critical SpringShell Bug
Vulnerability has echoes of infamous Struts and Log4Shell vulnerabilities
> Flipper Zero - Initial Thoughts
After a bit of a delay my Flipper Zero finally arrived in the mail. If you are not familiar with Flipper Zero at all, check out the original Kickstarter page from a few years back. This is what the package looks like after opening. It contains the device, a USB cable, a quick start manual (mostly po...
> Viasat: Denial of Service Attack Impacted Tens of Thousands
Provider claims attackers first compromised VPN appliance
> Global Police Arrest 65 in Multimillion-Dollar BEC Bust
FBI-led operation lasted three months
> CVE-2022-27226: CSRF to RCE in iRZ Mobile Routers through 2022-03-16
Credits Vulnerability Discovery John Chris Mack Exploit Development Stephen Chavez Robert Willis Identification Default credentials were discovered on an iRZ Mobile Router login page. Utilizing root:root gave us access to the administrative functionality for the device. Having administrative access...
> FBI Investigating More than 100 Ransomware Variants
Cyber Division’s assistant director says impact of ransomware has “grown to dangerous proportions”
> New Research Claims Biden's Disclosure Deadlines Are Unrealistic
New research shows organizations unprepared for strict new cyber incident reporting requirements