> TODAY'S SUMMARY (114 articles)
Today's cybersecurity landscape highlights several critical concerns. The Warlock ransomware group has escalated its attacks on critical infrastructure, exploiting SharePoint vulnerabilities across various sectors. A significant breach at Frontline Education has exposed sensitive employee data from multiple school districts, raising alarms about third-party software vulnerabilities. Additionally, a zero-day vulnerability in Fortinet's FortiMail is currently being exploited, prompting urgent calls for patches. On the legislative front, bipartisan efforts are underway to regulate automated license plate readers (ALPRs) and site-blocking measures, indicating growing scrutiny over surveillance technologies. As AI continues to advance, concerns about its misuse in cyberattacks are surfacing, with reports of AI agents attempting SQL injection on government sites. Overall, the interplay of AI advancements and critical infrastructure vulnerabilities remains a pressing issue in the cybersecurity domain.
|
// AI-powered summary generated at 20:00
Europol worked with 10 different law enforcement agencies to take down VPNLab.net's services, which are used by cyber-criminals
Tech giant hopes it will fix multiple problems reported by customers
Le Cyber Campus Bodensee (MCB) a subi un cyberattaque le 13 janvier 2022, entraînant des perturbations massives dans le fonctionnement de la clinique. Les autorités ont finalement fait un avancement dans l'enquête en 2023, menant à la démantèlement du groupe pirate "Hive", présumé responsable de l'a...
Initiative aims to divert young people away from cybercrime
Tiny Luxembourg tops the list
One of your developers finds a bug in your codebase—an unhandled error code—and wonders whether there could be more. He combs through the code and finds unhandled error after unhandled error. One lone developer playing whack-a-mole. It’s not enough. And your undisciplined team of first-year Stanford...
Class action filed against HER vendor QRS over summertime cyber-attack
Canadian province seeks public feedback on current anti-cyber-bullying law
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in December:
Articles
Access Point cannot connect to WatchGuard Cloud or does not appear in your WatchGuard Cloud account
AuthPoint User Activity report does not show dat...
Tech company proposes agreement to settle FTA data breach class action
Scheme to defraud government lasted years
This past winter, I was fortunate to have the opportunity to work for Trail of Bits as a graduate student intern under the supervision of Peter Goodman and Artem Dinaburg. During my internship, I developed Dr. Disassembler, a Datalog-driven framework for transparent and mutable binary disassembly. T...
One victim was tricked into handing him ÂŁ10,000
NotPetya-like attacks are disguised as ransomware
The last weeks of 2021 got quite interesting for security professionals and software engineers.
Apache’s log4j library and its now prominent Java Naming and Directory Interface support, which enables easy remote code execution, made the news across the industry.
What makes Log4Shell scary is the wid...
Renowned ransomware gang’s operation shut down by Russia’s Federal Security Service
IoT cybersecurity firm purchased, backed by Clearlake Capital Group, Crosspoint Capital and TA Associates
At Trail of Bits, we pride ourselves on making our best tools open source, such as algo, manticore, and graphtage. But while this post is about open source, it’s not about our tools… In 2021, Trail of Bits employees submitted over 190 pull requests (PRs) that were merged into non-Trail of Bits repos...
Vulnerability in access control devices allows attackers to unlock doors and enter protected areas
More than a dozen Ukrainian government have been forced offline amid heightened tensions with Russia