[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (82 articles)

|

// AI-powered summary generated at 16:01

> CISA Releases Free Scanner to Spot Log4j Exposure
Tool will help security teams root out unpatched instances
> Up to 120,000 Cops May Have Legal Claim Over 2019 Breach
Lawyers are seeking compensation from Police Federation
> Disclosing Shamir’s Secret Sharing vulnerabilities and announcing ZKDocs
Trail of Bits is publicly disclosing two bugs that affect Shamir’s Secret Sharing implementation of Binance’s threshold signature scheme library (tss-lib) and most of its active forks. Here is the full list of affected repositories: Binance’s tss-lib Clover Network’s threshold-crypto Keep Network’s...
> Cyber-Attack on Belgium’s Military
Belgian defense ministry confirms cyber-attack involving exploitation of Log4j software
> Cybercrime Cops Arrest NHS Workers
Metropolitan police investigating suspected fake COVID-19 vaccination records arrest NHS employees
> Zero Trust migration: where do I start?
How to start the journey to zero trust architecture once you have decided it meets your business requirements.
> BEC Attack on Monongalia Health System
Cyber-thieves steal from West Virginia-based healthcare provider by impersonating vendor
> Russian Cyber Exec Extradited After Alleged Trading Conspiracy
The quartet is said to have made tens of millions after hacking SEC filing firms
> Why vulnerabilities are like buses
How organisations can address the growing trend in which multiple vulnerabilities within a single product are exploited over a short period.
> Ubisoft Reveals Player Data Breach Came from User Error
IT misconfiguration enabled attackers to access network
> US Returns $150m to Sony After Employee BEC Attack
The $150m embezzled from a Sony subsidiary was converted into bitcoin
> Detecting MISO and Opyn’s msg.value reuse vulnerability with Slither
On August 18, 2021, samczsun reported a critical vulnerability in SushiSwap’s MISO smart contracts, which put ~350 million USD (109 thousand ETH) at risk. This issue is similar to an attack that was conducted on the Opyn codebase in August of 2020. At the time of the report, I was finishing my […]
> US Sentences Money Launderer Linked to QQAAZZ
Russian who conspired to launder money stolen from cybercrime victims gets time served
> Desjardins Proposes $155m Data Breach Settlement
Canadian financial company endeavors to settle class-action suit over long-running data breach
> What does your code use, and is it vulnerable? It-depends!
You just cloned a fresh source code repository and want to get a quick sense of its dependencies. Our tool, it-depends, can get you there. We are proud to announce the release of it-depends, an open-source tool for automatic enumeration of dependencies. You simply point it to a source code repositor...
> Escalation in Healthcare Data Breaches
2021 on track to become the worst year for health sector data breaches in US history
> Ransomware Threat Just as Urgent as Terrorism, Say Two-Thirds of IT Pros
Over two-thirds of organizations experienced a ransomware attack over the past 12 months
> 🇬🇧 APT31 Intrusion set campaign: description, countermeasures and code (15 décembre 2021)
Version française: 🇫🇷 In January 2021, ANSSI was informed of a large campaign of attacks against French entities linked to the APT31 intrusion set. The investigations carried out by ANSSI led to the analysis of the intrusion set’s entire chain of infection. In turn, the knowledge acquired was...
> Meta Sues to Disrupt Prolific Phishing Campaign
Facebook parent company wants to unmask cyber-criminals
> UK Cyber Cops Share 225 Million Passwords with Breach Site
HaveIBeenPwned password database expands by around a third