> TODAY'S SUMMARY (82 articles)
Today's cybersecurity news highlights several significant threats and trends. A Californian individual has been accused of illegally exporting $300 million worth of Nvidia chips to China, potentially aiding advancements in AI technology. The U.S. Treasury has sanctioned members of the Tren de Aragua gang linked to ATM jackpotting attacks, emphasizing ongoing concerns over organized cybercrime. A critical zero-day vulnerability in Fortinet's FortiMail is actively being exploited, prompting urgent patching efforts. Additionally, AI agents are increasingly being used in cyberattacks, including SQL injection attempts against government websites. The rise of AI in both offensive and defensive roles continues to shape the cybersecurity landscape, with Microsoft warning that attackers are gaining significant advantages through AI.
|
// AI-powered summary generated at 16:01
How to start the journey to zero trust architecture once you have decided it meets your business requirements.
Sans Institute exercise reportedly sees defenders get hands-on practice
Conspiracy ran for 13 years
How organisations can address the growing trend in which multiple vulnerabilities within a single product are exploited over a short period.
CISA updates patching guidance to demand immediate action
Cybersecurity official shares tips for cutting risk ahead of the holidays
On August 18, 2021, samczsun reported a critical vulnerability in SushiSwap’s MISO smart contracts, which put ~350 million USD (109 thousand ETH) at risk. This issue is similar to an attack that was conducted on the Opyn codebase in August of 2020. At the time of the report, I was finishing my […]
Seven Pi Kappa Alpha fraternity members allegedly harassed student who reported hazing
Chicago accountancy company’s data exposed in ransomware attack
You just cloned a fresh source code repository and want to get a quick sense of its dependencies. Our tool, it-depends, can get you there. We are proud to announce the release of it-depends, an open-source tool for automatic enumeration of dependencies. You simply point it to a source code repositor...
Fraudsters are leveraging the latest Spider-Man movie to spread malicious files and phishing pages, researchers from Kaspersky have warned
Agency urges firms to take proactive security approach
Version française: 🇫🇷 In January 2021, ANSSI was informed of a large campaign of attacks against French entities linked to the APT31 intrusion set. The investigations carried out by ANSSI led to the analysis of the intrusion set’s entire chain of infection. In turn, the knowledge acquired was...
Social media giant acts to disrupt cyber-mercenaries
Half of large firms lost over 100,000 records, according to Accenture
English version : 🇬🇧 En janvier 2021, l’ANSSI est informée d’une vaste campagne d’attaques à l’encontre d’entités françaises liée au mode opératoire d’attaque (MOA) APT31. Les investigations réalisées par l’ANSSI ont permis d’analyser l’ensemble de la chaîne de compromission du mode opératoire....
Healthcare providers accused of two security breaches in one year agree to $425K settlement
Australia and the United States agree to share electronic data in serious crime investigations
Flagstar Bank a payé 1 million de dollars en bitcoin à un groupe de ransomware suite à une cyberattaque en décembre 2021, décision prise par l'ancien PDG Alessandro DiNello et d'autres parties prenantes. La banque a subi plusieurs cyberattaques ces dernières années, affectant des millions de clients...
CNIL commands facial recognition software maker to erase images gathered online without people’s consent