> TODAY'S SUMMARY (82 articles)
Today's cybersecurity news highlights several significant threats and trends. A Californian individual has been accused of illegally exporting $300 million worth of Nvidia chips to China, potentially aiding advancements in AI technology. The U.S. Treasury has sanctioned members of the Tren de Aragua gang linked to ATM jackpotting attacks, emphasizing ongoing concerns over organized cybercrime. A critical zero-day vulnerability in Fortinet's FortiMail is actively being exploited, prompting urgent patching efforts. Additionally, AI agents are increasingly being used in cyberattacks, including SQL injection attempts against government websites. The rise of AI in both offensive and defensive roles continues to shape the cybersecurity landscape, with Microsoft warning that attackers are gaining significant advantages through AI.
|
// AI-powered summary generated at 16:01
ICO offers advice for nightclubs and large event organizers
Non-profit argues lack of understanding is putting consumers at risk
Version française: 🇫🇷 In January 2021, ANSSI was informed of a large campaign of attacks against French entities linked to the APT31 intrusion set. The investigations carried out by ANSSI led to the analysis of the intrusion set’s entire chain of infection. In turn, the knowledge acquired was...
Virginia health department and state legislature impacted by two ransomware attacks
Health information of 750,000 patients recovered from account belonging to HelloKitty
English version : 🇬🇧 En janvier 2021, l’ANSSI est informée d’une vaste campagne d’attaques à l’encontre d’entités françaises liée au mode opératoire d’attaque (MOA) APT31. Les investigations réalisées par l’ANSSI ont permis d’analyser l’ensemble de la chaîne de compromission du mode opératoire....
Cybersecurity researchers invited to “Hack DHS” and earn money in exchange for detecting vulnerabilities
The penalty was issued for sharing users' special category data with third parties without their explicit consent
Flagstar Bank a payé 1 million de dollars en bitcoin à un groupe de ransomware suite à une cyberattaque en décembre 2021, décision prise par l'ancien PDG Alessandro DiNello et d'autres parties prenantes. La banque a subi plusieurs cyberattaques ces dernières années, affectant des millions de clients...
The new strategy aims to bolster the UK's defensive and offensive cyber capabilities
Imperva warns of pre-Christmas surge
There is a memory management and a path traversal vulnerability in the vision DSP kernel driver of Exynos S20 devices. These vulnerabilities can be leveraged by a malicious untrusted application to permanently disable the device until it is factory reset.
Vulnerability Details The Exynos DSP driver...
Online shoppers urged not to fall for phishing lures and fake stores
IT teams are now also scrambling to fix six Microsoft zero-days
There is a sensitive information disclosure vulnerability in the vision DSP kernel driver of S20 Exynos devices. The vulnerability can be used by malicious privileged applications to read the kernel’s and other application’s memory.
Vulnerability Details The Exynos DSP driver implements an ioctl cal...
Hundreds of financial applications targeted by new Anubis malware campaign
LogMeIn to set up password manager LastPass as an independent business
There is a kernel virtual memory mapped IO buffer overflow vulnerability in the vision DSP kernel driver of S20 Exynos devices. The vulnerability could potentially be used by a malicious system application to compromise the kernel and gain further privileges.
The vulnerability is only triggerable vi...
Cybersecurity research and advisory firm to open new global headquarters in New York City
More than 40% of SOC staff said lack of leadership or executive level support was a major barrier to success