[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (82 articles)

|

// AI-powered summary generated at 16:01

> Regulator: Venues Must Protect User Privacy During #COVID19 Checks
ICO offers advice for nightclubs and large event organizers
> Experts: All Breach Victims Should Freeze Credit
Non-profit argues lack of understanding is putting consumers at risk
> 🇬🇧 APT31 Intrusion set campaign: description, countermeasures and code (15 décembre 2021)
Version française: 🇫🇷 In January 2021, ANSSI was informed of a large campaign of attacks against French entities linked to the APT31 intrusion set. The investigations carried out by ANSSI led to the analysis of the intrusion set’s entire chain of infection. In turn, the knowledge acquired was...
> Virginia Reeling from Ransomware
Virginia health department and state legislature impacted by two ransomware attacks
> FBI Recovers Oregonians' Stolen Data
Health information of 750,000 patients recovered from account belonging to HelloKitty
> Campagne d'attaque du mode opératoire APT31 : description, contre-mesures et code (15 décembre 2021)
English version : 🇬🇧 En janvier 2021, l’ANSSI est informée d’une vaste campagne d’attaques à l’encontre d’entités françaises liée au mode opératoire d’attaque (MOA) APT31. Les investigations réalisées par l’ANSSI ont permis d’analyser l’ensemble de la chaîne de compromission du mode opératoire....
> DHS Launches Bug Bounty Program
Cybersecurity researchers invited to “Hack DHS” and earn money in exchange for detecting vulnerabilities
> Grindr Fined €6.5m for Selling User Data Without Explicit Consent
The penalty was issued for sharing users' special category data with third parties without their explicit consent
> Flagstar Bank
Flagstar Bank a payé 1 million de dollars en bitcoin à un groupe de ransomware suite à une cyberattaque en décembre 2021, décision prise par l'ancien PDG Alessandro DiNello et d'autres parties prenantes. La banque a subi plusieurs cyberattaques ces dernières années, affectant des millions de clients...
> UK's New Cyber Strategy Designed to Boost Position as "Global Cyber Power"
The new strategy aims to bolster the UK's defensive and offensive cyber capabilities
> Web App Attacks Surge 251% in Two Years
Imperva warns of pre-Christmas surge
> CVE-2021-25452: Kernel Permanent Denial of Service Vulnerability in the Vision DSP Kernel Driver
There is a memory management and a path traversal vulnerability in the vision DSP kernel driver of Exynos S20 devices. These vulnerabilities can be leveraged by a malicious untrusted application to permanently disable the device until it is factory reset. Vulnerability Details The Exynos DSP driver...
> Government Experts in Last Minute Seasonal Scam Warning
Online shoppers urged not to fall for phishing lures and fake stores
> Log4j Looms Large Over Patch Tuesday
IT teams are now also scrambling to fix six Microsoft zero-days
> CVE-2021-25457: Kernel Information Disclosure in the Vision DSP Kernel Driver
There is a sensitive information disclosure vulnerability in the vision DSP kernel driver of S20 Exynos devices. The vulnerability can be used by malicious privileged applications to read the kernel’s and other application’s memory. Vulnerability Details The Exynos DSP driver implements an ioctl cal...
> Cyber-Attack on Financial Apps
Hundreds of financial applications targeted by new Anubis malware campaign
> LastPass to Become Standalone Company
LogMeIn to set up password manager LastPass as an independent business
> CVE-2021-25467: Kernel LPE in the Vision DSP Kernel Driver
There is a kernel virtual memory mapped IO buffer overflow vulnerability in the vision DSP kernel driver of S20 Exynos devices. The vulnerability could potentially be used by a malicious system application to compromise the kernel and gain further privileges. The vulnerability is only triggerable vi...
> TAG to Open New Global Headquarters
Cybersecurity research and advisory firm to open new global headquarters in New York City
> Significant Disconnect Between SOC Leaders and Staff
More than 40% of SOC staff said lack of leadership or executive level support was a major barrier to success