> TODAY'S SUMMARY (36 articles)
Today's cybersecurity landscape highlights significant threats and vulnerabilities. A major incident involved hackers hijacking Microsoft's official X account to promote a cryptocurrency scheme, showcasing the ongoing risks of social media exploitation. Additionally, a critical zero-day vulnerability in Fortinet's FortiMail is actively being exploited, prompting urgent action from users and inclusion in the U.S. CISA's Known Exploited Vulnerabilities catalog. On the espionage front, a China-aligned group has been phishing AI policy experts by impersonating US officials, emphasizing the trend of targeting high-profile individuals. Meanwhile, AI agents are increasingly being linked to SQL injection attacks against government sites, raising concerns about the security of AI applications. Lastly, law enforcement has made arrests in the KillSec ransomware group, reflecting ongoing efforts to combat cybercrime.
|
// AI-powered summary generated at 12:00
98% of US organizations have experienced at least one cyber event in the past year, which compares to 86% of non-US organizations
(ISC)2 study warns that demand continues to rise in most regions
Information about the data an attacker can access via GCP's API endpoints
Jeremy Fleming makes rare statement on current threat landscape
Home buyers and SMEs warned in new awareness campaign
This post is part of a series about Offensive BPF to learn how BPFs use will impact offensive security, malware, and detection engineering.
Click the “ebpf” tag to see all relevant posts.
Building advanced BPF programs So far in this Offensive BPF series the focus was on bpftrace to build and run BP...
Non-profit teams up with Kaspersky to make game that shows what happens during a cyber-attack
Globee Awards wants to know who’s been making the world’s best cybersecurity deployments
Résumé Le protocole d’authentification NTLM souffre de faiblesses permettant, sous conditions, à un attaquant de relayer une authentification qu’il reçoit d’une victime vers un serveur cible. Ceci peut potentiellement permettre à cet attaquant d’élever ses privilèges ou d’envoyer des commandes à ...
Global mining company eager to train seven apprentices in cybersecurity skills
The researchers combined data from five cybersecurity indices and indicators to create the list
This post is part of a series about Offensive BPF that I’m working on to learn how BPFs use will impact offensive security, malware, and detection engineering.
Click the “ebpf” tag to see all relevant posts.
One of the issues I ran into when trying out sslsniff-bpfcc was that it did not work with Fi...
Experts suggest home working has led to the surge
Emsisoft claims to have vulnerability info on over 10 other variants
Credits John
Github: https://github.com/johnjhacking
Molly White
Twitter: https://twitter.com/molly0xFFF
Zultan
Twitter: https://twitter.com/orpheus9001
Summary First and foremost, we may have taken the phrase “Hack the Planet” a little too serious.
Google Earth Enterprise is an application that is...
Interference by third party took supermarket offline all weekend
Cornhusker State imprisons man who cyber-stalked his former girlfriend and her new romantic partner
Today you are in for a special treat. Did you know that an adversary can hide a smaller image within a larger one?
This video demonstrates how a small image becomes magically visible when the computer resizes the large image, and also how to mitigate the vulnerability.
This is possible when vulnerab...
Cybersecurity training achievement is a Guinness World Record first
South Carolinians beat more than 200 teams to win NCFI’s Training and Cyber Games Competition