[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (36 articles)

|

// AI-powered summary generated at 12:00

> US Imprisons Bulletproof Hosting Providers
Two Eastern Europeans receive prison sentences for helping cyber-criminals to distribute malware
> DOJ Sues Robocaller to Pay Massive Fine
US seeks to recover $9.9m from Montanan fined for making nearly 5,000 illegal and malicious robocalls
> Offensive BPF: Understanding and using bpf_probe_write_user
This post is part of a series about Offensive BPF to learn how BPFs use will impact offensive security, malware, and detection engineering. Click the “ebpf” tag to see all relevant posts. Building advanced BPF programs So far in this Offensive BPF series the focus was on bpftrace to build and run BP...
> CISA Awards $2M to Cybersecurity Training Programs
NPower and CyberWarrior receive funding to train unemployed and underemployed
> 72% of Organizations Experienced a DNS Attack in the Past Year
Of those organizations impacted by DNS attacks, 61% were targeted on multiple occasions
> Classe de vulnérabilités en environnement Active Directory (15 octobre 2021)
Résumé Le protocole d’authentification NTLM souffre de faiblesses permettant, sous conditions, à un attaquant de relayer une authentification qu’il reçoit d’une victime vers un serveur cible. Ceci peut potentiellement permettre à cet attaquant d’élever ses privilèges ou d’envoyer des commandes à...
> #ISC2Congress: How to Mitigate Evolving Insider Threats
The changing nature of insider threats and how to mitigate them were topics of a talk by Lisa Forte
> Threat Actors Abusing Discord to Spread Malware
Check Point researchers warn platform needs more in-built protections
> Offensive BPF: Sniffing Firefox traffic with bpftrace
This post is part of a series about Offensive BPF that I’m working on to learn how BPFs use will impact offensive security, malware, and detection engineering. Click the “ebpf” tag to see all relevant posts. One of the issues I ran into when trying out sslsniff-bpfcc was that it did not work with Fi...
> US to Ban Export of Hacking Tools to Authoritarian States
Latest commerce department rule will include exemptions
> Data Scrapers Expose 2.6 Million Instagram and TikTok Users
Information was found in a misconfigured Elasticsearch server
> Google Earth Hacking - EaaS (Espionage as a Service)
Credits John Github: https://github.com/johnjhacking Molly White Twitter: https://twitter.com/molly0xFFF Zultan Twitter: https://twitter.com/orpheus9001 Summary First and foremost, we may have taken the phrase “Hack the Planet” a little too serious. Google Earth Enterprise is an application that is...
> Russian Cyber-Criminals Switch to Cloud
New study reveals changing tactics of Russian-speaking threat actors from 2015 to now
> Space ISAC and NY InfraGard to Collaborate on Cybersecurity in Space
New York Metro InfraGard Members Alliance and the Space Information Sharing and Analysis Center announce cybersecurity MOU
> Video: Understanding Image Scaling Attacks
Today you are in for a special treat. Did you know that an adversary can hide a smaller image within a larger one? This video demonstrates how a small image becomes magically visible when the computer resizes the large image, and also how to mitigate the vulnerability. This is possible when vulnerab...
> Data Breach Could Cost Missouri $50M
Show-Me State facing big bill after making personal data of school employees vulnerable
> 81% of UK Healthcare Organizations Hit by Ransomware in Last Year
65% of respondents believe a cyber attack on their organization could lead to loss of life
> Video: What is Tabnabbing?
Tabnabbing is a web application security vulnerability that can be used to perform phishing attacks, so its important to be aware of it as a developer and penetration tester. It is easy to mitigate and in this short video we cover both attacks and mitigations. Thanks for reading and happy hacking! @...
> Twitter Pulls Account After Argentinian Mega Breach Claims
Individual purports to have ID card details of entire population
> Microsoft, Intel and Goldman Sachs Team Up For New Supply Chain Security Initiative
The Supply Chain Security group will bring in experts from across the tech sphere