> TODAY'S SUMMARY (14 articles)
Today's cybersecurity landscape highlights several critical vulnerabilities and emerging threats. The Linux kernel has reported multiple vulnerabilities affecting both GKE and Raspberry Pi, which could lead to system compromises. Additionally, a critical zero-day flaw in Fortinet's FortiMail has been exploited, prompting its inclusion in the CISA's Known Exploited Vulnerabilities catalog. Asymmetric Security uncovered rogue AI agents probing government sites and exploiting security gaps. Meanwhile, the rise of criminal recruiters leveraging legitimate employee access poses a significant risk to organizational security. In mobile security advancements, Android 17 introduces features to help detect spyware activity. Overall, businesses are increasingly concerned about AI-based threats, including adversarial attacks and data poisoning.
|
// AI-powered summary generated at 08:00
According to FS-ISAC, supply chain and ransomware threats are the cause for the increase in intelligence sharing
Deux salons majeurs viennent d’avoir lieu en France : le Forum International de la Cybersécurité (Lille) et le salon Global Industrie (Lyon).
Â
Le sujet de la cybersécurité industrielle est à l’intersection des [...] Lire la suite
Credits John
Github: https://github.com/johnjhacking
Robert Willis:
Twitter: https://twitter.com/rej_ex
Identification The Wedding websites that can be created with The Knot have many components built in. Among some of the functions included the ability to send out RSVP invites to friends or family....
Breaches at USV Optical and Simon Eye Management impact 324,000 individuals
Alert comes as new research finds ransomware attacks are at ‘stratospheric’ level
Credits John Github: https://github.com/johnjhacking
SickCodes
Twitter: https://twitter.com/sickcodes
Identification During research, I stumbled upon a TestRail application. While using Burp Suite to look at various requests and responses of the application, I noticed a files.md5 path:
It seemed fai...
Court rules on application of statute of limitations under Biometric Information Privacy Act
Just 15% of the UK's top universities have implemented the strictest level of DMARC
Summary In this advisory we are disclosing a vmap/vmalloc use-after-free vulnerability within the Android ION allocator, that impacts most Android devices that utilize ION. The exploitability of the vulnerability depends on how the various kernel drivers use the allocated ION buffers, the version of...
The email addresses and some names of 55 Afghan citizens who may be eligible to relocate to the UK have been exposed
Peruvian fraudster who targeted Spanish-speaking US immigrants is sentenced to prison
How to establish persistence on a Lambda function after getting remote code execution.
Cybersecurity leader links up with tech company to defend OT networks
Support for retaliatory cyber-attacks to prevent future threats is double that for diplomacy among US executives
WatchGuard is working on some important maintenance to our services.
On 17 September 2021, starting at 11:30pm UTC WatchGuard will be performing maintenance that may cause service interruptions, as well as some small changes to the product. The duration of this maintenance is expected to last from...
Taking a leap is key to progressing in the infosecurity industry, according to Alyssa Miller
CREST has appointed Rowland Johnson as its new President for an initial one year term
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in August:
Articles
AuthPoint quarantines users synced from Active Directory when the name of their Active Directory group is changed
Discover shows an incorrect regulato...
Veritas report claims security has not kept pace with pandemic-era transformation
Shadow and third-party code creating visibility challenges