> TODAY'S SUMMARY (1 articles)
Today's cybersecurity news highlights several key trends and threats. Ransomware attacks continue to rise, with a notable increase in targeted phishing campaigns exploiting current events. Zero-day vulnerabilities are being actively exploited across multiple platforms, emphasizing the need for timely patching. Additionally, increased attention is given to supply chain attacks, as threat actors seek to compromise third-party vendors. Organizations are urged to enhance their security posture through regular training and incident response planning. Lastly, the importance of multi-factor authentication (MFA) remains paramount in mitigating unauthorized access attempts.
|
// AI-powered summary generated at 04:00
The organization has already received 6.5 million reports
10% of all firms surveyed in SmartSearch's report say they carry out no checks on business customers.
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in July:
Articles
Users cannot log in to Outlook with AuthPoint MFA
Configure HTTPS Content Inspection for Exchange Server with Outlook Web Access
AuthPoint does not sync...
Virginia tech-company owner incarcerated over $1.3M fraud schemes and CSAM possession
Cyber-criminals drop financial services to hit gaming and travel and leisure industries
I like using procdump on Windows.
It’s quite handy for software development when systems have memory leaks or performance issues, procdump allows to set thresholds to trigger creation of a core dump.
BUT, it’s also super useful to search processes for secrets and other information.
For instance, thi...
Hacker accessed patient data for six months before staging ransomware attack
Financial services companies expect to see an influx of email-borne attacks during 2021 due to increased volumes in email
Summary The NPU device’s kernel driver implements a set of ioctl handlers one of which uses unsanitized user data as an index into a function pointer array. The user provided values can exceed the boundaries of the legitimate array and might cause user controlled values to be called as function poin...
It is estimated that 71.1 million people fall victim to cybercrime each year
Cyber-hackers have attacked cross-chain interoperability protocol Poly Network
Summary The NPU device’s kernel driver implements a custom mmap handler that exposes trusted kernel data to user space. These exposed structures contain sensitive data, including kernel pointers, which can be controlled by a user process. The content of these structures is inherently trusted by the...
A total of 44 patches were released this month by Microsoft, seven of which were rated as "Critical"
US cyber firm NortonLifeLock has confirmed it will buy British rival Avast in a deal valuing London-listed company near $8.6 bn (ÂŁ6.2 bn).
Summary Due to a bug in the way mappings are closed it is possible to free a kmallocated memory chunk arbitrary times. This vulnerability can be used to craft a use after free scenario against any kernel structure that is allocated from the kmalloc-64 cache. There is rich public literature on how su...
New Zealanders victimized by crime are least likely to report cybercrimes and sexual assaults
Settlement reached over 2014 data breach at the University of Pittsburgh Medical Center
Summary The NPU device’s kernel driver implements a set of ioctl handlers one of which uses unsanitized user data as an offset to retrieve a kernel structure. Fields of the structure are written with user provided values. A malicious actor can use this vulnerability to overwrite kernel memory with c...
More than half of employees working remotely undermine company security policies
Underground criminals are selling access to organizations for as much as $10,000