> TODAY'S SUMMARY (111 articles)
Today’s cybersecurity landscape highlights several significant threats and trends:
1. A massive data breach in Arizona courts has exposed sensitive foster care records, affecting over 150,000 individuals and raising serious privacy concerns.
2. Cisco has issued urgent alerts regarding a zero-day vulnerability in its SD-WAN Manager, actively exploited by attackers to gain administrative access.
3. Google reports that AI-driven vulnerability discoveries are increasingly linked to remote code execution risks, indicating a shift in threat dynamics.
4. The Citrix NetScaler vulnerabilities are under active exploitation, with reports of sophisticated phishing campaigns targeting government and finance sectors.
5. Multiple high-severity vulnerabilities in common software, including OpenSSL and TeamViewer, necessitate immediate patching to safeguard systems.
6. Ukrainian researchers have raised alarms about mobile malware targeting iOS and Android devices, linked to ongoing state-sponsored attacks.
These developments underscore the urgency for organizations to enhance their cybersecurity measures and stay informed of emerging threats.
|
// AI-powered summary generated at 16:00
HP reveals widespread use of packers and obfuscation
Investigation launched after data breach puts 450k Fastway Couriers customers at risk
Many machine learning (ML) models are Python pickle files under the hood, and it makes sense. The use of pickling conserves memory, enables start-and-stop model training, and makes trained models portable (and, thereby, shareable). Pickling is easy to implement, is built into Python without requirin...
AEPD fines Vodafone Spain a record-breaking $9.72m for failing to protect data
NCSC warns childminders and nurseries to safeguard personal data and be wary of malware
Le CLUSIF (CLUb de la Sécurité de l’Information Français) publie un document qui s’adresse à l’ensemble des acteurs ayant à sécuriser un système industriel existant ou à venir.
(mise à jour Septembre 2021 : le guide est à présent [...] Lire la suite
UK Cyber Security Council introduces its first four trustees
Users will soon be able to use security keys as sole authentication method
How malware works on Operational Technology (OT) and how to stop it.
SonicWall points to a perfect storm for threat actors in 2020
Tool designed for customers without dedicated IT or cybersecurity resource
Indian Government Breach, Disclosure Last month, Sakura Samurai announced that we had uncovered a massive amount of critical vulnerabilities. Obviously, to prevent threat actors from exploiting the vulnerabilities, we ensured that we redacted the specific issues and only gave a brief overview on wha...
WARP reports hit a record 151 in 2020
Lookout acquires CipherCloud with the intention of creating an integrated endpoint to cloud security solution
Next week (on March, 9th 2021) I will be speaking at the Hong Kong Information Security Summit 2021.
ćˇčżŽ, ä˝ ĺĄ˝!
I was invited to share my thoughts around protecting the modern (and remote) workplace. Of course, my talk is addressing this topic from a red teaming point of view. Conference details ar...
Former caseworker accessed sensitive data of children hundreds of times after leaving their job
Major fire at Strasbourg data center knocks millions of websites offline and disrupts threat actors
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in February:
Articles
Comcast SecurityEdge may prevent DNSWatch from monitoring or controlling DNS requests
Enable logging for subscription service dashboards
Firebox and...
Google will face allegations that it collected data of private browsing mode users
Study indicates that insecure practices remain prevalent among home workers