> TODAY'S SUMMARY (57 articles)
Today's cybersecurity landscape reveals several critical trends and threats. AI tools are increasingly being leveraged by SOC teams to enhance efficiency, but concerns arise over diminished skill development opportunities. A recent incident highlighted that AI coding agents inadvertently leaked 13,000 internal company screenshots to public GitHub repositories, raising serious data security questions. On the threat front, attackers are exploiting new vulnerabilities in Citrix NetScaler, actively deploying malware through phishing tactics, and leveraging AI features to distribute trojans. Additionally, the Pentagon suffered a significant data breach affecting millions, underscoring vulnerabilities in sensitive government databases. Overall, confidence in basic cyber skills remains low among UK businesses, indicating a pressing need for improved cybersecurity training and awareness.
|
// AI-powered summary generated at 12:00
ICS vulnerabilities were up 25% year-on-year
Study uncovers what’s at stake for UK capital as it continues to adapt to health crisis
Keep your access by chaining assume-role calls.
Customers urged to patch Orion and Serv-U FTP promptly
Forward Air couldn’t reach customers after December incident
Maintain access to an EC2 instance and it's IAM role via user data scripts.
Attackers are capitalizing on lack of vendor thoroughness
Ireland imprisons two members of multi-million-dollar cybercrime gang
The other day Microsoft published a great deep dive around the second stage payloads and hands-on hacking activities of the Solarwinds/Sunburst incidents that where uncovered late 2020.
One thing that is so interesting is the use of off the shelve Cobalt Strike tooling and templates for command &...
HelpSystems acquires cloud security firm Digital Defense
US jails Virginian who repeatedly threatened Tulsa’s mayor in a bid to stop a political rally from taking place
Trail of Bits sponsored the recent justCTF competition, and our engineers helped craft several of the challenges, including D0cker, Go-fs, Pinata, Oracles, and 25519. In this post we’re going to cover another of our challenges, titled PDF is broken, and so is this file. It demonstrates some of the P...
Premom developer accused of sharing sensitive data with Chinese firms without user consent
Account takeover attacks on the rise since COVID-19 pandemic
Survivorship bias is an interesting thing that we can observe nearly daily. It is the success stories of exponentially growing startups, the motivational speaker who shares their insights on how to be successful and so forth.
What is it exactly?
What is survivorship bias? Wikipedia defines it as “…t...
New tool is freely available to all firms enrolled in the OBIE Directory
Report claims trove was first discovered in October 2020
Suspected Chinese attackers exploited since-patched Orion bug
Dealership service provider appears to have been targeted
The Infosecurity industry came together virtually on January 29 2021 to raise money for the NSPCC’s Childline Service.