[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (108 articles)

|

// AI-powered summary generated at 16:00

> Online Fraudsters Steal ÂŁ17m Over #COVID19 Lockdown
Action Fraud says younger shoppers are more likely to be tricked
> North Korean #COVID19 Phishing Campaign Targets Six Countries
UK, US, India, Singapore, Japan and South Korea warned of spoofed emails
> Le groupe cybercriminel TA505 (22 juin 2020)
Les marqueurs techniques suivants sont associés au groupe cybercriminel TA505 (voir la publication CERTFR-2020-CTI-006). Ils peuvent être utilisés à des fins de recherche de compromission dans des journaux historiques ou de détection. Mise à jour du 10 février 2021 : un nouveau rapport détaillant...
> FEMA Employee Indicted for Hacking Medical Center
Theft of data from the University of Pittsburgh Medical Center pinned on FEMA IT specialist
> Video Game Creator Battles Racist Bots
Valve introduces anti-spam measures to tackle wave of racist bots in Team Fortress 2
> Shadowbunny article published in the PenTest Magazine
The Shadowbunny TTP in the PenTest Magazine The latest edition of the PenTest Magazine features an article of mine about using virtual machines (VMs) during lateral movement to establish persistence and evade detections. A few years back when I came up with the idea of using VMs for lateral movement...
> US Deports NeverQuest Cyber-Thief
US sends NeverQuest malware creator, jailed for stealing $800,000 back to Russia
> Facebook Pulls Trump Campaign Ad Featuring Nazi Symbol
Debate over political ads and misinformation heats up in the US
> Advocating for change
As a company, we believe Black lives matter. In the face of continued police brutality, racial disparities in law enforcement, and limited accountability, we demand an end to systemic racism, endorse restrictions on police use of force, and seek greater accountability for police actions. We believe...
> Malicious Chrome Extensions Downloaded Over 33 Million Times
Mass global surveillance campaign uncovered
> Sophisticated State-Backed Attack Rocks Australia
PM urges organizations across sectors to improve cyber-resilience
> Putting system owners in Security Bug Jail
Some organization have this interesting concept of a bug jail to prevent new feature development when there are too many existing flaws in the system. For instance, if an engineer has 5 or more bugs assigned they aren’t allowed to work on anything else but fixing their bugs. What is the Security Bug...
> US Indicts Six Nigerians Over $6m Email Scam
US takes action against Nigerians who targeted Americans with email scams
> ESET Reveals New Insights into Espionage Group InvisiMole
Report shows espionage group has enhanced its capabilities
> Upgradeable contracts made safer with Crytic
Upgradeable contracts are not as safe as you think. Architectures for upgradeability can be flawed, locking contracts, losing data, or sabotaging your ability to recover from an incident. Every contract upgrade must be carefully reviewed to avoid catastrophic mistakes. The most common delegatecall p...
> FCC Warned Against Approving US/Hong Kong Subsea Cable
FCC advised to partially deny cable system linking US with Hong Kong over security concerns
> UK U-Turns on Contact Tracing App Privacy
UK government puts privacy first, chooses decentralized COVID contact-tracing app model
> ECDSA: Handle with Care
The elliptic curve digital signature algorithm (ECDSA) is a common digital signature scheme that we see in many of our code reviews. It has some desirable properties, but can also be very fragile. For example, LadderLeak was published just a couple of weeks ago, which demonstrated the feasibility of...
> ICO Report Calls for Reforms Around Police Data Extraction
Report highlights data privacy and protection risks and failures made by the police
> Pandemic Popularity Forces Dark Web Forums to Recruit
Digital Shadows finds site moderators in high demand