[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (54 articles)

|

// AI-powered summary generated at 12:00

> Only 59% of Cybersecurity Teams Are Effective Working from Home
Cybersecurity teams across the globe are unable to work from home safely
> US Government Awards CGI $267m Cybersecurity Contract
CGI awarded lucrative contract to up the cybersecurity game of 75+ US federal agencies
> Cookie Crimes and the new Microsoft Edge Browser
Revisiting Cookie Crimes In 2018 @mangopdf described “Cookie Crimes”, which is great research around Chrome’s remote debugging feature that allows adversaries and malware to gain access to cookies quite convienently during post-exploitation. The original research is published here, and it still work...
> UK Government Launches Online Cyber-School
A new online cybersecurity course for school-children is launched in the UK
> Ransomware Payments Surge 33% as Attacks Target Remote Access
#COVID19 home working exposes organizations in Q1, says Coveware
> Post-Exploitation: Abusing Chrome's debugging feature to observe and control browsing sessions remotely
Chrome’s remote debugging feature enables malware post-exploitation to gain access to cookies. Root privileges are not required. This is a pretty well-known and commonly used adversarial technique - at least since 2018 when Cookie Crimes was released. However, remote debugging also allows observing...
> Android Trojan EventBot Targets 200+ Financial Apps
Researchers warn of fast-evolving mobile malware
> #COVID19 Outbreak Sees Surge in Device Security Violations
Absolute data reveals extent to which heavy device usage has grown across enterprise and education
> Hunting for credentials and building a credential type reference catalog
Adversaries are leveraging widely exposed clear text credentials to gain access to sensitive information. At times the term “harvesting credentials” is used when red teamers emulate these attacks - which is something that appears to be more opportunistic and I would propose that security teams start...
> French Newspaper Le Figaro Leaks 7.4 Billion Records
Readers, employees and journalists have personal data exposed
> Virginia Distance Learning Disaster Prompts Resignation
CTO of Fairfax County Public Schools steps down after remote learning rollout fails for a second time
> Announcing the 1st International Workshop on Smart Contract Analysis
At Trail of Bits we do more than just security audits: We also push the boundaries of research in vulnerability detection tools, regularly present our work in academic conferences, and review interesting papers from other researchers (see our recent Real World Crypto and Financial Crypto recaps). In...
> Coronavirus Threat Campaigns Wind Down on Weekends
New threat research shows attacks themed around COVID-19 typically strike Monday to Friday
> US School District Drops Zoom After Porn Disrupts Lesson
New Jersey school district axes teaching via Zoom after lesson disrupted by porn and racist language
> Revisiting 2000 cuts using Binary Ninja’s new decompiler
It’s been four years since my blog post “2000 cuts with Binary Ninja.” Back then, Binary Ninja was in a private beta and the blog post response surprised its developers at Vector35. Over the past few years I’ve largely preferred to use IDA and HexRays for reversing, and then use Binary Ninja for any...
> GCHQ Granted Access to NHS Data as Privacy Concerns Increase
Matt Hancock permits GCHQ to access NHS network security data
> Blockchain Startups Move From Coin Offerings to Investment for Funding
Blockchain startups now relying on investment rather than initial coin offerings
> Hospitals Deliberately Targeted by Ransomware During #COVID19 Peak
Microsoft warns that data exfiltration is now a given in many cases
> Europe’s GDPR Regulators Woefully Under-Resourced
Web firm files complaint with European Commission
> #COVID19 Drives Network Security Disruption for Global Firms
Most VPNs suffering connectivity issues, warns Neustar