> TODAY'S SUMMARY (4 articles)
Today's cyber news highlights significant threats and trends in the cybersecurity landscape. Ardit Kutleshi, a Kosovo national, faces 20 years in prison for operating the Rydox cybercrime marketplace, which sold stolen identities and fraud tools. Meanwhile, a critical vulnerability in Microsoft SharePoint (CVE-2026-65660) has been actively exploited, prompting the CISA to issue a patching deadline for federal agencies. Additionally, the recent breach of Gyazo has exposed 23.6 million user records, raising concerns about data security. In another alarming development, two unpatched zero-day vulnerabilities in Citrix NetScaler are being actively exploited, emphasizing the urgent need for organizations to bolster their security measures.
|
// AI-powered summary generated at 12:00
Main website still out of action
Nexusguard's "Q2 2018 Threat Report" finds DDoS attacks quintupled in size to 26Gbps.
Today, we’re going to talk about a hard problem that we are working on as part of DARPA’s Cyber Fault-Tolerant Attack Recovery (CFAR) program: automatically protecting software from 0-day exploits, memory corruption, and many currently undiscovered bugs. You might be thinking: “Why bother? Can’t I j...
Industry leaders share their creative approaches to narrowing the skills gap
Panelists at Spotlight18 talk about indicators of success and failure in a modern SOC
Most smart contracts have no verified source code, but people still trust them to protect their cryptocurrency. What’s more, several large custodial smart contracts have had security incidents. The security of contracts that exist on the blockchain should be independently ascertainable. Ethereum VM...
From traditional SOCs to cyber defense centers
Public Accounts Committee urges MoD to close gaps
A popular trend in smart contract design is to promote the development of upgradable contracts. At Trail of Bits, we have reviewed many upgradable contracts and believe that this trend is going in the wrong direction. Existing techniques to upgrade contracts have flaws, increase the complexity of th...
ThreatMetrix claims to have stopped 150m attempts in 1H 2018
Patch Tuesday fixes one zero-day vulnerability
Access Control Lists (ACLs) are an integral part of the Microsoft Windows security model. In addition to controlling access to secured resources, they are also used in sandboxing, event auditing, and specifying mandatory integrity levels. They are also exceedingly painful to programmatically manipul...
Backdoor flaw in NoScript browser extension reportedly easy to reproduce
Report finds room for improvement in disaster recovery plans
August saw a surge in Ramnit banking trojan, says Check Point
Security giant moves to allay concerns over apps
Moscow man is alleged to have helped steal data on over 100m customers
RiskIQ claims notorious Magecart group to blame
Long time associates of GOP operative, Robert Stone, questioned as part of Mueller probe.
Multiple incidents of misuse of customer and employee data spans six years