> TODAY'S SUMMARY (112 articles)
Today's cybersecurity news highlights several significant threats and trends:
1. Labcorp faces a $2.3 million fine due to cybersecurity failings and is implementing enhanced data security measures, including a new incident response plan.
2. Cryptocurrency exchange Bitget reports a staggering $351.6 million theft by suspected North Korean hackers, prompting investigations and withdrawal suspensions.
3. A critical vulnerability in the Elementor WordPress plugin allows unauthenticated attackers to create admin accounts, emphasizing the ongoing risk of exploited software flaws.
4. Fake desktop applications targeting payroll services have emerged, tricking HR staff into granting remote access to attackers.
5. CISA warns of exploited flaws in Adobe and WSO2 products, adding them to its Known Exploited Vulnerabilities catalog, highlighting the urgency for organizations to patch these vulnerabilities.
|
// AI-powered summary generated at 20:00
One method exploits the magnetic field generated by a computer's CPU.
Surprisingly, it's not Dash.
In the past few weeks the details of two critical design flaws in modern processors were finally revealed to the public. Much has been written about the impact of Meltdown and Spectre, but there is scant detail about what these attacks are and how they work. We are going to try our best to fix […]
68% of organizations are currently creating or consuming threat data.
Bots and breached credentials continue to fuel insatiable rise
Summary This is the third part of a blog series covering my security research into Samsung’s TrustZone.
This post covers the following vulnerabilities that I have found:
SVE-2017–8888: Authentication Bypass + Buffer overflow in tlc_server SVE-2017–8889: Stack buffer overflow in ESECOMM Trustlet SVE-...
Infraud Organization inflicted $2.2bn in intended losses
Telecoms firm says intruders got in via sales partner's access rights
Summary This is the second part of a blog series covering my security research into Samsung’s TrustZone.
This post is a companion to my talk from Ekoparty 2017, namely the reverse engineering process of T-base. The slides and video of the talk are both available online.
In fact, since both of those...
“It was wrong not to disclose the breach earlier,” said John Flynn, speaking at a hearing on Capitol Hill.
Sites are running vulnerable software, have been breached or have been used to distribute malware.
Summary This is the first part of a blog series about reverse engineering and exploiting Samsung’s TrustZone. Following parts in the series so far: 2, 3.
This first post covers the basics of the architecture. All of this is public info, nothing new, all of it has been covered in bits and pieces in v...
Further analysis showed that a full 44% of scanned organizations had some form of malware in at least one of their cloud applications.
Two men arrested outside cash-point dispensing $20 notes
Four years ago, we released McSema, our x86 to LLVM bitcode binary translator. Since then, it has stretched and flexed; we added x86-64 support, put it on a performance-focused diet, and improved its usability and documentation. McSema wasn’t the only thing improving these past years, though. At the...
Press release site under sustained pressure
Priority 1 bulletin fixes zero-day flaw
The number of records compromised also surpassed all other years, with over 7.8 billion records exposed, a 24.2% increase over 2016’s previous high of 6.3 billion.
Upfront costs are dwarfed by the human costs of managing and assessing the millions of alerts and false-positives these tools generate.
A proof of concept simulates a threat actor transferring the Mimikatz malware over TLS negotiation traffic.