> TODAY'S SUMMARY (112 articles)
Today's cybersecurity news highlights several significant threats and trends:
1. Labcorp faces a $2.3 million fine due to cybersecurity failings and is implementing enhanced data security measures, including a new incident response plan.
2. Cryptocurrency exchange Bitget reports a staggering $351.6 million theft by suspected North Korean hackers, prompting investigations and withdrawal suspensions.
3. A critical vulnerability in the Elementor WordPress plugin allows unauthenticated attackers to create admin accounts, emphasizing the ongoing risk of exploited software flaws.
4. Fake desktop applications targeting payroll services have emerged, tricking HR staff into granting remote access to attackers.
5. CISA warns of exploited flaws in Adobe and WSO2 products, adding them to its Known Exploited Vulnerabilities catalog, highlighting the urgency for organizations to patch these vulnerabilities.
|
// AI-powered summary generated at 20:00
Additional implants are being used as a second-stage payload to gain persistence for continued data exfiltration and for targeted access.
A marketing agency made public a raft of information about influential "creators" – mostly Instagram, Twitter and YouTube personalities.
In the past few weeks the details of two critical design flaws in modern processors were finally revealed to the public. Much has been written about the impact of Meltdown and Spectre, but there is scant detail about what these attacks are and how they work. We are going to try our best to fix […]
More than one million security scans and seven million security tests carried out on public sector websites
More than two-thirds (69%) of organizations are exposing APIs to the public and their partners.
Summary This is the third part of a blog series covering my security research into Samsung’s TrustZone.
This post covers the following vulnerabilities that I have found:
SVE-2017–8888: Authentication Bypass + Buffer overflow in tlc_server SVE-2017–8889: Stack buffer overflow in ESECOMM Trustlet SVE-...
Incidents quadrupled in 2017, with losses ranging from a few thousand dollars up to $3 million.
The majority (73%) said they were “somewhat prepared” and would have to figure things out “on the fly.”
Summary This is the second part of a blog series covering my security research into Samsung’s TrustZone.
This post is a companion to my talk from Ekoparty 2017, namely the reverse engineering process of T-base. The slides and video of the talk are both available online.
In fact, since both of those...
Crypto-mining malware spreading via EternalBlue exploit
Bomgar has acquired Lieberman Software to enhance its portfolio of secure access software
Summary This is the first part of a blog series about reverse engineering and exploiting Samsung’s TrustZone. Following parts in the series so far: 2, 3.
This first post covers the basics of the architecture. All of this is public info, nothing new, all of it has been covered in bits and pieces in v...
The botnet is for rent. Its service description reads: “God’s wrath will be employed against the IP that you provide us.”
The number of internet-accessible industrial control systems (ICS) is increasing every year, as are vulnerabilities.
Four years ago, we released McSema, our x86 to LLVM bitcode binary translator. Since then, it has stretched and flexed; we added x86-64 support, put it on a performance-focused diet, and improved its usability and documentation. McSema wasn’t the only thing improving these past years, though. At the...
Cybercriminals have developed several schemes to defraud those looking to profit from the growth in cryptocurrencies.
Black hats are eschewing ransomware in favor of easier ways to make cash
NTIA wants info to remain freely accessible despite new European privacy laws
Leaked usernames and passwords for online accounts represent a growing security risk
40% of respondents in a new survey felt that their security solutions aren’t as flexible as the rest of their cloud initiatives.