> TODAY'S SUMMARY (70 articles)
Today's cybersecurity landscape highlights several significant threats and trends. Notably, North Korean hackers are suspected of stealing $351 million from the Bitget cryptocurrency exchange, underscoring the ongoing risk to the crypto sector. The Dyfed-Powys Police in Wales experienced a cyberattack that potentially compromised staff data, while a new campaign named ClickFix exploits trusted websites to deploy the Psychedelic Stealer, targeting browser and crypto credentials. Vulnerabilities in Salesforce's Agentforce have been identified, allowing zero-click data exfiltration, further emphasizing the need for robust security measures. LinkedIn is enhancing checks against fake profiles as AI-generated content becomes more prevalent, indicating a rising trend in AI-related security threats. Additionally, multiple vulnerabilities in Linux kernels across various distributions have been reported, necessitating immediate attention from organizations using these systems.
|
// AI-powered summary generated at 16:00
As vendors rush patches out, Shadow Brokers claims it has an exploit for sale.
Victims are forced to press on ads to answer or end calls, make a Wi-Fi connection, charge the phone or unlock the screen.
On December 12, over 150 attendees learned how to write and hack secure smart contracts at the final Empire Hacking meetup of 2017. Thank you to everyone who came, to our superb speakers, and to Datadog for hosting this meetup at their office. Watch the presentations again We believe strongly that t...
A firm of loss adjusters has been fined ÂŁ50K for using rogue private investigators to collect information illegally in insurance claim.
Trump administration cites security concerns, but CISO role remains unfilled
You’re reading the second post in our four-part series about osquery. Read post number one for a snapshot of the tool’s current use, the reasons for its growing popularity among enterprise security teams, and how it stacks up against commercial alternatives. osquery shows considerable potential to r...
Out-of-band update could cause BSOD for some
Google takes down 36 malware-laden apps
Today, we are releasing access to our maintained repository of osquery extensions. Our first extension takes advantage of the Duo Labs EFIgy API to determine if the EFI firmware on your Mac fleet is up to date. There are very few examples of publicly released osquery extensions. Very little document...
Banker A2f8a is designed for stealing login credentials, hijacking SMS messages and more.
The trojanized ads attempt to con site visitors into clicking on a pop-up that would initiate a secret mining process.
About 28% of the 962 industrial companies surveyed have faced targeted attacks in the last 12 months.
Virtualization giant fixes three vulnerabilities
Impact of discoveries could be felt for years, claim researchers
Unauthorized data exfiltration may have hit many more
Malware uses deep link URI of Uber app to appear legitimate
The patches needed to fix the issue could grind the cloud, via AWS and Azure, to a halt, some say.
The malware is distributed from the same botnet used to distribute the Flokibot PoS.
Rogue parties can access real-time location data on devices ranging from smart dog collars to in-car navigation to kid-trackers.
Ivanti research finds security gaps persist on the endpoint