> TODAY'S SUMMARY (70 articles)
Today's cybersecurity landscape highlights several significant threats and trends. Notably, North Korean hackers are suspected of stealing $351 million from the Bitget cryptocurrency exchange, underscoring the ongoing risk to the crypto sector. The Dyfed-Powys Police in Wales experienced a cyberattack that potentially compromised staff data, while a new campaign named ClickFix exploits trusted websites to deploy the Psychedelic Stealer, targeting browser and crypto credentials. Vulnerabilities in Salesforce's Agentforce have been identified, allowing zero-click data exfiltration, further emphasizing the need for robust security measures. LinkedIn is enhancing checks against fake profiles as AI-generated content becomes more prevalent, indicating a rising trend in AI-related security threats. Additionally, multiple vulnerabilities in Linux kernels across various distributions have been reported, necessitating immediate attention from organizations using these systems.
|
// AI-powered summary generated at 16:00
Another government department falls foul of the Data Protection Act
There has been an uptick in attacks through Canon, HP and Epson printer and scanner email attachments.
On December 12, over 150 attendees learned how to write and hack secure smart contracts at the final Empire Hacking meetup of 2017. Thank you to everyone who came, to our superb speakers, and to Datadog for hosting this meetup at their office. Watch the presentations again We believe strongly that t...
This switch in focus could be the start of a new trend, thanks to cryptocurrency values being more enticing than ever.
Consumers urged to use online password managers and MFA instead
You’re reading the second post in our four-part series about osquery. Read post number one for a snapshot of the tool’s current use, the reasons for its growing popularity among enterprise security teams, and how it stacks up against commercial alternatives. osquery shows considerable potential to r...
Carmaker’s finance arm is hit by unauthorized access
Fraudsters are even spoofing the airline's phone numbers
Today, we are releasing access to our maintained repository of osquery extensions. Our first extension takes advantage of the Duo Labs EFIgy API to determine if the EFI firmware on your Mac fleet is up to date. There are very few examples of publicly released osquery extensions. Very little document...
This is the first publicly documented instance of a nation-state targeting a POS-related framework for the theft of credit-card data.
Hackers tried to steal 55 million rubles from Globex.
If you’re building real applications with blockchain technology and are worried about security, consider this meetup essential. Join us on December 12th for a special edition of Empire Hacking focused entirely on the security of Ethereum. Why attend? Four blockchain security experts will be sharing...
Twitter fans can now use Google Authenticator, Duo Mobile, Authy, 1Password and others instead of SMS.
Black market trade in cheap deals is soaring
Trojan is out to harvest your financial credentials
The last quarter of 2017 has seen an enormous spike in mining thanks to the launch of Coinhive.
Yet another Amazon S3 cloud storage misconfiguration has affected 123 million Americans, across billions of data points.
Hackers are still probing Apache Strust flaw which led to Equifax breach
Dutch biz sells to French defence contractor days after rejecting Atos
A vulnerability allowed the hackers to pivot onto the US Department of Defense’s unclassified network.