> TODAY'S SUMMARY (70 articles)
Today's cybersecurity landscape highlights several significant threats and trends. Notably, North Korean hackers are suspected of stealing $351 million from the Bitget cryptocurrency exchange, underscoring the ongoing risk to the crypto sector. The Dyfed-Powys Police in Wales experienced a cyberattack that potentially compromised staff data, while a new campaign named ClickFix exploits trusted websites to deploy the Psychedelic Stealer, targeting browser and crypto credentials. Vulnerabilities in Salesforce's Agentforce have been identified, allowing zero-click data exfiltration, further emphasizing the need for robust security measures. LinkedIn is enhancing checks against fake profiles as AI-generated content becomes more prevalent, indicating a rising trend in AI-related security threats. Additionally, multiple vulnerabilities in Linux kernels across various distributions have been reported, necessitating immediate attention from organizations using these systems.
|
// AI-powered summary generated at 16:00
The Lazarus Group has been targeting Bitcoin industry insiders to steal their credentials.
Shareholder data is most highly valued by IT professionals at more than $1,700 per record.
Today, we are releasing access to our maintained repository of osquery extensions. Our first extension takes advantage of the Duo Labs EFIgy API to determine if the EFI firmware on your Mac fleet is up to date. There are very few examples of publicly released osquery extensions. Very little document...
Londoner gets over six years in jail
Troy Hunt spotted that the UK bank had not secured its homepage
If you’re building real applications with blockchain technology and are worried about security, consider this meetup essential. Join us on December 12th for a special edition of Empire Hacking focused entirely on the security of Ethereum. Why attend? Four blockchain security experts will be sharing...
Ransomware and a spike in cryptocurrency miners are two reasons for the growth.
CyberArk report uncovers litany of poor security practices
Security vendor also removed popular features from new product
UC San Diego team urges netizens to use password manager
The scam typically begins with parents receiving an email giving them payment details for the school fees, perhaps saying these have changed.
Victims are given four days to pay—an unusually generous payment window for ransomware.
CA Veracode claims execs are funding app splurge but ignoring security
GDPR is considered by respondents to be the most challenging among other data compliance regulations.
A full 87% of employees surveyed have lost a USB drive and failed to notify their company.
This latest offensive shows it spreading beyond financial targets and into the US and other arenas.
Philippines lender says it has been completely transparent with authorities
Database is aggregated and allows for speedy searches
A cloned application can look and behave like the original application but inject malicious behavior.
The Necurs botnet started mass distribution of Scarab during the holiday, sending over 12 million emails in a single morning.