> TODAY'S SUMMARY (17 articles)
Today's cybersecurity landscape highlights several critical threats and trends. A newly disclosed vulnerability in WordPress (CVE-2026-87902) is being exploited by attackers, allowing remote code execution without authentication. Additionally, a concerning statistic reveals that 97% of ransomware victims had multi-factor authentication (MFA) enabled, suggesting the need to identify and address other security gaps. Meanwhile, the emergence of CLOSEDQUORUM malware, which utilizes AI models for decision-making, raises alarms about the sophistication of cyber threats. Europe is witnessing a rise in cybercrime targeting public services and technology providers, emphasizing the need for enhanced security measures. Finally, vulnerabilities in urllib3 and ImageMagick have been reported, indicating ongoing risks in commonly used software.
|
// AI-powered summary generated at 08:01
Budget constraints, poor compatibility of systems and a lack of trained talent biggest barriers to advancing security postures
Facebook's 1.79 billion users can authenticate their accounts for other websites using the social network.
Hi, I’m Josh. I recently joined the team at Trail of Bits, and I’ve been an evangelist and plugin writer for the Binary Ninja reversing platform for a while now. I’ve developed plugins that make reversing easier and extended Binary Ninja’s architecture support to assist in playing the microcorruptio...
Encryption is becoming the norm on the web
EyePyramid malware targets Italian celebrities to steal data—and it’s drawn law enforcement attention.
John Oliver may have written off 2016, but we’re darn proud of all that we accomplished and contributed this year. We released a slew of the security tools that help us -and you- work smarter, and promoted a few more that deserved recognition. We helped the New York City InfoSec community build a fo...
US capital exposed after police network was attacked
Companies failing to comply with the GDPR after its implementation in May 2018 could face fines as high as 4% of global annual turnover.
We’re back with our promised second installment discussing control flow integrity. This time, we will talk about Microsoft’s implementation of control flow integrity. As a reminder, control flow integrity, or CFI, is an exploit mitigation technique that prevents bugs from turning into exploits. For...
Tomorrow, 28 January 2017, is Data Protection Day – an annual event designed to raise awareness and promote privacy and data protection best practices
Data sharing agreement not in jeopardy, European Commission assures
Proposed legislation calls for new industry standards
The telecom authority said that Shamoon 2 is behind new attacks on the labor ministry and a chemicals firm.
68.2% of breached records came from the US.
Eastern Europeans part of a suspected international gang
A member of Kaspersky Lab’s cybercrime investigations team has been arrested on suspicion of treason
Helps black hats spot ‘dishonest’ rivals
Stats likely to represent just the tip of the iceberg
An espionage trojan called SpyNote RAT has been found masquerading as the popular Netflix app, to trick Android users.
A vulnerability in the software it uses to run its forums allowed hackers to access forum user information.