> TODAY'S SUMMARY (51 articles)
Today's cybersecurity landscape reveals a record surge in ransomware attacks, with 1,073 firms targeted globally in August, primarily in the industrial sector. Microsoft has disrupted the AI-powered phishing service, EvilTokens, which compromised over 12,000 inboxes across various organizations. Meanwhile, critical vulnerabilities have been reported in several platforms, including Adobe, WordPress, and F5's BIG-IP, necessitating immediate patches to prevent potential exploitation. Additionally, the ShinyHunters group claims to have breached FBI systems via a zero-day vulnerability in Oracle PeopleSoft, threatening to leak sensitive data. In malware developments, Chinese hackers are leveraging a Chrome-Windows zero-day to deploy CLEANGULP malware, highlighting the ongoing threat posed by exploit chains.
|
// AI-powered summary generated at 12:01
Research into mobile banking apps has shown that major flaws persist in authentication and security.
Researchers find Santa’s sack full of mobile data
Today, we’re releasing the source code to our self-hosted video chat platform, Tuber Time Communications (or just “Tuber”). We’ve been using Tuber for private video calls with up to 15 members of our team over the last year or two. We want you to use it, protect your privacy, and help us make it bet...
Deal will see threat intel shared both ways
Latest report claims hundreds of millions have had records stolen
Two families of mobile banking trojans, Faketoken and Marcher, cracked the list.
Flaws were found in products from Spiceworks, Ispswitch, Castle Rock Computing and Opsview, some of which have already been patched.
Users should beware of innocuous-looking content
EU institutions agree on General Data Protection Regulation
A flaw exposed the user names, email addresses and other personal information to the public internet.
Emails with the subject line “Pandora Clearance” promise an extreme sale but instead capture credit card and financial information.
Extortionists go back to basics
McAfee Labs warns enterprises to be on high alert
Many developers not getting basics right, says NCC Group
Foreign Office sponsored program featured FBI and Eastern European agencies
Protective measures needed after legacy root falls out of compliance
The primary method of attack is a random phishing campaign that employs well-crafted spoofing methods.
A survey has found that 82% of federal IT respondents’ organizations are using the NIST framework to improve their security stance.
Kaspersky Lab says that 2015 has changed the rules of the cybersecurity game.
Trend Micro report uncovers some highly localized offerings