> TODAY'S SUMMARY (11 articles)
Today's cybersecurity landscape highlights several significant threats and trends. Notably, the Warlock ransomware group continues to exploit year-old SharePoint vulnerabilities to target critical infrastructure, affecting essential services globally. Meanwhile, the ShinyHunters group faces increased scrutiny, with a suspect detained in Jordan cooperating with the FBI to identify other members. Additionally, a new China-aligned cyber espionage group, TA419, is actively targeting U.S. AI policy experts through sophisticated phishing campaigns. In the realm of artificial intelligence, former National Intelligence Director Jay Clayton is set to lead a new federal task force aimed at addressing AI-related security challenges. These developments underscore the ongoing risks posed by ransomware, cyber espionage, and the evolving landscape of AI security.
|
// AI-powered summary generated at 16:00
It is the first lapse of the spy program, known as Section 702 of the Foreign Intelligence Surveillance Act (FISA), since it was passed into law in 2008.
More than 400 packages in the Arch User Repository (AUR) are distributing a Linux rootkit and infostealer malware targeting credentials and access tokens. [...]
L'Autorité Nationale de Surveillance du Traitement des Données à Caractère Personnel (ANSPDCP) roumaine a aujourd'hui publié une décision de sanction à l'encontre de la Compagnie Nationale de la Poste Roumaine, comprenant le prononcé d'une amende de 26 026 lei (5 000 €) pour des manquements en lien...
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
Sept suspects liés à Dumpsec ont été arrêtés après le vol présumé de dizaines de millions de données.
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:
Other noteworthy stories that might have slipped under the radar: ICS device exposure remains flat as attack surface widens, Microsoft issues incident response playbook for AI, IBM and AT&T accused of hack cover-ups.
The post In Other News: Google Security Layoffs, AudiA6 Takedown, $400 Million...
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:
Oracle still hasn't patched the vulnerability the group has been using in its attacks since late May.
The post ShinyHunters is actively extorting universities after exploiting an unpatched Oracle flaw appeared first on CyberScoop.
Lawmakers have failed to extend a surveillance law that allows US intelligence agencies to monitor targets abroad without a warrant.
Congress rejected a vote to extend Section 702 of the Foreign Intelligence Surveillance Act to July 2, which means, for a few days at least,...
The penalty is the largest ever issued by the commission for a personal data breach, surpassing the record 134.8 billion won ($88.8 million) fine levied against SK Telecom earlier this year.
An intruder has breached the French government’s encrypted messaging service, Tchap, showing once again that human error is a weak spot in any security system.
Tchap was developed in France as an example of national sovereignty and was designed to be a more secure option th...
Suite à l'installation de la mise à jour KB5094126 sur Windows 11, les liens OneDrive et SharePoint intégrés à l'Explorateur de fichiers ne fonctionnent plus.
Le post Windows 11 : la mise à jour KB5094126 casse l’accès OneDrive dans l’Explorateur ! a été publié sur IT-Connect.
Avant l’affaire Lyhanna, des alertes américaines éclairaient le rôle du NCMEC et des enquêteurs habilités à traquer les pédocriminels.
Apple and the Met Police are working together to make stolen iPhones harder to reset, resell, and profit from.
GitHub access sales, leaked repositories, and stolen API keys can all become supply-chain attack footholds. Flare explores how underground forums expose early signals tied to software supply-chain risk. [...]
Domain of dark web money laundering platform AudiA6 seized and suspects arrested in joint operation by the FBI, Europol and others
Clinical trial participant data stolen, but pharma giant says exposed records were pseudonymized