> TODAY'S SUMMARY (4 articles)
Today's cybersecurity landscape highlights significant threats and trends. South Korea's president is advocating for a comprehensive overhaul of cybersecurity measures to address vulnerabilities in the AI era. A critical flaw in Atlassian's data center software has been revealed, impacting eight enterprise products and raising concerns about widespread security issues. Additionally, a cyberattack on Arizona’s court system has resulted in the theft of personal information for over one million individuals, with data dating back 30 years. These incidents underscore the urgent need for enhanced security protocols and innovative solutions to combat evolving cyber threats.
|
// AI-powered summary generated at 04:00
L'Autorité de protection des données personnelles a publié une décision de sanction à l'encontre de Vodafone (comprenant le prononcé d'une amende de 20 000 €) et d'une personne physique (amende de 2 000 €) pour des manquements en lien avec l'obligation d'information et le droit d'accès. Cette affair...
L'autorité italienne, le Garant pour la protection des données personnelles (GPDP), a publié une décision de sanction à l'encontre du Ministère de la Justice, comprenant le prononcé d'une amende de 12 000 €, pour des manquements en lien avec la communication illicite de données de santé d'un employé...
Lawmakers in both houses of Congress are demanding answers from the U.S. Cybersecurity & Infrastructure Security Agency (CISA) after KrebsOnSecurity reported this week that a CISA contractor intentionally published AWS GovCloud keys and a vast trove of other agency secrets on a public GitHub acc...
L'autorité croate de protection des données (AZOP) a publié des recommandations détaillant les conditions d'application de l'intérêt légitime comme base juridique pour le traitement des données personnelles.S'appuyant sur les lignes directrices 1/2024 du Comité européen de la protection des données...
Le Conseil d'État a partiellement annulé et réformé une sanction de la Commission nationale de l'informatique et des libertés (CNIL) à l'encontre de la société Tagadamedia concernant ses pratiques de recueil du consentement pour la prospection commerciale.La société Tagadamedia, qui collecte des don...
According to users on X, the website was hijacked by hackers in an attempt to trick visitors into installing malware.
The Belarus-aligned threat actor known as Ghostwriter (aka UAC-0057 and UNC1151Ukraine's National Security and Defense Council) has been observed using lures related to Prometheus, a Ukrainian online learning platform, to target government organizations in the country.
The activity, per the Compute...
How Frontier firms secure AI at scale: read how Microsoft customers embed governance, identity, and cloud security to make protection an enabler of AI growth.
The post Microsoft Security success stories: How St. Luke’s and ManpowerGroup are securing AI foundations appeared first on Microsoft Securit...
Vidéo exclusive ZATAZ : plongée dans un lookup, outil lié aux fuites de données et au darkweb.
Un suspect interpellé après un trafic de données lié à Telegram, crypto-actifs et 79 millions d’entrées.
Microsoft is testing the addition of agentic AI to its corporate browser, Edge for Business. A new version, currently available in a limited preview, will help perform routine tasks more efficiently, according to Microsoft’s partner product manager for Edge, Lindsay Kubasik....
Two former executives of a call-tracking and analytics company pleaded guilty to concealing a years-long tech support fraud scheme that victimized individuals worldwide. [...]
Path-to-Regexp could be made to crash if it received specially crafted network traffic.
Key Findings Introduction During the recent geopolitical tensions in the Middle East, we reported on multiple Iran-nexus threat actors advancing Iran’s strategic objectives through cyber operations. These activities included targeting internet-connected cameras, conducting destructive attacks agains...
Cops seize First VPN and share intel on users, Reaper spoofs multiple brands to infect Macs, and two Microsoft Defender zero-days exploited in the wild.
Lawyer Adam Unikowsky spoke with Recorded Future News about why he believes geofence searches are problematic and why the way the court rules could have a dramatic impact on Americans’ right to privacy.
In court documents unsealed on Thursday, the Justice Department said Jacob Butler ran KimWolf as a DDoS-for-hire service that infected over a million devices worldwide.
Authors: Yun Zheng Hu and Mick Koomen Summary Last year, we published research about a North Korean Lazarus subgroup targeting financial and cryptocurrency organizations, encountered during multiple incident response engagements. This Lazarus subgroup overlaps with activity linked to AppleJeus, Citr...
President Trump’s branded cell phone maker and cell provider said the exposure was linked to a third-party platform, and was evaluating whether it needs to notify customers.
Evince could be made to run programs as your login if it opened a specially crafted file.