Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 100 / 206
4101 résultats taggé EN  ✕
Finland, Germany, Ireland, Japan, Poland, South Korea added to US-led spyware agreement https://therecord.media/international-spyware-agreement-new-members
19/03/2024 17:19:28
QRCode
archive.org
thumbnail

The signees, which already included about a dozen other nations, agree to establish “robust guardrails and procedures" around spyware, while preventing the export of technology that will be used for malicious cyber activity.

therecord.media EN 2024 Finland Germany Ireland Japan Poland South-Korea US-led spyware agreement
Interesting Multi-Stage StopCrypt Ransomware Variant Propagating in the Wild https://blog.sonicwall.com/en-us/2024/03/new-multi-stage-stopcrypt-ransomware/
19/03/2024 17:14:35
QRCode
archive.org
thumbnail

Overview The SonicWall Capture Labs threat research team recently observed an interesting variant of StopCrypt ransomware. The ransomware executes its malicious activities by utilizing multi-stage shellcodes before launching a final payload that contains the file […]

SonicWall EN 2024 StopCrypt ransomware analysis
Earth Krahang Exploits Intergovernmental Trust to Launch Cross-Government Attacks | Trend Micro (US) https://www.trendmicro.com/en_us/research/24/c/earth-krahang.html
19/03/2024 15:51:23
QRCode
archive.org
thumbnail

Since early 2022, we have been monitoring an APT campaign that targets several government entities worldwide, with a strong focus in Southeast Asia, but also seen targeting Europe, America, and Africa.

trendmicro EN 2024 targeted-attacks research report Earth-Krahang i-soon
Researchers spot updated version of malware that hit Viasat https://cyberscoop.com/viasat-malware-wiper-acidrain/
19/03/2024 15:49:21
QRCode
archive.org
thumbnail

Russian hackers have added new capabilities to the malware used to disable satellite modems at the outset of the invasion of Ukraine.

cyberscoop EN 2024 viasat Russia AcidRain Wiper Russia-Ukraine-war
IT helpdeskers increasingly targeted by cybercriminals https://www.theregister.com/2024/03/15/it_helpdeskers_under_increased_threat
18/03/2024 18:34:22
QRCode
archive.org
thumbnail

Wave of Okta attacks mark what researchers are calling the biggest security trend of the year

theregister EN 2024 helpdeskers target trend help-desk
Elon Musk's SpaceX builds spy satellite network for U.S. intelligence https://qz.com/spacex-starlink-spy-satellite-us-intelligence-elon-musk-1851342193
18/03/2024 14:36:54
QRCode
archive.org
thumbnail

SpaceX’s dominance in the satellite internet market has given Musk enormous power in matters of war and geopolitics

qz.com En 2024 Starlink internet Starshield SpaceX Satellite Musk spy US
What a Cluster: Local Volumes Vulnerability in Kubernetes https://www.akamai.com/blog/security-research/kubernetes-local-volumes-command-injection-vulnerability-rce-system-privileges
18/03/2024 09:02:18
QRCode
archive.org
  • Akamai security researcher Tomer Peled recently discovered a high-severity vulnerability in Kubernetes that was assigned CVE-2023-5528 with a CVSS score of 7.2.

  • The vulnerability allows remote code execution with SYSTEM privileges on all Windows endpoints within a Kubernetes cluster. To exploit this vulnerability, the attacker needs to apply malicious YAML files on the cluster.

  • This vulnerability can lead to full takeover on all Windows nodes in a cluster.

  • This vulnerability can be exploited on default installations of Kubernetes (earlier than version 1.28.4), and was tested against both on-prem deployments and Azure Kubernetes Service.

  • In this blog post, we provide a proof-of-concept YAML file as well as an Open Policy Agent (OPA) rule for blocking this vulnerability.

akamai EN 2024 CVE-2023-5528 Kubernetes Windows vulnerability
'GhostRace' Speculative Execution Attack Impacts All CPU, OS Vendors https://www.darkreading.com/cyber-risk/ghostrace-speculative-execution-attack-cpu-os-vendors
18/03/2024 08:32:01
QRCode
archive.org
thumbnail

Like Spectre, the new exploit could give attackers a way to access sensitive information from system memory, and take other malicious actions.

darkreading EN 2024 speculative CPU CVE-2024-2193 GhostRace vulnerability
APT28 Hacker Group Targeting Europe, Americas, Asia in Widespread Phishing Scheme https://thehackernews.com/2024/03/apt28-hacker-group-targeting-europe.html?m=1
18/03/2024 07:24:03
QRCode
archive.org

The Russia-linked threat actor known as APT28 has been linked to multiple ongoing phishing campaigns that employ lure documents imitating government and non-governmental organizations (NGOs) in Europe, the South Caucasus, Central Asia, and North and South America.

"The uncovered lures include a mixture of internal and publicly available documents, as well as possible actor-generated documents associated with finance, critical infrastructure, executive engagements, cyber security, maritime security, healthcare, business, and defense industrial production," IBM X-Force said in a report published last week.

thehackernews EN 2024 APT28 Russia-linked Widespread Phishing Scheme
National Vulnerability Database: Opaque changes and unanswered questions https://anchore.com/blog/national-vulnerability-database-opaque-changes-and-unanswered-questions/
17/03/2024 17:04:57
QRCode
archive.org
thumbnail

Anchore engineers are investigating why as of February 15, 2024, NIST has almost completely stopped updating NVD with analysis for CVE IDs.

anchore EN 2024 NVD CVE backlog NIST
Google Paid Out $10 Million via Bug Bounty Programs in 2023 https://www.securityweek.com/google-paid-out-10-million-via-bug-bounty-programs-in-2023
17/03/2024 16:58:48
QRCode
archive.org

Google on Tuesday announced that it paid out a total of $10 million through its bug bounty programs in 2023, bringing the total amount awarded by the tech giant for vulnerabilities found in its products since 2010 to $59 million.

The total paid out in 2023 is less than the $12 million handed out in 2022, but it’s still a significant amount. The money was earned last year by 632 researchers from 68 countries. The highest single reward was $113,337.

securityweek EN 2024 Google bugbounty 2023 paid
Why hackers are targeting young public school students https://www.npr.org/2024/03/12/1237497833/students-schools-cybersecurity-hackers-credit
17/03/2024 16:51:40
QRCode
archive.org
thumbnail

Districts store all kinds of sensitive student data, which means the consequences of a school cyberattack can follow pupils well into adulthood. And it's not just their credit that's at risk.

npr EN 2024 US students Districts school target
Linux Foundation Launches Tazama: A Revolutionary Open Source Solution for Real-Time Fraud Management https://www.linuxfoundation.org/press/linux-foundation-launches-tazama-for-real-time-fraud-management
17/03/2024 14:48:34
QRCode
archive.org
thumbnail

Tazama is the first open source platform for financial monitoring and fraud detection.

linuxfoundation EN 2024 Linux Foundation Tazama Open-Source fraud detection
Exclusive: After LockBit’s takedown, its purported leader vows to hack on https://therecord.media/after-lockbit-takedown-its-purported-leader-vows-to-hack-on
15/03/2024 14:55:28
QRCode
archive.org
thumbnail

This week, the Click Here podcast landed a rare interview with the purported leader of the LockBit ransomware group – he goes by the name LockBitSupp. He’s under pressure because last month an international police operation infiltrated the group and seized not just their platform, but their hacking tools, cryptocurrency accounts and source code ending a four year ransomware rampage.

therecord.media EN 2024 LockBit LockBitSupp ransomware
Google Chrome gets real-time phishing protection later this month https://www.bleepingcomputer.com/news/google/google-chrome-gets-real-time-phishing-protection-later-this-month/amp/
14/03/2024 23:32:00
QRCode
archive.org
thumbnail

Google will roll out a Safe Browsing update later this month that will provide real-time malware and phishing protection to all Chrome users, without compromising their browsing privacy.

The company launched Safe Browsing in 2005 to defend users against web phishing attacks and has since upgraded it to block malicious domains that push malware, unwanted software, and various social engineering schemes.

bleepingcomputer EN 2024 solution Browsing Phishing Enhanced Chrome Google Safe Privacy Safe-Browsing browser
The Architects of Evasion: a Crypters Threat Landscape https://blog.sekoia.io/the-architects-of-evasion-a-crypters-threat-landscape/
14/03/2024 18:18:31
QRCode
archive.org
thumbnail

Learn about key concepts and different crypters-related activities as well as the lucrative ecosystem of malicious groups that exploit them.

sekoia EN 2024 Crypters Evasion analysis
Kubernetes Vulnerability Allows Remote Code Execution on Windows Endpoints https://www.securityweek.com/kubernetes-vulnerability-allows-remote-code-execution-on-windows-endpoints/
14/03/2024 11:45:58
QRCode
archive.org

The exploitation of a high-severity Kubernetes vulnerability can lead to arbitrary code execution with System privileges on all Windows endpoints in a cluster, Akamai warns.

The issue, tracked as CVE-2023-5528 and impacting default Kubernetes installations, exists in the way the open source container orchestration system processes YAML files, which it uses for virtually every function.

In some regards, the vulnerability is like CVE-2023-3676, a lack of sanitization in the subPath parameter in YAML files leading to code injection when creating pods with volumes.

securityweek EN 2024 Kubernetes cmd Windows CVE-2023-5528
DarkGate Opens Organizations for Attack via Skype, Teams https://www.trendmicro.com/en_us/research/23/j/darkgate-opens-organizations-for-attack-via-skype-teams.html
14/03/2024 11:31:55
QRCode
archive.org
thumbnail

From July to September, we observed the DarkGate campaign (detected by Trend Micro as TrojanSpy.AutoIt.DARKGATE.AA) abusing instant messaging platforms to deliver a VBA loader script to victims. This script downloaded and executed a second-stage payload consisting of a AutoIT scripting containing the DarkGate malware code. It’s unclear how the originating accounts of the instant messaging applications were compromised, however is hypothesized to be either through leaked credentials available through underground forums or the previous compromise of the parent organization.

trendmicro EN 2024 malware DarkGate Skype Teams
Salt Labs research finds security flaws within ChatGPT Ecosystem (Remediated) https://salt.security/blog/security-flaws-within-chatgpt-extensions-allowed-access-to-accounts-on-third-party-websites-and-sensitive-data
14/03/2024 11:00:20
QRCode
archive.org
thumbnail

Salt Labs researchers identified generative AI ecosystems as a new interesting attack vector. vulnerabilities found during this research on ChatGPT ecosystem could have granted access to accounts of users, including GitHub repositories, including 0-click attacks.

salt.security EN 2024 ChatGPT flaws plugins
Researchers found multiple flaws in ChatGPT plugins https://securityaffairs.com/160447/hacking/chatgpt-plugins-vulnerabilities.html
14/03/2024 10:57:09
QRCode
archive.org
thumbnail

Researchers from Salt Security discovered three types of vulnerabilities in ChatGPT plugins that can be could have led to data exposure and account takeovers.

ChatGPT plugins are additional tools or extensions that can be integrated with ChatGPT to extend its functionalities or enhance specific aspects of the user experience. These plugins may include new natural language processing features, search capabilities, integrations with other services or platforms, text analysis tools, and more. Essentially, plugins allow users to customize and tailor the ChatGPT experience to their specific needs.

securityaffairs EN 2024 flows ChatGPT plugins researchers
page 100 / 206
4678 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio