Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 116 / 207
4123 résultats taggé EN  ✕
German Authorities Dismantle Dark Web Hub 'Kingdom Market' in Global Operation https://thehackernews.com/2023/12/german-authorities-dismantle-dark-web.html
22/12/2023 08:41:21
QRCode
archive.org
thumbnail

German law enforcement takes down dark web giant "Kingdom Market," specializing in narcotics and malware sales to tens of thousands of users.

thehackernews EN 2023 Kingdom-Market down law enforcement darkweb police operation
Hackers Exploiting MS Excel Vulnerability to Spread Agent Tesla Malware https://thehackernews.com/2023/12/hackers-exploiting-old-ms-excel.html?m=1
21/12/2023 19:57:57
QRCode
archive.org
thumbnail

Beware of phishing emails with invoice-themed attachments! Attackers are using an old Office vulnerability (CVE-2017-11882) to spread the Agent Tesla

thehackernews EN 2023 malware Agent-Tesla CVE-2017-11882 phishing email MSExcel Excel vulnerability
Seedworm: Iranian Hackers Target Telecoms Orgs in North and East Africa https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/iran-apt-seedworm-africa-telecoms
21/12/2023 19:57:21
QRCode
archive.org
thumbnail

MuddyC2Go framework and custom keylogger used in attack campaign.
Iranian espionage group Seedworm (aka Muddywater) has been targeting organizations operating in the telecommunications sector in Egypt, Sudan, and Tanzania.

Seedworm has been active since at least 2017, and has targeted organizations in many countries, though it is most strongly associated with attacks on organizations in the Middle East. It has been publicly stated that Seedworm is a cyberespionage group that is believed to be a subordinate part of Iran’s Ministry of Intelligence and Security (MOIS).

symantec-enterprise-blogs EN 2023 Seedworm Irtan APT Muddywater MuddyC2Go framework keylogger
Russian Water Utility Cyberattack Impacts 6000 Systems https://thecyberexpress.com/russian-water-utility-cyberattack/amp/
21/12/2023 19:55:10
QRCode
archive.org
thumbnail

At least 6000 computer systems have been impacted by the Ukrainian Blackjack-led Russian water utility cyberattack.

thecyberexpress EN 2023 Russia-Ukraine-war cyberattack water Critical-infrastructure Ukraine Blackjack
Lapsus$: GTA 6 hacker handed indefinite hospital order https://www.bbc.com/news/technology-67663128
21/12/2023 19:03:56
QRCode
archive.org
thumbnail

Judge says hacker remains a high risk through his skills and motivation to carry out cyber crime.

bbc EN 2023 Lapsus$ sentenced autism
USD 300 million seized and 3,500 suspects arrested in international financial crime operation https://www.interpol.int/News-and-Events/News/2023/USD-300-million-seized-and-3-500-suspects-arrested-in-international-financial-crime-operation
21/12/2023 10:37:29
QRCode
archive.org

Operation HAECHI IV emphasizes the key role of INTERPOL in enabling police worldwide to address the growing complexity of cyber-enabled scams

interpol EN 2023 Financial-Crime Cybercrime Organized-Crime HAECHI HAECHI-IV scams police operation arrested
Healthcare software provider data breach impacts 2.7 million https://www.bleepingcomputer.com/news/security/healthcare-software-provider-data-breach-impacts-27-million/
21/12/2023 10:30:36
QRCode
archive.org
thumbnail

ESO Solutions, a provider of software products for healthcare organizations and fire departments, disclosed that data belonging to 2.7 million patients has been compromised as a result of a ransomware attack.

bleepingcomputer EN 2023 Data-Breach ESO-Solutions Healthcare Hospital Ransomware
SSH protects the world’s most sensitive networks. It just got a lot weaker https://arstechnica.com/security/2023/12/hackers-can-break-ssh-channel-integrity-using-novel-data-corruption-attack/
20/12/2023 21:06:18
QRCode
archive.org
thumbnail

Novel Terrapin attack uses prefix truncation to downgrade the security of SSH channels.

arstechnica EN 2023 Terrapin SSH downgrade attack
Snikt! Rhysida dumps more than a terabyte of Insomniac Games’ internal data https://www.cyberdaily.au/culture/9959-snikt-rhysida-dumps-more-than-a-terabyte-of-insomniac-games-internal-data
20/12/2023 21:04:45
QRCode
archive.org
thumbnail

The Rhysida ransomware gang publishes 98 per cent of leaked data minutes after the ransom deadline passes – Wolverine game files included.

cyberdaily EN 2023 Rhysida ransomware Insomniac Games data-breach
Qakbot's Back, But Don't Y'all Panic: A Southern Tech Talk https://itssecurityyall.substack.com/p/qakbots-back-but-dont-yall-panic
20/12/2023 21:01:49
QRCode
archive.org
thumbnail

Qakbot, a versatile malware threat, returned after a takedown in August. The new campaign targets the hospitality industry with IRS-themed phishing emails containing malicious PDFs. Microsoft identified the attack, offering two IP addresses for blocking and a way to detect the malware's digital signature.

itssecurityyall EN 2023 Qakbot return malware hospitality IRS-themed
Unveiling VISS: a revolutionary approach to vulnerability impact scoring https://www.zoom.com/en/blog/viss-approach-to-vulnerability-impact-scoring/
20/12/2023 20:59:39
QRCode
archive.org
thumbnail

Our open-source vulnerability impact scoring system is now available and enhances incident response capabilities. Here's how VISS is unique.

zoom EN 2023 VISS vulnerability impact scoring
Web injections are back on the rise: 40+ banks affected by new malware campaign https://securityintelligence.com/posts/web-injections-back-on-rise-banks-affected-danabot-malware/
20/12/2023 20:51:20
QRCode
archive.org
thumbnail

DanaBot is a sophisticated banking trojan targeting financial institutions and their customers. Now, a new global campaign has put more users at risk.

securityintelligence EN 2023 DanaBot banking trojan malware
Terrapin attacks can downgrade security of OpenSSH connections https://www.bleepingcomputer.com/news/security/terrapin-attacks-can-downgrade-security-of-openssh-connections/
20/12/2023 20:48:09
QRCode
archive.org
thumbnail

Academic researchers developed a new attack called Terrapin that manipulates sequence numbers during the handshake process to breaks the SSH channel integrity when certain widely-used encryption modes are used.

bleepingcomputer EN 2023 Cyberattack Encryption Man-In-The-Middle-Attack SSH Terrapin Vulnerability
Xfinity waited to patch critical Citrix Bleed 0-day. Now it’s paying the price https://arstechnica.com/security/2023/12/hack-of-unpatched-comcast-servers-results-in-stolen-personal-data-including-passwords/
20/12/2023 20:46:07
QRCode
archive.org
thumbnail

Data for almost 36 million customers now in the hands of unknown hackers.

arstechnica EN 2023 Citrix-Bleed 0-day Xfinity data-breach
Justice Department Disrupts Prolific ALPHV/Blackcat Ransomware Variant | United States Department of Justice https://www.justice.gov/opa/pr/justice-department-disrupts-prolific-alphvblackcat-ransomware-variant
19/12/2023 15:12:33
QRCode
archive.org
thumbnail

The Justice Department announced today a disruption campaign against the Blackcat ransomware group — also known as ALPHV or Noberus — that has targeted the computer networks of more than 1,000 victims and caused harm around the world since its inception, including networks that support U.S. critical infrastructure.

justice.gov EN 2023 ALPHV Blackcat ransomware group Disrupts announce
Authorities claim seizure of notorious ALPHV ransomware gang's dark web leak site | TechCrunch https://techcrunch.com/2023/12/19/alphv-blackcat-ransomware-seizure/
19/12/2023 15:10:57
QRCode
archive.org
thumbnail

The FBI says it has released a decryption tool allowing hundreds of ALPHV/BlackCat victims to restore their scrambled files.

techcrunch EN 2023 ALPHV BlackCat cyberattack cybersecurity law-enforcement ransomware seizure
Vans, Supreme owner VF Corp. says personal data stolen and orders impacted in suspected ransomware attack | TechCrunch https://techcrunch.com/2023/12/18/vans-supreme-vf-corporation-personal-data-stolen-orders-impacted-ransomware/
19/12/2023 14:54:55
QRCode
archive.org
thumbnail

The U.S.-based owner of apparel brands including Vans, Supreme and The North Face says it cannot fulfill customer orders after a cyberattack.

techcrunch EN 2023 cyberattack data-breach ransomware Supreme Vans
Toward Ending the Domain Wars: Early Detection of Malicious Stockpiled Domains https://unit42.paloaltonetworks.com/detecting-malicious-stockpiled-domains/
19/12/2023 14:52:21
QRCode
archive.org
thumbnail

Using machine learning to target stockpiled malicious domains, the results of our detection pipeline tool highlight campaigns from phishing to scams.

unit42 EN 2023 TTP technique stockpiled DNS Malicious Early-Detection
The Curious Case of Predatory Sparrow https://sites.google.com/darkcell.se/www/sparrows
19/12/2023 14:39:10
QRCode
archive.org
thumbnail

Reconstructing the Attack from a 4th party collector’s point of view
Hamid Kashfi

[Update: December 18th, 2023]: On 18th December, Predator Sparrows launched a second
attack against the fuel distribution system in Iran, similar to their previous operation in 2021.
Since 2021, Iranian officials or third-party security vendors have not published any analysis or
technical details about the original attack, which is not unusual. Their screenshots from the
latest attacks provide some clues that only confirm our previous work, indicating connections to
the “Yaas Arghavani” company, a VSAT and POS service provider for the fuel distribution
system. The following is an old draft from December 2021, which I wrote for peer eyes rather
than public view. The original draft focused on the first attack against the fuel distribution
system. Still, some remarks remain valid and relevant to the recent attack on 18 Dec 2023, as
little has changed regarding how the system works. The same infrastructure, same suppliers,
and same 3rd party vendors, so we are likely just talking about a different attack vector and
entry point from the previous case. I will probably draft a new note about the recent attack from
scratch soon and when more details are gathered rather than updating the old speculative work.

darkcell.se EN 2023 Predatory-Sparrow Attack Iran Yaas-Arghavani analysis distribution system
FBI: Play ransomware gang has attacked 300 orgs since 2022 https://therecord.media/play-ransomware-targets-hundreds
18/12/2023 22:51:46
QRCode
archive.org
thumbnail

Since it appeared in July 2022, Play ransomware has launched devastating attacks on municipalities and critical infrastructure, agencies said.

therecord EN 2023 Play ransomware FBI report municipalities infrastructure 2022
page 116 / 207
4706 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio