Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 120 / 222
4423 résultats taggé EN  ✕
“SubdoMailing” — Thousands of Hijacked Major-Brand Subdomains Found Bombarding Users With Millions of Malicious Emails https://labs.guard.io/subdomailing-thousands-of-hijacked-major-brand-subdomains-found-bombarding-users-with-millions-a5e5fb892935
27/02/2024 18:37:39
QRCode
archive.org

Guardio Labs uncovers a sprawling campaign of subdomain hijacking, compromising already over 8,000 domains from esteemed brands and institutions, including MSN, VMware, McAfee, The Economist, Cornell University, CBS, Marvel, eBay and others. This malicious activity, dubbed “SubdoMailing”, leverages the trust associated with these domains to circulate spam and malicious phishing emails by the Millions each day, cunningly using their credibility and stolen resources to slip past security measures.

In our detailed analysis, we disclose how we detected this extensive subdomain hijacking effort, its mechanisms, its unprecedented scale and the main threat actor behind it. Furthermore, we developedthe “SubdoMailing” checker — a website designed to empower domain owners to reclaim control over their compromised assets and shield themselves against such pervasive threats. This report not only sheds light on the magnitude of the issue but also serves as a call to action for enhancing domain security against future exploits.

labs.guard.io EN 2024 SubdoMailing Hijacked Major-Brand Subdomains Malicious Emails
PIKABOT, I choose you! https://www.elastic.co/security-labs/pikabot-i-choose-you
27/02/2024 10:51:53
QRCode
archive.org
thumbnail

Elastic Security Labs observed new PIKABOT campaigns, including an updated version. PIKABOT is a widely deployed loader malicious actors utilize to distribute additional payloads.

elastic.co EN 2024 new campaign loader
SEO Poisoning to Domain Control: The Gootloader Saga Continues https://thedfirreport.com/2024/02/26/seo-poisoning-to-domain-control-the-gootloader-saga-continues/
26/02/2024 23:49:00
QRCode
archive.org
thumbnail

Key Takeaways More information about Gootloader can be found in the following reports: The DFIR Report, GootloaderSites, Mandiant, Red Canary, & Kroll. An audio version of this report can be … Read More

thedfirreport EN 2024 Gootloader DFIR
LockBit ransomware returns, restores servers after police disruption https://www.bleepingcomputer.com/news/security/lockbit-ransomware-returns-restores-servers-after-police-disruption/
25/02/2024 22:03:36
QRCode
archive.org
thumbnail

The LockBit gang is relaunching its ransomware operation on a new infrastructure less than a week after law enforcement hacked their servers, and is threatening to focus more of their attacks on the government sector.

bleepingcomputer EN 2024 EN police disruption returns relaunching ransomware
U.S. and U.K. Disrupt LockBit Ransomware Variant | United States Department of Justice https://www.justice.gov/opa/pr/us-and-uk-disrupt-lockbit-ransomware-variant
25/02/2024 18:09:55
QRCode
archive.org
thumbnail

The Department of Justice joined the United Kingdom and international law enforcement partners in London today to announce the disruption of the LockBit ransomware group, one of the most active ransomware groups in the world that has targeted over 2,000 victims, received more than $120 million in ransom payments, and made ransom demands totaling hundreds of millions of dollars.

justice.gov EN 2024 lockbit Disrupt press-release US
How your sensitive data can be sold after a data broker goes bankrupt https://arstechnica.com/tech-policy/2024/02/how-your-sensitive-data-can-be-sold-after-a-data-broker-goes-bankrupt/
25/02/2024 13:14:01
QRCode
archive.org
thumbnail

Sensitive location data could be sold off to the highest bidder.

arstechnica EN 2024 data-broker privacy bankrupt
Ransomware Operation LockBit Reestablishes Dark Web Leak Site https://www.bankinfosecurity.com/ransomware-operation-lockbit-reestablishes-dark-web-leak-site-a-24442
25/02/2024 13:11:35
QRCode
archive.org
thumbnail

Russian-speaking ransomware operation LockBit reestablished a dark web leak site Saturday afternoon, posting a lengthy screed apparently authored by its leader, who

bankinfosecurity EN 2024 LockBit ransomware Reestablishes
Hackers Leak 2.5M Private Plane Owners' Data Linked to LA Intl. Airport Breach https://www.hackread.com/hackers-leak-private-plane-owners-data-la-airport-breach/
24/02/2024 14:33:27
QRCode
archive.org
thumbnail

The data breach shows why organisations must enhance cybersecurity measures in the face of growing threats from skilled hackers like IntelBroker.

hackread 2024 EN leak data-breach IntelBroker Private Plane Airport US
Avast fined $16.5 million for ‘privacy’ software that actually sold users’ browsing data https://www.theverge.com/2024/2/22/24080135/avast-security-privacy-software-ftc-fine-data-harvesting
23/02/2024 11:43:43
QRCode
archive.org
thumbnail

Avast, the cybersecurity software company, is facing a $16.5 million fine from the FTC after its privacy extensions and antivirus software harvested and sold user data.

theverge EN 2024 Avast fined privacy antivirus
Jamf says 9% of smartphone have fallen for phishing attacks https://appleinsider.com/articles/24/02/22/apple-users-are-increasingly-falling-victim-to-malware-phishing-and-viruses
22/02/2024 22:14:16
QRCode
archive.org
thumbnail

In a report going over the state of malware in 2024, device management firm Jamf says that 9% of mobile users were caught by phishing, while 20% of companies were at risk because of bad smartphone configurations.

appleinsider EN 2024 smartphone phishing macos ios report Statistics
Multiple XSS flaws in Joomla can lead to remote code execution https://securityaffairs.com/159487/security/joomla-xss-flaws.html
22/02/2024 16:55:14
QRCode
archive.org
thumbnail

Joomla maintainers have addressed multiple flaws in the popular content management system (CMS) that can lead to execute arbitrary code

securityaffairs EN 2024 XSS Joomla CMS vulnerabilities CVE-2024-21722 CVE-2024-21723
Scattered Spider laying new eggs https://blog.sekoia.io/scattered-spider-laying-new-eggs/
22/02/2024 13:53:44
QRCode
archive.org
thumbnail

Discover the techniques, tactics (TTPs) used by Scattered Spider intrusion set, including social engineering and targeted phishing campaigns.

sekoia EN 2024 analysis TTPs Scattered-Spider phishing intrusion Social-engineering
ConnectWise ScreenConnect: Authentication Bypass Deep Dive https://www.horizon3.ai/attack-research/red-team/connectwise-screenconnect-auth-bypass-deep-dive/
22/02/2024 08:26:47
QRCode
archive.org
thumbnail

An analysis of the recent ConnectWise ScreenConnect authentication bypass vulnerability, root cause, and indicators of compromise.

horizon3 EN 2024 ConnectWise ScreenConnect bypass vulnerability
A first analysis of the i-Soon data leak https://www.malwarebytes.com/blog/news/2024/02/a-first-analysis-of-the-i-soon-data-leak
21/02/2024 15:40:24
QRCode
archive.org
thumbnail

Data from a Chinese cybersecurity vendor that works for the Chinese government exposed a range of hacking tools and services.

malwarebytes EN 2024 i-Soon data leak analysis
Apple iOS 17.4: iMessage Gets Post-Quantum Encryption in New Update https://www.wired.com/story/apple-pq3-post-quantum-encryption/
21/02/2024 15:14:39
QRCode
archive.org
thumbnail

Useful quantum computers aren’t a reality—yet. But in one of the biggest deployments of post-quantum encryption so far, Apple is bringing the technology to iMessage.
#apple #computing #encryption #privacy #quantum #security

wired EN 2024 apple encryption computing quantum privacy
European Parliament finds spyware on defense committee members’ phones https://www.politico.eu/article/parliament-defense-subcommittee-phones-checked-for-spyware/
21/02/2024 13:23:07
QRCode
archive.org
thumbnail

Officials handling security and defense issues were the target of phone hacking, internal email says.

Politic EN 2024 spyware Espionage Rule enforcement Data of Elections Cybersecurity Malware Spyware EU defense
Anatsa Banking Trojan Resurfaces, Targets European Banks https://www.infosecurity-magazine.com/news/anatsa-banking-trojan-targets/?is=e4f6b16c6de31130985364bb824bcb39ef6b2c4e902e4e553f0ec11bdbefc118
21/02/2024 10:00:51
QRCode
archive.org
thumbnail

ThreatFabric said the campaign has evolved since last year, employing sophisticated methods and mainly targeting Samsung devices

infosecurity-magazine EN 2024 Anatsa Banking Trojan EU
Police arrests LockBit ransomware members, release decryptor in global crackdown https://www.bleepingcomputer.com/news/security/police-arrests-lockbit-ransomware-members-release-decryptor-in-global-crackdown/
20/02/2024 13:22:40
QRCode
archive.org
thumbnail

Law enforcement arrested two operators of the LockBit ransomware gang in Poland and Ukraine, created a decryption tool to recover encrypted files for free, and seized over 200 crypto-wallets after hacking the cybercrime gang's servers in an international crackdown operation.

bleepingcomputer EN 2024 Europol LockBit NCA Police Ransomware
Law enforcement disrupt world’s biggest ransomware operation https://www.europol.europa.eu/media-press/newsroom/news/law-enforcement-disrupt-worlds-biggest-ransomware-operation
20/02/2024 12:55:49
QRCode
archive.org
thumbnail

LockBit is widely recognised as the world’s most prolific and harmful ransomware, causing billions of euros worth of damage.This international sweep follows a complex investigation led by the UK National Crime Agency in the framework of an international taskforce known as ‘Operation Cronos’, coordinated at European level by Europol and Eurojust.The months-long operation has resulted in the compromise of LockBit’s...

Europol EN 2024 LockBit Operation-Cronos disrupted ransomware
Cactus ransomware claim to steal 1.5TB of Schneider Electric data https://www.bleepingcomputer.com/news/security/cactus-ransomware-claim-to-steal-15tb-of-schneider-electric-data/
20/02/2024 09:59:48
QRCode
archive.org
thumbnail

The Cactus ransomware gang claims they stole 1.5TB of data from Schneider Electric after breaching the company's network last month.

bleepingcomputer EN 2024 Cactus Cactus-Ransomware Data-Leak Ransomware Schneider-Electric
page 120 / 222
5036 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn