Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 125 / 207
4135 résultats taggé EN  ✕
Microsoft Temporarily Blocked Internal Access to ChatGPT, Citing Data Concerns https://www.wsj.com/tech/microsoft-temporarily-blocked-internal-access-to-chatgpt-citing-data-concerns-c1ca475d
10/11/2023 09:28:23
QRCode
archive.org
thumbnail

The company later restored access to the chatbot, which is owned by OpenAI.

wsj EN 2023 Microsoft Temporarily Blocked ChatGPT OpenAI
SysAid On-Prem Software CVE-2023-47246 Vulnerability Disclosure https://profero.io/posts/sysaidonpremvulnerability/
10/11/2023 08:45:17
QRCode
archive.org

On Nov 2nd, our security team received reports regarding a potential vulnerability in our on-premise software which was being actively exploited. We immediately initiated our incident response protocol and began proactively communicating with our on-premise customers to ensure they could implement a mitigation solution we had identified. We engaged Profero, a cyber security incident response company, to assist us in our investigation. The investigation determined that there was a zero-day vulnerability in the SysAid on-premises software. We urge all customers with SysAid on-prem server installations to ensure that your SysAid systems are updated to version 23.3.36, which remediates the identified vulnerability, and conduct a comprehensive compromise assessment of your network to look for any indicators further discussed below. Should you identify any indicators, take immediate action and follow your incident response protocols.

profero EN 2023 CVE-2023-47246 disclosure vulnerability SysAid
Atlassian confirms ransomware is exploiting latest Confluence bug https://therecord.media/atlassian-confirms-ransomware-using-confluence-bug-cerber
09/11/2023 18:39:27
QRCode
archive.org
thumbnail

An Atlassian spokesperson said the company had evidence to support what cybersecurity researchers reported over the weekend: A vulnerability affecting the Confluence Data Center and Confluence Server products was being used in cybercrime.

therecord EN 2023 Atlassian ransomware Confluence
Sandworm Disrupts Power in Ukraine Using a Novel Attack Against Operational Technology https://www.mandiant.com/resources/blog/sandworm-disrupts-power-ukraine-operational-technology
09/11/2023 18:36:15
QRCode
archive.org
thumbnail

This ICS/OT attack represents the latest evolution in Russia's cyber physical attack capability.

mandiant EN 2023 Sandworm Ukraine Russia Russia-Ukraine-war ICS
Malvertiser copies PC news site to deliver infostealer https://www.malwarebytes.com/blog/threat-intelligence/2023/11/malvertiser-copies-pc-news-site-to-deliver-infostealer
09/11/2023 18:35:14
QRCode
archive.org
thumbnail

Users looking to download a popular PC utility may be tricked in this campaign where a threat actor has registered a website that copies content from a PC and Windows news portal.

malwarebytes EN 2023 infostealer copies site imitation
Android Kitchen Sink: Send BLE spam to iOS, Android and Windows at once using Android app - Mobile Hacker https://www.mobile-hacker.com/2023/11/08/android-kitchen-sink-send-ble-spam-to-ios-android-and-windows-at-once-using-android-app/
09/11/2023 14:52:30
QRCode
archive.org
thumbnail

The Kitchen Sink is a name of Bluetooth Low Energy (BLE) attack that sends random advertisement packets that targets iOS, Android, and Windows devices the same time in the vicinity. The attack is called “Kitchen Sink” because it tries to send every possible packet in the list, similar to the phrase “everything but the kitchen

mobile-hacker EN 2023 BLE spam Android
SysAid Zero-Day Vulnerability Exploited by Ransomware Group https://www.securityweek.com/sysaid-zero-day-vulnerability-exploited-by-ransomware-group/
09/11/2023 10:56:04
QRCode
archive.org
thumbnail

CVE-2023-47246, a zero-day vulnerability in SysAid IT service management software has been exploited by Cl0p ransomware affiliates.

securityweek EN 2023 SysAid CVE-2023-47246 0-day
SysAid On-Prem Software CVE-2023-47246 Vulnerability https://www.sysaid.com/blog/service-desk/on-premise-software-security-vulnerability-notification
09/11/2023 06:44:07
QRCode
archive.org
thumbnail

On Nov 2nd, a potential vulnerability in our on-premise software came to our security team’s attention. We immediately initiated our incident response protocol and began proactively communicating with our on-premise customers to ensure they could implement a mitigation solution we had identified. We engaged Profero, a cyber security incident response company, to assist us in our investigation. The investigation determined that there was a zero-day vulnerability in the SysAid on-premises software.

sysaid EN 2023 CVE-2023-47246 SysAid On-Prem Vulnerability
Microsoft offers politicians protection against deepfakes https://www.theverge.com/2023/11/8/23951955/microsoft-elections-generative-ai-content-watermarks
08/11/2023 19:07:07
QRCode
archive.org
thumbnail

Microsoft will launch digital watermarking tools to combat deep fakes and offer services to political campaigns for cybersecurity and using AI.

theverge EN 2023 US Microsoft deepfakes elections
Predator AI | ChatGPT-Powered Infostealer Takes Aim at Cloud Platforms https://www.sentinelone.com/labs/predator-ai-chatgpt-powered-infostealer-takes-aim-at-cloud-platforms/
08/11/2023 19:02:52
QRCode
archive.org
thumbnail

An emerging infostealer being sold on Telegram looks to harness generative AI to streamline cyber attacks on cloud services.

sentinelone EN 2023 PredatorAI infostealer Telegram cloud
Python obfuscation traps https://checkmarx.com/blog/python-obfuscation-traps/
08/11/2023 18:39:45
QRCode
archive.org
thumbnail

In the realm of software development, open-source tools and packages play a pivotal role in simplifying tasks and accelerating development processes. Yet, as the community grows, so does the number of bad actors looking to exploit it. A recent example involves developers being targeted by seemingly legitimate Python obfuscation packages that harbor malicious code.

checkmarx EN 2023 Python obfuscation Supply-chain-attack
Common Vulnerability Scoring System https://www.first.org/cvss/v4-0/
08/11/2023 12:17:41
QRCode
archive.org
thumbnail

CVSS version 4.0 is the next generation of the Common Vulnerability Scoring System standard.

first EN 2023 Common Vulnerability Scoring System v4-0 CVSS
ATT&CK v14 Unleashes Detection Enhancements, ICS Assets, and Mobile Structured Detections | by Amy L. Robertson https://medium.com/mitre-attack/attack-v14-fa473603f86b
08/11/2023 12:16:18
QRCode
archive.org
thumbnail

ATT&CK has been brewing up something eerie for this Halloween — a release so hauntingly powerful that it will send a chill down the spine of even the most formidable adversaries. As v14 emerges from…

mitre-attack EN 2023 v14
Jamf Threat Labs Discovers Malware from BlueNoroff https://www.jamf.com/blog/bluenoroff-strikes-again-with-new-macos-malware/
07/11/2023 18:49:27
QRCode
archive.org
thumbnail

Newly discovered later-stage malware from BlueNoroff APT group targets macOS with characteristics similar to their RustBucket campaign.

jamf EN 2023 Malware macOS BlueNoroff RustBucket analysis
Critical Atlassian Confluence bug exploited in Cerber ransomware attacks https://www.bleepingcomputer.com/news/security/critical-atlassian-confluence-bug-exploited-in-cerber-ransomware-attacks/
06/11/2023 18:54:27
QRCode
archive.org
thumbnail

Attackers are exploiting a recently patched and critical severity Atlassian Confluence authentication bypass flaw to encrypt victims' files using Cerber ransomware.

bleepingcomputer EN 2023 Atlassian Authentication-Bypass Cerber Confluence Ransomware CVE-2023-22518
Not so lucky: BlackCat is back! https://research.nccgroup.com/2023/10/31/unveiling-the-dark-side-a-deep-dive-into-active-ransomware-families/
06/11/2023 18:35:02
QRCode
archive.org
thumbnail

While the main trend in the cyber threat landscape in recent months has been MoveIt and Cl0p, NCC Groups’ Cyber Incident Response Team have also been handling multiple different ransomware groups over the same period.

In the ever-evolving cybersecurity landscape, one consistent trend witnessed in recent years is the unsettling rise in ransomware attacks. These nefarious acts of digital extortion have left countless victims scrambling to safeguard their data, resources, and even their livelihoods. To counter this threat, every person in the cyber security theatre has a responsibility to shine light on current threat actor Tactics, Techniques and Procedures (TTP’S) to assist in improving defences and the overall threat landscape.

nccgroup EN 2023 TTP BlackCat D0nut Medusa NoEscape
Discord will switch to temporary file links to block malware delivery https://www.bleepingcomputer.com/news/security/discord-will-switch-to-temporary-file-links-to-block-malware-delivery/
06/11/2023 06:43:12
QRCode
archive.org
thumbnail

Discord will switch to temporary file links for all users by the end of the year to block attackers from using its CDN (content delivery network) for hosting and pushing malware.

bleepingcomputer EN 2023 Delivery Computer CDN Security InfoSec Hyperlink DMALocker Content Discord Network
Elastic catches DPRK passing out KANDYKORN — Elastic Security Labs https://www.elastic.co/security-labs/elastic-catches-dprk-passing-out-kandykorn
05/11/2023 17:55:22
QRCode
archive.org
thumbnail

Elastic Security Labs exposes an attempt by the DPRK to infect blockchain engineers with novel macOS malware.

elastic.co EN macOS DPRK blockchain engineers malware targeted
AI companies have all kinds of arguments against paying for copyrighted content https://www.theverge.com/2023/11/4/23946353/generative-ai-copyright-training-data-openai-microsoft-google-meta-stabilityai
05/11/2023 13:48:35
QRCode
archive.org
thumbnail

The biggest companies in AI aren’t interested in paying to use copyrighted material as training data, and here are their reasons why.

theverge EN 2023 AI copyright companies ChatGPT
GhostSec offers Ransomware-as-a-Service Possibly Used to Target Israel https://www.uptycs.com/blog/ghostlocker-ransomware-ghostsec
05/11/2023 13:45:11
QRCode
archive.org
thumbnail

The hacker collective called GhostSec has unveiled an innovative Ransomware-as-a-Service (RaaS) framework called GhostLocker. They provide comprehensive assistance to customers interested in acquiring this service through a dedicated Telegram channel. Presently, GhostSec is focusing its attacks on Israel. This move represents a surprising departure from their past activities and stated agenda.

Uptycs EN 2023 GhostSec GhostLocker RaaS Telegram Israel
page 125 / 207
4719 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio