Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 130 / 251
Plusieurs ministères visés par des attaques informatiques depuis dimanche, annonce Matignon https://www.lemonde.fr/pixels/article/2024/03/11/des-services-de-l-etat-vises-par-plusieurs-attaques-informatiques-depuis-dimanche-annonce-matignon_6221398_4408996.html
12/03/2024 10:22:06
QRCode
archive.org
thumbnail

Si ces attaques, qui ont commencé dimanche soir, ont été d’une « intensité inédite », les services du premier ministre ont précisé lundi que leur impact avait été « réduit ». Elles ont été revendiquées par Anonymous Sudan, qui regroupe des militants prorusses.

lemonde FR 2024 France DDoS Anonymous Anonymous-Sudan prorusses
La Commission se félicite de l'accord politique obtenu sur le règlement relatif à la cybersolidarité https://ec.europa.eu/commission/presscorner/detail/fr/ip_24_1332
12/03/2024 10:07:01
QRCode
archive.org
thumbnail

La Commission se félicite de l'accord politique auquel le Parlement européen et le Conseil sont parvenus la nuit dernière concernant le règlement sur la cybersolidarité, proposé par la Commission en avril 2023.

Le règlement sur la cybersolidarité renforcera la solidarité au niveau de l'UE afin de mieux détecter les menaces et incidents de cybersécurité, de mieux s'y préparer et de mieux y réagir. Cet accord intervient à un moment crucial pour la cybersécurité de l'UE, étant donné que le paysage des cybermenaces dans l'UE continue d'être affecté par les événements géopolitiques.

europa EU 2024 FR cybersolidarité accord politique cyber-bouclier règlement
Cyber Solidarity Act : qui va constituer le « bouclier cyber » européen ? https://www.silicon.fr/cyber-solidarity-act-bouclier-cyber-europeen-476626.html
12/03/2024 10:05:09
QRCode
archive.org
thumbnail

Le Cyber Solidarity Act ouvre la voie à une infrastructure paneuropéenne de SOC. Quels acteurs - français, notamment - se sont positionnés ?

silicon FR cyber-solidarity-act cybersécurité EU SOC infrastructure défense cyber-bouclier
Exploiting CVE-2024-21378 – Remote Code Execution in Microsoft Outlook https://www.netspi.com/blog/technical/red-team-operations/microsoft-outlook-remote-code-execution-cve-2024-21378/
11/03/2024 15:45:31
QRCode
archive.org

Learn how NetSPI discovered that Microsoft Outlook was vulnerable to authenticated remote code execution (RCE) via synced form objects.

netspi EN 2024 CVE-2024-21378 RCE vulnerability Outlook
Magnet Goblin Targets Publicly Facing Servers Using 1-Day Vulnerabilities https://research.checkpoint.com/2024/magnet-goblin-targets-publicly-facing-servers-using-1-day-vulnerabilities/
11/03/2024 11:26:35
QRCode
archive.org
thumbnail
  • Magnet Goblin is a financially motivated threat actor that quickly adopts and leverages 1-day vulnerabilities in public-facing services as an initial infection vector. At least in one case of Ivanti Connect Secure VPN (CVE-2024-21887), the exploit entered the group’s arsenal as fast as within 1 day after a POC for it was published.
  • Campaigns that we were able to attribute to this actor targeted Ivanti, Magento, Qlink Sense and possibly Apache ActiveMQ.
  • Analysis of the actor’s recent Ivanti Connect Secure VPN campaign revealed a novel Linux version of a malware called NerbianRAT, in addition to WARPWIRE, a JavaScript credential stealer.
  • The actor’s arsenal also includes MiniNerbian, a small Linux backdoor, and remote monitoring and management (RMM) tools for Windows like ScreenConnect and AnyDesk.
checkpoint EN 2024 Magnet-Goblin 1-day vulnerability Linux NerbianRAT
EU Commission breached data protection rules using Microsoft 365, EU watchdog found – Euractiv https://www.euractiv.com/section/data-privacy/news/eu-commission-breached-data-protection-rules-using-microsoft-365-eu-watchdog-found/
11/03/2024 11:21:39
QRCode
archive.org
thumbnail

The European Commission violated data protection rules in its use of Microsoft 365, leading to the imposition of corrective measures by the European Data Protection Supervisor (EDPS), the watchdog announced on Monday (11 March).

euractiv EU-Commission violated data-protection legal EDPS watchdog
CISA forced to take two systems offline last month after Ivanti compromise https://therecord.media/cisa-takes-two-systems-offline-following-ivanti-compromise
08/03/2024 20:07:38
QRCode
archive.org
thumbnail

Hackers breached the systems of the Cybersecurity and Infrastructure Security Agency (CISA) in February through vulnerabilities in Ivanti products, officials said.

therecord.media EN 2024 CISA Ivanti Gateway comprimised offline CVE-2023-46805 CVE-2024-21887 CVE-2024-21893
Russian spies keep hacking into Microsoft in 'ongoing attack,' company says https://techcrunch.com/2024/03/08/microsoft-ongoing-cyberattack-russia-apt-29/
08/03/2024 16:21:02
QRCode
archive.org
thumbnail

Microsoft says the ongoing hacking is part of the Russian government's efforts to figure out what information Microsoft has on its hackers.

techcrunch EN 2024 cyberattack hacking microsoft MidnightBlizzard
Update on Microsoft Actions Following Attack by Nation State Actor Midnight Blizzard https://msrc.microsoft.com/blog/2024/03/update-on-microsoft-actions-following-attack-by-nation-state-actor-midnight-blizzard/
08/03/2024 15:29:21
QRCode
archive.org

Update on Microsoft Actions Following Attack by Nation State Actor Midnight Blizzard

Microsoft EN 2024 incident update Midnight MidnightBlizzard
Switzerland: Play ransomware leaked 65,000 government documents https://www.bleepingcomputer.com/news/security/switzerland-play-ransomware-leaked-65-000-government-documents/
07/03/2024 21:30:33
QRCode
archive.org
thumbnail

The National Cyber Security Centre (NCSC) of Switzerland has released a report on its analysis of a data breach following a ransomware attack on Xplain, disclosing that the incident impacted thousands of sensitive Federal government files.

bleepingcomputer EN 2024 Breach Data Ransomware Switzerland PLAY Government Xplain
Flipper Zero WiFi phishing attack can unlock and steal Tesla cars https://www.bleepingcomputer.com/news/security/flipper-zero-wifi-phishing-attack-can-unlock-and-steal-tesla-cars/
07/03/2024 21:27:47
QRCode
archive.org
thumbnail

An easy phishing attack using a Flipper Zero device can lead to compromising Tesla accounts, unlocking cars, and starting them. The attack works on the latest Tesla app, version 4.30.6, and Tesla software version 11.1 2024.2.7.

bleepingcomputer EN 2024 Automotive Car Flipper-Zero Phishing Tesla
The Anatomy of an ALPHA SPIDER Ransomware Attack https://www.crowdstrike.com/blog/anatomy-of-alpha-spider-ransomware/
07/03/2024 11:34:35
QRCode
archive.org
thumbnail

Read this blog on the anatomy of an ALPHA SPIDER ransomware attack to better understand how they operate and how to better protect your business.

crowdstrike EN 2024 Analysis ALPHA SPIDER ransomware
Microsoft AI engineer says Copilot Designer creates disturbing images https://www.cnbc.com/2024/03/06/microsoft-ai-engineer-says-copilot-designer-creates-disturbing-images.html
07/03/2024 08:28:50
QRCode
archive.org
thumbnail
  • Shane Jones, who’s worked at Microsoft for six years, has been testing the company’s AI image generator in his free time and told CNBC he is disturbed by his findings.
  • He’s warned Microsoft of the sexual and violent content that the product, Copilot Designer, is creating, but said the company isn’t taking appropriate action.
  • On Wednesday, Jones escalated the matter, sending letters to FTC Chair Lina Khan and to Microsoft’s board, which were viewed by CNBC.
cnbc EN 2024 Microsoft AI engineer Copilot Designer creates disturbing images
US sanctions founder of spyware maker Intellexa for targeting Americans | TechCrunch https://techcrunch.com/2024/03/05/us-sanctions-founder-of-spyware-maker-intellexa-for-targeting-americans/
06/03/2024 20:38:56
QRCode
archive.org
thumbnail

The U.S. government announced Tuesday sanctions against the founder of the notorious spyware company Intellexa and one of his business partners. This is

techcrunch EN 2024 cytrox intellexa predator sanctions spyware surveillance
Duvel says it has "more than enough" beer after ransomware attack https://www.bleepingcomputer.com/news/security/duvel-says-it-has-more-than-enough-beer-after-ransomware-attack/
06/03/2024 19:20:40
QRCode
archive.org
thumbnail

Duvel Moortgat Brewery was hit by a ransomware attack late last night, bringing to a halt the beer production in the company's bottling facilities

bleepingcomputer EN 2024 Beer Belgium Duvel Ransomware Service-Disruption
Multistage RA World Ransomware Uses Anti-AV Tactics, Exploits GPO https://www.trendmicro.com/en_us/research/24/c/multistage-ra-world-ransomware.html
06/03/2024 19:16:16
QRCode
archive.org
thumbnail

The Trend Micro threat hunting team came across an RA World attack involving multistage components designed to ensure maximum impact.

trendmicro EN 2024 Multistage RA Ransomware Anti-AV TTPs GPO
CISA, FBI, and MS-ISAC Release Advisory on Phobos Ransomware https://www.cisa.gov/news-events/alerts/2024/02/29/cisa-fbi-and-ms-isac-release-advisory-phobos-ransomware
06/03/2024 10:16:10
QRCode
archive.org

Today, CISA, the Federal Bureau of Investigation (FBI), and the Multi-State Information Sharing and Analysis Center (MS-ISAC) released a joint Cybersecurity Advisory (CSA), #StopRansomware: Phobos Ransomware, to disseminate known tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs), which are from incident response investigations tied to Phobos ransomware activity from as recently as February, 2024.

cisa EN 2024 Phobos Ransomware Critical-infrastructure StopRansomware:
Phobos Ransomware Aggressively Targeting U.S. Critical Infrastructure https://thehackernews.com/2024/03/phobos-ransomware-aggressively.html
06/03/2024 10:15:25
QRCode
archive.org

U.S. cybersecurity and intelligence agencies have warned of Phobos ransomware attacks targeting government and critical infrastructure entities, outlining the various tactics and techniques the threat actors have adopted to deploy the file-encrypting malware.

"Structured as a ransomware-as-a-service (RaaS) model, Phobos ransomware actors have targeted entities including municipal and county governments, emergency services, education, public healthcare, and critical infrastructure to successfully ransom several million in U.S. dollars," the government said.

thehackernews EN 2024 Phobos Ransomware CISA US Critical-infrastructure
It’ll be back: Attackers still abusing Terminator tool and variants https://news.sophos.com/en-us/2024/03/04/itll-be-back-attackers-still-abusing-terminator-tool-and-variants/?ref=news.risky.biz
06/03/2024 06:44:17
QRCode
archive.org
thumbnail

First released in May 2023, an EDR killer – and the vulnerable Zemana drivers it leverages – are still of interest to threat actors, along with variants and ported versions

sophos EN Terminator EDR-killer Zemana driver
ACEMAGIC Addresses Virus Incident: Proactive Measures and Solutions https://www.acemagic.com/blogs/about-ace-mini-pc/acemagic-mini-pc-virus-incident-comprehensive-resolution-and-future-security-measures?ref=news.risky.biz
06/03/2024 06:43:23
QRCode
archive.org
thumbnail

Learn more about ACEMAGIC Mini PC's swift resolution to the virus incident, along with robust future security measures. Your safety is our top priority.

acemagic EN 2024 PC malaware incident Virus
page 130 / 251
5004 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn