Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 138 / 253
Zoom fixed critical flaw CVE-2024-24691 in Windows software https://securityaffairs.com/159121/security/zoom-crirical-cve-2024-24691.html
14/02/2024 20:15:28
QRCode
archive.org
thumbnail

Zoom fixed 7 flaws in its desktop and mobile applications, including a critical bug (CVE-2024-24691) affecting the Windows software

securityaffairs CVE-2024-24691 EN 2024 Zoom Windows critical
Clinique privée à Genève victime d'une cyberattaque https://www.20min.ch/fr/story/geneve-clinique-privee-victime-dune-cyberattaque-103042473
14/02/2024 17:38:27
QRCode
archive.org
thumbnail

Cible de hackers, l'établissement de La Colline fonctionne cependant normalement, selon son propriétaire. Celui-ci n'a pas constaté de vols de données des patients.

20min FR CH clinique Genève ransomware
CVE-2024-21412: Water Hydra Targets Traders with Microsoft Defender SmartScreen Zero-Day https://www.trendmicro.com/en_us/research/24/b/cve202421412-water-hydra-targets-traders-with-windows-defender-s.html
14/02/2024 11:49:12
QRCode
archive.org
thumbnail

The APT group Water Hydra has been exploiting the Microsoft Defender SmartScreen vulnerability CVE-2024-21412 in its campaigns targeting financial market traders. This vulnerability, which has now been patched by Microsoft, was discovered and disclosed by the Trend Micro Zero Day Initiative.

trendmicro EN 2024 CVE-2024-21412 Water-Hydra exploits-&-vulnerabilities research report apt-&-targeted-attacks
Portal Kombat : un réseau structuré et coordonné de propagande prorusse https://www.sgdsn.gouv.fr/publications/portal-kombat-un-reseau-structure-et-coordonne-de-propagande-prorusse
13/02/2024 21:26:14
QRCode
archive.org
thumbnail

VIGINUM dévoile l’activité d’un réseau baptisé « Portal Kombat », constitué de « portails d’information » numériques diffusant des contenus pro-russes, couvrant positivement l’invasion russe en Ukraine et dénigrant les autorités de Kiev, afin d’influencer les opinions publiques notamment françaises.

VIGINUM FR 2024 Portal-Kombat réseau-structuré propagande prorusse
Hackers exploit Ivanti SSRF flaw to deploy new DSLog backdoor https://www.bleepingcomputer.com/news/security/hackers-exploit-ivanti-ssrf-flaw-to-deploy-new-dslog-backdoor/
13/02/2024 10:13:40
QRCode
archive.org
thumbnail

Hackers are exploiting a server-side request forgery (SSRF) vulnerability in Ivanti Connect Secure, Policy Secure, and ZTA gateways to deploy the new DSLog backdoor on vulnerable devices.

bleepingcomputer EN 2024 Backdoor Ivanti Malware SSRF Vulnerability Security InfoSec Computer-Security
Community Alert: Ongoing Malicious Campaign Impacting Azure Cloud Environments https://www.proofpoint.com/us/blog/cloud-security/community-alert-ongoing-malicious-campaign-impacting-azure-cloud-environments
13/02/2024 09:20:32
QRCode
archive.org
thumbnail

Over the past weeks, Proofpoint researchers have been monitoring an ongoing cloud account takeover campaign impacting dozens of Microsoft Azure environments and compromising hundreds of user accoun...

proofpoint EN 2024 Microsoft Azure Campaign compromise cloud-security phishing MFA
International Cybercrime Malware Service Dismantled by Federal Authorities: Key Malware Sales and Support Actors in Malta and Nigeria Charged in Federal Indictments https://www.justice.gov/opa/pr/international-cybercrime-malware-service-dismantled-federal-authorities-key-malware-sales
13/02/2024 09:18:37
QRCode
archive.org
thumbnail

The Justice Department announced today that, as part of an international law enforcement effort, federal authorities in Boston seized internet domains that were used to sell computer malware used by cybercriminals to secretly access and steal data from victims’ computers. Federal authorities in Atlanta and Boston also unsealed indictments charging individuals in Malta and Nigeria, respectively, for their alleged involvement in selling the malware and supporting cybercriminals seeking to use the malware for malicious purposes.

justice.gov US warzoneRAT FBI Dismantled RAT
New MacOS Backdoor Written in Rust Shows Possible Link with Windows Ransomware Group https://www.bitdefender.com/blog/labs/new-macos-backdoor-written-in-rust-shows-possible-link-with-windows-ransomware-group/
13/02/2024 09:12:38
QRCode
archive.org
thumbnail

Bitdefender researchers have discovered a new backdoor targeting Mac OS users.

bitdefender EN 2024 macOS Backdoor rust Trojan.MAC.RustDoor analysis
EU capitals fear Russian retaliation and cyberattacks after asset freezes https://www.politico.eu/article/russia-cyberattack-retaliation-asset-freezes-eu-war-ukraine/
12/02/2024 01:24:55
QRCode
archive.org
thumbnail

G7 is drafting a workaround to use frozen assets to rebuild Ukraine.

politico EN 2024 Banks retaliation Belgium Budget Canada Courts Cybercrime Cybersecurity EU-Budget/MFF Eurozone Finance-and-banking Financial-stability France Germany Hackers Johan-Van-Overtveldt Kremlin Risk-and-compliance Russia Sanctions State-backed-hacking Ukraine United-Kingdom Russia-Ukraine-war
Fake LastPass App Sneaks Past Apple's Review Team https://www.macrumors.com/2024/02/08/fake-lastpass-app-in-apple-app-store/
12/02/2024 01:21:17
QRCode
archive.org
thumbnail

Popular password management app LastPass is warning customers about a fraudulent app that uses a similar name and icon to attempt to trick LastPass...

macrumors EN 2024 App-Store LastPass fake fraudulent
KV-Botnet: Don’t call it a Comeback - Lumen https://blog.lumen.com/kv-botnet-dont-call-it-a-comeback/
12/02/2024 01:14:17
QRCode
archive.org
thumbnail

Executive Summary On December 13, 2023, Lumen’s Black Lotus Labs reported our findings on the KV-botnet, a covert data transfer network used by state-sponsored actors based in China to conduct espionage and intelligence activities targeting U.S. critical infrastructure. Around the time of the first publication, we identified a spike in activity that we assess aligns

lumen EN 2024 KV-Botnet China espionnage report
European Commission to open investigation into TikTok, Bloomberg reports | Reuters https://www.reuters.com/technology/european-commission-open-investigation-into-tiktok-bloomberg-news-2024-02-09/
11/02/2024 10:06:57
QRCode
archive.org

the European Commission will open an investigation into TikTok in the coming weeks over concerns that changes the firm made to comply with the bloc's Digital Services Act (DSA) were not enough to protect under-age users, Bloomberg News reported on Friday.
TikTok has not received notice from the European Commission of an investigation and is in regular dialogue with European Union authorities, a spokesperson told Reuters when asked about the Bloomberg report. The EC declined to comment.

reuters EU TikTok DSA investigation
Vaud: le canton rompt un contrat à 6 millions avec Xplain https://www.24heures.ch/vaud-le-canton-rompt-un-contrat-a-6-millions-avec-xplain-868655486892
09/02/2024 18:11:51
QRCode
archive.org
thumbnail

Le Conseil d’État vaudois a décidé de mettre fin au contrat avec le prestataire informatique bernois en raison de retards et de prestations insuffisantes.

24heures CH FR 2024 Vaud Xplain contrat
New RustDoor macOS malware impersonates Visual Studio update https://www.bleepingcomputer.com/news/security/new-rustdoor-macos-malware-impersonates-visual-studio-update/
09/02/2024 17:20:46
QRCode
archive.org
thumbnail

A new Rust-based macOS malware spreading as a Visual Studio update to provide backdoor access to compromised systems uses infrastructure linked to the infamous ALPHV/BlackCat ransomware gang.

bleepingcomputer EN 2024 ALPHV Backdoor BlackCat Data-Exfiltration macOS Malware Ransomware
World Govs, Tech Giants Sign Spyware Responsibility Pledge https://www.darkreading.com/endpoint-security/world-govs-sign-spyware-responsibility-pledge
08/02/2024 21:31:29
QRCode
archive.org
thumbnail

France, the UK, the US, and others will work on a framework for the responsible use of tools like NSO Group's Pegasus, and Shadowserver Foundation gains £1 million investment.

darkreading EN 2024 shadowserver Spyware Pledge
Hyundai Motor Europe hit by Black Basta ransomware attack https://www.bleepingcomputer.com/news/security/hyundai-motor-europe-hit-by-black-basta-ransomware-attack/
08/02/2024 21:29:06
QRCode
archive.org
thumbnail

Car maker Hyundai Motor Europe suffered a Black Basta ransomware attack, with the threat actors claiming to have stolen three terabytes of corporate data.

bleepingcomputer EN 2024 Black-Basta Data-Theft Hyundai Hyundai-Motor-Europe Ransomware
Reward Offers for Information to Bring Hive Ransomware Variant Co-Conspirators To Justice - United States Department of State https://www.state.gov/reward-offers-for-information-to-bring-hive-ransomware-variant-co-conspirators-to-justice/
08/02/2024 21:26:24
QRCode
archive.org
thumbnail

Today, the Department of State is announcing a reward offer of up to $10,000,000 for information leading to the identification and/or location of any individual(s) who hold a key leadership position in the Hive ransomware variant transnational organized crime group. In addition, we are also announcing a reward of up to $5,000,000 for information leading […]

state.gov US 2024 Reward Hive Ransomware
Ivanti: Patch new Connect Secure auth bypass bug immediately https://www.bleepingcomputer.com/news/security/ivanti-patch-new-connect-secure-auth-bypass-bug-immediately/
08/02/2024 21:25:42
QRCode
archive.org
thumbnail

Today, Ivanti warned of a new authentication bypass vulnerability impacting Connect Secure, Policy Secure, and ZTA gateways, urging admins to secure their appliances immediately.

bleepingcomputer EN 2024 CVE-2024-22024 Authentication-Bypass Connect-Secure Ivanti Policy-Secure Warning Security InfoSec Computer-Security
CVE-2024-22024 (XXE) for Ivanti Connect Secure and Ivanti Policy Secure https://forums.ivanti.com/s/article/CVE-2024-22024-XXE-for-Ivanti-Connect-Secure-and-Ivanti-Policy-Secure?language=en_US
08/02/2024 21:24:51
QRCode
archive.org

As part of our ongoing investigation into the vulnerabilities impacting Ivanti Connect Secure, Ivanti Policy Secure and ZTA gateways, we have discovered a new vulnerability. This vulnerability only affects a limited number of supported versions – Ivanti Connect Secure (version 9.1R14.4, 9.1R17.2, 9.1R18.3, 22.4R2.2 and 22.5R1.1), Ivanti Policy Secure version 22.5R1.1 and ZTA version 22.6R1.3.
A patch is available now for Ivanti Connect Secure (versions 9.1R14.5, 9.1R17.3, 9.1R18.4, 22.4R2.3, 22.5R1.2, 22.5R2.3 and 22.6R2.2), Ivanti Policy Secure (versions 9.1R17.3, 9.1R18.4 and 22.5R1.2) and ZTA gateways (versions 22.5R1.6, 22.6R1.5 and 22.6R1.7).

ivanti EN advisory CVE-2024-22024
Security Update for Ivanti Connect Secure and Ivanti Policy Secure Gateways https://www.ivanti.com/blog/security-update-for-ivanti-connect-secure-and-ivanti-policy-secure-gateways-282024
08/02/2024 21:23:02
QRCode
archive.org

At Ivanti, our top priority is upholding our commitment to deliver and maintain secure products for our customers. Our team has been working around the clock to aggressively review all code and is singularly focused on bringing full resolution to the issues affecting Ivanti Connect Secure (formerly Pulse Connect Secure), Ivanti Policy Secure and ZTA gateways.

We have been following our product incident response process and rigorously assessing our products and code alongside world-class security experts and collaborating with the broader security ecosystem to share intelligence. We are committed to communicating findings openly with customers, consistent with our commitment to security and responsible disclosure.

ivanti EN 2024 CVE-2024-22024 Security Update
page 138 / 253
5048 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn