Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 140 / 237
In a first, cryptographic keys protecting SSH connections stolen in new attack | Ars Technica https://arstechnica.com/security/2023/11/hackers-can-steal-ssh-cryptographic-keys-in-new-cutting-edge-attack/
16/11/2023 07:15:01
QRCode
archive.org
thumbnail

An error as small as a single flipped memory bit is all it takes to expose a private key.
The vulnerability occurs when there are errors during the signature generation that takes place when a client and server are establishing a connection. It affects only keys using the RSA cryptographic algorithm, which the researchers found in roughly a third of the SSH signatures they examined. That translates to roughly 1 billion signatures out of the 3.2 billion signatures examined. Of the roughly 1 billion RSA signatures, about one in a million exposed the private key of the host.

arstechnica EN 2023 SSH RSA cryptographic algorithm error vulnerability
Google’s new Titan Security Keys let you store passkeys https://9to5google.com/2023/11/15/titan-security-key-passkey/
16/11/2023 06:31:39
QRCode
archive.org
thumbnail

Google has sold its own line of Titan Security Keys for several years now, and new USB-C and USB-A models with NFC let you store passkeys...

9to5google EN Google 2023 Titan Security Keys passkeys
Intel fixes high-severity CPU bug that causes “very strange behavior” https://arstechnica.com/security/2023/11/intel-fixes-high-severity-cpu-bug-that-causes-very-strange-behavior/
16/11/2023 06:30:27
QRCode
archive.org
thumbnail

Among other things, bug allows code running inside a VM to crash hypervisors.

arstechnica EN 2023 reptar Intel CPU CVE-2023-23583 bug
A Closer Look at ChatGPT's Role in Automated Malware Creation https://www.trendmicro.com/en_us/research/23/k/a-closer-look-at-chatgpt-s-role-in-automated-malware-creation.html
15/11/2023 15:50:00
QRCode
archive.org
thumbnail

As the use of ChatGPT and other artificial intelligence (AI) technologies becomes more widespread, it is important to consider the possible risks associated with their use. One of the main concerns surrounding these technologies is the potential for malicious use, such as in the development of malware or other harmful software. Our recent reports discussed how cybercriminals are misusing the large language model’s (LLM) advanced capabilities:

We discussed how ChatGPT can be abused to scale manual and time-consuming processes in cybercriminals’ attack chains in virtual kidnapping schemes.
We also reported on how this tool can be used to automate certain processes in harpoon whaling attacks to discover “signals” or target categories.

trendmicro EN 2023 malware articles news reports research ChatGPT
The Mirai Confessions: Three Young Hackers Who Built a Web-Killing Monster Finally Tell Their Story | WIRED https://www.wired.com/story/mirai-untold-story-three-young-hackers-web-killing-monster/
15/11/2023 14:19:31
QRCode
archive.org
thumbnail

Netflix, Spotify, Twitter, PayPal, Slack. All down for millions of people. How a group of teen friends plunged into an underworld of cybercrime and broke the internet—then went to work for the FBI.

wired EN 2023 Mirai black-hat Hackers FBI
LockBit ransomware group assemble strike team to breach banks, law firms and governments. https://doublepulsar.com/lockbit-ransomware-group-assemble-strike-team-to-breach-banks-law-firms-and-governments-4220580bfcee
15/11/2023 10:18:56
QRCode
archive.org

Recently, I’ve been tracking LockBit ransomware group as they’ve been breaching large enterprises:
I thought it would be good to break down what is happening and how they’re doing it, since LockBit are breaching some of the world’s largest organisations — many of whom have incredibly large security budgets.
Through data allowing the tracking of ransomware operators, it has been possible to track individual targets. Recently, it has become clear they have been targeting a vulnerability in Citrix Netscaler, called CitrixBleed. Prior reading:

doublepulsar EN 2023 LockBit ransomware CitrixBleed
C3RB3R Ransomware | Ongoing Exploitation of CVE-2023-22518 Targets Unpatched Confluence Servers  - SentinelOne https://www.sentinelone.com/blog/c3rb3r-ransomware-ongoing-exploitation-of-cve-2023-22518-targets-unpatched-confluence-servers/
14/11/2023 23:00:48
QRCode
archive.org
thumbnail

Learn how threat actors are exploiting Confluence CVE-2023-22518 to deploy Cerber ransomware on Linux and Windows hosts.

sentinelone EN 2023 analysis CVE-2023-22518 Cerber Confluence
CacheWarp https://cachewarpattack.com/#faq
14/11/2023 21:30:19
QRCode
archive.org

CacheWarp is a new software fault attack on AMD SEV-ES and SEV-SNP. It allows attackers to hijack control flow, break into encrypted VMs, and perform privilege escalation inside the VM.

cachewarpattack EN 2023 CPU attack CacheWarp AMD SEV-ES SEV-SNP
Google researchers discover 'Reptar,’ a new CPU vulnerability https://cloud.google.com/blog/products/identity-security/google-researchers-discover-reptar-a-new-cpu-vulnerability?hl=en
14/11/2023 21:23:12
QRCode
archive.org
thumbnail

A new CPU vulnerability, ‘Reptar,’ found by Google researchers, has been patched by Google and Intel. Here’s what you need to know.
...
The impact of this vulnerability is demonstrated when exploited by an attacker in a multi-tenant virtualized environment, as the exploit on a guest machine causes the host machine to crash resulting in a Denial of Service to other guest machines running on the same host. Additionally, the vulnerability could potentially lead to information disclosure or privilege escalation.

cloud.google.com EN 2023 CVE-2023-23583 CPU Reptar CPU Intel
District of Puerto Rico | Russian and Moldovan National Pleads Guilty to Operating Illegal Botnet Proxy Service that Infected Tens of Thousands of Internet-Connected Devices Around the World | United States Department of Justice https://www.justice.gov/usao-pr/pr/russian-and-moldovan-national-pleads-guilty-operating-illegal-botnet-proxy-service
14/11/2023 21:13:13
QRCode
archive.org
thumbnail

A Russian and Moldovan national pled guilty to three counts of violating 18 U.S.C. § 1030(a)(5)(A) Fraud and Related Activity in Connection with Computers.

The FBI today revealed US law enforcement’s dismantlement of a botnet proxy network and its infrastructure associated with the IPStorm malware.

According to online reports, the botnet infrastructure had infected Windows systems then further expanded to infect Linux, Mac, and Android devices, victimizing computers and other electronic devices around the world, including in Asia, Europe, North America and South America.

justice.gov EN 2023 IPStorm botnet proxy arrested
Microsoft Patch Tuesday November 2023 https://isc.sans.edu/diary/30400
14/11/2023 19:49:55
QRCode
archive.org
thumbnail

Today, Microsoft released patches for 64 different vulnerabilities in Microsoft products, 14 vulnerabilities in Chromium affecting Microsoft Edge, and five vulnerabilities affecting Microsoft's Linux distribution, Mariner. Three of these vulnerabilities are already being exploited, and three have been made public before the release of the patches.

isc.sans.edu EN 2023 Microsoft Patch patch-tuesday November2023
Reptar https://lock.cmpxchg8b.com/reptar.html
14/11/2023 18:56:31
QRCode
archive.org

We have a CPU mystery! We found a way to cause some processors to enter a glitch state where the normal rules don’t apply, but what does that mean…?

If you’re interested what can go wrong inside modern CPUs, read on!

cmpxchg8b EN CPU 2023 Intel IceLake
Cyberattaque contre l’entreprise Concevis: l’administration fédérale est également concernée https://www.admin.ch/gov/fr/accueil/documentation/communiques.msg-id-98595.html
14/11/2023 16:17:50
QRCode
archive.org

Informations actuelles de l'administration. Tous les communiqués de l'administration fédérale, des départements et des offices.

admin.ch FR CH Communiqué ransomware Concevis
La loi actuelle sur la protection des données est directement applicable à l’IA https://www.edoeb.admin.ch/edoeb/fr/home/kurzmeldungen/20231109_ki_dsg.html
14/11/2023 15:43:50
QRCode
archive.org

En Suisse aussi, l’intelligence artificielle (IA) investit de plus en plus la vie économique et sociale de la population. Dans ce contexte, le PFPDT rappelle que la loi sur la protection des données en vigueur depuis le 1er septembre 2023 est directement applicable aux traitements de données basés sur l’IA.

admin.ch FR CH Suisse IA intelligence artificielle PFPDT 2023 loi
La nLPD est directement applicable à l’intelligence artificielle https://www.ictjournal.ch/news/2023-11-14/la-nlpd-est-directement-applicable-a-lintelligence-artificielle
14/11/2023 15:38:03
QRCode
archive.org
thumbnail

Selon le Préposé fédéral à la protection des données (PFPDT), la nouvelle loi sur la protection des données en vigueur depuis septembre s'applique également aux outils d'intelligence artificielle. Le traitement des données des utilisateurs doit être signalé, même s'il est effectué par une IA.

ictjournal FR CH 2023 nLPD PFPDT intelligence artificielle ia
The $2,000 Phones that Let Anyone Make Robocalls https://www.404media.co/buy-fraud-phone-russiancoms-robocalls/
14/11/2023 15:33:46
QRCode
archive.org
thumbnail

Videos collected by 404 Media over months give a peep inside the world of spoofing numbers, automated call scripts, and a specific seller of the phones.

404media EN 2023 vishing robocalls phone scammers
Child sexual abuse online: effective measures, no mass surveillance https://www.europarl.europa.eu/news/en/press-room/20231110IPR10118/child-sexual-abuse-online-effective-measures-no-mass-surveillance
14/11/2023 15:32:29
QRCode
archive.org
thumbnail

On Tuesday, the Civil Liberties Committee adopted its position on new measures to protect children online by preventing and stopping child sexual abuse.

europarl.europa.eu EN European Parliament Civil Liberties Committee CSAM
Nothing new, still broken, insecure by default since then: Python's e-mail libraries and certificate verification https://www.pentagrid.ch/en/blog/python-mail-libraries-certificate-verification/
14/11/2023 11:15:01
QRCode
archive.org
thumbnail

Python’s e-mail libraries smtplib, imaplib, and poplib do not verify server certificates unless a proper SSL context is passed to the API. This leads to security problems.

pentagrid EN Python e-mail libraries smtplib imaplib poplib SSL insecure analysis
GameOver(lay) - Local Privilege Escalation in Ubuntu Kernel https://blog.projectdiscovery.io/gameover-lay-local-privilege-escalation-in-ubuntu-kernel/#:~:text=GameOver%20,of%20Ubuntu%20users
14/11/2023 10:33:20
QRCode
archive.org
thumbnail

GameOver(lay) encompasses two significant vulnerabilities within the Ubuntu kernel, CVE-2023-2640, and CVE-2023-32629, each carrying a high-severity rating with CVSS scores of 7.8. These vulnerabilities pose a critical threat, potentially affecting around 40% of Ubuntu users. The vulnerability lies within the OverlayFS module of the Ubuntu kernel, enabling a

projectdiscovery EN 2023 Ubuntu kernel CVE-2023-2640 CVE-2023-32629
Rançongiciel Phobos : arrestation de deux Russes, soupçonnés d’une dizaine d’attaques en France https://www.lemonde.fr/pixels/article/2023/11/09/rancongiciel-phobos-arrestation-de-deux-russes-soupconnes-d-une-dizaine-d-attaques-en-france_6199214_4408996.html
13/11/2023 19:25:30
QRCode
archive.org
thumbnail

Le couple, arrêté en Italie, est soupçonné de travailler depuis au moins 2020 avec ce groupe. Peu médiatique, Phobos compte tout de même près de deux cents victimes répertoriées sur le territoire.

lemonde FR 2023 Phobos Rançongiciel Russes arrêté
page 140 / 237
4723 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio