Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 141 / 214
4270 résultats taggé EN  ✕
Compromised Microsoft Key: More Impactful Than We Thought https://www.wiz.io/blog/storm-0558-compromised-microsoft-key-enables-authentication-of-countless-micr
07/09/2023 09:00:17
QRCode
archive.org
thumbnail

Our investigation of the security incident disclosed by Microsoft and CISA and attributed to Chinese threat actor Storm-0558, found that this incident seems to have a broader scope than originally assumed. Organizations using Microsoft and Azure services should take steps to assess potential impact.

wiz EN 2023 Microsoft Key OWA postmortem analysis Storm-0558
Developers Warned of Malicious PyPI, NPM, Ruby Packages Targeting Macs - SecurityWeek https://www.securityweek.com/developers-warned-of-malicious-pypi-npm-ruby-packages-targeting-macs/
06/09/2023 15:01:22
QRCode
archive.org
thumbnail

Malicious packages uploaded to PyPI, NPM, and Ruby repositories are targeting macOS users with information stealing malware.

securityweek EN 2023 macos phylum PyPI NPM Ruby Supply-Chain-Attack
Nascent Malware Campaign Targets npm, PyPI, and RubyGems Developers https://blog.phylum.io/malware-campaign-targets-npm-pypi-and-rubygems-developers/
06/09/2023 15:00:06
QRCode
archive.org
thumbnail

Phylum has identified a malware campaign spanning PyPI, npm and RubyGems. Delivering early stage malware to users.

phylum EN 2023 Supply-Chain-Attack npm PyPI RubyGems macOS
What's in a NoName? Researchers see a lone-wolf DDoS group https://therecord.media/noname-hacking-group-targets-ukraine-and-allies
06/09/2023 14:28:29
QRCode
archive.org
thumbnail

Every morning at roughly the same time, a Russian hacker group known as NoName057(16) carries out distributed denial-of-service (DDoS) attacks on European financial institutions, government websites or transportation services.

therecord EN 2023 NoName057(16) DDoS analysis
Okta customers targeted in social engineering scam https://www.scmagazine.com/news/okta-customers-targeted-in-social-engineering-scam
06/09/2023 14:23:10
QRCode
archive.org
thumbnail

Help desk staff duped into resetting MFA on Okta super admin accounts, allowing threat actors to move laterally across targeted organizations.

scmagazine EN 2023 Okta phishing MFA scam
Attackers access military data through fencing supplier https://www.theregister.com/2023/09/04/zaun_breach_windows_7/
06/09/2023 14:21:44
QRCode
archive.org
thumbnail

Irony, not barbed wire, cuts the deepest

theregister EN 2023 Zaun breach windows-7 win7 military LockBit
China Bans iPhone Use for Government Officials at Work https://www.wsj.com/world/china/china-bans-iphone-use-for-government-officials-at-work-635fe2f8
06/09/2023 14:19:20
QRCode
archive.org
thumbnail

The directive is the latest step in Beijing’s campaign to cut reliance on foreign technology and could hurt Apple’s business in the country.

wsj EN 2023 China iPhone ban Apple Officials
Zaun Data Breach https://www.zaun.co.uk/zaun-data-breach-update/
06/09/2023 14:03:07
QRCode
archive.org
thumbnail

Zaun Data Breach – Update. Zaun Ltd - fencing and gate manufacturers. Our ranges include perimeter and security fencing, gates and railings.

zaun EN 2023 databreach
Is macOS’s new XProtect behavioural security preparing to go live? https://eclecticlight.co/2023/09/04/is-macoss-new-xprotect-behavioural-security-preparing-to-go-live/
04/09/2023 20:56:50
QRCode
archive.org
thumbnail

Apple released its first update to its new behavioural security protection in XProtect Behaviour Service on 8 August, and again on 1 September. Here are the details.

eclecticlight EN 2023 macOS XProtect Behaviour Service
Apple’s Decision to Kill Its CSAM Photo-Scanning Tool Sparks Fresh Controversy https://www.wired.com/story/apple-csam-scanning-heat-initiative-letter/?s=09
03/09/2023 14:12:31
QRCode
archive.org
thumbnail

Child safety group Heat Initiative plans to launch a campaign pressing Apple on child sexual abuse material scanning and user reporting. The company issued a rare, detailed response on Thursday.

wired EN 2023 apple CSAM Decision Controversy privacy
The Emergence of Ransomed: An Uncertain Cyber Threat in the Making https://flashpoint.io/blog/ransomed-uncertain-cyber-threat/
02/09/2023 16:12:21
QRCode
archive.org
thumbnail

Ransomed, originally an illicit forum, is a ransomware collective that is finding new ways to extort victims by leveraging GDPR laws.

flashpoint EN 2023 Ransomed illicit forum ransomware GDPR
Pay our ransom instead of a GDPR fine, cybercrime gang tells its targets https://therecord.media/ransomed-cybercrime-group-extortion-gdpr
02/09/2023 16:11:03
QRCode
archive.org
thumbnail

A group that operates through a data leak blog called Ransomed tells its alleged victims that shelling out an extortion payment is smarter than facing a government fine for a data breach.

therecord EN 2023 GDPR Ransomed ransom
Healthcare Organizations Hit by Cyberattacks Last Year Reported Big Impact, Costs https://www.securityweek.com/healthcare-organizations-hit-by-cyberattacks-last-year-reported-big-impact-costs/
02/09/2023 16:06:40
QRCode
archive.org
thumbnail

Roughly 78% of healthcare organizations fell victim to a cyberattack over the past year and 60% of the incidents impacted care delivery

securityweek EN 2023 Healthcare Organizations Cyberattacks Hospitals
VMConnect supply chain attack continues, evidence points to North Korea - Security Boulevard https://securityboulevard.com/2023/08/vmconnect-supply-chain-attack-continues-evidence-points-to-north-korea/
01/09/2023 23:08:00
QRCode
archive.org
thumbnail

In early August, ReversingLabs identified a malicious supply chain campaign that the research team dubbed “VMConnect.” That campaign consisted of two dozen malicious Python packages posted to the Python Package Index (PyPI) open-source repository. The packages mimicked popular open-source Python tools, including vConnector, a wrapper module for pyVmomi VMware vSphere bindings; eth-tester, a collection of tools for testing Ethereum-based applications; and databases, a tool that gives asynchronous support for a range of databases.

securityboulevard EN 2023 Supply-Chain-Attack VMConnect PyPI
An Ongoing Open Source Attack Reveals Roots Dating Back To 2021 https://checkmarx.com/blog/an-ongoing-open-source-attack-reveals-roots-dating-back-to-2021/
01/09/2023 09:01:02
QRCode
archive.org
thumbnail

Developers in the cryptocurrency sphere are being targeted once again, as yet another threat actor has been exposed. This user has been publishing malicious NPM packages with the purpose of exfiltrating sensitive data such as source code and configuration files from the victim’s machines. The threat actor behind this campaign has been linked to malicious activity dating back to 2021. Since then, they have continuously published malicious code.

checkmarx EN 2023 malicious NPM Supply-chain-security
New Twitter scam in China: sextortion scammers https://restofworld.org/2023/chinese-sextortion-scammers-are-flooding-twitter/
01/09/2023 08:58:12
QRCode
archive.org
thumbnail

Chinese sextortion scam accounts flood X (previously Twitter) after the platform introduced a blue-check policy allowing users to buy verified badges.

restofworld EN 2023 X Twitter China scammers sextortion flood
Hackers modify open-source ‘SapphireStealer’ malware, leading to multiple variants https://therecord.media/saphirestealer-open-source-malware-modifications
01/09/2023 08:40:30
QRCode
archive.org
thumbnail

Hackers are modifying the open source code of a popular malware strain, adding tools and functions that make it easier to steal data.

therecord EN 2023 SapphireStealer open-source malware
LogicMonitor customers hit by hackers, because of default passwords | TechCrunch https://techcrunch.com/2023/08/31/logicmonitor-customers-hit-by-hackers-because-of-default-passwords/
01/09/2023 08:31:45
QRCode
archive.org
thumbnail

An unknown number of LogicMonitor's customers have been hacked due to the fact that the company set weak default passwords.

techcrunch EN 2023 data-breach logicmonitor default-password
Unmasking Trickbot, One of the World’s Top Cybercrime Gangs https://www.wired.com/story/trickbot-trickleaks-bentley/
01/09/2023 08:14:35
QRCode
archive.org
thumbnail

A WIRED investigation into a cache of documents posted by an unknown figure lays bare the Trickbot ransomware gang’s secrets, including the identity of a central member.

wired EN 2023 Trickbot Russia member ransomware
Qakbot Malware Takedown and Defending Forward https://www.huntress.com/blog/qakbot-malware-takedown-and-defending-forward
31/08/2023 12:58:14
QRCode
archive.org
thumbnail

On Tuesday, August 29, 2023, the Federal Bureau of Investigations Los Angeles announced that they and other international partners disrupted the Qakbot malware infrastructure in a successful takedown.

First things first, this is awesome!!!

huntress 23 EN FBI QakBot Takedown Defending vaccine
page 141 / 214
4879 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn