Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 153 / 207
4136 résultats taggé EN  ✕
Black Basta claims it's selling off stolen Capita data https://www.theregister.com/2023/04/18/capita_breach_gets_worse/
19/04/2023 11:41:34
QRCode
archive.org
thumbnail

No worries, outsourcer only handles government tech contracts worth billions

theregister EN 2023 BlackBasta Capita ransomware
ntpd is not vulnerable · Issue #1 · spwpun/ntp-4.2.8p15-cves https://github.com/spwpun/ntp-4.2.8p15-cves/issues/1
19/04/2023 11:39:34
QRCode
archive.org

The first four of these CVEs affect a function in libntp that is only used by ntpq, but not by ntpd. The last CVE affects the driver for a hardware clock (GPS receiver), so ntpd might be vulnerable...

spwpun EN 2023 libntp ntp ntpd ntp-4.2.8p15 CVE-2023-26551 CVE-2023-26552 CVE-2023-26553 CVE-2023-26554 CVE-2023-26555
in2al5d p3in4er is Almost Completely Undetectable https://blog.morphisec.com/in2al5d-p3in4er
19/04/2023 10:52:34
QRCode
archive.org
thumbnail

in2al5d p3in4er is a highly evasive new loader that has a detection ratio of 0 on VirusTotal. We explain how it works, and how to prevent it.

morphisec EN 2023 analysis malware-analysis in2al5d p3in4er Undetectable
LockBit for Mac | How Real is the Risk of macOS Ransomware? https://www.sentinelone.com/blog/lockbit-for-mac-how-real-is-the-risk-of-macos-ransomware/
19/04/2023 08:50:03
QRCode
archive.org
thumbnail

Discovery of a macOS variant of LockBit has caused alarm, but how serious a threat is it? We explore the malware and the threat of ransomware on Apple Macs.

sentinelone EN 2023 macOS LockBit analysis
Apple’s high security mode blocked NSO spyware, researchers say | TechCrunch https://techcrunch.com/2023/04/18/apple-lockdown-mode-iphone-nso-pegasus/
19/04/2023 08:42:58
QRCode
archive.org
thumbnail

Apple has fixed the three exploits used to deploy the Pegasus spyware, which did not require any interaction from the target.

techcrunch EN 2023 apple citizen-lab ios iphone malware nso nso-group spyware LockdownMode
Summary of the Investigation Related to CVE-2023-0669 https://www.fortra.com/blog/summary-investigation-related-cve-2023-0669
18/04/2023 20:35:58
QRCode
archive.org
thumbnail

We’d like to provide an update on our investigation into the suspicious activity detected in our Fortra GoAnywhere MFT solution. Working with Unit 42, we have completed our investigation and have compiled a factual summary of the investigation, as well as continuous improvement actions Fortra is taking to further strengthen our systems and recommended actions customers can take to secure their data and improve their security posture using available features in the GoAnywhere MFT solution.

Fortra EN 2023 CVE-2023-0669 investigation GoAnywhere MFT summary
Triple Threat: NSO Group’s Pegasus Spyware Returns in 2022 with a Trio of iOS 15 and iOS 16 Zero-Click Exploit Chains https://citizenlab.ca/2023/04/nso-groups-pegasus-spyware-returns-in-2022/
18/04/2023 16:00:59
QRCode
archive.org
thumbnail

One widely publicized case of disappearances relevant to this case of spyware infection occurred in September 2015 when a group of 43 students at a teacher

citizenlab EN 2023 NSO Pegasus Spyware PWNYOURHOME FINDMYPWN
QBot banker delivered through business correspondence https://securelist.com/qbot-banker-business-correspondence/109535/
17/04/2023 22:18:33
QRCode
archive.org
thumbnail

In early April, we detected a significant increase in attacks that use banking Trojans of the QBot family. The malware would be delivered through e-mails that were based on real business letters the attackers had gotten access to.

securelist EN 2023 Malware QakBot Thematic-phishing Trojan-Banker analysis
CVE-2023-21554: MSMQ https://censys.wpengine.com/cve-2023-21554/
17/04/2023 21:46:05
QRCode
archive.org
thumbnail

On April 12th, 2023, Microsoft released a slew of new patches for its Windows operating system, one of which was to fix CVE-2023-21554, a remotely-exploitable vulnerability in the obscure Windows Message Queuing (MSMQ) service that can lead to remote code execution (RCE).

Censys EN 2023 cve-2023-21554 MSMQ graphs metrics
Analyzing an arm64 mach-O version of LockBit https://objective-see.org/blog/blog_0x75.html
17/04/2023 21:39:29
QRCode
archive.org
thumbnail

The relevance of this macOS specimen is well articulated in their tweet:

“Lockbit ransomware group has created their first MacOS-based payload. We believe this is the first time a large ransomware threat group has developed a payload for Apple products.” vx-underground

Ok, so even though it’s the weekend, we have what appears to be a new macOS malware specimen from one of the more notorious ransomware gangs! Coupled with the fact that this may be, (as noted by @VXUnderground), “the first time a large ransomware threat group has developed a payload for Apple products” …I was intrigued to decided to dig right in!

objective-see EN 2023 LockBit macOS analysis
Linux kernel logic allowed Spectre attack on major cloud https://www.theregister.com/2023/04/14/linux_kernel_spectre_flaw_fixed/
17/04/2023 07:02:47
QRCode
archive.org
thumbnail

Kernel 6.2 ditched a useful defense against ghostly chip design flaw

theregister EN 2023 Spectre Kernel Linux cloud
Google Chrome emergency update fixes first zero-day of 2023 https://www.bleepingcomputer.com/news/security/google-chrome-emergency-update-fixes-first-zero-day-of-2023/
16/04/2023 23:40:34
QRCode
archive.org
thumbnail

Google has released an emergency Chrome security update to address the first zero-day vulnerability exploited in attacks since the start of the year.

bleepingcomputer EN 2023 0-day vulnerability Emergency-Update Chrome Browser Zero-Day
Remote Code Execution Vulnerability in Google They Are Not Willing To Fix https://giraffesecurity.dev/posts/google-remote-code-execution/
16/04/2023 22:03:00
QRCode
archive.org

This is a story about a security vulnerability in Google that allowed me to run arbitrary code on the computers of 50+ Google employees. Although Google initially considered my finding a serious security incident, later on, it changed its mind and stated that my finding is not, in fact, a vulnerability, but the intended behavior of their software.

giraffesecurity EN 2023 vulnerability disclosure Google RCE intended
Introducing: Red Canary Mac Monitor https://redcanary.com/blog/mac-monitor/
16/04/2023 12:12:26
QRCode
archive.org

Mac Monitor is Red Canary’s newly available tool for collection and dynamic system analysis on macOS endpoints.
Red Canary Mac Monitor is a feature-rich dynamic analysis tool for macOS that leverages our extensive understanding of the platform and Apple’s latest APIs to collect and present relevant security events. Mac Monitor is practically the macOS version of the Microsoft Sysinternals tool, Procmon. Mac Monitor collects a wide variety of telemetry classes, including processes, interprocess, files, file metadata, logins, XProtect detections, and more—enabling defenders to quickly and effectively analyze enriched, high-fidelity macOS security events in a native, modern, and customizable user interface

redcanary EN 2023 tool Monitor announce macOS monitoring Sysinternals Procmon
The (Not so) Secret War on Discord https://www.cyberark.com/resources/threat-research-blog/the-not-so-secret-war-on-discord
16/04/2023 11:44:17
QRCode
archive.org
thumbnail

CyberArk Labs discovered a new malware called Vare that is distributed over the popular chatting service, Discord. Vare has been used to target new malware operators by using social engineering tactics on them. Additionally, we have found that Vare uses Discord’s infrastructure as a backbone for its operations. This malware is linked to a new group called “Kurdistan 4455” based out of southern Turkey and is still early in its forming stage.

cyberark EN 2023 Discord Vare malware Kurdistan4455 Turkey
A Computer Generated Swatting Service Is Causing Havoc Across America https://www.vice.com/en/article/k7z8be/torswats-computer-generated-ai-voice-swatting
16/04/2023 01:01:45
QRCode
archive.org
thumbnail

As the U.S. deals with a nationwide swatting wave, Motherboard has traced much of the activity to a particular swatting-as-a-service account on Telegram. Torswats uses synthesized voices to pressure law enforcement to specific locations.

vice EN 2023 Swatting swatting-as-a-service Telegram synthesized
Espionage campaign linked to Russian intelligence services https://www.gov.pl/web/baza-wiedzy/espionage-campaign-linked-to-russian-intelligence-services
15/04/2023 14:45:32
QRCode
archive.org
thumbnail

The Military Counterintelligence Service and the CERT Polska team (CERT.PL) observed a widespread espionage campaign linked to Russian intelligence services

gov.pl EN 2023 CERT.PL Poland Russian Espionage campaign Russia Counterintelligence
New hacker advocacy group seeks to protect work of security researchers https://cyberscoop.com/new-hacker-advocacy-group-seeks-to-protect-work-of-security-researchers/
15/04/2023 10:25:21
QRCode
archive.org
thumbnail

"There are advocacy groups for reptile owners but not hackers, so that seems like a miss," said Ilona Cohen of HackerOne.

cyberscoop EN 2023 hacker advocacy HackerOne researchers legal
Vice Society: A Tale of Victim Data Exfiltration via PowerShell, aka Stealing off the Land https://unit42.paloaltonetworks.com/vice-society-ransomware-powershell/
14/04/2023 21:50:12
QRCode
archive.org
thumbnail

The Vice Society ransomware gang exfiltrated victim network data using a custom Microsoft PowerShell script. We dissect how each function of it works.

unit42 EN 2023 report analysis ViceSociety PowerShell
Hackers claim vast access to Western Digital systems https://techcrunch.com/2023/04/13/hackers-claim-vast-access-to-western-digital-systems/
14/04/2023 14:54:41
QRCode
archive.org
thumbnail

One of the hackers who breached Western Digital provided some details about the hack, the data stolen, and what the hackers are demanding.

techcrunch EN 2023 WD extortion western-digital hack
page 153 / 207
4722 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio