Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 182 / 251
Free VPN Service SuperVPN Exposes 360 Million User Records https://www.hackread.com/free-vpn-service-supervpn-leaks-user-records/
25/05/2023 08:21:34
QRCode
archive.org
thumbnail

This time, SuperVPN has exposed a whopping 133 GB of data, including personal details of its unsuspecting users, such as IP addresses.

hackeread EN 2023 SuperVPN DataLeak IP
Wordfence Firewall Blocks Bizarre Large-Scale XSS Campaign https://www.wordfence.com/blog/2023/05/wordfence-firewall-blocks-bizarre-large-scale-xss-campaign/
25/05/2023 08:17:20
QRCode
archive.org
thumbnail

The Wordfence Threat Intelligence team has been monitoring an increase in attacks targeting a Cross-Site Scripting vulnerability in Beautiful Cookie Consent Banner, a WordPress plugin installed on over 40,000 sites. The vulnerability, which was fully patched in January in version 2.10.2, offers unauthenticated attackers the ability to add malicious JavaScript to a website, potentially allowing ...Read More

wordfence EN 2023 Beautiful-Cookie-Consent-Banner plugin WordPress XSS Campaign
Barracuda identified a vulnerability (CVE-2023-2868) in our Email Security Gateway appliance (ESG) on May 19, 2023. https://status.barracuda.com/incidents/34kx82j5n4q9
25/05/2023 08:11:36
QRCode
archive.org
thumbnail

Barracuda Networks's Status Page - Barracuda identified a vulnerability (CVE-2023-2868) in our Email Security Gateway appliance (ESG) on May 19, 2023..

Barracuda EN 2023 Status CVE-2023-2868 ESG Email Security Gateway appliance
Volt Typhoon targets US critical infrastructure with living-off-the-land techniques https://www.microsoft.com/en-us/security/blog/2023/05/24/volt-typhoon-targets-us-critical-infrastructure-with-living-off-the-land-techniques/
25/05/2023 08:04:59
QRCode
archive.org
thumbnail

Chinese state-sponsored actor Volt Typhoon is using stealthy techniques to target US critical infrastructure, conduct espionage, and dwell in compromised environments.

microsoft EN 2023 Critical-infrastructure Volt-Typhoon stealthy China US espionage living-off-the-land
Malvertising via brand impersonation is back again https://www.malwarebytes.com/blog/threat-intelligence/2023/05/malvertising-its-a-jungle-out-there
24/05/2023 21:36:54
QRCode
archive.org
thumbnail

Web search is about to embark on a new journey thanks to artificial intelligence technology that online giants such as Microsoft and Google are experimenting with. Yet, there is a problem when it comes to malicious ads displayed by search engines that AI likely won't be able to fix.

malwarebytes EN 2023 brand impersonation GoogleAds
German arms company Rheinmetall confirms Black Basta ransomware group behind cyberattack https://therecord.media/rheinmetall-confirms-black-basta-ransomware-group-behind-cyberattack
24/05/2023 18:04:05
QRCode
archive.org
thumbnail

Rheinmetall confirmed on Monday that the Black Basta ransomware group was behind a cyberattack it detected last month.

therecord EN 2023 Rheinmetall ransomware BlackBasta
IT employee impersonates ransomware gang to extort employer https://www.bleepingcomputer.com/news/security/it-employee-impersonates-ransomware-gang-to-extort-employer/
24/05/2023 17:01:28
QRCode
archive.org
thumbnail

A 28-year-old United Kingdom man from Fleetwood, Hertfordshire, has been convicted of unauthorized computer access with criminal intent and blackmailing his employer.

bleepingcomputer EN 2023 Court-Case UK Employee Insider-Threat Legal Police Ransomware Rogue
ChatGPT Plugins: Data Exfiltration via Images & Cross Plugin Request Forgery https://embracethered.com/blog/posts/2023/chatgpt-webpilot-data-exfil-via-markdown-injection/
23/05/2023 22:30:12
QRCode
archive.org

Plugins can return malicious content and hijack your AI.

embracethered EN 2023 ChatGPT Data Exfiltration Cross Plugin Request Forgery
Apple fixes three new zero-days exploited to hack iPhones, Macs https://www.bleepingcomputer.com/news/apple/apple-fixes-three-new-zero-days-exploited-to-hack-iphones-macs/
23/05/2023 22:24:42
QRCode
archive.org
thumbnail

Apple has addressed three new zero-day vulnerabilities exploited in attacks to hack into iPhones, Macs, and iPads.

bleepingcomputer EN 2023 Apple iOS iPhone Mac macOS WebKit Zero-Day
File Archiver In The Browser https://mrd0x.com/file-archiver-in-the-browser/?no-cache=1
23/05/2023 22:05:36
QRCode
archive.org

This article explores a phishing technique that emulates a file archiver software in the browser while using a .zip domain.

mrd0x EN 2023 tld domain phishing technique
What if we had the SockPuppet vulnerability in iOS 16? https://security.apple.com/blog/what-if-we-had-sockpuppet-in-ios16/
23/05/2023 21:48:17
QRCode
archive.org

The next post in our XNU memory safety series examines how our hardened kernel allocator performs in the real world against a previously patched but powerful UAF software vulnerability. In this detailed analysis, we find out what might happen if SockPuppet were to meet kalloc_type in iOS 16.

security.apple EN 2023 SockPuppet iOS research
Don't @ Me: URL Obfuscation Through Schema Abuse https://www.mandiant.com/resources/blog/url-obfuscation-schema-abuse
23/05/2023 21:41:16
QRCode
archive.org
thumbnail

Attackers are distributing malware using a technique that abuses the URL schema.

mandiant EN 2023 Obfuscation URL Schema Smokeloader
BlackCat Ransomware Deploys New Signed Kernel Driver https://www.trendmicro.com/en_us/research/23/e/blackcat-ransomware-deploys-new-signed-kernel-driver.html
22/05/2023 22:20:27
QRCode
archive.org
thumbnail

In this blog post, we will provide details on a BlackCat ransomware incident that occurred in February 2023, where we observed a new capability, mainly used for the defense evasion phase.

trendmicro EN 2023 ransomware research BlackCat Kernel Driver
Up to 100 cases taken over HSE cyberattack, judge told https://www.irishtimes.com/crime-law/courts/2023/05/18/up-to-100-cases-taken-over-hse-cyberattack-judge-told/
22/05/2023 07:11:29
QRCode
archive.org
thumbnail

European court to decide key liability issues over data breach but question mark hangs over HSE liability for ‘non-material’ damage such as stress

irishtimes EN 2023 EU DataBreach liability legal
Beijing Bans Micron as Supplier to Big Chinese Firms, Citing National Security https://www.wsj.com/articles/beijing-bans-micron-as-supplier-to-big-chinese-firms-citing-national-security-5f326b90?st=e1re5trsol7ejy0
22/05/2023 07:09:04
QRCode
archive.org
thumbnail

Cyberspace Administration says chip maker failed review, in a move that seems aimed at hitting back at U.S. chip ban

wsj EN 2023 US China ban Micron
Apple Restricts Employee Use of ChatGPT, Joining Other Companies Wary of Leaks https://archive.ph/g6Irs
21/05/2023 17:02:34
QRCode
archive.org

The iPhone maker is concerned workers could release confidential data as it develops its own similar technology.

wsj 2023 Apple ChatGPT Restricts Leak confidential
Popular Android TV boxes sold on Amazon are laced with malware https://techcrunch.com/2023/05/18/popular-android-tv-boxes-sold-on-amazon-are-laced-with-malware/
21/05/2023 16:36:41
QRCode
archive.org
thumbnail

The malware-infected AllWinner and RockChip-powered Android TV models are still available to purchase on Amazon.

techcrunch EN 2023 amazon android-tv malware rockchip Android IoT AllWinner Amazon
MalasLocker ransomware targets Zimbra servers, demands charity donation https://www.bleepingcomputer.com/news/security/malaslocker-ransomware-targets-zimbra-servers-demands-charity-donation/
21/05/2023 16:16:19
QRCode
archive.org
thumbnail

A new ransomware operation is hacking Zimbra servers to steal emails and encrypt files. However, instead of demanding a ransom payment, the threat actors claim to require a donation to charity to provide an encryptor and prevent data leaking.

bleepingcomputer Age-Encryption AgeLocker Charity Email MalasLocker QNAP Ransomware Zimbra
Lemon Group’s Cybercriminal Businesses Built on Preinfected Devices https://www.trendmicro.com/en_us/research/23/e/lemon-group-cybercriminal-businesses-built-on-preinfected-devices.html
21/05/2023 15:53:00
QRCode
archive.org
thumbnail

An overview of the Lemon Group’s use of preinfected mobile devices, and how this scheme is potentially being developed and expanded to other internet of things (IoT) devices. This research was presented in full at the Black Hat Asia 2023 Conference in Singapore in May 2023.

trendmicro EN 2023 malware cyber-crime LemonGroup Preinfected Guerrilla Android mobile mobile-device IoT AndroidOS_Guerilla
Visualizing QakBot Infrastructure https://www.team-cymru.com/post/visualizing-qakbot-infrastructure
18/05/2023 09:53:40
QRCode
archive.org
thumbnail

This blog post seeks to draw out some high-level trends and anomalies based on our ongoing tracking of QakBot command and control (C2) infrastructure. By looking at the data with a broader scope, we hope to supplement other research into this particular threat family, which in general focuses on specific infrastructure elements; e.g., daily alerting on active C2 servers.

team-cymru EN 2023 QakBot Infrastructure research C2
page 182 / 251
5007 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn