Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 182 / 208
4149 résultats taggé EN  ✕
BitBucket Server and Data Center at risk via Command Injection Vulnerability https://blog.cyble.com/2022/09/22/bitbucket-server-and-data-center-at-risk-via-command-injection-vulnerability/
26/09/2022 10:04:22
QRCode
archive.org
thumbnail

Cyble analyzes CVE-2022-36804 affecting Atlassian Bitbucket and how Threat Actors may exploit this in the near future.

cyble EN 2022 BitBucket Atlassian CVE-2022-26134 CVE-2022-26138
Resolved RCE in Sophos Firewall (CVE-2022-3236) https://www.sophos.com/en-us/security-advisories/sophos-sa-20220923-sfos-rce
26/09/2022 10:02:12
QRCode
archive.org
thumbnail

A code injection vulnerability allowing remote code execution was discovered in the User Portal and Webadmin of Sophos Firewall. The vulnerability has been fixed.

sophos EN RCE firewall CVE-2022-3236 injection Webadmin
New Malware Campaign Targets Zoom Users https://blog.cyble.com/2022/09/19/new-malware-campaign-targets-zoom-users/
26/09/2022 09:49:59
QRCode
archive.org
thumbnail

Cyble Research and Intelligence Labs analyzes a new malware campaign targeting Zoom users.

cyble EN 2022 Malware Zoom Vidar Stealer
2K Games' Support System Hacked https://thecyberexpress.com/2k-games-support-system-hacked/
26/09/2022 09:46:50
QRCode
archive.org
thumbnail

2K Games Support System was hacked by an unknown hacker group targeting gamers via a fake user ticketing system.

thecyberexpress EN 2022 RedLine stealer 2K-Games gamers
Microsoft Issues Out-of-Band Patch for Flaw Allowing Lateral Movement, Ransomware Attacks https://www.securityweek.com/microsoft-issues-out-band-patch-flaw-allowing-lateral-movement-ransomware-attacks
25/09/2022 18:08:50
QRCode
archive.org

Microsoft this week released an out-of-band security update for its Endpoint Configuration Manager solution to patch a vulnerability that could be useful to malicious actors for moving around in a targeted organization’s network.

The vulnerability is tracked as CVE-2022-37972 and it has been described by Microsoft as a medium-severity spoofing issue. The tech giant has credited Brandon Colley of Trimarc Security for reporting the flaw.

Microsoft EN 2022 CVE-2022-37972 Endpoint-Configuration-Manager patch vulnerability
Tarfile: Exploiting the World With a 15-Year-Old Vulnerability https://www.trellix.com/en-us/about/newsroom/stories/research/tarfile-exploiting-the-world.html
25/09/2022 12:00:13
QRCode
archive.org
thumbnail

Trellix Advanced Research Center stumbled across a vulnerability in Python’s tarfile module. As we dug into the issue, we realized this was in fact CVE-2007-4559. The vulnerability is a path traversal attack in the extract and extractall functions in the tarfile module that allow an attacker to overwrite arbitrary files by adding the “..” sequence to filenames in a TAR archive. Over the course of our research into the impact of this vulnerability we discovered that hundreds of thousands of repositories were vulnerable to this vulnerability. While the vulnerability was originally only marked as a 6.8, we were able to confirm that in most cases an attacker can gain code execution from the file write.

trellix EN 2022 CVE-2007-4559 tarfile Python vulnerability
Noberus Ransomware: Darkside and BlackMatter Successor Continues to Evolve its Tactics https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/noberus-blackcat-ransomware-ttps
24/09/2022 10:56:44
QRCode
archive.org
thumbnail

New version of Exmatter, and Eamfo malware, used by attackers deploying the Rust-based ransomware.

symantec-enterprise-blogs EN 2022 Noberus Ransomware BlackMatter rust Darkside Exmatter Eamfo ransomware-as-a-service
Malicious OAuth applications abuse cloud email services to spread spam https://www.microsoft.com/security/blog/2022/09/22/malicious-oauth-applications-used-to-compromise-email-servers-and-spread-spam/
24/09/2022 00:50:46
QRCode
archive.org
thumbnail

Microsoft discovered an attack where attackers installed a malicious OAuth application in compromised tenants and used their Exchange Online service to launch spam runs.

microsoft EN 2022 Exchange OAuth abuse spam Exchange attack
Void Balaur | The Sprawling Infrastructure of a Careless Mercenary https://www.sentinelone.com/labs/the-sprawling-infrastructure-of-a-careless-mercenary/
23/09/2022 23:03:15
QRCode
archive.org
thumbnail

The Void Balaur cyber mercenary group has thrived throughout 2022, attacking targets on a global scale with new phishing campaigns.

sentinelone EN 2022 mercenary Void-Balaur phishing hack-for-hire
The Apple security landscape: Moving into the world of enterprise risk https://venturebeat.com/security/apple-security-vulnerabilities/
23/09/2022 12:26:51
QRCode
archive.org
thumbnail

With the enterprise adoption of MacOS and iOS devices increasing, the Apple security landscape is becoming increasingly complex.

venturebeat EN 2022 MacOS iOS security enterprise landscape
Iranian State Actors Conduct Cyber Operations Against the Government of Albania https://www.cisa.gov/uscert/ncas/alerts/aa22-264a
22/09/2022 16:43:03
QRCode
archive.org

The Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) are releasing this joint Cybersecurity Advisory to provide information on recent cyber operations against the Government of Albania in July and September. This advisory provides a timeline of activity observed, from initial access to execution of encryption and wiper attacks. Additional information concerning files used by the actors during their exploitation of and cyber attack against the victim organization is provided in Appendices A and B.

cisa EN 2022 uscert csirt cert US Iran Albania attribution IoCs FBI
Apple Kills Passwords in iOS 16 and macOS Ventura | WIRED https://www.wired.com/story/apple-passkeys-password-iphone-mac-ios16-ventura/
22/09/2022 16:40:14
QRCode
archive.org
thumbnail

With iOS 16 and macOS Ventura, Apple is introducing passkeys—a more convenient and secure alternative to passwords.

wired EN 2022 apple privacy passwords ios macOS iOS passkeys
Domain Shadowing: A Stealthy Use of DNS Compromise for Cybercrime https://unit42.paloaltonetworks.com/domain-shadowing/
22/09/2022 15:39:32
QRCode
archive.org
thumbnail

Domain shadowing is a special case of DNS hijacking where attackers stealthily create malicious subdomains under compromised domain names.

paloaltonetworks EN 2022 DNS hijacking Domain shadowing analysis IoCs Domain-shadowing
Revealed: US Military Bought Mass Monitoring Tool That Includes Internet Browsing, Email Data https://www.vice.com/en/article/y3pnkw/us-military-bought-mass-monitoring-augury-team-cymru-browsing-email-data
22/09/2022 15:28:19
QRCode
archive.org
thumbnail

The “Augury” platform includes highly sensitive network data that Team Cymru, a private company, is selling to the military. “It’s everything. There’s nothing else to capture except the smell of electricity,” one cybersecurity expert said.

vice EN 2022 Augury Cymru U.S. military NCIS privacy
Los Angeles School District Hit by Ransomware Attack https://www.databreachtoday.com/los-angeles-school-district-hit-by-ransomware-attack-a-19999
22/09/2022 12:27:49
QRCode
archive.org
thumbnail

California's largest public school district and the second-largest in the U.S. is undergoing a ransomware attack. The attack has disrupted the district's email

databreachtoday EN 2022 ransomware Los-Angeles PYSA Ryuk School K-12
Online Attack Disrupts Michigan School District for 2nd Day https://www.databreachtoday.eu/cyberattack-disrupts-michigan-school-district-for-2nd-day-a-20119
22/09/2022 12:27:02
QRCode
archive.org
thumbnail

School is out for more than 3,000 students of a suburban Detroit district undergoing its second day of forensics analysis following an online attack. Students have

databreachtoday EN 2022 Cyberattack Ransomware school k-12 South-Redford-School-District Chromebook Brett-Callow
LockBit ransomware builder leaked online by “angry developer” https://www.bleepingcomputer.com/news/security/lockbit-ransomware-builder-leaked-online-by-angry-developer-/
22/09/2022 12:25:20
QRCode
archive.org
thumbnail

The LockBit ransomware operation has suffered a breach, with an allegedly disgruntled developer leaking the builder for the gang's newest encryptor.

bleepingcomputer EN 2022 Breach Developer Encryptor LockBit Ransomware Ransomware-Builder Leak
Azure Cloud Shell Command Injection Stealing User’s Access Tokens https://blog.lightspin.io/azure-cloud-shell-command-injection-stealing-users-access-tokens
21/09/2022 23:44:32
QRCode
archive.org
thumbnail

This post describes how I took over an Azure Cloud Shell trusted domain and leveraged it to inject and execute commands in other users’ terminals.

lightspin EN 2022 Azure Cloud Shell injection terminals IoCs Analysis Tokens steal
Threat Alert: New Malware in the Cloud By TeamTNT https://blog.aquasec.com/new-malware-in-the-cloud-by-teamtnt
21/09/2022 23:41:46
QRCode
archive.org
thumbnail

Could TeamTNT be back? Our honeypots were attacked by malware that bears a resemblance to these threat actors and we analyze the possible connection.

aquasec EN 2022 TeamTNT Analysis
The Evolution of the Chromeloader Malware - VMware Security Blog - VMware https://blogs.vmware.com/security/2022/09/the-evolution-of-the-chromeloader-malware.html
21/09/2022 23:39:47
QRCode
archive.org

The VMware Carbon Black MDR team goes in depth on the latest variants of the Chromeloader malware and how to detect them.

vmware EN 2022 Chromeloader malware IoCs Analysis
page 182 / 208
4735 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio