Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 186 / 238
Killnet Threat to Health and Public Sectors https://www.radware.com/security/ddos-threats-attacks/threat-advisories-attack-reports/infinity-forum/
12/02/2023 13:23:30
QRCode
archive.org
thumbnail

Infinity Team, a collaboration between Killnet and Deanon Club, has established its own forum and marketplace called Infinity

radware EN 2023 Killnet InfinityTeam DeanonClub forum marketplace Infinity report
Meet the Creator of North Korea’s Favorite Crypto Privacy Service https://www.wired.com/story/sinbad-crypto-mixer-north-korean-hackers/
11/02/2023 23:08:19
QRCode
archive.org
thumbnail

The world’s most prolific crypto thieves have used Sinbad.io to launder tens of millions. Its creator, “Mehdi,” answers WIRED’s questions.

cryptocurrency dark-web bitcoin hacking crime Sinbad.io mixer DPRK
Investigating Intrusions From Intriguing Exploits https://www.huntress.com/blog/investigating-intrusions-from-intriguing-exploits
11/02/2023 18:49:46
QRCode
archive.org
thumbnail

On 02 February 2023, an alert triggered in a Huntress-protected environment. At first glance, the alert itself was fairly generic - a combination of certutil using the urlcache flag to retrieve a remote resource and follow-on scheduled task creation - but further analysis revealed a more interesting set of circumstances. By investigating the event in question and pursuing root cause analysis (RCA), Huntress was able to link this intrusion to a recently-announced vulnerability as well as to a long-running post-exploitation framework linked to prominent ransomware groups.

huntress EN 2023 investigation triage SOC certutil urlcache GoAnywhere analysis
UZH -University of Zurich - Cyberattack on the University of Zurich https://www.uzh.ch/cmsssl/en/about/specialmeasures/cybersecurity.html
11/02/2023 14:32:33
QRCode
archive.org

The University of Zurich is currently the target of a serious cyberattack. The perpetrators appear to be acting in a very professional manner and are part of a current accumulation of attacks on educational and health institutions. Several attacks have been carried out on universities in German-speaking countries in recent weeks, resulting in suspension of their IT services for extended periods of time. The attacks are usually carried out by compromising several individual accounts and systems.

uzh CH EN 2023 Cyberattack annonce Zurich University
Une campagne de phishing fictive pour sensibiliser 25 PME romandes à la cybersécurité https://www.ictjournal.ch/news/2023-02-10/une-campagne-de-phishing-fictive-pour-sensibiliser-25-pme-romandes-a-la
10/02/2023 15:27:40
QRCode
archive.org
thumbnail

La première édition de «Trust4SMEs» s’est conclue en présence des 25 PME lémaniques qui y ont participé à ce programme d’accompagnement en cybersécurité. Focalisée sur la sensibilisation des utilisateurs, la matinée a aussi révélé les résultats d’une campagne de phishing inoffensive envoyée à quelque 2'500 employés des PME.

ictjournal FR CHG EPFL sensibilisation PME Trust4SMEs
Incendie OVH : une première décision de condamnation https://www.droit-technologie.org/actualites/incendie-ovh-une-premiere-decision-de-condamnation/
10/02/2023 15:18:13
QRCode
archive.org
thumbnail

Le tribunal juge qu’en stockant les 3 réplications de sauvegarde au même endroit que le serveur principal, OVH engage sa responsabilité contractuelle au titre du contrat de sauvegarde. Une ligne est en train de se dessiner dans la jurisprudence OVH : d’un côté les sociétés qui avaient pris soin de souscrire, en supplément, un contrat de sauvegarde et peuvent revendiquer une indemnisation, et d’un autre côté celles qui n’avaient pas pris cette précaution et n’ont que leurs yeux pour pleurer.

droit-technologie FR 2023 OVH incendie décision responsabilité legal légale
Xiaomi, OnePlus, Top Android Phones in China Spy on You: Study https://gizmodo.com/android-xiamoi-oneplus-phones-personal-info-study-1850082989
09/02/2023 18:49:59
QRCode
archive.org
thumbnail

A recent study shows that top-of-the-line Android phones sold in China are a total privacy nightmare.

gizmodo EN 2023 Android Information-privacy Privacy-concerns-with-social-networking-services Privacy Surveillance Human-rights OnePlus Internet-privacy Xiamoi Smartphones Oppo-Realme Computing Terms-of-service Operating-systems Baidu Digital-technology Gizmodo
AI deepfake 'news anchors' found in pro-China footage on social media, research firm says - Hong Kong Free Press HKFP https://hongkongfp.com/2023/02/08/ai-deepfake-news-anchors-found-in-pro-china-footage-on-social-media-research-firm-says/
09/02/2023 18:47:59
QRCode
archive.org

The “news broadcasters” appear stunningly real, but they are AI-generated deepfakes in first-of-their-kind propaganda videos that a research report published Tuesday attributed to Chinese state-aligned actors. The fake anchors — for a fictious news outlet called Wolf News — were created by artificial intelligence software and appeared in footage on social media that seemed to […]

hongkongfp EN 2023 broadcasters China fake WolfNews AI-generated deepfakes
Britain and US make major move against ransomware gangs by sanctioning seven individuals - The Record from Recorded Future News https://therecord.media/ransomware-sactions-conti-ryuk-trickbot-uk-us/
09/02/2023 18:45:48
QRCode
archive.org

The United Kingdom and United States on Thursday sanctioned seven people connected to what officials have told The Record is a single network behind the Conti and Ryuk ransomware gangs as well as the Trickbot banking trojan.

The sanctions are described as the first major move of a “new campaign of concerted action” between Britain and the United States, and insiders say that further actions should be expected later this year.

therecord EN 2023 UK US Trickbot sanctions Conti Ryuk ransomware
UK cracks down on ransomware actors https://www.gov.uk/government/news/uk-cracks-down-on-ransomware-actors
09/02/2023 18:44:25
QRCode
archive.org
thumbnail

The UK has sanctioned 7 Russian cyber criminals through coordinated actions with the US government.

gov.uk EN 2023 Trickbot Russian criminals US
A Backdoor with Smart Screenshot Capability https://isc.sans.edu/diary/rss/29534
09/02/2023 18:27:30
QRCode
archive.org

Today, everything is “smart” or “intelligent”. We have smartphones, smart cars, smart doorbells, etc. Being "smart" means performing actions depending on the context, the environment, or user actions.

For a while, backdoors and trojans have implemented screenshot capabilities. From an attacker’s point of view, it’s interesting to “see” what’s displayed on the victim’s computer.

sans EN 2023 python backdoor Screenshot
HTML Smuggling: The Hidden Threat in Your Inbox https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/html-smuggling-the-hidden-threat-in-your-inbox/
09/02/2023 18:21:15
QRCode
archive.org
thumbnail

Last October, Trustwave SpiderLabs blogged about the use and prevalence of HTML email attachments to deliver malware and phishing for credentials.

trustwave EN 2023 HTML Threat SpiderLabs email phishing malware
Enigma Stealer Targets Cryptocurrency Industry with Fake Jobs https://www.trendmicro.com/en_us/research/23/b/enigma-stealer-targets-cryptocurrency-industry-with-fake-jobs.html
09/02/2023 18:11:58
QRCode
archive.org
thumbnail

We discovered an active campaign targeting Eastern Europeans in the cryptocurrency industry using fake job lures.

trendmicro EN 2023 malware endpoints research Cryptocurrency campaign Fake Jobs
2023 Crypto Crime Trends: Illicit Cryptocurrency Volumes Reach All-Time Highs Amid Surge in Sanctions Designations and Hacking https://blog.chainalysis.com/reports/2023-crypto-crime-report-introduction/
09/02/2023 10:43:04
QRCode
archive.org
thumbnail

Every year, we publish our estimates of illicit cryptocurrency activity to demonstrate the power of blockchains’ transparency – these kinds of estimates aren’t possible in traditional finance – and to teach investigators and compliance professionals about the latest trends in cryptocurrency-related crime that they need to know about. What could those estimates look like in a year like 2022? Last year was one of the most tumultuous in cryptocurrency history, with several large firms imploding, including Celsius, Three Arrows Capital, FTX, and others — some amid allegations of fraud.

chainalysis 2023 EN Cryptocurrency Volumes Report
Bitwarden password vaults targeted in Google ads phishing attack https://www.bleepingcomputer.com/news/security/bitwarden-password-vaults-targeted-in-google-ads-phishing-attack/
08/02/2023 17:03:24
QRCode
archive.org
thumbnail

Bitwarden and other password managers are being targeted in Google ads phishing campaigns to steal users' password vault credentials.

bleepingcomputer EN 2023 1Password Bitwarden GoogleAds googleads MFA Multi-Factor-Authentication Password-Manager Passwords Phishing
OpenSSL fixes High Severity data-stealing bug – patch now! https://nakedsecurity.sophos.com/2023/02/08/openssl-fixes-high-severity-data-stealing-bug-patch-now/
08/02/2023 10:18:51
QRCode
archive.org
thumbnail

7 memory mismanagements and a timing attack. We explain all the jargon bug terminology in plain English…

nakedsecurity EN 2023 OpenSSL CVE-2022-4450 CVE-2023-0286 CVE-2023-0215 cryptography vulnerability cryptography memory-mismanagement openssl timing-attack
Russia-linked Lockbit ransomware hacking gang threatens to publish Royal Mail data stolen in cyber attack https://www.telegraph.co.uk/business/2023/02/07/russia-linked-lockbit-ransomware-hacking-gang-threatens-publish/
07/02/2023 20:20:08
QRCode
archive.org
thumbnail

Ransomware gang says it will share the stolen information in a matter of days

telegraph EN 2023 Royal-Mail Lockbit ransomware stolen
Sliver Malware With BYOVD Distributed Through Sunlogin Vulnerability Exploitations - ASEC BLOG https://asec.ahnlab.com/en/47088/
07/02/2023 20:18:03
QRCode
archive.org
thumbnail

Sliver is an open-source penetration testing tool developed in the Go programming language. Cobalt Strike and Metasploit are major examples of penetration testing tools used by many threat actors, and various attack cases involving these tools have been covered here on the ASEC blog. Recently, there have been cases of threat actors using Sliver in addition to Cobalt Strike and Metasploit.

The ASEC (AhnLab Security Emergency response Center) analysis team is monitoring attacks against systems with either unpatched vulnerabilities or misconfigured settings. During this process, we have recently discovered a Sliver backdoor being installed through what is presumed to be vulnerability exploitation on certain software. Not only did threat actors use the Sliver backdoor, but they also used the BYOVD (Bring Your Own Vulnerable Driver) malware to incapacitate security products and install reverse shells.

asec.ahnlab EN 2023 Sliver Sunlogin analysis
Iran responsible for Charlie Hebdo attacks https://www.microsoft.com/en-us/security/business/security-insider/uncategorized/iran-responsible-for-charlie-hebdo-attacks/
06/02/2023 19:44:22
QRCode
archive.org
thumbnail

Today, Microsoft’s Digital Threat Analysis Center (DTAC) is attributing a recent influence operation targeting the satirical French magazine Charlie Hebdo

microsoft DTAC EN 2023 attribution Iran influence France CharlieHebdo EmennetPasargad
Cyberattaque contre l’Université de Zurich: des accès aux serveurs vendus sur le darkweb (update) https://www.ictjournal.ch/news/2023-02-06/cyberattaque-contre-luniversite-de-zurich-des-acces-aux-serveurs-vendus-sur-le
06/02/2023 19:04:47
QRCode
archive.org
thumbnail

Des cybercriminels ont pris l'Université de Zurich pour cible.

ictjournal FR CH 2023 Cyberattaque Zurich Université
page 186 / 238
4751 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio