Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 186 / 251
Apple et Google s’accordent sur un cahier des charges industriel pour lutter contre le pistage https://www.apple.com/chfr/newsroom/2023/05/apple-google-partner-on-an-industry-specification-to-address-unwanted-tracking/
03/05/2023 14:12:30
QRCode
archive.org
thumbnail

Aujourd’hui, Apple et Google ont conjointement présenté une proposition de cahier des charges industriel pour empêcher l’utilisation abusive des appareils de géolocalisation Bluetooth.

Apple FR 2023 Google AirTag géolocalisation Bluetooth standard privacy pistage
Ransomware cyberattack continues at Bluefield University https://www.databreaches.net/ransomware-cyberattack-continues-at-bluefield-university/
03/05/2023 13:04:42
QRCode
archive.org

There are new developments on the cybersecurity attack that has crippled internet services at Bluefield University. We’ve learned through “RamAlert” texts sent to students, faculty and staff that the cyber attackers are now directly communicating with everyone on the alert system. They have identified themselves as “AvosLocker” and are demanding payment in return for not leaking students’ private information. The FBI considers AvosLocker to be ransomware. In March 2022, they released an advisory on it. They said avoslocker has “Targeted victims across multiple critical infrastructure sectors in the U.S. Including…The financial services, critical manufacturing, and government facilities sectors.”

databreaches EN SMS AvosLocker ransomware US Education Bluefield University
Bad Actors Are Joining the AI Revolution: Here’s What We’ve Found in the Wild https://hackernoon.com/bad-actors-are-joining-the-ai-revolution-heres-what-weve-found-in-the-wild?source=rss
03/05/2023 10:05:36
QRCode
archive.org
thumbnail

Follow security researchers as they uncover malicious packages on open-source registries, trace bad actors to Discord, and unveil AI-assisted code.

hackernoon EN 2023 python PyPI Supply-Chain-Attack ChatGPT
AI-Powered 'BlackMamba' Keylogging Attack Evades Modern EDR Security https://www.darkreading.com/endpoint/ai-blackmamba-keylogging-edr-security
03/05/2023 09:43:06
QRCode
archive.org
thumbnail

Researchers warn that polymorphic malware created with ChatGPT and other LLMs will force a reinvention of security automation.

darkreading EN 2023 ChatGPT EDR evasion Polymorphic BlackMamba LLM
SolarWinds: The Untold Story of the Boldest Supply-Chain Hack https://www.wired.com/story/the-untold-story-of-solarwinds-the-boldest-supply-chain-hack-ever/
02/05/2023 19:40:42
QRCode
archive.org
thumbnail

It was late 2019, and Adair, the president of the security firm Volexity, was investigating a digital security breach at an American think tank. The intrusion was nothing special. Adair figured he and his team would rout the attackers quickly and be done with the case—until they noticed something strange. A second group of hackers was active in the think tank’s network. They were going after email, making copies and sending them to an outside server. These intruders were much more skilled, and they were returning to the network several times a week to siphon correspondence from specific executives, policy wonks, and IT staff.

wired 2023 EN Supply-Chain Hack SolarWinds 2019 Story
What is a Rapid Security Response (RSR) https://eclecticlight.co/2023/05/02/what-is-a-rapid-security-response-rsr/
02/05/2023 11:17:59
QRCode
archive.org
thumbnail

Intended to be lightweight, timely and quick to install, the first RSR has now been provided for Ventura. Did you know you can also uninstall it easily?

eclecticlight EN 2023 Rapid-Security-Response macis iOS16 RSR
BouldSpy: Android Spyware Tied to Iranian Police Targets Minorities https://security.lookout.com/blog/iranian-spyware-bouldspy
02/05/2023 11:15:40
QRCode
archive.org
thumbnail

Researchers at the Lookout Threat Lab have discovered a new Android surveillance tied to the Law Enforcement Command of the Islamic Republic of Iran (FARAJA).

lookout EN 2023 BouldSpy Spyware Android FARAJA Iran
Apple uses iOS and macOS Rapid Security Response feature for the first time https://arstechnica.com/gadgets/2023/05/seven-months-in-ios-and-macos-get-their-first-rapid-security-updates/
02/05/2023 07:03:36
QRCode
archive.org
thumbnail

When it announced iOS 16, iPadOS 16, and macOS Ventura at its Worldwide Developers Conference last summer, one of the features Apple introduced was something called "Rapid Security Response." The feature is meant to enable quicker and more frequent security patches for Apple's newest operating systems, especially for WebKit-related flaws that affect Safari and other apps that use Apple's built-in browser engine.

arstechnica EN 2023 iOS16 Ventura macos Rapid-Security-Response RSR
FIN7 tradecraft seen in attacks against Veeam backup servers https://labs.withsecure.com/publications/fin7-target-veeam-servers
01/05/2023 21:23:43
QRCode
archive.org
thumbnail

WithSecure Intelligence identified attacks which occurred in late March 2023 against internet-facing servers running Veeam Backup & Replication software. Our research indicates that the intrusion set used in these attacks has overlaps with those attributed to the FIN7 activity group. It is likely that initial access & execution was achieved through a recently patched Veeam Backup & Replication vulnerability, CVE-2023-27532.

withsecure EN 2023 Research Veeam FIN7
Investigating ChatGPT phishing detection capabilities https://securelist.com/chatgpt-anti-phishing/109590/
01/05/2023 15:57:52
QRCode
archive.org
thumbnail

Kaspersky research on ChatGPT capabilities to tell a phishing link from a legitimate one by analyzing the URL, as well as extract target organization name.

securelist 2023 EN Machine-learning Phishing Phishing-websites phishing detection capabilities
AI Chatbots Have Been Used to Create Dozens of News Content Farms https://www.bloomberg.com/news/articles/2023-05-01/ai-chatbots-have-been-used-to-create-dozens-of-news-content-farms
01/05/2023 15:25:09
QRCode
archive.org
thumbnail

The news-rating group NewsGuard has found dozens of news websites generated by AI chatbots proliferating online, according to a report published Monday, raising questions about how the technology may supercharge established fraud techniques.

bloomberg EN 2023 NewsGuard Chatbots Content-Farms chatbots
Comparison of password strength across top hacking forums (of users that were infected with info-stealing malware) https://old.reddit.com/r/Malware/comments/131kdgb/comparison_of_password_strength_across_top/
01/05/2023 13:50:01
QRCode
archive.org

Comparing the password strength of 5 hacking forum users that were compromised with info-stealers - Hackforums.net,...

reddit r/malware EN 2023 passwords leaks comparison hackforums
LockBit and Cl0p ransomware gangs actively exploiting Papercut vulnerabilities https://www.malwarebytes.com/blog/news/2023/04/lockbit-and-cl0p-are-actively-exploiting-papercut-vulnerabilities
01/05/2023 11:09:49
QRCode
archive.org
thumbnail

Vulnerabilities in PaperCut printing management are being used in ransomware attacks.

malwarebytes EN 2023 malwarebytes lockbit cl0p PaperCut
DOJ Detected SolarWinds Breach Months Before Public Disclosure https://www.wired.com/story/solarwinds-hack-public-disclosure/
29/04/2023 12:10:17
QRCode
archive.org
thumbnail

In May 2020, the US Department of Justice noticed Russian hackers in its network but did not realize the significance of what it had found for six months.

wired EN SolarWinds Russia Detected
Clôture de l’établissement des faits concernant la banque de données de centres privés de dépistage Covid-19 https://www.edoeb.admin.ch/edoeb/fr/home/actualites/medias/medienmitteilungen.msg-id-94662.html
28/04/2023 19:16:04
QRCode
archive.org

Suite à la réception d’un signalement par un particulier, le Préposé a procédé à un établissement des faits concernant une banque de données insuffisamment sécurisée de centres privés de dépistage Covid-19. Dans son rapport final publié ce jour, il a établi que les données de santé traitées dans la banque de données avaient été exposées à des risques de sécurité considérables en raison de la faille signalée. Comme les responsables avaient pris les mesures immédiates appropriées après la découverte de cette faille, le risque pour les personnes concernées a pu être réduit. La procédure est ainsi close sans recommandation.

edoeb CH FR Covid-19 faille confidentialité NCSC
Le Département de la défense et des banques testent le partage confidentiel de données de cybermenace https://www.ictjournal.ch/news/2023-04-28/le-departement-de-la-defense-et-des-banques-testent-le-partage-confidentiel-de
28/04/2023 19:09:15
QRCode
archive.org
thumbnail

Le DDPS annonce avoir achevé un projet pilote de confidential computing avec la BNS, SIX et la Banque cantonale de

ictjournal FR CH DDPS BNS Banque SIX confidentiel confidential-computing
Magecart threat actor rolls out convincing modal forms https://www.malwarebytes.com/blog/threat-intelligence/2023/04/kritec-art
28/04/2023 14:48:41
QRCode
archive.org
thumbnail

To ensnare new victims, criminals will often devise schemes that attempt to look as realistic as possible. Having said that, it is not every day that we see the fraudulent copy exceed the original piece.

While following up on an ongoing Magecart credit card skimmer campaign, we were almost fooled by a payment form that looked so well done we thought it was real. The threat actor used original logos from the compromised store and customized a web element known as a modal to perfectly hijack the checkout page.

malwarebytes EN 2023 Magecart forms analysis
Hackers Leaked Minneapolis Students' Psychological Reports, Allegations of Abuse https://gizmodo.com/ransomware-gang-medusa-data-breach-minneapolis-school-a-1850380421
27/04/2023 22:43:07
QRCode
archive.org
thumbnail

In a hacking episode that is spiraling from bad to worse, cybercriminals have leaked highly sensitive documents related to droves of Minneapolis students.

gizmodo EN 2023 Ransomware leack childrens Education school US Minneapolis
RTM Locker Ransomware as a Service (RaaS) Now on Linux - Uptycs https://www.uptycs.com/blog/rtm-locker-ransomware-as-a-service-raas-linux
27/04/2023 13:53:22
QRCode
archive.org
thumbnail

Uptycs threat research team discovered a new ransomware Linux binary attributed to the RTM group Locker, a known Ransomware-as-a-Service (RaaS) provider.

Uptycs EN 2023 ransomware Linux RTM group Locker Ransomware-as-a-Service
Never Connect to RDP Servers Over Untrusted Networks https://www.gosecure.net/blog/2023/04/26/never-connect-to-rdp-servers-over-untrusted-networks/
27/04/2023 13:50:02
QRCode
archive.org
thumbnail

Did you know that RDP is unsafe without the use of additional protection like a VPN? In this blog post we will explain why and demonstrate the impact.

gosecure EN 2023 RDP Untrusted
page 186 / 251
5008 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn