Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 195 / 251
Germany and Ukraine hit two high-value ransomware targets https://www.europol.europa.eu/media-press/newsroom/news/germany-and-ukraine-hit-two-high-value-ransomware-targets?mtm_campaign=newsletter
06/03/2023 19:28:27
QRCode
archive.org
thumbnail

This ransomware appeared in 2019, when cybercriminals started using it to launch attacks against organisations and critical infrastructure and industries. Based on the BitPaymer ransomware and part of the Dridex malware family, DoppelPaymer used a unique tool capable of compromising defence mechanisms by terminating the security-related process of the attacked systems. The DoppelPaymer attacks were enabled by the prolific EMOTET...

europol EN 2023 DoppelPaymer ransomware BitPaymer Dridex raid J-CAT
We Found 28,000 Apps Sending Data to TikTok. A Ban Won't Help. https://gizmodo.com/tiktok-ban-joe-biden-28000-apps-sdk-data-china-1850174019
05/03/2023 12:06:06
QRCode
archive.org
thumbnail

TikTok’s software development kits could undermine Joe Biden's order to stop internet traffic flowing from federal employees' phones to TikTok within 30 days.

gizmodo en 2023 TikTok ban data China advertising
PyPi Packages Deliver Python Remote Access Tools https://www.kroll.com/en/insights/publications/cyber/pypi-packages-deliver-python-remote-access-tools
03/03/2023 16:01:02
QRCode
archive.org
thumbnail

While researching initial attack vectors, the Kroll Cyber Threat Intelligence team identified a fully featured information stealer and remote access tool in the python package index that could lead to an intensified threat landscape. Read more.

kroll EN 2023 pypi-packages pypi-malware python-remote-access-tool supplychain
Credit Suisse breach spills info of high-net-worth clients https://nypost.com/2023/03/02/credit-suisse-breach-spills-info-of-high-net-worth-clients/
03/03/2023 08:56:30
QRCode
archive.org
thumbnail

Credit Suisse is telling its clients that sensitive personal information including social security identification and contact details has been compromised.

nypost 2023 EN Business banks credit-suisse hacking leak VIP PII
Biden National Cyber Strategy Seeks to Hold Software Firms Liable for Insecurity https://www.wsj.com/articles/biden-national-cyber-strategy-seeks-to-hold-software-firms-liable-for-insecurity-67c592d6?mod=panda_wsj_author_alert
03/03/2023 08:52:23
QRCode
archive.org
thumbnail

Markets have imposed “inadequate costs” on companies that build vulnerable technology, it says.

wsj EN 2023 National strategy US Biden Software Liable liability Insecurity
FACT SHEET: Biden-Harris Administration Announces National Cybersecurity Strategy https://www.whitehouse.gov/briefing-room/statements-releases/2023/03/02/fact-sheet-biden-harris-administration-announces-national-cybersecurity-strategy/
03/03/2023 08:36:52
QRCode
archive.org
thumbnail

Read the full strategy here Today, the Biden-Harris Administration released the National Cybersecurity Strategy to secure the full benefits of a safe and secure digital ecosystem for all Americans. In this decisive decade, the United States will reimagine cyberspace as a tool to achieve our goals in a way that reflects our values: economic security…

PDF document

whitehouse EN 2023 statement National Cybersecurity Strategy US
How cybercriminals attack young gamers https://www.kaspersky.com/blog/threats-in-kids-gaming-worlds/
03/03/2023 08:29:22
QRCode
archive.org
thumbnail

What cyberthreats target young gamers? An overview of the most well-spread child threats in virtual gaming worlds.

kaspersky EN 2023 nternet-security games threats metaverse children childs Minecraft Animal-Crossing:-New-Horizons Roblox Fortnite Club-Penguin Apex-Legend Brawl-Stars Five-Nights-at-Freddy’s Toca-Life-World Overwatch-2 Among-us Poppy-Playtime Valorant
BlackLotus UEFI bootkit: Myth confirmed https://www.welivesecurity.com/2023/03/01/blacklotus-uefi-bootkit-myth-confirmed/
02/03/2023 08:07:20
QRCode
archive.org
thumbnail

ESET researchers are the first to publish an analysis of BlackLotus, the first in-the-wild UEFI bootkit capable of bypassing UEFI Secure Boot.

welivesecurity EN 2023 bootkit UEFI IoCs
West ill-prepared to deal with evolving cyber threats, report concludes https://www.cardiff.ac.uk/news/view/2699454-west-ill-prepared-to-deal-with-evolving-cyber-threats,-report-concludes
01/03/2023 21:38:48
QRCode
archive.org
thumbnail

Hacking and disinformation operation has continued to expand its activity, despite separate interventions in several European countries
PDF

cardiff.ac EN 2023 report Ghostwriter campaign
TCG TPM2.0 implementations vulnerable to memory corruption https://kb.cert.org/vuls/id/782720
01/03/2023 21:19:29
QRCode
archive.org

Two buffer overflow vulnerabilities were discovered in the Trusted Platform Module (TPM) 2.0 reference library specification, currently at Level 00, Revision 01.59 November 2019. An attacker who has access to a TPM-command interface can send maliciously-crafted commands to the module and trigger these vulnerabilities. This allows either read-only access to sensitive data or overwriting of normally protected data that is only available to the TPM (e.g., cryptographic keys).

cert.org 2023 EN TPM TPM2.0 TCG memory buffer Buffer-Overflow
Iron Tiger’s SysUpdate Reappears, Adds Linux Targeting https://www.trendmicro.com/en_us/research/23/c/iron-tiger-sysupdate-adds-linux-targeting.html
01/03/2023 21:10:36
QRCode
archive.org
thumbnail

We detail the update that advanced persistent threat (APT) group Iron Tiger made on the custom malware family SysUpdate. In this version, we also found components that enable the malware to compromise Linux systems.

trendmicro malware cyber-crime apt IronTiger SysUpdate analysis
Hunting for Honkbox | Multistage macOS Cryptominer May Still Be Hiding https://www.sentinelone.com/blog/hunting-for-honkbox-multistage-macos-cryptominer-may-still-be-hiding/
01/03/2023 21:07:29
QRCode
archive.org
thumbnail

A cryptominer that uses the Invisible Internet protocol, Honkbox variants could still be evading some detection solutions.

SentinelOne EN 2023 cryptominer Honkbox macos analysis
Lumma Stealer targets YouTubers via Spear-phishing Email | by S2W | S2W BLOG | Feb, 2023 | Medium https://medium.com/s2wblog/lumma-stealer-targets-youtubers-via-spear-phishing-email-ade740d486f7
01/03/2023 20:57:15
QRCode
archive.org
thumbnail

Lumma Stealer sellers use the name “LummaC” on an underground forum called XSS, which is based in Russia. The seller has been actively promoting the malware since April 2022. In August of that year…

s2wblog EN 2023 LummaC Stealer analysis
Intrusion dans les systèmes d'information de la Ville de Lille : le point sur la situation https://www.lille.fr/Actualites/Intrusion-dans-les-systemes-d-information-de-la-Ville-de-Lille-le-point-sur-la-situation
01/03/2023 19:42:01
QRCode
archive.org
thumbnail

A cette heure, le diagnostic technique est toujours en cours pour déterminer l'origine et la gravité de l'intrusion.
L'ensemble des services publics est maintenu, à l'Hôtel de Ville, dans les mairies de quartiers et l'ensemble de nos équipements avec un fonctionnement adapté.

Selon les informations dont nous disposons à ce stade, aucune difficulté n'a été constatée sur les données stockées sur le système et les serveurs.

lille FR 2023 Intrusion
U.S. Marshals Service hack compromises sensitive info https://www.nbcnews.com/politics/politics-news/major-us-marshals-service-hack-compromises-sensitive-info-rcna72581
28/02/2023 21:28:19
QRCode
archive.org
thumbnail

The U.S. Marshals Service suffered a security breach, with sensitive data taken from one of its systems just over a week ago.

nbcnews 2023 EN US Marshals breach ransomware
Hackers Claim They Breached T-Mobile More Than 100 Times in 2022 https://krebsonsecurity.com/2023/02/hackers-claim-they-breached-t-mobile-more-than-100-times-in-2022/
28/02/2023 21:19:27
QRCode
archive.org

Three different cybercriminal groups claimed access to internal networks at communications giant T-Mobile in more than 100 separate incidents throughout 2022, new data suggests. In each case, the goal of the attackers was the same: Phish T-Mobile employees for access to internal company tools, and then convert that access into a cybercrime service that could be hired to divert any T-Mobile user’s text messages and phone calls to another device.

krebsonsecurity EN 2023 T-Mobile Hackers Claim
The Cyber Defense Assistance Imperative – Lessons from Ukraine https://www.aspeninstitute.org/publications/the-cyber-defense-assistance-imperative-lessons-from-ukraine/
28/02/2023 15:26:27
QRCode
archive.org

Russia’s further invasion of Ukraine in February 2022 was a watershed moment, and unique in that a major nation-state had engaged in coordinated, convergent digital and physical attacks in an effort to conquer a neighboring country. Leaders will draw lessons from this conflict for years, but one is already clear: the ability to deliver cyber defense assistance must be a key national security capability.

aspeninstitute EN 2023 Ukraine russia-ukraine-war CyberDefense assistance
Danish parliament urges to remove TikTok over cybersecurity https://apnews.com/article/technology-politics-denmark-government-mobile-apps-europe-41d1cf56a492ea9c6e0f7885c866e131
28/02/2023 14:32:36
QRCode
archive.org
thumbnail

COPENHAGEN, Denmark (AP) — The Danish parliament on Tuesday urged lawmakers and employees with the 179-member assembly against having TikTok on work phones as a cybersecurity measure, saying “there is a risk of espionage.”

apnews EN 2023 Denmark tiktok ban
LastPass breach update: The few additional bits of information https://palant.info/2023/02/28/lastpass-breach-update-the-few-additional-bits-of-information/
28/02/2023 14:22:33
QRCode
archive.org
thumbnail

LastPass breach was aided by lax security policy, allowing accessing critical data from a home computer. Also, companies implementing federated login are also affected by the breach, despite LastPass originally denying it.

palant.info EN 2023 breach LastPass
Canada bans TikTok on government devices https://www.bbc.com/news/world-us-canada-64792894
28/02/2023 13:01:31
QRCode
archive.org
thumbnail
bbc en 2023 tiktok ban canada
page 195 / 251
5001 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn