Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 2 / 2
37 résultats taggé Cybersecurity  ✕
Government hackers targeted iPhones owners with zero-days, Google says https://techcrunch.com/2024/02/06/government-hackers-targeted-iphones-owners-with-zero-days-google-says/
06/02/2024 15:57:41
QRCode
archive.org
thumbnail

One of the hacking campaigns used exploits developed by Variston, a Barcelona-based startup. Sources say the spyware maker is losing staff.

techcrunch EN 2024 security apple cybersecurity google hackers infosec ios iphone spyware surveillance variston zero-days
Here is Apple's official 'jailbroken' iPhone for security researchers | TechCrunch https://techcrunch.com/2024/02/01/here-is-apples-official-jailbroken-iphone-for-security-researchers/
01/02/2024 19:22:28
QRCode
archive.org
thumbnail

A security researchers shared a picture of the instructions that go along Apple's Security Research Device and more details about this special iPhone.

techcrunch EN 2024 apple bugs cybersecurity iphone vulnerabilities Jailbreak
Apple fixes zero-day bug in Apple Vision Pro that 'may have been exploited' https://techcrunch.com/2024/01/31/apple-vision-pro-zero-day-security-bug-exploited/
01/02/2024 11:51:56
QRCode
archive.org
thumbnail

Apple said the vulnerability, which is being exploited in the wild, allows malicious code to run on an affected device.

techcrunch EN 2024 security apple-vision-pro cybersecurity exploit vulnerability
Porsche To Kill ICE-Powered Macan In Europe Over Cybersecurity Laws | Carscoops https://www.carscoops.com/2023/12/porsche-to-kill-ice-powered-macan-in-europe-over-cybersecurity-laws/
03/01/2024 14:10:02
QRCode
archive.org
thumbnail

Porsche's best-selling model will be discontinued from markets within the European Union in spring of 2024

carscoops EN 2023 Porche Cybersecurity regulation EU Macan Law
Authorities claim seizure of notorious ALPHV ransomware gang's dark web leak site | TechCrunch https://techcrunch.com/2023/12/19/alphv-blackcat-ransomware-seizure/
19/12/2023 15:10:57
QRCode
archive.org
thumbnail

The FBI says it has released a decryption tool allowing hundreds of ALPHV/BlackCat victims to restore their scrambled files.

techcrunch EN 2023 ALPHV BlackCat cyberattack cybersecurity law-enforcement ransomware seizure
Apple will no longer give police users' push notification data without a warrant https://techcrunch.com/2023/12/13/apple-push-notifications-government-warrant/
13/12/2023 18:04:01
QRCode
archive.org
thumbnail

Apple says it will now require a judge-approved order before handing over its users' push notification records to government agencies.

techcrunch EN 2023 apple cybersecurity data-protection law-enforcement push
Meet the Unique New "Hacking" Group: AlphaLock https://www.bleepingcomputer.com/news/security/meet-the-unique-new-hacking-group-alphalock/
22/11/2023 14:34:20
QRCode
archive.org
thumbnail

It’s not every day that you discover a new Russian hacking group complete with a song and dance routine (performed live), a sleek user interface (with dark mode!) and a clearly thought-out business model. But that is exactly what our security research team discovered with “AlphaLock,” a “pentesting training organization” that trains hackers and then monetizes their services through a dedicated affiliate program.
...
We originally discovered their group through a public Telegram channel that has since become private. This post will serve as a detailed investigation and description of one of the most brazen, strange, and best marketed cybercrime groups to appear in 2023.

  • Cybercrime sophistication and commoditization continues to grow: We now have a real life example of a threat group that seeks to create its own talent pool through a training program, goes to extensive lengths to market itself, and plans to monetize this through a hacker-for-hire scheme. The level of technical sophistication required to do this isn’t very high, but the level of organizational sophistication and business acumen is quite interesting.
  • Ransomware isn’t the only game in town: Cybercriminals typically choose the path of least resistance that is most likely to prove profitable, this has been increasingly the case as the cybercrime ecosystem has evolved into a functional market economy. However AlphaLock represents another potential method to both monetize and democratize cybercrime. This could be a particularly interesting model alternative for ransomware groups if the U.S. follows through with the proposal of banning ransomware payments.
  • A Technical Threat Actor Supply Shortage? One of the most fascinating things about AlphaLock is they want to create a pipeline of talent to populate their hacker marketplace. This suggests that there may be limitations on the supply of talented threat actors that have the required degree of sophistication to the point where they have tried to build their own pipeline of actors.
  • The Brand: Our researchers have noted an increasing focus on group “brand” and identity among financially motivated threat groups. AlphaLock has clearly made significant investments in time to create a brand and reputation for itself. Notice in the final post they even advertise that they are looking to hire someone to market themselves on Telegram and social media.
  • Blurred Lines: Many security practitioners have often assumed that threat actors primarily operate on the dark web. In most cases today this isn’t the case. There are increasingly blurred lines between clear web sites, Tor, and social media applications such as Telegram that create easy avenues for threat actors to congregate and communicate.
bleepingcomputer EN 2023 AlphaLock Cybersecurity Flare Penetration-Testing Telegram Threat-Intelligence Russia
DP World: Australian ports to remain closed as AFP investigates cybersecurity breach https://www.smh.com.au/national/ports-to-remain-closed-as-afp-investigates-cybersecurity-breach-20231111-p5ej9i.html
12/11/2023 01:45:34
QRCode
archive.org
thumbnail

DP World: Australian ports to remain closed as AFP investigates cybersecurity breach"

smh EN 2023 cybersecurity breach Australia DPWorld
Cybersecurity issue prompts computer shutdowns at MGM Resorts properties across US https://apnews.com/article/mgm-resorts-casino-vegas-cybersecurity-outage-06de044bdf1880af2a8bce1a38c986ee
12/09/2023 21:52:55
QRCode
archive.org
thumbnail

Casino and hotel giant MGM Resorts International says a cybersecurity issue led to the shutdown of computer systems at its properties across the U.S.

apnews EN 2023 Casino MGM Resorts US Cybersecurity
A simple bug exposed access to thousands of smart security alarm systems https://techcrunch.com/2023/06/16/eaton-secureconnect-security-alarm-vulnerability/
17/06/2023 20:08:32
QRCode
archive.org
thumbnail

The vulnerability — now fixed — was discovered in a cloud-based system that allows customers to remotely manage their security alarm systems.

techcrunch EN 2023 security cybersecurity home-security-systems smart security alarm systems IoT vulnerability
A Shady Chinese Firm’s Encryption Chips Got Inside NATO and NASA https://www.wired.com/story/hualan-encryption-chips-entity-list-china/
17/06/2023 13:06:40
QRCode
archive.org
thumbnail

The US government warns encryption chipmaker Hualan has suspicious ties to China’s military. Yet US agencies still use one of its subsidiary’s chips, raising fears of a backdoor.

wired EN 2023 US China chipmaker cybersecurity china encryption national-security Supply-Chain backdoor
Mercenary spyware hacked iPhone victims with rogue calendar invites, researchers say | TechCrunch https://techcrunch.com/2023/04/11/quadream-spyware-hacked-iphones-calendar-invites/
11/04/2023 18:32:54
QRCode
archive.org
thumbnail

Researchers found malware developed by QuaDream, a little-known government spyware maker, which was used against journalists and politicians.

techcrunch EN 2023 security apple cybersecurity hackers hacking ios iphone spyware zero-days
FACT SHEET: Biden-Harris Administration Announces National Cybersecurity Strategy https://www.whitehouse.gov/briefing-room/statements-releases/2023/03/02/fact-sheet-biden-harris-administration-announces-national-cybersecurity-strategy/
03/03/2023 08:36:52
QRCode
archive.org
thumbnail

Read the full strategy here Today, the Biden-Harris Administration released the National Cybersecurity Strategy to secure the full benefits of a safe and secure digital ecosystem for all Americans. In this decisive decade, the United States will reimagine cyberspace as a tool to achieve our goals in a way that reflects our values: economic security…

PDF document

whitehouse EN 2023 statement National Cybersecurity Strategy US
Iranian Government-Sponsored APT Actors Compromise Federal Network, Deploy Crypto Miner, Credential Harvester https://www.cisa.gov/uscert/ncas/alerts/aa22-320a
17/11/2022 08:59:13
QRCode
archive.org

From mid-June through mid-July 2022, CISA conducted an incident response engagement at a Federal Civilian Executive Branch (FCEB) organization where CISA observed suspected advanced persistent threat (APT) activity. In the course of incident response activities, CISA determined that cyber threat actors exploited the Log4Shell vulnerability in an unpatched VMware Horizon server, installed XMRig crypto mining software, moved laterally to the domain controller (DC), compromised credentials, and then implanted Ngrok reverse proxies on several hosts to maintain persistence.

cisa EN 2022 uscert csirt cert cybersecurity cyber-security Log4Shell VM APT Iran USware
How Russia’s vaunted cyber capabilities were frustrated in Ukraine https://www.washingtonpost.com/opinions/2022/06/21/russia-ukraine-cyberwar-intelligence-agencies-tech-companies/
22/06/2022 20:32:40
QRCode
archive.org
thumbnail

Big Tech, Western intelligence and a homegrown army of Ukrainian hackers pull off one of the biggest surprises of the war.

washingtonpost 2022 EN Russia opinion Russia-Ukraine-war cyberwarefare cybersecurity defense
EU lands new law to fight off hackers in critical sectors https://www.politico.eu/article/eu-lands-new-law-to-fight-off-hackers-in-critical-sectors/
14/05/2022 09:38:51
QRCode
archive.org
thumbnail

Rules for industries and governments aim to prevent all-out cyber breakdown.

Politico EN 2022 EU directive 5G Bart-Groothuis Communications Critical-infrastructure Cyber-Espionage Cybercrime Cybersecurity Data-flows Digital-Industry Eva-Maydell Hackers Internet-of-Things Network-security Privacy Supply-chain-security Telecoms Telecoms-Infrastructure
Cyber Realism in a Time of War https://www.lawfareblog.com/cyber-realism-time-war
03/03/2022 21:16:47
QRCode
archive.org
thumbnail

Activity in the digital domain may affect the war in Eastern Europe at the margins, but it will not decide it. That should tell us something about the West’s cyber posture.

politics lawfareblog weapon EN 2022 analysis Cybersecurity realism opinion
page 2 / 2
4514 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio