Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 22 / 76
1513 résultats taggé 2024  ✕
New Criminal Complaint Over Pegasus Spyware Hacking of journalists and activists in the UK   https://www.glanlaw.org/single-post/new-criminal-complaint-over-pegasus-spyware-hacking-of-journalists-and-activists-in-the-uk
20/09/2024 09:51:48
QRCode
archive.org
thumbnail

Four victims of Pegasus spyware in the UK have this week filed a criminal complaint with the Metropolitan Police.

glanlaw EN 2024 Pegasus spyware UK Criminal Complaint
Is Tor still safe to use? https://blog.torproject.org/tor-is-still-safe/
20/09/2024 09:42:53
QRCode
archive.org
thumbnail

This blog post is a response to an investigative news report about a large-scale law-enforcement attack that managed to de-anonymize a user of an old version of the long-retired app Ricochet. This blog post aims to provide insight into what we know so far. Nothing that the Tor Project has learned about this incident suggests that Tor Browser was attacked or exploited. Tor users can continue to use Tor Browser to access the web securely and anonymously.

torproject EN 2024 Ricochet Germany police sniffing law-enforcement de-anonymize
New macOS malware HZ RAT lets attackers control Macs remotely https://moonlock.com/macos-malware-hz-rat
20/09/2024 08:51:58
QRCode
archive.org
thumbnail

It lets attackers control Macs remotely.

moonlock EN 2024 macOS malware HZRAT RAT analysis
Clever 'GitHub Scanner' campaign abusing repos to push malware https://www.bleepingcomputer.com/news/security/clever-github-scanner-campaign-abusing-repos-to-push-malware/
19/09/2024 14:07:18
QRCode
archive.org
thumbnail

A clever threat campaign is abusing GitHub repositories to distribute malware targeting users who frequent an open source project repository or are subscribed to email notifications from it. A malicious GitHub user opens a new

bleepingcomputer EN 2024 GitHub Malware Phishing
WebDAV-as-a-Service: Uncovering the infrastructure behind Emmenhtal loader distribution https://blog.sekoia.io/webdav-as-a-service-uncovering-the-infrastructure-behind-emmenhtal-loader-distribution/
19/09/2024 14:02:56
QRCode
archive.org
thumbnail

Our TDR team has been investigating the WebDAV infrastructure used to distribute the Emmenhtal loader. Here are some key insights:

sekoia EN 2024 webdav WebDAV-as-a-Service Emmenhtal loader
Emmenhtal: a little-known Emmenhtal distributing commodity infostealers worldwide https://www.orangecyberdefense.com/global/blog/cert-news/emmenhtal-a-little-known-loader-distributing-commodity-infostealers-worldwide
19/09/2024 13:54:05
QRCode
archive.org
  • Following detections from our Managed Threat Detection (CyberSOC) teams, our CERT analysts were able to uncover several recent campaigns leading to CryptBot and Lumma infostealers.

  • Some of these campaigns are still active and target various organizations worldwide.

  • These campaigns leverage a little-documented loader we dubbed “Emmenhtal”, (because we are cheese lovers), which hides in the padding of a modified legitimate Windows binary and uses HTA.

  • Emmenhtal likely surfaced at the beginning of 2024 and is possibly being distributed by several financially motivated threat actors through various means (from traditional email phishing lures to fake videos).

  • IoCs can be found on our dedicated GitHub page here.
    Note: The analysis cut-off date for this report was August 07, 2024.

orangecyberdefense EN 2024 Emmenhtal loader infostealers
Australian police infiltrate encrypted messaging app Ghost and arrest dozens https://apnews.com/article/australia-ghost-encrypted-app-bad89db81faecc6581d25818c0d7765d
19/09/2024 06:56:34
QRCode
archive.org
thumbnail

Australian police say they have infiltrated Ghost, an encrypted global communications app developed for criminals, leading to dozens of arrests.

apnews EN 2024 ghost infiltrated Australia police Europol
Europol takes down "Ghost" encrypted messaging platform used for crime https://www.bleepingcomputer.com/news/security/europol-takes-down-ghost-encrypted-messaging-platform-used-for-crime/
18/09/2024 23:07:36
QRCode
archive.org
thumbnail

Europol and law enforcement from nine countries successfully dismantled an encrypted communications platform called

bleepingcomputer EN 2024 Arrest Encrypted-Messaging Europol Ghost Legal
Police Hack Into ‘Ghost’, An Encrypted Platform for Criminals https://www.404media.co/email/9bbc4709-21ff-4669-99eb-48430c2072bd/?ref=daily-stories-newsletter
18/09/2024 15:37:51
QRCode
archive.org
thumbnail

Operation Kraken is a sign that organized criminals are moving away from larger encrypted phone companies to a decentralized collection of smaller players and consumer access apps that the rest of us use.

404media EN 2024 Police Hack US Ghost Encrypted Criminals Operation-Kraken
Taking over Train infrastructure in Poland /Traction power substation and lighting systems https://medium.com/@bertinjoseb/taking-over-train-infrastructure-in-poland-traction-power-substation-and-lighting-systems-2948594f259d
18/09/2024 11:07:14
QRCode
archive.org

(6 Months later CZAT 7 Server is offline or changed to another ip address , this post was written 6 months ago, published today 9/2/2024)

I’m a big fan of trains, i like them, but never tough that someday i would take over train traction power substation located in Poland from my home in Costa Rica.

I’m not a train expert/engineer and i had no idea how the train management works , I’m a cyber security professional doing research in the internet about OT Industrial equipment exposed potentially vulnerable or misconfigured.

Everything explained here is just what i learned reading official documentation from the Elester-pkp website . https://elester-pkp.com.pl/

bertinjoseb medium EN 2024 iot Critical-infrastructure Train Poland iot-safari power-substation lighting-systems
Mastercard invests in continued defense of global digital economy with acquisition of Recorded Future https://www.mastercard.com/news/press/2024/september/mastercard-invests-in-continued-defense-of-global-digital-economy-with-acquisition-of-recorded-future/
18/09/2024 10:28:34
QRCode
archive.org
thumbnail

Mastercard today expanded its cybersecurity services with an agreement to acquire global threat intelligence company Recorded Future from Insight Partners for $2.65 billion.

mastercard EN 2024 statement recordedfuture business
Vanir Ransomware Group onion site seized by German law enforcement https://databreaches.net/2024/09/18/vanir-ransomware-group-onion-site-seized-by-german-law-enforcement/
18/09/2024 09:21:30
QRCode
archive.org

Threat actors called Vanir Ransomware Group posted a few listings in July. Tonight, however, their onion site has a seized message:

” THIS HIDDEN SITE HAS BEEN SEIZED
by the State Bureau of Investigation Baden-Württemberg as a part of a law enforcement action taken against Vanir Ransomware Group “

databreaches EN 2024 Vanir Ransomware Group seized
Port of Seattle refuses to pay Rhysida ransom, warns of data leak https://therecord.media/seattle-port-rhysida-ransom-refused
18/09/2024 09:12:42
QRCode
archive.org
thumbnail

The cyberattack over Labor Day weekend severely hampered operations at Seattle's airport, which is managed by the Port of Seattle.

therecord.media EN 2024 Seattle port US Rhysida ransom no-pay
VMware Patches Remote Code Execution Flaw Found in Chinese Hacking Contest https://www.securityweek.com/vmware-patches-remote-code-execution-flaw-found-in-chinese-hacking-contest/
17/09/2024 21:52:46
QRCode
archive.org

VMware warned that an attacker with network access could send a specially crafted packet to execute remote code. CVSS severity score 9.8/10.

securityweek EN 2024 CVE-2024-38812 CVE-2024-38813 VMware RCE vulnerability
How Lazarus Group laundered $200M from 25+ crypto hacks to fiat … https://zachxbt.mirror.xyz/B0-UJtxN41cJhpPtKv0v2LZ8u-0PwZ4ecMPEdX4l8vE
17/09/2024 20:35:11
QRCode
archive.org
thumbnail

Bluenoroff or APT38, more commonly referred to as Lazarus Group is a threat group which has been tied to the North Korean government since as early as 2009 primarily being financially motivated utilizing malware custom built for each target.

Early on, the threat group gained notoriety for cyberattacks such as Sony Pictures Hack in 2014 and $81M Bangladesh Bank heist in 2016 and in more recent years has shifted focus to targets in the cryptocurrency industry.

Analytics firms such as TRM and Chainalysis release annual reports summarizing crypto related incidents linked to DPRK and since 2017 they estimate between $3B to $4.1B has been stolen.

zachxbt EN 2024 Bluenoroff APT38 LazarusGroup NorthKorean laundering money
An Offer You Can Refuse: UNC2970 Backdoor Deployment Using Trojanized PDF Reader https://cloud.google.com/blog/topics/threat-intelligence/unc2970-backdoor-trojanized-pdf-reader/?hl=en
17/09/2024 16:34:58
QRCode
archive.org
thumbnail

UNC2970 is a cyber espionage group suspected to have a North Korea nexus.

Mandiant 2024 UNC2970 Backdoor PDF PDF-Reader North North-Korea
Qilin ransomware attack on Synnovis impacted over 900K patients https://securityaffairs.com/168480/data-breach/qilin-attack-on-synnovis-impacted-900000-patients.html
17/09/2024 09:54:46
QRCode
archive.org
thumbnail

The personal information of a million individuals was leaked online following a ransomware attack that in June hit NHS hospitals in London.

securityaffairs EN 2024 Qilin Synnovis PII NHS ransomware data-leak London Healthcare London UK
Microsoft working on OS update to prevent another IT outage https://www.theregister.com/2024/09/13/microsoft_is_updating_windows_to/
16/09/2024 16:02:05
QRCode
archive.org
thumbnail

Existing low-level access for security solutions will undergo a rework

theregister EN 2024 crowdstrike cyberincident microsoft Kernel EDR update
Hadooken Malware Targets Weblogic Applications https://www.aquasec.com/blog/hadooken-malware-targets-weblogic-applications/
16/09/2024 15:59:33
QRCode
archive.org
thumbnail

Nautilus researchers identified a new Linux malware targeting Weblogic servers with running Hadooken malware

aquasec EN 2024 Hadooken Malware Weblogic Applications Oracle weak-password
Apple is well on its way to making iPhones theft-proof https://9to5mac.com/2024/09/13/making-iphones-theft-proof/
16/09/2024 15:56:24
QRCode
archive.org
thumbnail

Apple’s latest theft-prevention measure went live for beta testers yesterday: Activation Lock for iPhone components. The move is likely to...

9to5mac EN 2024 Apple iPhone Activation-Lock parts components theft-proof
page 22 / 76
4527 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio