Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 226 / 239
Operation CuckooBees: Cybereason Uncovers Massive Chinese Intellectual Property Theft Operation https://www.cybereason.com/blog/operation-cuckoobees-cybereason-uncovers-massive-chinese-intellectual-property-theft-operation
06/05/2022 16:55:57
QRCode
archive.org
thumbnail

Cybereason recently an attack assessed to be the work of Chinese APT Winnti that operated undetected, siphoning intellectual property and sensitive data - the two companion reports examine the tactics and techniques of the overall campaign as well as more detailed analysis of the malware arsenal and exploits used...

cybereason 2022 EN CuckooBees Winnti APT APT41 intellectual property siphoning Theft
Apple, Google and Microsoft Commit to Expanded Support for FIDO Standard to Accelerate Availability of Passwordless Sign-Ins https://fidoalliance.org/apple-google-and-microsoft-commit-to-expanded-support-for-fido-standard-to-accelerate-availability-of-passwordless-sign-ins/
06/05/2022 16:19:39
QRCode
archive.org
thumbnail

Faster, easier and more secure sign-ins will be available to consumers across leading devices and platforms  Mountain View, California, MAY 5, 2022  – In a joint effort to make the web […]

FIDO fidoalliance EN 2022 Google Apple Microsoft Passwordless password Standard
How Data Brokers Sell Access to the Backbone of the Internet https://www.vice.com/en/article/jg84yy/data-brokers-netflow-data-team-cymru
06/05/2022 15:12:32
QRCode
archive.org
thumbnail

ISPs are quietly distributing "netflow" data that can, among other things, trace traffic through VPNs.

vice 2021 EN VPN Backbone Privacy netflow Data Brokers
Update on cyber activity in Eastern Europe https://blog.google/threat-analysis-group/update-on-cyber-activity-in-eastern-europe/
04/05/2022 14:57:53
QRCode
archive.org
thumbnail

An update on cyber activity in eastern Europe.

GoogleTAG Eastern Europe APT28 Turla COLDRIVER Ghostwriter
Nozomi Networks Discovers Unpatched DNS Bug in Popular C Standard Library Putting IoT at Risk https://www.nozominetworks.com/blog/nozomi-networks-discovers-unpatched-dns-bug-in-popular-c-standard-library-putting-iot-at-risk/
04/05/2022 10:41:30
QRCode
archive.org
thumbnail

Nozomi Networks Labs has disclosed an unpatched vulnerability affecting the DNS of popular C standard libraries potentially in use by millions of IoT devices: uClibc and uClibc-ng.

Nozomi EN 2022 C uClibc uClibc-ng vulnerability ICS-VU-638779
UNC3524: Eye Spy on Your Email https://www.mandiant.com/resources/unc3524-eye-spy-email
03/05/2022 17:16:56
QRCode
archive.org
thumbnail

We introduce UNC3524, a newly discovered suspected espionage threat actor targeting corporate emails.

Mandiant EN 2022 Email espionage corporate emails QUIETEXIT
Google Online Security Blog: The Package Analysis Project: Scalable detection of malicious open source packages https://security.googleblog.com/2022/04/the-package-analysis-project-scalable.html
03/05/2022 09:58:30
QRCode
archive.org
thumbnail

Despite open source software’s essential role in all software built today, it’s far too easy for bad actors to circulate malicious packages that attack the systems and users running that software. Unlike mobile app stores that can scan for and reject malicious contributions, package repositories have limited resources to review the thousands of daily updates and must maintain an open model where anyone can freely contribute. As a result, malicious packages like ua-parser-js, and node-ipc are regularly uploaded to popular repositories despite their best efforts, with sometimes devastating consequences for users.

google 2022 EN opensource Package Analysis Project malicious packages
Spanish prime minister’s phone ‘targeted with Pegasus spyware’ https://www.theguardian.com/world/2022/may/02/spain-prime-minister-pedro-sanchez-phone-pegasus-spyware
03/05/2022 07:47:19
QRCode
archive.org
thumbnail

The Spanish government has said the mobile phones of the prime minister, Pedro Sánchez, and the defence minister, Margarita Robles, were both infected last year with the Pegasus spyware that its manufacturers claim is available only to state agencies.

theguardian en 2022 pegasus minister Spain spy
Russia’s cyber warfare against Ukraine more nuanced than expected https://thehill.com/policy/cybersecurity/3472214-russias-cyber-warfare-against-ukraine-more-nuanced-than-expected/
02/05/2022 15:49:41
QRCode
archive.org
thumbnail

Russia’s approach to cyber warfare against Ukraine has proved more subtle so far than many expected. This week’s Microsoft report on the operations reveals that Moscow-backed hackers have launched more than 200 cyberattacks against Ukraine, including nearly 40 destructive ones that targeted the country’s government organizations and critical sectors.  Cyber experts say the analysis suggests…

thehill EN 2022 cyberwarfare Russia Ukraine nuanced
Russian troops in Melitopol plunder $5M farm vehicles from Ukraine -- to find they've been remotely disabled https://edition.cnn.com/2022/05/01/europe/russia-farm-vehicles-ukraine-disabled-melitopol-intl/index.html
02/05/2022 15:44:49
QRCode
archive.org
thumbnail

Russian troops in the occupied city of Melitopol have stolen all the equipment from a farm equipment dealership -- and shipped it to Chechnya, according to a Ukrainian businessman in the area.

CNN EN cyberwar farm vehicles JohnDeere locked remotely Russia
Introducing Package Analysis: Scanning open source packages for malicious behavior https://openssf.org/blog/2022/04/28/introducing-package-analysis-scanning-open-source-packages-for-malicious-behavior/
02/05/2022 10:50:10
QRCode
archive.org

Today we’re pleased to announce the initial prototype version of the Package Analysis project, an OpenSSF project addressing the challenge of identifying malicious packages in popular open source repositories. In just one month of analysis, the project identified more than 200 malicious packages uploaded to PyPI and npm.

openssf EN 2022 Analysis Scan opensource packages Package behavior
How the French fiber optic cable attacks accentuate critical infrastructure vulnerabilities https://www.cyberscoop.com/french-fiber-optic-cables-attack-critical-infrastructure/
01/05/2022 18:31:34
QRCode
archive.org
thumbnail

The pictures show neatly trimmed fiber optic cables dug up from underground behind what appears to be a well-hidden grate. The apparent simplicity of the sabotage is all the more harrowing in light of how extensively it disrupted Internet service in France, experts said.

cyberscoop 2022 en fiber optical cable attack French
OverWatch Insights: Reviewing a New Intrusion Targeting Mac Systems https://www.crowdstrike.com/blog/overwatch-insights-reviewing-a-new-intrusion-targeting-mac-systems/
28/04/2022 14:07:04
QRCode
archive.org
thumbnail

While Mac enterprise networks are not as common as Windows, and subject to less targeting by adversaries, recent CrowdStrike Falcon Overwatch observations shed light on sophisticated tactics, techniques and procedures (TTPs) targeting Mac environments.

crowdstrike 2018 EN Mac macos tactics TTP Intrusion
2021 Top Routinely Exploited Vulnerabilities | CISA https://www.cisa.gov/uscert/ncas/alerts/aa22-117a
28/04/2022 13:58:05
QRCode
archive.org

This joint Cybersecurity Advisory (CSA) was coauthored by cybersecurity authorities of the United States, Australia, Canada, New Zealand, and the United Kingdom: the Cybersecurity and Infrastructure Security Agency (CISA), National Security Agency (NSA), Federal Bureau of Investigation (FBI), Australian Cyber Security Centre (ACSC), Canadian Centre for Cyber Security (CCCS),

cisa uscert csirt cert U.-S.-Computer-Emergency-Readiness top 2021 top2021 EN 2022 Vulnerabilities
What does APT Activity Look Like on MacOS? https://themittenmac.com/what-does-apt-activity-look-like-on-macos/
28/04/2022 10:54:25
QRCode
archive.org
thumbnail

What does APT Activity Look Like on macOS?I often get asked what Advanced Persistent Activity (APT) or nation state hacking looks like on a macOS system. This is a great question and the answer is no

themittenmac 2021 EN APT MacOS activity
Jamf Threat Labs identifies Safari vulnerability (CVE-2022-22616) allowing for Gatekeeper bypass https://www.jamf.com/blog/jamf-threat-labs-safari-vuln-gatekeeper-bypass/
28/04/2022 10:52:08
QRCode
archive.org
thumbnail

The identified vulnerability allows bypassing of Gatekeeper security and app notorization, has been patched by Apple.

jamf 2022 EN Safari CVE-2022-22616 Gatekeeper Apple macOS
Dec0ne/KrbRelayUp: KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings). https://github.com/Dec0ne/KrbRelayUp
27/04/2022 10:54:45
QRCode
archive.org
thumbnail

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings). - GitHub - Dec0ne/KrbRelayUp: KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

GitHub EN 2022 no-fix vulnerability Windows LDAP domain signing KrbRelayUp privilege escalation
Microsoft finds new elevation of privilege Linux vulnerability, Nimbuspwn https://www.microsoft.com/security/blog/2022/04/26/microsoft-finds-new-elevation-of-privilege-linux-vulnerability-nimbuspwn/
27/04/2022 10:53:04
QRCode
archive.org
thumbnail

Microsoft has discovered several vulnerabilities, collectively referred to as Nimbuspwn, that could be chained together, allowing an attacker to elevate privileges to root on many Linux desktop endpoints. Leveraging Nimbuspwn as a vector for root access could allow attackers to achieve greater impact on vulnerable devices by deploying payloads and performing other malicious actions via arbitrary root code execution.

Nimbuspwn microsoft EN 2022 CVE-2022-29799 CVE-2022-29800 vulnerability Linux D-Bus TOCTOU networkd-dispatcher
Kaspersky DDoS report, Q1 2022 https://securelist.com/ddos-attacks-in-q1-2022/106358/
26/04/2022 16:46:44
QRCode
archive.org
thumbnail

Against the backdrop of the conflict between Russia and Ukraine, the number of DDoS attacks in Q1 2022 increased by 4.5 times against Q1 2021. A significant proportion of them were by hacktivists.

securelist Kaspersky Botnets Cybercrime DDoS-attacks Internet-of-Things 2022 EN 2022 report DDoS
Zero Tolerance: More Zero-Days Exploited in 2021 Than Ever Before https://www.mandiant.com/resources/zero-days-exploited-2021
24/04/2022 21:47:50
QRCode
archive.org
thumbnail

We identified 80 zero-days exploited in the wild in 2021, more than we've seen in any year.

mandiant 2022 EN 0-days Review year
page 226 / 239
4762 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio