Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 23 / 76
1513 résultats taggé 2024  ✕
SolarWinds fixed critical RCE CVE-2024-28991 in Access Rights Manager https://securityaffairs.com/168456/security/solarwinds-fixed-rce-cve-2024-28991.html
16/09/2024 15:50:10
QRCode
archive.org
thumbnail

SolarWinds addressed a critical remote code execution vulnerability, tracked as CVE-2024-28991, in Access Rights Manager.

securityaffairs EN 2024 SolarWinds RCE CVE-2024-28991 ARM Access Rights Manager
Multiple attacks forces CISA to order agencies to upgrade or remove end-of-life Ivanti appliance https://therecord.media/cisa-urges-federal-agencies-remove-ivanti-product
16/09/2024 15:48:50
QRCode
archive.org
thumbnail

The nation’s top cyber watchdogs urged federal agencies to either remove or upgrade an Ivanti appliance that is no longer being updated and has been exploited in attacks.

therecord.media EN 2024 CISA Ivanti remove appliances End-of-Life
German radio station forced to broadcast 'emergency tape' following cyberattack https://therecord.media/germany-cyberattack-radio-geretsried
16/09/2024 15:46:10
QRCode
archive.org
thumbnail

Radio Geretsried, a local station in Bavaria, said it was trying to save music files and restore systems after an apparent ransomware attack.

therecord.media EN 2024 Radio Geretsried Germany ransomware
23andMe Agrees To $30 Million Settlement For Last Year's Data Breach https://au.pcmag.com/security/107248/23andme-agrees-to-30-million-settlement-for-last-years-data-breach
16/09/2024 15:32:39
QRCode
archive.org
thumbnail

Affected users can try to claim up to $10,000 if the breach at 23andMe led to financial fraud or paying up for security or mental health services.

pcmag EN 2024 23andMe Settlement Data-Breach
Scammers advertise fake AppleCare+ service via GitHub repos https://www.malwarebytes.com/blog/scams/2024/09/scammers-advertise-fake-applecare-service-via-github-repos
14/09/2024 21:30:04
QRCode
archive.org
thumbnail

Beware before calling Apple for assistance as scammers are creating malicious ads and fake pages to lure you in.

malwarebytes EN 2024 Scammers AppleCare+ GitHub repos
'Vo1d' Trojan Malware Infects 1.3 Million Android-Based TV Boxes Globally https://www.pcmag.com/news/vo1d-trojan-malware-infects-13-million-android-tv-boxes-globally
14/09/2024 21:27:36
QRCode
archive.org

Antivirus firm Dr.Web has flagged a type of Android malware known as Android.Vo1d that has infected about 1.3 million TV boxes across 197 countries.

The malware effectively enables a backdoor into the TV box's system that allows an attacker to download and install malicious third-party software. The R4 TV box model running Android 7.1.2, a TV Box running Android 12.1, and the KJ-SMART4KVIP TV box running Android 10.1 were the types of devices reportedly impacted.

pcmag EN 2024 Vo1d EN 2024 androidTV TV Box KJ-SMART4KVIP Trojan Malware
UK arrests teen linked to Transport for London cyber attack https://www.bleepingcomputer.com/news/security/uk-arrests-teen-linked-to-transport-for-london-cyber-attack/
14/09/2024 21:20:32
QRCode
archive.org
thumbnail

U.K.'s National Crime Agency says it arrested a 17-year-old teenager who is suspected of being connected to the cyberattack on Transport for London, the city's public transportation agency.

bleepingcomputer EN 2024 Arrest Cyberattack London Teenager TfL Transport-for-London United-Kingdom UK
Zero-Click Calendar invite — Critical zero-click vulnerability chain in macOS https://mikko-kenttala.medium.com/zero-click-calendar-invite-critical-zero-click-vulnerability-chain-in-macos-a7a434fc887b
14/09/2024 21:10:30
QRCode
archive.org

I found a zero-click vulnerability in macOS Calendar, which allows an attacker to add or delete arbitrary files inside the Calendar sandbox environment. This could lead to many bad things including malicious code execution which can be combined with security protection evasion with Photos to compromise users’ sensitive Photos iCloud Photos data. Apple has fixed all of the vulnerabilities between October 2022 and September 2023.

mikko-kenttala EN 2024 Critical zero-click macos vulnerability
Distributed Denial of Truth (DDoT): The Mechanics of Influence Operations and The Weaponization of Social Media https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/distributed-denial-of-truth-ddot-the-mechanics-of-influence-operations-and-the-weaponization-of-social-media/
14/09/2024 14:56:50
QRCode
archive.org
thumbnail

With the US election on the horizon, it’s a good time to explore the concept of social media weaponization and its use in manipulating public opinion.

trustwave EN 2024 DDoT Distributed Denial Truth US election manipulating disinformation
Apple Suddenly Drops NSO Group Spyware Lawsuit https://www.securityweek.com/apple-suddenly-drops-nso-group-spyware-lawsuit/
14/09/2024 13:21:00
QRCode
archive.org

Apple said there’s “too significant a risk” of exposing the anti-exploit work needed to fend off the very adversaries involved in the case.

securityweek EN 2024 Apple NSO Group Spyware Lawsuit
Ils réclament 3 millions à la Banque cantonale de Zurich: 4 jeunes arrêtés https://www.bluewin.ch/fr/infos/faits-divers/quatre-arrestations-apr-s-un-chantage-contre-la-zkb-zurich-2365153.html
14/09/2024 12:53:08
QRCode
archive.org
thumbnail

Quatre jeunes Suisses ont été arrêtés pour avoir tenté de faire chanter la Banque cantonale de Zurich (ZKB). Ils ont exigé des bitcoins d'une valeur de trois millions de francs, faute de quoi les données de clients de la banque seraient publiées.

bluewin FR 2024 zurich banque chantage suisse
Chinese APT Abuses VSCode to Target Government in Asia https://unit42.paloaltonetworks.com/stately-taurus-abuses-vscode-southeast-asian-espionage/
14/09/2024 12:35:33
QRCode
archive.org
thumbnail

A first in our telemetry: Chinese APT Stately Taurus uses Visual Studio Code to maintain a reverse shell in victims' environments for Southeast Asian espionage. A first in our telemetry: Chinese APT Stately Taurus uses Visual Studio Code to maintain a reverse shell in victims' environments for Southeast Asian espionage.

unit42 EN 2024 China APT StatelyTaurus VisualStudio
In Wake of Durov Arrest, Some Cybercriminals Ditch Telegram https://www.404media.co/in-wake-of-durov-arrest-some-cybercriminals-ditch-telegram/
14/09/2024 12:33:22
QRCode
archive.org
thumbnail

Hackers, fraudsters, and drug dealers are all leaving the platform in one way or another. Some are worried that Telegram may start providing user data to the authorities.

404media EN 2024 Telegram Hackers fraudsters Durov leaving
RansomHub claims Kawasaki cyberattack, threatens to leak stolen data https://www.bleepingcomputer.com/news/security/ransomhub-claims-kawasaki-cyberattack-threatens-to-leak-stolen-data/
14/09/2024 12:29:15
QRCode
archive.org
thumbnail

Kawasaki Motors Europe has announced that it's recovering from a cyberattack that caused service disruptions as the RansomHub ransomware gang threatens to leak stolen data.

bleepingcomputer EN 2024 Data-Breach Kawasaki RansomHub Ransomware
Kawasaki’s European HQ recovers from cyber attack https://www.kawasaki.eu/en/News_and_events/kawasaki-european-HQ-recovers-from-cyber-attack.html
14/09/2024 12:28:40
QRCode
archive.org

At the start of September, Kawasaki Motors Europe, (KME) was the subject of a cyber-attack which, although not successful, resulted in the company’s servers being temporarily isolated until a strategic recovery plan was initiated later on the same day.
KME and its country Branches operate a large number of servers and, as a precaution, it was decided to isolate each one and put a cleansing process in place whereby all data was checked and any suspicious material identified and dealt with.

kawasaki EN 2024 cyberattack annonce ransomware
Data centres as vital as NHS and power grid, government says https://www.bbc.com/news/articles/c23ljy4z05mo?is=09685296f9ea1fb2ee0963f2febaeb3a55d8fb1eddbb11ed4bd2da49d711f2c7
14/09/2024 10:32:25
QRCode
archive.org
thumbnail

Data centres in the UK are to be classified as critical national infrastructure, joining the emergency services, finance and healthcare systems, and energy and water supplies.
It means they would get extra government support during a major incident, such as a cyber attack, an IT outage or extreme weather, in order to minimise disruption.

bbc EN 2024 Critical-infrastructure datacenters UK
CVE-2024-29847 Deep Dive: Ivanti Endpoint Manager AgentPortal Deserialization of Untrusted Data Remote Code Execution Vulnerability – Horizon3.ai https://www.horizon3.ai/attack-research/attack-blogs/cve-2024-29847-deep-dive-ivanti-endpoint-manager-agentportal-deserialization-of-untrusted-data-remote-code-execution-vulnerability/
13/09/2024 16:59:44
QRCode
archive.org
thumbnail

CVE-2024-29847 Ivanti Endpoint Manager AgentPortal Deserialization of Untrusted Data Remote Code Execution Vulnerability.

horizon3 EN 2024 CVE-2024-29847 Ivanti Endpoint Manager AgentPortal Deserialization analysis
TfL confirms 5,000 customers' bank data exposed https://www.theregister.com/2024/09/12/transport_for_londons_cyber_attack/
13/09/2024 07:38:38
QRCode
archive.org
thumbnail

Transport for London's ongoing cyber incident has taken a dark turn as the organization confirmed that some data, including bank details, might have been accessed, and 30,000 employees' passwords will need to be reset via in-person appointments.

theregister EN 2024 Transport for London incident UK data exposed Data-Breach
Hold – Verify – Execute: Rise of Malicious POCs Targeting Security Researchers https://blog.sonicwall.com/en-us/2024/09/hold-verify-execute-rise-of-malicious-pocs-targeting-security-researchers/
12/09/2024 21:14:57
QRCode
archive.org
thumbnail

Overview While investigating CVE-2024-5932, a code injection vulnerability in the GiveWP WordPress plugin, our team encountered a malicious Proof of Concept (POC) targeting cybersecurity professionals. This has become a growing threat to cybersecurity professionals from […]

blog.sonicwall EN 2024 CVE-2024-5932 malicious-POC POC Researchers cybersecurity professionals
Fortinet suffers third-party data breach affecting Asia-Pacific customers - Cyber Daily https://www.cyberdaily.au/security/11098-fortinet-suffers-third-party-data-breach-affecting-asia-pacific-customers
12/09/2024 16:13:59
QRCode
archive.org
thumbnail

International cyber security giant Fortinet has disclosed that it has suffered a data breach.

cyberdaily EN 2024 Fortinet Data-Breach
page 23 / 76
4527 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio