Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 231 / 253
From cookie theft to BEC: Attackers use AiTM phishing sites as entry point to further financial fraud https://www.microsoft.com/security/blog/2022/07/12/from-cookie-theft-to-bec-attackers-use-aitm-phishing-sites-as-entry-point-to-further-financial-fraud/
17/07/2022 21:33:46
QRCode
archive.org
thumbnail

A large-scale phishing campaign that attempted to target over 10,000 organizations since September 2021 used adversary-in-the-middle (AiTM) phishing sites to steal passwords, hijack a user’s sign-in session, and skip the authentication process, even if the user had enabled multifactor authentication (MFA).

microsoft EN 2022 phishing MFA AiTM hijack session
Ongoing phishing campaign can hack you even when you’re protected with MFA https://arstechnica.com/information-technology/2022/07/microsoft-details-phishing-campaign-that-can-hijack-mfa-protected-accounts/
17/07/2022 21:30:40
QRCode
archive.org
thumbnail

Campaign that steals email has targeted at least 10,000 organizations since September.

arstechnica EN 2022 phishing microsoft MFA campaign
European Central Bank head targeted in hacking attempt https://apnews.com/article/technology-angela-merkel-european-central-bank-4cd599a7502d9617a401155abf054502
17/07/2022 21:14:04
QRCode
archive.org
thumbnail

BERLIN (AP) — The European Central Bank said Tuesday that its president, Christine Lagarde, was targeted in a hacking attempt but no information was compromised. The attempt took place “recently,” the Frankfurt-based central bank for the 19 countries that use the euro said in an emailed response to a query about a report by Business Insider.

apnews EN 2022 whaling Christine-Lagarde Europe Angela-Merkel European-Central-Bank WhatsApp
ChromeLoader: New Stubborn Malware Campaign https://unit42.paloaltonetworks.com/chromeloader-malware/
17/07/2022 08:47:41
QRCode
archive.org

In January 2022, a new browser hijacker/adware campaign named ChromeLoader (also known as Choziosi Loader and ChromeBack) was discovered. Despite using simple malicious advertisements, the malware became widespread, potentially leaking data from thousands of users and organizations.

unit42 EN 2022 ChromeLoader malware browser hijacker adware extension
The Trojan Horse Malware & Password “Cracking” Ecosystem Targeting Industrial Operators https://www.dragos.com/blog/the-trojan-horse-malware-password-cracking-ecosystem-targeting-industrial-operators/
16/07/2022 21:08:50
QRCode
archive.org

Learn more about Dragos's discovery of an exploit introduced through password "cracking" software that targets industrial engineers and operators.

dragos EN 2022 ICS password-cracker trojan industrial
Vice Society: a discreet but steady double extortion ransomware group https://blog.sekoia.io/vice-society-a-discreet-but-steady-double-extortion-ransomware-group/
15/07/2022 22:47:27
QRCode
archive.org
thumbnail

Vice Society is a little-known double extortion group that exfiltrates its victims' data and threatens its victims to leak their information.

sekoia EN 2022 vice-society extortion leak
Why organizations should (and should not) worry about… https://intel471.com/blog/killnet-xaknet-legion-ddos-attacks
15/07/2022 22:44:12
QRCode
archive.org
thumbnail

KillNet will continue to grow as the war in Ukraine continues, but the group is limited in its capabilities.

Intel471 killnet Russia TTPs
How to Assess an E-voting System https://freedom-to-tinker.com/2022/06/27/how-to-assess-an-e-voting-system/
15/07/2022 22:25:29
QRCode
archive.org

If I can shop and bank online, why can’t I vote online? David Jefferson explained in 2011 why internet voting is so difficult to make secure, I summarized again in 2021 why internet voting is still inherently insecure, and many other experts have explained it too. Still, several countries and several U.S. states have offered e-voting to some of their citizens. In many cases they plunge forward without much consideration of whether their e-voting system is really secure, or whether it could be hacked to subvert democracy. It’s not enough just to take the software vendor’s word for it.

freedom-to-tinker EN 2022 e-vôté CH assessment analysis
The US military wants to understand the most important software on Earth https://www.technologyreview.com/2022/07/14/1055894/us-military-sofware-linux-kernel-open-source/
15/07/2022 22:19:12
QRCode
archive.org
thumbnail

Open-source code runs on every computer on the planet—and keeps America’s critical infrastructure going. DARPA is worried about how well it can be trusted

technologyreview EN 2022 Linux DARPA kernel trust US
A New Attack Can Unmask Anonymous Users on Any Major Browser https://www.wired.com/story/web-deanonymization-side-channel-attack-njit/
14/07/2022 21:03:17
QRCode
archive.org
thumbnail

Researchers have found a way to use the web's basic functions to identify who visits a site—without the user detecting the hack.

Wired EN 2022 browsers browser vulnerabilities hacking identify attack side-channel
En Suisse, les Tesla filmant en permanence posent de gros problèmes https://www.letemps.ch/economie/suisse-tesla-filmant-permanence-posent-gros-problemes
14/07/2022 18:18:45
QRCode
archive.org
thumbnail

Francine Jeanprêtre, ancienne conseillère nationale et conseillère d’Etat vaudoise, a été dénoncée à la police après avoir été filmée par une Tesla qu’elle aurait endommagée sur un parking. Selon les autorités fédérales, cette pratique est illégale

letemps FR CH Tesla droit vidéo Privacy police Jeanprêtre
Uncovering a macOS App Sandbox escape vulnerability: A deep dive into CVE-2022-26706 - Microsoft Security Blog https://www.microsoft.com/security/blog/2022/07/13/uncovering-a-macos-app-sandbox-escape-vulnerability-a-deep-dive-into-cve-2022-26706/
13/07/2022 21:44:52
QRCode
archive.org
thumbnail

Microsoft uncovered a vulnerability in macOS that could allow specially crafted codes to escape the App Sandbox and run unrestricted on the system. We shared these findings with Apple, and fix for this vulnerability, now identified as CVE-2022-26706, was included in the security updates on May 16, 2022.

microsoft EN 2022 CVE-2022-26706 macOS Sandbox escape Apple
Europe’s PegasusGate: Countering spyware abuse https://epthinktank.eu/2022/07/07/europes-pegasusgate-countering-spyware-abuse/
13/07/2022 21:13:19
QRCode
archive.org
thumbnail

As civil society and media organisations expose EU Member States' use of the Pegasus commercial spyware, one of the most high-profile spying scandals of recent years is coming to light in Europe.

epthinktank EN 2022 Pegasus pegasusgate EU spyware report Europe
Russia, Killnet ha dichiarato guerra ai paesi che sostengono l'Ucraina https://www.wired.it/article/russia-ucraina-attacchi-hactivisti-paesi-occidentali-killnet-xaknet/
13/07/2022 19:36:10
QRCode
archive.org
thumbnail

Negli ultimi mesi il gruppi cyber e altre organizzazioni vicine al governo del paese hanno tempestato di attacchi i siti delle nazioni che si sono schierati a favore di Kiev

Wiredit IT 2022 Killnet russia guerra la-guerra-del-futuro ucraina
Retbleed – serious vulnerability discovered in microprocessors https://www.ncsc.admin.ch/retbleed-en
12/07/2022 21:32:11
QRCode
archive.org

12.07.2022 - Security researchers from the ETH Zürich have discovered a serious security vulnerability in Intel and AMD microprocessors. The vulnerability, called Retbleed, potentially allows an attacker to access any memory area. Initial countermeasures have already been defined. The NCSC has assigned the internationally valid CVE identifiers for the vulnerability of both manufacturers.

NCSC EN 2022 retbleed Vulnerability CVE-2022-29900 CVE-2022-29901
Verified Twitter accounts phished via hate speech warnings https://blog.malwarebytes.com/social-engineering/2022/07/verified-twitter-accounts-phished-via-hate-speech-warnings/
12/07/2022 18:55:28
QRCode
archive.org
thumbnail

We take a look at reports that verified Twitter accounts are being targeted by scammers with claims of hate speech.

malwarebytes EN 2022 Social-Engineering Twitter phishing hate-speech verified
Predatory Sparrow: Who are the hackers who say they started a fire in Iran? https://www.bbc.com/news/technology-62072480
11/07/2022 20:08:45
QRCode
archive.org
thumbnail

Experts are asking who is behind Predatory Sparrow, the group which says it started a fire in an Iranian factory.

BBC EN 2022 Predatory-Sparrow Iran Israel fire hackers
THREAT ALERT: Raspberry Robin Worm Abuses Windows Installer and QNAP Devices https://www.cybereason.com/blog/threat-alert-raspberry-robin-worm-abuses-windows-installer-and-qnap-devices
11/07/2022 09:53:24
QRCode
archive.org
thumbnail

Raspberry Robin involves a worm that spreads over USB devices or shared folders, leveraging compromised QNAP (Network Attached Storage or NAS) devices as stagers and an old but still effective method of using “LNK” shortcut files to lure its victims...

cybereason 2022 EN Raspberry-Robin report
Identifier les détenteurs de véhicules peut être dangereux, en Suisse comme aux Etats-Unis https://www.letemps.ch/node/1328240
11/07/2022 08:05:08
QRCode
archive.org
thumbnail

Aux Etats-Unis, l’identification des propriétaires de voitures via leur plaque d’immatriculation est un secteur commercial à part entière, faisant peser un risque sur les femmes désirant avorter. En Suisse, l’identification à la portée de tous peut aussi poser problème

The Danger of License Plate Readers in Post-Roe America | WIRED https://www.wired.com/story/license-plate-reader-alpr-surveillance-abortion/?bxid=607e80a181fb585c2f062a78&cndid=64722923&esrc=growl2-regGate-1120&mbid=mbid%3DCRMWIR012019%0A%0A&source=EDT_WIR_NEWSLETTER_0_DAILY_ZZ
11/07/2022 08:04:59
QRCode
archive.org
thumbnail

Known as ALPRs, this surveillance tech is pervasive across the US—and could soon be used by police and anti-abortion groups alike.

page 231 / 253
5049 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn