Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 25 / 76
1513 résultats taggé 2024  ✕
Swiss found to be gullible regarding fake news https://www.swissinfo.ch/eng/democracy/swiss-found-to-be-gullible-regarding-fake-news/87475624
07/09/2024 12:14:58
QRCode
archive.org
thumbnail

The Swiss do not seem to be particularly good at separating truth from lies, according to a study by the Organisation for Economic Co-operation and Development (OECD).

The Truth Quest Survey involved 40,765 participants in 21 countries. The 1,531 participants from Switzerland came third from last. Only Colombia and Brazil did worse. The US and France were also in the bottom third of the international comparison. By contrast, the best results were achieved by participants from Finland, the UK and Norway.

swissinfo EN 2024 Swiss OECD fake-news study
Predator Spyware Infrastructure Resurfaces Post-Sanctions – What You Need to Know https://www.recordedfuture.com/research/predator-spyware-infrastructure-returns-following-exposure-sanctions
07/09/2024 12:06:12
QRCode
archive.org
thumbnail

Intellexa’s Predator spyware infrastructure re-emerges after sanctions. Learn how this mercenary spyware is evolving, targeting high-profile individuals, and what defensive measures can be taken.

recordedfuture EN 2024 Predator spyware infrastructure re-emerges Intellexa
D-Link says it is not fixing four RCE flaws in DIR-846W routers https://www.bleepingcomputer.com/news/security/d-link-says-it-is-not-fixing-four-rce-flaws-in-dir-846w-routers/
07/09/2024 12:02:52
QRCode
archive.org
thumbnail

D-Link is warning that four remote code execution (RCE) flaws impacting all hardware and firmware versions of its DIR-846W router will not be fixed as the products are no longer supported.

bleepingcomputer EN 2024 D-Link End-of-Life End-of-Service Hardware RCE Remote-Code-Execution Vulnerability DIR-846W
Sextortion Scams Now Include Photos of Your Home https://krebsonsecurity.com/2024/09/sextortion-scams-now-include-photos-of-your-home/
07/09/2024 11:55:39
QRCode
archive.org

An old but persistent email scam known as "sextortion" has a new personalized touch: The missives, which claim that malware has captured webcam footage of recipients pleasuring themselves, now include a photo of the target's home in a bid to make…

krebsonsecurity EN 2024 Sextortion Scams Photos home
U.S. charges five Russian military members for destructive cyber ops, hack-and-leak campaigns | CyberScoop https://cyberscoop.com/u-s-charges-five-russian-military-members-for-destructive-cyber-ops-hack-and-leak-campaigns/
07/09/2024 11:53:16
QRCode
archive.org
thumbnail

The hackers were working with a unit in the Russian Main Intelligence Directorate, according to the DOJ.

cyberscoop EN 2024 US charged GRU DOJ Russia destructives cyberops
Obfuscated PowerShell leads to Lumma C2 Stealer https://www.ontinue.com/resource/obfuscated-powershell-leads-to-lumma-c2-stealer/
07/09/2024 11:46:07
QRCode
archive.org
thumbnail

Ontinue Cyber Defenders have observed an uptick in activities related to the LummaC2 infostealer being used as a Malware-as-a-Service.

ontinue EN 2024 obfuscated Powershell analysis Lumma LummaC2 Stealer Malware-as-a-Service
Recent SonicWall Firewall Vulnerability Potentially Exploited in the Wild https://www.securityweek.com/recent-sonicwall-firewall-vulnerability-potentially-exploited-in-the-wild/
06/09/2024 17:15:22
QRCode
archive.org

SonicWall is warning customers that the recently patched critical vulnerability CVE-2024-40766 may be exploited in the wild.

securityweek EN 2024 Vulnerability CVE-2024-40766 exploited
Online AI Mental Health and Addiction Treatment Provider Exposed Patient Data https://www.vpnmentor.com/news/report-confidanthealth-breach/
06/09/2024 14:55:45
QRCode
archive.org
thumbnail

Thousands of records belonging to Confidant Health exposed on a non-password-protected database, including ID, insurance, medicaid cards, and more.

vpnmentor EN 2024 Data-Leak OnlineAI Mental Health Patient Data health
Quarante pourcents de la population se tourne vers l'IA https://www.swissinfo.ch/fre/quarante-pourcents-de-la-population-se-tourne-vers-l%27ia/87498532
06/09/2024 11:42:02
QRCode
archive.org
thumbnail

Environ 40% de la population suisse se sert d'outils d'intelligence artificielle tels que ChatGPT. Chez les jeunes, leur utilisation est très répandue, alors que les plus âgés y ont moins recours. La TV et l'audio, en revanche, sont appréciés de toutes les générations.

swissinfo ChatGPT Suisse IA FR 2024 statistiques
U.S. Seizes 32 Pro-Russian Propaganda Domains in Major Disinformation Crackdown https://thehackernews.com/2024/09/us-seizes-32-pro-russian-propaganda.html
06/09/2024 11:30:39
QRCode
archive.org
thumbnail

U.S. seizes 32 Russian propaganda domains influencing U.S. elections, targets Kremlin-backed disinformation efforts.

thehackernews EN 2024 US Doppelganger seized domains Kremlin-backed disinformation
Lowe's employees phished via Google ads | Malwarebytes https://www.malwarebytes.com/blog/news/2024/09/lowes-employees-phished-via-google-ads
06/09/2024 11:29:16
QRCode
archive.org
thumbnail

Criminals are impersonating MyLowesLife, Lowes' HR portal for current and former employees.

malwarebytes EN 2024 Lowe MyLowesLife malvertising GoogleAds
Unpacking the unpleasant FIN7 gift: PackXOR https://harfanglab.io/insidethelab/unpacking-packxor/
06/09/2024 11:25:16
QRCode
archive.org
thumbnail

In early July 2024, the Sentinel Labs researchers released an extensive article1 about “FIN7 reboot” tooling, notably introducing “AvNeutralizer”, an anti-EDR tool. This tool has been found in the wild as a packed payload.

In this article, we offer a thorough analysis of the associated private packer that we named “PackXOR”, as well as an unpacking tool. Additionally, while investigating the packer usage, we determined that PackXOR might not be exclusively leveraged by FIN7.

HarfangLab EN 2024 PackXOR analysis FIN7 AvNeutralizer
Veeam warns of critical RCE flaw in Backup & Replication software https://www.bleepingcomputer.com/news/security/veeam-warns-of-critical-rce-flaw-in-backup-and-replication-software/
06/09/2024 11:23:28
QRCode
archive.org
thumbnail

Veeam has released security updates for several of its products as part of a single September 2024 security bulletin that addresses 18 high and critical severity flaws in Veeam Backup & Replication, Service Provider Console, and One.

bleepingcomputer EN 2024 RCE Remote-Code-Execution Veeam Veeam-Backup-&-Replication Veeam-ONE Vulnerability
Researchers Unpacked AvNeutralizer EDR Killer Used By FIN7 Group https://gbhackers.com/avneutralizer-edr-killer-unpacked/
06/09/2024 11:19:16
QRCode
archive.org
thumbnail

FIN7 (aka Carbon Spider, ELBRUS, Sangria Tempest) is a Russian APT group that is primarily known for targeting the U.S. retail, restaurant, and hospitality sectors since mid-2015. 

gbhackers EN 2024 FIN7 AvNeutralizer EDR Killer
Critical Account Takeover in LiteSpeed Cache Plugin https://patchstack.com/articles/critical-account-takeover-vulnerability-patched-in-litespeed-cache-plugin/
06/09/2024 11:15:35
QRCode
archive.org
thumbnail

There is a critical vulnerability in the LiteSpeed Cache plugin - Unauth Account Takeover in < 6.5.0.1 affecting 5+ millions of sites.

patchstack EN 2024 WordPress CVE-2024-44000 Account-Takeover LiteSpeed Cache plugin
Russian Military Cyber Actors Target US and Global Critical Infrastructure https://www.cisa.gov/news-events/cybersecurity-advisories/aa24-249a
05/09/2024 21:44:51
QRCode
archive.org

The Federal Bureau of Investigation (FBI), Cybersecurity and Infrastructure Security Agency (CISA), and National Security Agency (NSA) assess that cyber actors affiliated with the Russian General Staff Main Intelligence Directorate (GRU) 161st Specialist Training Center (Unit 29155) are responsible for computer network operations against global targets for the purposes of espionage, sabotage, and reputational harm since at least 2020. GRU Unit 29155 cyber actors began deploying the destructive WhisperGate malware against multiple Ukrainian victim organizations as early as January 13, 2022. These cyber actors are separate from other known and more established GRU-affiliated cyber groups, such as Unit 26165 and Unit 74455.

cisa EN 2024 FBI CISA GRU Global Critical Infrastructure Unit29155 GRU-affiliated
YubiKeys are vulnerable to cloning attacks thanks to newly discovered side channel https://arstechnica.com/security/2024/09/yubikeys-are-vulnerable-to-cloning-attacks-thanks-to-newly-discovered-side-channel/
05/09/2024 06:51:41
QRCode
archive.org
thumbnail

Sophisticated attack breaks security assurances of the most popular FIDO key.
The YubiKey 5, the most widely used hardware token for two-factor authentication based on the FIDO standard, contains a cryptographic flaw that makes the finger-size device vulnerable to cloning when an attacker gains temporary physical access to it, researchers said Tuesday.

The cryptographic flaw, known as a side channel, resides in a small microcontroller used in a large number of other authentication devices, including smartcards used in banking, electronic passports, and the accessing of secure areas. While the researchers have confirmed all YubiKey 5 series models can be cloned, they haven’t tested other devices using the microcontroller, such as the SLE78 made by Infineon and successor microcontrollers known as the Infineon Optiga Trust M and the Infineon Optiga TPM. The researchers suspect that any device using any of these three microcontrollers and the Infineon cryptographic library contains the same vulnerability.

arstechnica EN 2024 YubiKeys FIDO cloning side-channel
Cisco warns of backdoor admin account in Smart Licensing Utility https://www.bleepingcomputer.com/news/security/cisco-warns-of-backdoor-admin-account-in-smart-licensing-utility/
04/09/2024 19:02:16
QRCode
archive.org
thumbnail

Cisco has removed a backdoor account in the Cisco Smart Licensing Utility (CSLU) that can be used to log into unpatched systems with administrative privileges.

bleepingcomputer EN 2024 Backdoor Cisco Smart-Licensing-Utility
Police Ombudsman sorry for ‘distressing’ data leak as investigation is launched https://www.irishnews.com/news/northern-ireland/police-ombudsman-sorry-for-distressing-data-leak-as-investigation-is-launched-QALLHPMO3FGDVKS5QIJ3RKCS4U/?ref=news.risky.biz
04/09/2024 07:32:11
QRCode
archive.org
thumbnail

An investigation has been launched after a data breach led to the details of current and former Police Ombudsman staff members being accidently released.

The Police Ombudsman (PONI) has apologised for the data leak incident involving 160 current and former staff.

irishnews EN 2024 police staff members PONI Data-Leak Ireland
Making progress on routing security: the new White House roadmap https://blog.cloudflare.com/white-house-routing-security/
04/09/2024 07:31:47
QRCode
archive.org
thumbnail

On September 3, 2024, the White House published a report on Internet routing security. We’ll talk about what that means and how you can help.
The Internet can feel like magic. When you load a webpage in your browser, many simultaneous requests for data fly back and forth to remote servers. Then, often in less than one second, a website appears. Many people know that DNS is used to look up a hostname, and resolve it to an IP address, but fewer understand how data flows from your home network to the network that controls the IP address of the web server.

cloudflare EN 2024 US BGP routing security roadmap BGPhijack
page 25 / 76
4531 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio