Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 3 / 76
1513 résultats taggé 2024  ✕
Clop ransomware is now extorting 66 Cleo data-theft victims https://www.bleepingcomputer.com/news/security/clop-ransomware-is-now-extorting-66-cleo-data-theft-victims/
28/12/2024 11:58:18
QRCode
archive.org
thumbnail

The Clop ransomware gang started to extort victims of its Cleo data theft attacks and announced on its dark web portal that 66 companies have 48 hours to respond to the demands.

bleepingcomputer EN 2024 Cleo Clop Double-Extortion Extortion Ransomware
DDosia Project: How NoName057(16) is trying to improve the efficiency of DDoS attacks https://decoded.avast.io/martinchlumecky/ddosia-project-how-noname05716-is-trying-to-improve-the-efficiency-of-ddos-attacks/
28/12/2024 11:54:33
QRCode
archive.org
thumbnail

The new variant of bots implemented an authentication mechanism to communicate with C2 servers and their proxies. Includes IP address blocklisting, presumably to hinder the tracking of the project.

avast EN 2024 2023 Analysis NoName057(16) DDoSia
Cyber firm's Chrome extension hijacked to steal user passwords https://techcrunch.com/2024/12/27/cyberhaven-says-it-was-hacked-to-publish-a-malicious-update-to-its-chrome-extension/
28/12/2024 11:48:00
QRCode
archive.org
thumbnail

The data-loss startup says it was targeted as part of a "wider campaign to target Chrome extension developers."

techcrunch EN 2024 Chrome extension hijacked Cyberhaven
Threat Response - Critical Authentication Bypass in PAN-OS Management Web Interface https://northwave-cybersecurity.com/threat-response-critical-authentication-bypass-in-pan-os-management-web-interface
28/12/2024 10:59:31
QRCode
archive.org

On 18 November 2024, Palo Alto Networks issued a security advisory for an authentication bypass vulnerability in the PAN-OS management web interface. The vulnerability is tracked under CVE-2024-0012 [1] and has a CVSS score for this is 9.3 [2]. The vulnerability allows an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges. As the Northwave CERT has already observed mass exploitation by multiple threat actors, we urge all recipients to implement mitigation measures and patch their systems.

northwave-cybersecurity EN 2024 Critical Authentication Bypass CVE-2024-0012
Checking It Twice: Profiling Benign Internet Scanners — 2024 Edition https://www.greynoise.io/blog/checking-it-twice-profiling-benign-internet-scanners----2024-edition
27/12/2024 11:59:11
QRCode
archive.org
thumbnail

An analysis of benign internet scanner behavior across 24 new sensors in November 2024, examining discovery speed, port coverage, and vulnerability scanning capabilities of major services like ONYPHE, Censys, and ShadowServer. The study reveals most scanners found new assets within 5 minutes, with Censys leading in port coverage and ShadowServer in vulnerability detection.

greynoise EN 2024 analysis Benign Internet Scanners 2024
LockBit Ransomware Group Plots Comeback With 4.0 Release https://thecyberexpress.com/lockbit-ransomware-comeback-lockbit-4-0/
27/12/2024 11:56:17
QRCode
archive.org
thumbnail

The LockBit ransomware group will soon launch a comeback with the planned release of LockBit 4.0 in February 2025, Cyble

thecyberexpress EN 2024 LockBit ransomware LockBit4.0 comeback announce RaaS
Apple sends spyware victims to this nonprofit security lab https://techcrunch.com/2024/12/20/why-apple-sends-spyware-victims-to-this-nonprofit-security-lab/
27/12/2024 11:50:28
QRCode
archive.org
thumbnail

Cybersecurity experts, who work with human rights defenders and journalists, agree that Apple is doing the right thing by sending notifications to victims of mercenary spyware — and at the same time refusing to forensically analyze the devices.

techcrunch EN 2024 Apple accessnow spyware victims
European Space Agency's official store hacked to steal payment cards https://www.bleepingcomputer.com/news/security/european-space-agencys-official-store-hacked-to-steal-payment-cards/
27/12/2024 11:44:36
QRCode
archive.org
thumbnail

European Space Agency's official web shop was hacked as it started to load a piece of JavaScript code that generates a fake Stripe payment page at checkout.

bleepingcomputer EN 2024 Credit-Card ESA European-Space-Agency JavaScript MageCart Payment-card Stripe
Airline hit by a cyberattack, delaying flights during the year-end holiday season https://apnews.com/article/japan-jal-cyberattack-flights-travel-04fbd4848f3015a77057339a5c90ca32
27/12/2024 11:41:55
QRCode
archive.org
thumbnail

Japan Airlines has been hit by a cyberattack that caused delays to more than 20 domestic flights, but it managed to restore its systems within hours.

apnews EN 2024 cyberattack DDoS flights Japan Airlines
Malware trends: eBPF exploitation, malware configurations stored in unexpected places, and increased use of custom post-exploitation tools https://news.drweb.com/show/?i=14955&lng=en
27/12/2024 11:36:00
QRCode
archive.org
thumbnail

An investigation into an information security incident has allowed virus analysts at Doctor Web to uncover an ongoing campaign that incorporates many modern trends employed by cybercriminals.

drweb EN 2024 eBPF exploitation
Botnets Continue to Target Aging D-Link Vulnerabilities https://www.fortinet.com/blog/threat-research/botnets-continue-to-target-aging-d-link-vulnerabilities
27/12/2024 11:35:17
QRCode
archive.org
thumbnail

FortiGuard Labs recently noticed that attackers still use and deliver two different botnets via D-Link exposing a HNAP interface weakness. Learn more.

fortinet EN 2024 D-Link botnet HNAP CAPSAICIN FICORA
Russia's GRU possibly behind cyberattack on Ukraine's government, SBU says https://kyivindependent.com/gru-may-be-behind-cyberattack-on-ukraine/
27/12/2024 11:26:12
QRCode
archive.org
thumbnail

"All the Justice Ministry's data has been saved. Recovery is underway," Deputy PM and Justice Minister Olha Stefanishyna said.

kyivindependent EN 2024 GRU cyberattack Ukraine Justice Ministry Russia-Ukraine-war
Palo Alto Releases Patch for PAN-OS DoS Flaw https://thehackernews.com/2024/12/palo-alto-releases-patch-for-pan-os-dos.html
27/12/2024 10:54:12
QRCode
archive.org

Palo Alto Networks has disclosed a high-severity vulnerability impacting PAN-OS software that could cause a denial-of-service (DoS) condition on susceptible devices.

The flaw, tracked as CVE-2024-3393 (CVSS score: 8.7), impacts PAN-OS versions 10.X and 11.X, as well as Prisma Access running PAN-OS versions. It has been addressed in PAN-OS 10.1.14-h8, PAN-OS 10.2.10-h12, PAN-OS 11.1.5, PAN-OS 11.2.3, and all later PAN-OS versions.

thehackernews EN 2024 PaloAlto PAN-OS DoS Flaw CVE-2024-3393
Finnish authorities board ship suspected of cutting subsea Internet and power cables https://www.datacenterdynamics.com/en/news/finnish-authorities-board-ship-suspected-of-cutting-subsea-internet-and-power-cables/
27/12/2024 10:50:37
QRCode
archive.org

Four Internet cables cut in latest Baltic Sea incident

datacenterdynamics EN 2024 Finland Baltic cables internet disrupted subsea Russia
Russia is using bitcoin in foreign trade, finance minister says https://www.reuters.com/markets/currencies/russia-is-using-bitcoin-foreign-trade-finance-minister-says-2024-12-25/
26/12/2024 14:37:24
QRCode
archive.org

Russian companies have begun using bitcoin and other digital currencies in international payments following legislative changes that allowed such use in order to counter Western sanctions, Finance Minister Anton Siluanov said on Wednesday.
Sanctions have complicated Russia's trade with its major partners such as China or Turkey, as local banks are extremely cautious with Russia-related transactions to avoid scrutiny from Western regulators.

reuters EN 2024 crypto Russia currencies sanctions trade
Israel's Mossad spent years orchestrating Hezbollah pager plot https://www.cbsnews.com/news/israeli-mossad-pager-walkie-talkie-hezbollah-plot-60-minutes/
24/12/2024 22:06:25
QRCode
archive.org
thumbnail

Retired Israeli case agents behind Mossad's boobytrapped pagers and walkie-talkies in Lebanon explain how they got Hezbollah to buy the devices and the plots' impact on the Middle East.

cbsnews EN 2024 Israel Hezbollah Lebanon Mossad boobytrapped Lebanon pagers plot
EPFL: des failles de sécurité dans les modèles d'IA https://www.swissinfo.ch/fre/epfl%3a-des-failles-de-s%c3%a9curit%c3%a9-dans-les-mod%c3%a8les-d%27ia/88615014
23/12/2024 23:23:20
QRCode
archive.org
thumbnail

Les modèles d'intelligence artificielle (IA) peuvent être manipulés malgré les mesures de protection existantes. Avec des attaques ciblées, des scientifiques lausannois ont pu amener ces systèmes à générer des contenus dangereux ou éthiquement douteux.

swissinfo FR 2024 EPFL IA chatgpt Jailbreak failles LLM vulnerabilités Manipulation
Astrill VPN and Remote Worker Fraud - Spur https://spur.us/astrill-vpn-and-remote-worker-fraud/
23/12/2024 23:09:25
QRCode
archive.org
thumbnail

"Recently, various intelligence and threat analysis teams have identified a concerning trend: North Korean state actors are infiltrating companies and organizations around the world in an attempt to facilitate the clandestine transfer of funds to support North Korea’s state apparatus. Specifically, these actors have favored the use of Astrill VPN to obscure their digital footprints while applying for remote positions."

"While it’s been several months since these articles were published, we continue to see reports from our customers of fraudulent re mote worker campaigns originating from Astrill VPN IP addresses."

spur.us EN 2024 Astrill VPN IP addresses IoC North-Korea infiltrating
Inside Operation Destabilise: How a ransomware investigation linked Russian money laundering and street-level drug dealing https://therecord.media/operation-destabilise-money-laundering-investigation-uk-nca
23/12/2024 13:44:58
QRCode
archive.org
thumbnail

U.K. investigators tell the story of how examining a cybercrime group's extortion funds helped to unravel a money-laundering network reaching from the illegal drug trade to Moscow's elite.

therecord.media EN 2024 Operation-Destabilise ransomware Russia UK cybercrime money-laundering
Câbles rompus en mer Baltique : Pékin n’a pas autorisé la Suède à mener son enquête à bord du cargo https://www.lemonde.fr/pixels/article/2024/12/23/cables-rompus-en-mer-baltique-pekin-n-a-pas-autorise-la-suede-a-mener-son-enquete-a-bord-du-cargo_6463716_4408996.html
23/12/2024 13:32:19
QRCode
archive.org
thumbnail

Deux câbles de télécommunications avaient été coupés les 17 et 18 novembre dans les eaux territoriales suédoises de la mer Baltique. Les soupçons s’étaient rapidement portés sur un navire battant pavillon chinois, le « Yi Peng 3 ».

lemonde FR 2024 Chine câbles rompus Baltique  investiation YiPeng3
page 3 / 76
4507 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio