Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 32 / 76
1513 résultats taggé 2024  ✕
Akamai Blocked 419 TB of Malicious Traffic in a 24-Hour DDoS Attack https://www.akamai.com/blog/security/akamai-blocked-419-tb-of-malicious-traffic
08/08/2024 10:49:45
QRCode
archive.org

On July 15, 2024, Akamai prevented one of the largest distributed denial-of-service (DDoS) cyberattacks it has ever observed against a major financial services company in Israel.

The highly sophisticated, high-volume attack lasted almost 24 hours.

The attacker deployed larger-than-usual resources, indicating a serious risk for future attacks.

Other Israeli financial institutions reportedly suffered outages and downtimes on the same day, potentially due to the same type of attack and the same aggressor.

Akamai EN 2024 Blocked DDoS high-volume attack
WhatsUp Gold Pre-Auth RCE GetFileWithoutZip Primitive https://summoning.team/blog/progress-whatsup-gold-rce-cve-2024-4885/?ref=x
08/08/2024 10:36:39
QRCode
archive.org
thumbnail

I discovered an unauthenticated path traversal against the latest version of progress whatsup gold and turned it into a pre-auth RCE, following is how I did it, this is the story of CVE-2024-4885

summoning EN 2024 PoC CVE-2024-4885
Jenkins Security Advisory 2024-08-07 CVE-2024-43044 CVE-2024-43045 https://www.jenkins.io/security/advisory/2024-08-07/#jenkins-security-advisory-2024-08-07
08/08/2024 10:13:13
QRCode
archive.org

Jenkins – an open source automation server which enables developers around the world to reliably build, test, and deploy their software

jenkins EN 2024 advisory security-advisory
Windows Update Flaws Allow Undetectable Downgrade Attacks https://www.securityweek.com/safebreach-sounds-alarm-on-windows-update-flaws-allowing-undetectable-downgrade-attacks/
08/08/2024 10:07:49
QRCode
archive.org

Researcher showcases hack against Microsoft Windows Update architecture, turning fixed vulnerabilities into zero-days.

securityweek EN 2024 Microsoft Windows Update Downgrade
Open letter to UK online service providers https://www.ofcom.org.uk/topic-and-subtopics/online-safety/illegal-and-harmful-content/news-and-updates/open-letter-to-uk-online-service-providers/
08/08/2024 06:49:29
QRCode
archive.org
thumbnail

Today we've published an open letter to online service providers operating in the UK about the increased risk of their platforms being used to stir up hatred, provoke violence and commit other offences under UK law, in the context of recent acts of violence in the UK.

ofcom.org.uk EN 2024 open-letter provoke violence legal online service providers UK
INTERPOL recovers over $40 million stolen in a BEC attack https://www.bleepingcomputer.com/news/security/interpol-recovers-over-40-million-stolen-in-a-bec-attack/?ref=metacurity.com
07/08/2024 21:56:01
QRCode
archive.org
thumbnail

A global stop-payment mechanism created by INTERPOL successfully recovered over $40 million stolen in a BEC attack on a company in Singapore.

bleepingcomputer EN 2024 BEC Business-Email-Compromise I-GRIP INTERPOL
Critical Vulnerability in Apache OFBiz Requires Immediate Patching - Infosecurity Magazine https://www.infosecurity-magazine.com/news/fla-apache-ofbiz-requires-patching/?ref=metacurity.com
07/08/2024 10:18:18
QRCode
archive.org
thumbnail

SonicWall discovered the Apache OFBiz flaw, identifying it as a critical issue enabling unauthenticated remote code execution

infosecurity-magazine. EN 2024 SonicWall Apache OFBiz flaw critical CVE-2024-38856
CrowdStrike says it isn't to blame for Delta's flight cancellations after July outage https://www.cnbc.com/2024/08/05/crowdstrike-says-it-isnt-to-blame-for-deltas-flight-cancellations-after-outage.html?ref=news.risky.biz
07/08/2024 10:16:57
QRCode
archive.org
thumbnail

Delta CEO Ed Bastian said the company plans to seek compensation from Microsoft and CrowdStrike.

cnbc EN 2024 Transportation Business Air Lawsuits Technology Corp defense Life Aerospace Holdings Airlines Microsoft Breaking industry Delta CrowdStrike outage
Security Incident | August 2024 https://www.mobileguardian.com/security-incident-august-2024/
07/08/2024 09:03:00
QRCode
archive.org

Mobile Guardian experienced a security incident that involved unauthorized access to the iOS and ChromeOS devices enrolled to the Mobile Guardian platform on the 4th of August.

We have halted servers in order to prevent further disruption by the perpetrator.

This is not related to an error in configuration that occurred on the 30th of July which affected Mobile Guardian iPads on our Singapore instance only.

mobileguardian EN 2024 security incident MDM
Hackers breached MDM firm Mobile Guardian and wiped thousands of devices https://securityaffairs.com/166710/hacking/mobile-guardian-firm-security-breach.html
07/08/2024 08:46:49
QRCode
archive.org
thumbnail

Threat actors breached the UK-based mobile device management (MDM) firm Mobile Guardian and remotely wiped thousands of devices.

securityaffairs EN 2024 MDM Mobile-Guardian breached
Exploring Anti-Phishing Measures in Microsoft 365 https://certitude.consulting/blog/en/o365-anti-phishing-measures/
07/08/2024 07:28:47
QRCode
archive.org

In this post we will explore some of the anti-phishing measures employed by Microsoft 365 (formally Office 365) as well as their weaknesses. Certitude was able to identify an issue in that allows malicious actors to bypass anti-phishing measures.

certitude EN 2024 antiphishing Microsoft365 weaknesses research
Cybersécurité : le Grand Palais et plusieurs musées dont le Louvre victimes d’une attaque par rançongiciel https://www.leparisien.fr/high-tech/cybersecurite-le-grand-palais-et-plusieurs-musees-dont-le-louvre-victimes-dune-attaque-par-rancongiciel-05-08-2024-LYA4YVRAW5CQHPVRHSC3LAGPHM.php
06/08/2024 12:22:00
QRCode
archive.org
thumbnail

Les attaquants ont chiffré une partie des données financières et menacent de les diffuser s’ils ne reçoivent pas une rançon. Une enquête a été ouverte.

leparisien FR 2024 France Ransomware Louvre musées
Threat Actors Capitalize On ServiceNow Vulnerability https://cyble.com/blog/from-weaponization-to-victimization-fallout-from-the-servicenow-vulnerability/
06/08/2024 09:57:34
QRCode
archive.org
thumbnail

Cyble observes how Dark Web forums reveal ServiceNow users falling victim to a Remote Code Execution vulnerability, which exposes sensitive data & escalates risks across sectors.

cyble EN 2024 ServiceNow darkweb CVE-2024-4879 CVE-2024-5178 CVE-2024-5217
Ransomware gang targets IT workers with new SharpRhino malware https://www.bleepingcomputer.com/news/security/hunters-international-ransomware-gang-targets-it-workers-with-new-sharprhino-malware/
06/08/2024 09:55:35
QRCode
archive.org
thumbnail

The Hunters International ransomware group is targeting IT workers with a new C# remote access trojan (RAT) called SharpRhino to breach corporate networks.

bleepingcomputer EN 2024 Hunters-International Malware Ransomware SharpRhino Typo-Squatting
New Hunters International RAT identified by Quorum Cyber https://www.quorumcyber.com/insights/sharprhino-new-hunters-international-rat-identified-by-quorum-cyber/
06/08/2024 09:54:02
QRCode
archive.org

During a recent ransomware incident investigated by the Quorum Cyber Incident Response team, novel malware was identified previously unknown.

quorumcyber EN 2024 RAT ransomware Rust ipscan-3.9.1-setup.exe Hunters-International
Google fixes Android kernel zero-day exploited in targeted attacks https://www.bleepingcomputer.com/news/security/google-fixes-android-kernel-zero-day-exploited-in-targeted-attacks/
06/08/2024 09:42:33
QRCode
archive.org
thumbnail

Android security updates this month patch 46 vulnerabilities, including a high-severity remote code execution (RCE) exploited in targeted attacks.

bleepingcomputer EN 2024 Android Google Kernel Zero-Day CVE-2024-36971
Moscow’s Spies Were Stealing US Tech — Until the FBI Started a Sabotage Campaign https://www.politico.com/news/magazine/2024/08/04/us-spies-soviet-technology-00164126?
05/08/2024 21:41:28
QRCode
archive.org

One day at the dawn of the 1980s, an FBI agent in his 30s named Rick Smith walked into the Balboa Café, an ornate, historic watering hole in San Francisco’s leafy Cow Hollow neighborhood. Smith, who was single at the time, lived nearby and regularly frequented the spot.

As he approached the oak wood bar to order a drink he suddenly spotted a familiar face — someone Smith had met about a year before, after the man had walked into the Soviet Consulate in San Francisco. He was Austrian by birth, but a denizen of Silicon Valley, an entrepreneur who operated as a middleman between American tech companies and European countries hungry for the latest hi-tech goods. 

politico EN 2024 sabotage operation history US URSS SiliconValley FBI
China-Linked Hackers Compromise ISP to Deploy Malicious Software Updates https://thehackernews.com/2024/08/china-linked-hackers-compromise-isp-to.html
05/08/2024 14:05:27
QRCode
archive.org
thumbnail

Chinese hacking group Evasive Panda compromises ISP to push malware, targeting companies through DNS poisoning and insecure update mechanisms.

thehackernews EN 2024 ISP Malicious Software Updates EvasivePanda
Surge in Magniber ransomware attacks impact home users worldwide https://www.bleepingcomputer.com/news/security/surge-in-magniber-ransomware-attacks-impact-home-users-worldwide/
05/08/2024 13:34:44
QRCode
archive.org
thumbnail

A massive Magniber ransomware campaign is underway, encrypting home users' devices worldwide and demanding thousand-dollar ransoms to receive a decryptor.

Magniber launched in 2017 as a successor to the Cerber ransomware operation when it was spotted being distributed by the Magnitude exploit kit.

Since then, the ransomware operation has seen bursts of activity over the years, with the threat actors utilizing various methods to distribute Magniber and encrypt devices. These tactics include using Windows zero-days, fake Windows and browser updates, and trojanized software cracks and key generators.

bleepingcomputer EN 2024 Cracks Encryptor Magniber Ransomware Warez
Ten Arrests Made and 108 Charges Laid in Project Disrupt, a SIM Swap Fraud Investigation https://www.tps.ca/media-centre/news-releases/60454/?ref=news.risky.biz
05/08/2024 13:02:44
QRCode
archive.org

The Toronto Police Service is making the public aware of 10 arrests made and 108 charges laid in a major SIM swap fraud investigation dubbed Project Disrupt.

On Thursday, August 1, 2024, Detective David Coffey, from the Financial Crimes Unit, and Detective Constable Michael Gow, from the Coordinated Cyber Center (C3), held a news conference about Project Disrupt.

tps.ca EN 2024 Toronto Police Service Canada busted arrested SIMSwappers
page 32 / 76
4538 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio