Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 4 / 41
817 résultats taggé 2022  ✕
New Ransom Payment Schemes Target Executives, Telemedicine https://krebsonsecurity.com/2022/12/new-ransom-payment-schemes-target-executives-telemedicine/
18/12/2022 11:28:39
QRCode
archive.org

Ransomware groups are constantly devising new methods for infecting victims and convincing them to pay up, but a couple of strategies tested recently seem especially devious. The first centers on targeting healthcare organizations that offer consultations over the Internet and sending them booby-trapped medical records for the “patient.” The other involves carefully editing email inboxes of public company executives to make it appear that some were involved in insider trading.

krebsonsecurity EN 2022 executives ransom healthcare Venus CL0P infiltration
How ChatGPT can turn anyone into a ransomware and malware threat actor   https://venturebeat-com.cdn.ampproject.org/c/s/venturebeat.com/security/chatgpt-ransomware-malware/amp/
16/12/2022 09:09:24
QRCode
archive.org
thumbnail

Ever since OpenAI launched ChatGPT at the end of November, commentators on all sides have been concerned about the impact AI-driven content-creation will have, particularly in the realm of cybersecurity. In fact, many researchers are concerned that generative AI solutions will democratize cybercrime.

venturebeat EN 2022 ChatGPT cybercrime generative AI
Global crackdown against DDoS services shuts down most popular platforms https://www.europol.europa.eu/media-press/newsroom/news/global-crackdown-against-ddos-services-shuts-down-most-popular-platforms
15/12/2022 22:09:24
QRCode
archive.org
thumbnail

Known as Operation Power Off, this operation saw law enforcement in the United States, the United Kingdom, the Netherlands, Poland and Germany take action against these types of attacks which can paralyse the internet.   The services seized were by far the most popular DDoS booter services on the market, receiving top billing on search engines. One such service taken...

europol EN 2022 DDoS crackdown platforms
Très courtisées, les sociétés suisses de cybersécurité s’arrachent https://www.letemps.ch/economie/tres-courtisees-societes-suisses-cybersecurite-sarrachent
15/12/2022 09:26:51
QRCode
archive.org
thumbnail

En l’espace de quelques jours, Hacknowledge a été rachetée par La Poste, alors que SCRT a été acquise par Orange Cyberdefense. Le manque d’experts et la demande croissante des PME motivent ces opérations

letemps FR CH 2022 Sécurité SCRT Hacknowledge Cyberdefense Poste compétences rachats experts
Microsoft-signed malicious Windows drivers used in ransomware attacks https://www.bleepingcomputer.com/news/microsoft/microsoft-signed-malicious-windows-drivers-used-in-ransomware-attacks/
14/12/2022 10:19:13
QRCode
archive.org
thumbnail

Microsoft has revoked several Chardware developer accounts after drivers signed through their profiles were used in cyberattacks, including ransomware incidents.

bleepingcomputer EN 2022 Microsoft-signed Microsoft cyberattacks drivers
FBI’s Vetted Info Sharing Network ‘InfraGard’ Hacked https://krebsonsecurity.com/2022/12/fbis-vetted-info-sharing-network-infragard-hacked/?v=2
14/12/2022 09:29:25
QRCode
archive.org

InfraGard, a program run by the U.S. Federal Bureau of Investigation (FBI) to build cyber and physical threat information sharing partnerships with the private sector, this week saw its database of contact information on more than 80,000 members go up…

krebsonsecurity 2022 EN InfraGard FBI leak database
A Custom Python Backdoor for VMWare ESXi Servers https://blogs.juniper.net/en-us/threat-research/a-custom-python-backdoor-for-vmware-esxi-servers
14/12/2022 08:44:25
QRCode
archive.org
thumbnail

Juniper Threat Labs analyzes a backdoor installed on a compromised VMware ESXi server that can execute arbitrary commands and launch reverse shells.

juniper EN 2022 VMware ESXi python
Apple fixes 'actively exploited' zero-day security vulnerability affecting most iPhones https://techcrunch.com/2022/12/13/apple-zero-day-webkit-iphone/
14/12/2022 08:05:44
QRCode
archive.org
thumbnail

The iPhone security flaw was discovered by a Google unit that uncovers nation-state spyware, hacking and cyberattacks.

Apple EN 2022 security cyberattack iphone spyware
Mallox Ransomware showing signs of Increased Activity https://blog.cyble.com/2022/12/08/mallox-ransomware-showing-signs-of-increased-activity/
13/12/2022 21:04:34
QRCode
archive.org
thumbnail

“TargetCompany” is a type of ransomware that was first identified in June 2021. The researchers named it TargetCompany ransomware because it adds the targeted company name as a file extension to the encrypted files. In September 2022, researchers identified a TargetCompany ransomware variant targeting Microsoft SQL servers and adding the “Fargo” extension to the encrypted files. TargetCompany ransomware is also known to add a “Mallox” extension after encrypting the files.

cyble en 2022 mallox Ransomware analysis
State-sponsored attackers actively exploiting RCE in Citrix devices, patch ASAP! (CVE-2022-27518) https://www.helpnetsecurity.com/2022/12/13/cve-2022-27518-exploited/
13/12/2022 16:23:44
QRCode
archive.org
thumbnail

An unauthenticated RCE flaw (CVE-2022-27518) is being leveraged by APT5 to compromise Citrix ADC deployments.

helpnetsecurity 2022 CVE-2022-27518 Citrix ADC APT5 attackers
Released: Citrix ADC and Citrix Gateway (security bulletin CTX474995) security update https://www.citrix.com/blogs/2022/12/13/critical-security-update-now-available-for-citrix-adc-citrix-gateway/
13/12/2022 16:15:44
QRCode
archive.org
thumbnail

Learn about security updates for versions 12.1 (including FIPS and NDcPP) and 13.0 before 13.0-58.32 of Citrix ADC and Citrix Gateway and get fixes for both (security bulletin CTX474995).

citrix EN 2022 citrix-adc citrix-gateway netscaler netscaler-gateway ctx474995 citrix-vulnerability citrix CVE-2022-27518
Patrol and Persuade - A follow up on 110 Overseas investigation https://safeguarddefenders.com/en/blog/patrol-and-persuade-follow-110-overseas-investigation
13/12/2022 11:46:58
QRCode
archive.org

This latest release documents further extensive evidence of the establishment by local PRC Public Security authorities of at least 102 “Chinese Overseas Police Service Centers” in 53 countries around the world and how some of them have been partaking in the execution of "persuasions to return" operations. Patrol and Persuade (PDF) also documents the (silent) complicity of a number of host countries, instilling a further sense of fear into targeted communities and severely undermining the international rules-based order .

safeguarddefenders EN 2022 PRC operations Chinese Overseas Police Service Centers
Check Point Research analyzes files on the Dark Web and finds millions of records available https://blog.checkpoint.com/2022/12/01/check-point-research-analyzes-files-on-the-dark-web-and-finds-millions-of-records-available/
13/12/2022 09:40:20
QRCode
archive.org
thumbnail
  • Check Point Research (CPR) has analyzed the files that are for sale on the Dark Web, whose sellers claim are from WhatsApp users, revealing the leak includes 360 million phone numbers from 108 countries
  • Full list went on sale for 4 days, and is now being distributed freely amongst Dark Web users
  • Users are advised to be aware of links and unknown senders, while using any messaging services
checkpoint EN 2022 WhatsApp darkweb dump
PSIRT Advisories https://www.fortiguard.com/psirt/FG-IR-22-398
12/12/2022 21:49:39
QRCode
archive.org

A heap-based buffer overflow vulnerability [CWE-122] in FortiOS SSL-VPN may allow a remote unauthenticated attacker to execute arbitrary code or commands via specifically crafted requests.

fortiguard EN 2022 Advisory CWE-122 FortiOS SSL-VPN
Pulling the Curtains on Azov Ransomware: Not a Skidsware but Polymorphic Wiper - Check Point Research https://research.checkpoint.com/2022/pulling-the-curtains-on-azov-ransomware-not-a-skidsware-but-polymorphic-wiper/
12/12/2022 21:34:32
QRCode
archive.org
thumbnail
  • Check Point Research (CPR) provides under-the-hood details of its analysis of the infamous Azov Ransomware
  • Investigation shows that Azov is capable of modifying certain 64-bit executables to execute its own code
  • Azov is designed to inflict impeccable damage to the infected machine it runs on
  • CPR sees over 17K of Azov-related samples submitted to VirusTotal
checkpoint EN 2022 Azov analysis Ransomware
Scammers Are Scamming Other Scammers Out of Millions of Dollars https://www.wired.com/story/cybercrime-hackers-scams-forums/
12/12/2022 16:16:05
QRCode
archive.org
thumbnail

On cybercrime forums, user complaints about being duped may accidentally expose their real identities.

wired EN 2022 malware security dark-web crime Scammers cybercrime forums
Phylum Detects Ongoing Typosquat/Ransomware Campaign in PyPI and NPM https://blog.phylum.io/phylum-detects-active-typosquatting-campaign-in-pypi
12/12/2022 15:55:58
QRCode
archive.org
thumbnail

Malicious packages that download ransomware binaries written in Golang published today, with more expected in the coming hours.

phylum EN 2022 Typosquat Ransomware PyPI NPM Supply-chain-security
Apple announces 3 new security features https://www.malwarebytes.com/blog/news/2022/12/apple-to-launch-three-new-features-to-enhance-security
12/12/2022 15:49:19
QRCode
archive.org
thumbnail

Apple has announced three new security features that will help protect logins, iMessage conversations, and data snyced by iCloud.

malwarebytes 2022 EN Apple iMessage backup iCloud
Cisco discloses high-severity IP phone zero-day with exploit code https://www.bleepingcomputer.com/news/security/cisco-discloses-high-severity-ip-phone-zero-day-with-exploit-code/
12/12/2022 15:48:05
QRCode
archive.org
thumbnail

Cisco has disclosed today a high-severity zero-day vulnerability affecting the latest generation of its IP phones and exposing them to remote code execution and denial of service (DoS) attacks.

bleepingcomputer EN 2022 Cisco Denial-of-Service DoS RCE Remote-Code-Execution Zero-Day CVE-2022-20968
Pilfered Keys Free App Infected by Malware Steals Keychain Data https://www.trendmicro.com/en_us/research/22/k/pilfered-keys-free-app-infected-by-malware-steals-keychain-data.html
12/12/2022 09:48:35
QRCode
archive.org
thumbnail

Open-source applications are a practical way to save money while keeping up with your productivity. However, this can be abused by threat actors to steal your data. Find out how one app was used to gather information of Apple users.

trendmicro EN 2022 Open-source Apple malware keychain keysteal
page 4 / 41
4477 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio