Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 55 / 76
1513 résultats taggé 2024  ✕
China Orders Apple to Remove Popular Messaging Apps https://www.wsj.com/tech/apple-removes-whatsapp-threads-from-china-app-store-on-government-orders-a0c02100?st=mjijkzg2og31ug5&reflink=desktopwebshare_permalink
20/04/2024 09:54:09
QRCode
archive.org

WhatsApp, Signal and Telegram among apps cut from iPhone app store to comply with censorship demand

wsj EN 2024 WhatsApp Signal Telegram apple remove AppStore China censorship
'Crude' ransomware tools proliferating on the dark web for cheap, researchers find https://therecord.media/cheap-ransomware-for-sale-dark-web
20/04/2024 09:38:42
QRCode
archive.org
thumbnail

Cheap ransomware is being sold for one-time use on dark web forums, allowing inexperienced freelancers to get into cybercrime without any interaction with affiliates.

Researchers at the intelligence unit at the cybersecurity firm Sophos found 19 ransomware varieties being offered for sale or advertised as under development on four forums from June 2023 to February 2024.

therecord EN 2024 Crude Sophos ransomware tools DarkWeb
Ransomware attack has cost UnitedHealth $872 million; total expected to surpass $1 billion https://therecord.media/ransomware-unitedhealth-costs-billions-still-climbing?_hsenc=p2ANqtz-_NXHMTMofLbyaVNJ3kRdE2p0pM0usepgEV5vo9-YtsvtStuDxwMKTaOTeKMbd68ggASIMwjDEVxSEsUTcKeFlD-lWmgw&_hsmi=303475837
20/04/2024 09:35:27
QRCode
archive.org
thumbnail

he ransomware attack on a company owned by healthcare giant UnitedHealth Group (UHG) has so far caused $872 million in losses, according to the corporation’s latest earnings report.

UnitedHealth owns Change Healthcare, a key cog in the U.S. healthcare industry that was crippled by a ransomware attack in February. Change Healthcare and UHG subsidiary Optum took hundreds of systems offline as a result of the incident and faced criticism from the White House and Congress over its handling of the ransomware attack.

therecord EN 2024 UnitedHealth cost ransomware change-healthcare
Cisco: Hacker breached multifactor authentication message provider on April 1 https://therecord.media/cisco-duo-data-breach-mfa-telephony-provider?_hsenc=p2ANqtz-9wele4oTF0tDrlbVagSSLRHrkFVta-UiNnzNSZJ5tq6X9qHse_aGaXTU1xX_tC1ttQebQSUZbMCYg3kqq1TxhkgpIrFg&_hsmi=303475837
20/04/2024 09:34:13
QRCode
archive.org
thumbnail

Cisco said one of the providers it uses to send multifactor authentication (MFA) messages was breached by a threat actor on April 1.

In emails to customers, Cisco said the incident specifically affected Duo — a multifactor authentication company it acquired in 2018. The attacker breached the system of a telephony supplier that Duo uses to send MFA messages through texts and phone calls to its customers.

therecord EN 2024 Cisco breached multifactor authentication duo
The Fall of LabHost: Law Enforcement Shuts Down Phishing Service Provider | Trend Micro (US) https://www.trendmicro.com/en_us/research/24/d/labhost-takedown.html?ref=news.risky.biz
19/04/2024 07:10:16
QRCode
archive.org
thumbnail

On Thursday, April 18, 2024, the UK’s Metropolitan Police Service, along with fellow UK and international law enforcement, as well as several trusted private industry partners, conducted an operation that succeeded in taking down the Phishing-as-a-Service (PhaaS) provider LabHost. This move was also timed to coincide with a number of key arrests related to this operation. In this entry, we will briefly explain what LabHost was, how it affected its victims, and the impact of this law enforcement operation — including the assistance provided by Trend Micro.

trendmicro EN 2024 cybercrime report LabHost takedown PhaaS Phishing-as-a-Service
New Backdoor, MadMxShell https://www.zscaler.com/blogs/security-research/malvertising-campaign-targeting-it-teams-madmxshell
18/04/2024 22:06:32
QRCode
archive.org
thumbnail

Beginning in March of 2024, Zscaler ThreatLabz observed a threat actor weaponizing a cluster of domains masquerading as legitimate IP scanner software sites to distribute a previously unseen backdoor. The threat actor registered multiple look-alike domains using a typosquatting technique and leveraged GoogleAds to push these domains to the top of search engine results targeting specific search keywords, thereby luring victims to visit these sites.

The newly discovered backdoor uses several techniques such as multiple stages of DLL sideloading, abusing the DNS protocol for communicating with the command-and-control (C2) server, and evading memory forensics security solutions. We named this backdoor “MadMxShell” for its use of DNS MX queries for C2 communication and its very short interval between C2 requests.

zscaler EN 2024 typosquatting MadMxShell GoogleAds DNS Malvertising Advance-ip-scanner
Idle GPUs Are the Devil's Workshop https://www.404media.co/email/5c8178b3-c202-4e89-9e04-d481a36345ef/?ref=daily-stories-newsletter
18/04/2024 22:04:44
QRCode
archive.org
thumbnail

Salad, a company that pays gamers in Fortnite skins and Roblox gift cards to rent their idle GPUs remotely to generative AI companies, is using those idle computers to create AI-generated porn. Though 404 Media hasn’t seen evidence that any of the images produced by Salad and its network of idle gaming PCs produced nonconsensual AI-generated sexual images, it’s technically possible, and Salad has had a generative AI client that previously produced that type of content.

404media EN 2024 Salad GPUs AI-generated porn.
Exclusive: Northrop Grumman working with Musk's SpaceX on U.S. spy satellite system | Reuters https://www.reuters.com/business/aerospace-defense/northrop-grumman-working-with-musks-spacex-us-spy-satellite-system-2024-04-18/?user_email=9e19aa6ed986d20195d4113ba5a6a3e709c18e0549688aa9b20d5f2e8d0dec05
18/04/2024 22:02:34
QRCode
archive.org

Aerospace and defense company Northrop Grumman is working with SpaceX, the space venture of billionaire entrepreneur Elon Musk, on a classified spy satellite project already capturing high-resolution imagery of the Earth, according to people familiar with the program.

reuters EN 2024 SpaceX Northrop-Grumman satellite spy satellite spy-satellite
Students turning to cyberfraud as huge phishing https://www.theguardian.com/technology/2024/apr/18/students-turning-to-cyberfraud-as-huge-phishing-site-infiltrated-police-reveal
18/04/2024 09:51:04
QRCode
archive.org
thumbnail

LabHost enabled users to set up websites designed to trick victims into revealing personal information – with 70,000 allegedly duped in the UK

theguardian EN 2024 LabHost phishing students fraud UK police infiltrated
Attackers exploiting new critical OpenMetadata vulnerabilities on Kubernetes clusters https://www.microsoft.com/en-us/security/blog/2024/04/17/attackers-exploiting-new-critical-openmetadata-vulnerabilities-on-kubernetes-clusters/
18/04/2024 08:28:41
QRCode
archive.org
thumbnail

Microsoft recently uncovered an attack that exploits new critical vulnerabilities in OpenMetadata to gain access to Kubernetes workloads and leverage them for cryptomining activity.

microsoft EN 2024 OpenMetadata Kubernetes CVE-2024-28255 CVE-2024-28847 CVE-2024-28253 CVE-2024-2884 CVE-2024-28254
Unearthing APT44: Russia’s Notorious Cyber Sabotage Unit Sandworm https://cloud.google.com/blog/topics/threat-intelligence/apt44-unearthing-sandworm?hl=en
18/04/2024 07:10:04
QRCode
archive.org
thumbnail

APT44 is a threat actor that is actively engaged in the full spectrum of espionage, attack, and influence operations.

Mandiant EN 2024 APT44 Threat-Intelligence Sandworm Russia google attribution FROZENBARENTS
Hackers Linked to Russia’s Military Claim Credit for Sabotaging US Water Utilities | WIRED https://www.wired.com/story/cyber-army-of-russia-reborn-sandworm-us-cyberattacks/
18/04/2024 07:08:54
QRCode
archive.org
thumbnail

Cyber Army of Russia Reborn, a group with ties to the Kremlin’s Sandworm unit, is crossing lines even that notorious cyberwarfare unit wouldn’t dare to.

wired EN 2024 infrastructure hackers russia critical cyberwar cyberattacks ukraine
Over 500 people targeted by Pegasus spyware in Poland, officials say https://therecord.media/poland-pegasus-spyware-more-than-500-citizens
17/04/2024 13:32:58
QRCode
archive.org
thumbnail

Prosecutor General Adam Bodnar says an investigation into Pegasus use by current and former government officials has expanded to hundreds more people than initially reported.

therecord EN 2024 spyware Pegasus Poland
Ivanti warns of critical flaws in its Avalanche MDM solution https://www.bleepingcomputer.com/news/security/ivanti-warns-of-critical-flaws-in-its-avalanche-mdm-solution/#google_vignette
17/04/2024 13:27:39
QRCode
archive.org
thumbnail

Ivanti has released security updates to fix 27 vulnerabilities in its Avalanche mobile device management (MDM) solution, two of them critical heap overflows that can be exploited for remote command execution.

bleepingcomputer EN 2024 Ivanti Ivanti-Avalanche Mobile-Device-Management Remote-Command-Execution CVE-2024-24996 CVE-2024-29204
Security Brief: TA547 Targets German Organizations with Rhadamanthys Stealer https://www.proofpoint.com/us/blog/threat-insight/security-brief-ta547-targets-german-organizations-rhadamanthys-stealer
17/04/2024 11:57:54
QRCode
archive.org
thumbnail

What happened  Proofpoint identified TA547 targeting German organizations with an email campaign delivering Rhadamanthys malware. This is the first time researchers observed TA547 use Rhadamanthys,...

proofpoint EN 2024 LLM chatgpt analysis TA547 Rhadamanthys Stealer
Palo Alto - Putting The Protecc In GlobalProtect (CVE-2024-3400) https://labs.watchtowr.com/palo-alto-putting-the-protecc-in-globalprotect-cve-2024-3400/
17/04/2024 11:04:20
QRCode
archive.org
thumbnail

Welcome to April 2024, again. We’re back, again.

Over the weekend, we were all greeted by now-familiar news—a nation-state was exploiting a “sophisticated” vulnerability for full compromise in yet another enterprise-grade SSLVPN device.

We’ve seen all the commentary around the certification process of these devices for certain .GOVs - we’re not here to comment on that, but sounds humorous.

watchtowr EN 2024 CVE-2024-3400 SSLVPN Paloalto GlobalProtect analysis
DDoS threat report for 2024 Q1 https://blog.cloudflare.com/ddos-threat-report-for-2024-q1
17/04/2024 06:44:03
QRCode
archive.org
thumbnail

2024 started with a bang. Cloudflare’s autonomous systems mitigated over 4.5 million DDoS attacks in the first quarter of the year — a 50% increase compared to the previous year.

cloudflare EN 2024 DDoS attacks report
The US Government Has a Microsoft Problem https://www.wired.com/story/the-us-government-has-a-microsoft-problem/
16/04/2024 20:09:46
QRCode
archive.org
thumbnail

Microsoft has stumbled through a series of major cybersecurity failures over the past few years. Experts say the US government’s reliance on its systems means the company continues to get a free pass.

wired EN 2024 microsoft cybersecurity us-government china russia US problem
Change Healthcare stolen patient data leaked by ransomware gang https://techcrunch.com/2024/04/15/change-healthcare-stolen-patient-data-ransomhub-leak/
16/04/2024 16:46:00
QRCode
archive.org
thumbnail

This is the second group to demand a ransom payment from Change Healthcare to prevent the release of stolen patient data in as many months.

techcrunch EN 2024 change-healthcare data-breach data-leack patient
Open Source Security (OpenSSF) and OpenJS Foundations Issue Alert for Social Engineering Takeovers of Open Source Projects https://openjsf.org/blog/openssf-openjs-alert-social-engineering-takeovers
16/04/2024 16:44:29
QRCode
archive.org
thumbnail

XZ Utils cyberattack likely not an isolated incident

openjsf EN 2024 OpenSSF Social-engineering XZ open-source
page 55 / 76
4616 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio