Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 6 / 59
1170 résultats taggé 2023  ✕
MongoDB says customer data was exposed in a cyberattack https://www.bleepingcomputer.com/news/security/mongodb-says-customer-data-was-exposed-in-a-cyberattack/
17/12/2023 00:12:05
QRCode
archive.org
thumbnail

MongoDB is warning that its corporate systems were breached and that customer data was exposed in a cyberattack that was detected by the company earlier this week.

bleepingcomputer EN 2023 Cyberattack Data-Theft Hack MongoDB Network-Incident data-breach
QNAP VioStor NVR vulnerability actively exploited by malware botnet https://www.bleepingcomputer.com/news/security/qnap-viostor-nvr-vulnerability-actively-exploited-by-malware-botnet/
16/12/2023 17:25:37
QRCode
archive.org
thumbnail

A Mirai-based botnet named 'InfectedSlurs' is exploiting a remote code execution (RCE) vulnerability in QNAP VioStor NVR (Network Video Recorder) devices to hijack and make them part of its DDoS (distributed denial of service) swarm.
#Actively #Botnet #Computer #Exploited #FXC #InfectedSlurs #InfoSec #Malware #QNAP #Router #Security #Vulnerability

bleepingcomputer EN 2023 FXC QNAP InfectedSlurs Actively Botnet Malware Exploited Computer Router Vulnerability
Microsoft’s AI Chatbot Replies to Election Questions With Conspiracies, Fake Scandals, and Lies https://www.wired.com/story/microsoft-ai-copilot-chatbot-election-conspiracy/
16/12/2023 10:13:44
QRCode
archive.org
thumbnail

With less than a year to go before one of the most consequential elections in US history, Microsoft’s AI chatbot is responding to political queries with conspiracies, misinformation, and out-of-date or incorrect information.

When WIRED asked the chatbot, initially called Bing Chat and recently renamed Microsoft Copilot, about polling locations for the 2024 US election, the bot referenced in-person voting by linking to an article about Russian president Vladimir Putin running for reelection next year. When asked about electoral candidates, it listed numerous GOP candidates who have already pulled out of the race.

wired EN 2023 BingChat Chatbot Election Conspiracies Lies AI
Marketing Company Claims That It Actually Is Listening to Your Phone and Smart Speakers to Target Ads https://www.404media.co/cmg-cox-media-actually-listening-to-phones-smartspeakers-for-ads-marketing/
16/12/2023 10:12:20
QRCode
archive.org
thumbnail

A marketing team within media giant Cox Media Group (CMG) claims it has the capability to listen to ambient conversations of consumers through embedded microphones in smartphones, smart TVs, and other devices to gather data and use it to target ads, according to a review of CMG marketing materials by 404 Media and details from a pitch given to an outside marketing professional. Called “Active Listening,” CMG claims the capability can identify potential customers “based on casual conversations in real time.”

404media EN 2023 marketing CMG Cox-Media-Group Listening Phone privacy
Exploiting GOG Galaxy XPC service for privilege escalation in macOS https://securityintelligence.com/x-force/exploiting-gog-galaxy-xpc-service-privilege-escalation-macos/
16/12/2023 01:04:00
QRCode
archive.org
thumbnail

Unpack the analysis of a GOG Galaxy XPC service vulnerability. More from IBM X-Force Red.

securityintelligence 2023 EN macos GOG client XPC vulnerability
Imperva Uncovers CVE-2023-22524, A RCE Vulnerability https://www.imperva.com/blog/cve-2023-22524-rce-vulnerability-in-atlassian-companion-for-macos/
16/12/2023 01:01:43
QRCode
archive.org
thumbnail

Learn about a RCE vulnerability, discovered by the Imperva Red Team, identified as CVE-2023-22524, in Atlassian Companion for macOS.

imperva EN 2023 RCE vulnerability CVE-2023-22524 Atlassian macOS
3CX warns customers to disable SQL database integrations https://www.bleepingcomputer.com/news/security/3cx-warns-customers-to-disable-sql-database-integrations/
15/12/2023 23:37:14
QRCode
archive.org
thumbnail

VoIP communications company 3CX warned customers today to disable SQL Database integrations because of risks posed by what it describes as a potential vulnerability.

bleepingcomputer EN 2023 CRM SQL VoIP Warning 3CX
Cyberextorsion : 2023, année de l’industrialisation https://www.lemagit.fr/actualites/366563533/Cyber-extorsion-2023-annee-de-lindustrialisation
15/12/2023 22:00:20
QRCode
archive.org
thumbnail

L’année qui s’achève aura été notamment marquée par plusieurs campagnes d’exploitation de vulnérabilités inédites, en masse, par Cl0p, à des fins de cyberextorsion. Une première à cette échelle. L'...

lemagit FR 2023 Cyberextorsion industrialisation Cl0p
A pernicious potpourri of Python packages in PyPI https://www.welivesecurity.com/en/eset-research/pernicious-potpourri-python-packages-pypi/
15/12/2023 21:57:30
QRCode
archive.org
thumbnail

The past year has seen over 10,000 downloads of malicious packages hosted on the official Python package repository, ESET research finds.

welivesecurity EN 2023 Python packages malicious PyPI
Paternity and fertility tests among data stolen in Asper Biogene cyberattack | News | ERR https://news.err.ee/1609195705/paternity-and-fertility-tests-among-data-stolen-in-asper-biogene-cyberattack
15/12/2023 21:42:54
QRCode
archive.org
thumbnail

Among the health data illegally downloaded from genetic testing company Asper Biogene's database were details related to paternity and fertility tests. Some of the data is easily understandable and can be directly connected to specific individuals, Pille Lehis, director general of the Data Protection Inspectorate, said on ETV morning show "Terevisioon.".

err.ee EN 2023 cyberattack data-protection-inspectorate pille-lehis asper-biogene health-data-leak
Supply chain attack targeting Ledger crypto wallet leaves users hacked https://techcrunch.com/2023/12/14/supply-chain-attack-targeting-ledger-crypto-wallet-leaves-users-hacked/
15/12/2023 21:39:50
QRCode
archive.org
thumbnail

Hackers pushed out a malicious version of a software library made by crypto company Ledger, which powers several web3 applications.

techcrunch EN 2023 crypto security cryptocurrency ledger Supply-chain-attack
CVE-2023-50164 https://attackerkb.com/topics/pe3CCtOE81/cve-2023-50164/rapid7-analysis
15/12/2023 21:27:06
QRCode
archive.org
thumbnail

Apache Struts is a popular Java web application framework. On December 7, 2023 Apache published an advisory for CVE-2023-50164, a Struts parameter pollution vu…

attackerkb EN 2023 CVE-2023-50164 Apache Struts CVE-2023-50164 analysis
Ledger's Web3 Connector library was compromised and replaced with a drainer https://stackdiary.com/ledger-library-confirmed-compromised-and-replaced-with-a-drainer/
14/12/2023 16:21:52
QRCode
archive.org
thumbnail

Ledger's software got hit with a serious security problem. banteg, a well-known crypto guy, tweeted that Ledger's library is messed up and now has a "drainer" in it.

stackdiary EN 2023 Ledger library crypto software wallet
Apple will no longer give police users' push notification data without a warrant https://techcrunch.com/2023/12/13/apple-push-notifications-government-warrant/
13/12/2023 18:04:01
QRCode
archive.org
thumbnail

Apple says it will now require a judge-approved order before handing over its users' push notification records to government agencies.

techcrunch EN 2023 apple cybersecurity data-protection law-enforcement push
Hackers are exploiting critical Apache Struts flaw using public PoC https://www.bleepingcomputer.com/news/security/hackers-are-exploiting-critical-apache-struts-flaw-using-public-poc/
13/12/2023 17:21:24
QRCode
archive.org
thumbnail

Hackers are attempting to leverage a recently fixed critical vulnerability (CVE-2023-50164) in Apache Struts that leads to remote code execution, in attacks that rely on publicly available proof-of-concept exploit code.

bleepingcomputer EN 2023 Actively-Exploited Apache-Struts PoC Proof-of-Concept RCE Remote-Code-Execution CVE-2023-50164
Ukraine’s intelligence claims cyberattack on Russia’s state tax service https://therecord.media/ukraine-intelligence-claims-attack-on-russia-tax-service
13/12/2023 17:10:41
QRCode
archive.org
thumbnail

Ukraine's defense intelligence directorate (GUR) said it infected thousands of servers belonging to Russia's state tax service with malware, and destroyed databases and backups.

therecord EN 2023 Ukraine Russia Russia-Ukraine-war GUR destroyed state tax service malware
CALISTO doxxing : Sekoia.io findings concurs to Reuters’ investigation on FSB-related Andrey Korinets https://blog.sekoia.io/calisto-doxxing-sekoia-io-findings-concurs-to-reuters-investigation-on-fsb-related-andrey-korinets/
13/12/2023 15:30:13
QRCode
archive.org
thumbnail

Discover activities linking Korinets to CALISTO doxxing in our investigation. Uncover details from emails, domains & servers used to target UK Parliament & Cambridge University.

sekoia EN 2023 Korinets CALISTO doxxing mail whois
Threat actors misuse OAuth applications to automate financially driven attacks https://www.microsoft.com/en-us/security/blog/2023/12/12/threat-actors-misuse-oauth-applications-to-automate-financially-driven-attacks/
13/12/2023 15:25:29
QRCode
archive.org
thumbnail

Microsoft Threat Intelligence presents cases of threat actors misusing OAuth applications as automation tools in financially motivated attacks.

microsoft EN 2023 OAuth applications automation tools attacks
Spider-Man And Wolverine Devs Hit By Alleged Ransomware Attack https://kotaku.com/insomniac-games-sony-ransomware-spiderman-wolverine-1851092474
13/12/2023 13:31:19
QRCode
archive.org
thumbnail

This would be the third time this year that a Sony-owned company has been breached by hackers

kotaku EN 2023 Ransomware Royal Rhysida Insomniac Sony
Apple’s new iPhone security setting keeps thieves out of your digital accounts https://www.theverge.com/2023/12/12/23998665/apple-stolen-device-protection-face-touch-id-icloud-account-vulnerability-ios-17-3-beta
13/12/2023 11:57:25
QRCode
archive.org
thumbnail

Apple added a feature to iOS 17.3 that appears to address an iPhone security vulnerability that lets thieves steal iCloud accounts using only a user’s iPhone PIN.

theverge EN 2023 iOS17.3 iPhone anti-theft biometric iCloud setting
page 6 / 59
4845 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn