Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 64 / 231
Criminal phishing network resulting in over 480 000 victims worldwide busted in Spain and Latin America | Europol https://www.europol.europa.eu/media-press/newsroom/news/criminal-phishing-network-resulting-in-over-480-000-victims-worldwide-busted-in-spain-and-latin-america?mtm_campaign=newsletter
21/09/2024 17:32:54
QRCode
archive.org
thumbnail

Investigators reported 483 000 victims worldwide, who had attempted to regain access to their phones and been phished in the process. The victims are mainly Spanish-speaking nationals from European, North American and South American countries.The successful operation took place thanks to international cooperation between law enforcement and judiciary authorities from Spain, Argentina, Chile, Colombia, Ecuador and Peru.The action week took...

europol EN 2024 phishing busted operacion-kaerb seized spain
4 exploits, 1 bug: exploiting cve-2024-20017 4 different ways https://blog.coffinsec.com/0day/2024/08/30/exploiting-CVE-2024-20017-four-different-ways.html
21/09/2024 17:16:53
QRCode
archive.org
  • Affected chipsets: MT6890, MT7915, MT7916, MT7981, MT7986, MT7622
  • Affected software: SDK version 7.4.0.1 and before (for MT7915) / SDK version 7.6.7.0 and before (for MT7916, MT7981 and MT7986) / OpenWrt 19.07, 21.02
coffinsec EN 2024 CVE-2024-20017 wappd MediaTek exploit PoC
Ukraine bans official use of Telegram app over fears of Russian spying https://www.reuters.com/technology/cybersecurity/ukraine-bans-official-use-telegram-app-over-fears-russian-spying-2024-09-20/?user_email=9e19aa6ed986d20195d4113ba5a6a3e709c18e0549688aa9b20d5f2e8d0dec05&lctg=6596a37f125992f7eb0b5ac9
21/09/2024 17:14:25
QRCode
archive.org
  • Restrictions apply only to official devices, not personal phones
  • Telegram heavily used in Ukraine and Russia since 2022 invasion
  • Budanov: Issue of Telegram is a matter of national security
reuters EN 2024 Telegram ban Ukraine Russia-Ukraine-war
GitLab Critical Patch Release: 17.3.3, 17.2.7, 17.1.8, 17.0.8, 16.11.10 https://about.gitlab.com/releases/2024/09/17/patch-release-gitlab-17-3-3-released/
20/09/2024 11:39:40
QRCode
archive.org
thumbnail

Learn more about GitLab Critical Patch Release: 17.3.3, 17.2.7, 17.1.8, 17.0.8, 16.11.10 for GitLab Community Edition (CE) and Enterprise Edition (EE).

gitlab EN 2024 patch advisory CVE-2024-45409 SAML critical
Enterprise ServiceNow Knowledge Bases at Risk https://appomni.com/ao-labs/servicenow-knowledge-bases-data-exposures-uncovered/
20/09/2024 10:14:35
QRCode
archive.org
thumbnail

Read the blog to learn about ServiceNow’s Knowledge Base data exposure risks and how to mitigate these issues.

appomni EN 2024 ServiceNow dataleak Misconfiguration
Thousands of orgs at risk of ServiceNow KB data leaks https://www.theregister.com/2024/09/19/servicenow_knowledge_base_leaks/
20/09/2024 10:05:37
QRCode
archive.org
thumbnail

Security researchers say that thousands of companies are potentially leaking secrets from their internal knowledge base (KB) articles via ServiceNow misconfigurations.

Aaron Costello and Dan Meged, of the AppOmni and Adaptive Shield security shops respectively, separately published their findings this week, concluding that pages set to "private" could still be read by tinkering with a ServiceNow customer's KB widgets.

These widgets are essentially containers of information used to construct the pages in KB articles. These can include page elements that allow users to leave feedback on articles, either through star ratings or comments, for example.

theregister EN 2024 ServiceNow KB data-leak
New Criminal Complaint Over Pegasus Spyware Hacking of journalists and activists in the UK   https://www.glanlaw.org/single-post/new-criminal-complaint-over-pegasus-spyware-hacking-of-journalists-and-activists-in-the-uk
20/09/2024 09:51:48
QRCode
archive.org
thumbnail

Four victims of Pegasus spyware in the UK have this week filed a criminal complaint with the Metropolitan Police.

glanlaw EN 2024 Pegasus spyware UK Criminal Complaint
Is Tor still safe to use? https://blog.torproject.org/tor-is-still-safe/
20/09/2024 09:42:53
QRCode
archive.org
thumbnail

This blog post is a response to an investigative news report about a large-scale law-enforcement attack that managed to de-anonymize a user of an old version of the long-retired app Ricochet. This blog post aims to provide insight into what we know so far. Nothing that the Tor Project has learned about this incident suggests that Tor Browser was attacked or exploited. Tor users can continue to use Tor Browser to access the web securely and anonymously.

torproject EN 2024 Ricochet Germany police sniffing law-enforcement de-anonymize
New macOS malware HZ RAT lets attackers control Macs remotely https://moonlock.com/macos-malware-hz-rat
20/09/2024 08:51:58
QRCode
archive.org
thumbnail

It lets attackers control Macs remotely.

moonlock EN 2024 macOS malware HZRAT RAT analysis
Clever 'GitHub Scanner' campaign abusing repos to push malware https://www.bleepingcomputer.com/news/security/clever-github-scanner-campaign-abusing-repos-to-push-malware/
19/09/2024 14:07:18
QRCode
archive.org
thumbnail

A clever threat campaign is abusing GitHub repositories to distribute malware targeting users who frequent an open source project repository or are subscribed to email notifications from it. A malicious GitHub user opens a new

bleepingcomputer EN 2024 GitHub Malware Phishing
WebDAV-as-a-Service: Uncovering the infrastructure behind Emmenhtal loader distribution https://blog.sekoia.io/webdav-as-a-service-uncovering-the-infrastructure-behind-emmenhtal-loader-distribution/
19/09/2024 14:02:56
QRCode
archive.org
thumbnail

Our TDR team has been investigating the WebDAV infrastructure used to distribute the Emmenhtal loader. Here are some key insights:

sekoia EN 2024 webdav WebDAV-as-a-Service Emmenhtal loader
Emmenhtal: a little-known Emmenhtal distributing commodity infostealers worldwide https://www.orangecyberdefense.com/global/blog/cert-news/emmenhtal-a-little-known-loader-distributing-commodity-infostealers-worldwide
19/09/2024 13:54:05
QRCode
archive.org
  • Following detections from our Managed Threat Detection (CyberSOC) teams, our CERT analysts were able to uncover several recent campaigns leading to CryptBot and Lumma infostealers.

  • Some of these campaigns are still active and target various organizations worldwide.

  • These campaigns leverage a little-documented loader we dubbed “Emmenhtal”, (because we are cheese lovers), which hides in the padding of a modified legitimate Windows binary and uses HTA.

  • Emmenhtal likely surfaced at the beginning of 2024 and is possibly being distributed by several financially motivated threat actors through various means (from traditional email phishing lures to fake videos).

  • IoCs can be found on our dedicated GitHub page here.
    Note: The analysis cut-off date for this report was August 07, 2024.

orangecyberdefense EN 2024 Emmenhtal loader infostealers
Australian police infiltrate encrypted messaging app Ghost and arrest dozens https://apnews.com/article/australia-ghost-encrypted-app-bad89db81faecc6581d25818c0d7765d
19/09/2024 06:56:34
QRCode
archive.org
thumbnail

Australian police say they have infiltrated Ghost, an encrypted global communications app developed for criminals, leading to dozens of arrests.

apnews EN 2024 ghost infiltrated Australia police Europol
Europol takes down "Ghost" encrypted messaging platform used for crime https://www.bleepingcomputer.com/news/security/europol-takes-down-ghost-encrypted-messaging-platform-used-for-crime/
18/09/2024 23:07:36
QRCode
archive.org
thumbnail

Europol and law enforcement from nine countries successfully dismantled an encrypted communications platform called

bleepingcomputer EN 2024 Arrest Encrypted-Messaging Europol Ghost Legal
Police Hack Into ‘Ghost’, An Encrypted Platform for Criminals https://www.404media.co/email/9bbc4709-21ff-4669-99eb-48430c2072bd/?ref=daily-stories-newsletter
18/09/2024 15:37:51
QRCode
archive.org
thumbnail

Operation Kraken is a sign that organized criminals are moving away from larger encrypted phone companies to a decentralized collection of smaller players and consumer access apps that the rest of us use.

404media EN 2024 Police Hack US Ghost Encrypted Criminals Operation-Kraken
Taking over Train infrastructure in Poland /Traction power substation and lighting systems https://medium.com/@bertinjoseb/taking-over-train-infrastructure-in-poland-traction-power-substation-and-lighting-systems-2948594f259d
18/09/2024 11:07:14
QRCode
archive.org

(6 Months later CZAT 7 Server is offline or changed to another ip address , this post was written 6 months ago, published today 9/2/2024)

I’m a big fan of trains, i like them, but never tough that someday i would take over train traction power substation located in Poland from my home in Costa Rica.

I’m not a train expert/engineer and i had no idea how the train management works , I’m a cyber security professional doing research in the internet about OT Industrial equipment exposed potentially vulnerable or misconfigured.

Everything explained here is just what i learned reading official documentation from the Elester-pkp website . https://elester-pkp.com.pl/

bertinjoseb medium EN 2024 iot Critical-infrastructure Train Poland iot-safari power-substation lighting-systems
Mastercard invests in continued defense of global digital economy with acquisition of Recorded Future https://www.mastercard.com/news/press/2024/september/mastercard-invests-in-continued-defense-of-global-digital-economy-with-acquisition-of-recorded-future/
18/09/2024 10:28:34
QRCode
archive.org
thumbnail

Mastercard today expanded its cybersecurity services with an agreement to acquire global threat intelligence company Recorded Future from Insight Partners for $2.65 billion.

mastercard EN 2024 statement recordedfuture business
Vanir Ransomware Group onion site seized by German law enforcement https://databreaches.net/2024/09/18/vanir-ransomware-group-onion-site-seized-by-german-law-enforcement/
18/09/2024 09:21:30
QRCode
archive.org

Threat actors called Vanir Ransomware Group posted a few listings in July. Tonight, however, their onion site has a seized message:

” THIS HIDDEN SITE HAS BEEN SEIZED
by the State Bureau of Investigation Baden-Württemberg as a part of a law enforcement action taken against Vanir Ransomware Group “

databreaches EN 2024 Vanir Ransomware Group seized
Port of Seattle refuses to pay Rhysida ransom, warns of data leak https://therecord.media/seattle-port-rhysida-ransom-refused
18/09/2024 09:12:42
QRCode
archive.org
thumbnail

The cyberattack over Labor Day weekend severely hampered operations at Seattle's airport, which is managed by the Port of Seattle.

therecord.media EN 2024 Seattle port US Rhysida ransom no-pay
VMware Patches Remote Code Execution Flaw Found in Chinese Hacking Contest https://www.securityweek.com/vmware-patches-remote-code-execution-flaw-found-in-chinese-hacking-contest/
17/09/2024 21:52:46
QRCode
archive.org

VMware warned that an attacker with network access could send a specially crafted packet to execute remote code. CVSS severity score 9.8/10.

securityweek EN 2024 CVE-2024-38812 CVE-2024-38813 VMware RCE vulnerability
page 64 / 231
4617 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio