Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 7 / 59
1170 résultats taggé 2023  ✕
Ransomware Hive : arrestation d’un suspect à Paris | LeMagIT https://www.lemagit.fr/actualites/366563002/Ransomware-Hive-arrestation-dun-suspect-a-Paris
13/12/2023 11:55:15
QRCode
archive.org
thumbnail

Un ressortant russe résidant à Chypre, âgé d’une quarantaine d’années, a été interpellé la semaine dernière à Paris, soupçonné de liens avec la franchise de rançongiciel Hive.

lemagit FR 2023 Ransomware arrestation Hive Paris
Ukraine's top mobile operator hit by biggest cyberattack of war so far | Reuters https://www.reuters.com/technology/cybersecurity/ukraines-biggest-mobile-operator-suffers-massive-hacker-attack-statement-2023-12-12/
12/12/2023 21:45:10
QRCode
archive.org

Ukraine's biggest mobile network operator was hit on Tuesday by what appeared to be the largest cyberattack of the war with Russia so far, knocking out mobile and internet services for millions and the air raid alert system in parts of Kyiv region.

reuters EN 2023 Ukraine mobile cyberattack Russia Russia-Ukraine-war Kyivstar
pfSense Security: Sensing Code Vulnerabilities with SonarCloud https://www.sonarsource.com/blog/pfsense-vulnerabilities-sonarcloud/
12/12/2023 21:31:04
QRCode
archive.org
thumbnail

Our Clean Code solution SonarCloud discovered multiple vulnerabilities leading to remote code execution on pfSense CE 2.7.0. Let's see how SonarCloud found them and how it can keep your code clean.

sonarsource EN 2023 pfsense CVE-2023-42325 CVE-2023-42327 CVE-2023-42326
One in four apps remain exposed to Log4Shell https://www.theregister.com/2023/12/11/log4j_vulnerabilities/
12/12/2023 19:58:36
QRCode
archive.org
thumbnail

Two years after the Log4Shell vulnerability in the open source Java-based Log4j logging utility was disclosed, circa one in four applications are dependent on outdated libraries, leaving them open to exploitation.

Research from security shop Veracode revealed that the vast majority of vulnerable apps may never have updated the Log4j library after it was implemented by developers as 32 percent were running pre-2015 EOL versions.

theregister EN 2023 Log4Shell Log4j Veracode outdated vulnerable
Sophos backports RCE fix after attacks on unsupported firewalls https://www.bleepingcomputer.com/news/security/sophos-backports-rce-fix-after-attacks-on-unsupported-firewalls/
12/12/2023 18:58:12
QRCode
archive.org
thumbnail

Sophos was forced to backport a security update for CVE-2022-3236 for end-of-life (EOL) firewall firmware versions after discovering hackers actively exploiting the flaw in attacks.

bleepingcomputer En 2023 Actively-Exploited Firewall RCE Remote-Code-Execution Security-Update Sophos
50K WordPress sites exposed to RCE attacks by critical bug in backup plugin https://www.bleepingcomputer.com/news/security/50k-wordpress-sites-exposed-to-rce-attacks-by-critical-bug-in-backup-plugin/
12/12/2023 11:31:13
QRCode
archive.org
thumbnail

A critical severity vulnerability in a WordPress plugin with more than 90,000 installs can let attackers gain remote code execution to fully compromise vulnerable websites.

bleepingcomputer EN 2023 Backup-Migration Code-Injection CVE-2023-6553 PHP RCE Remote-Code-Execution WordPress
AI Act, come funziona lo stop al riconoscimento biometrico della prima legge europea sull'intelligenza artificiale | Wired Italia https://www.wired.it/article/ai-act-intelligenza-artificiale-regolamento-riconoscimento-biometrico-eccezioni-polizia-crimini-autorizzazione/
12/12/2023 10:50:50
QRCode
archive.org
thumbnail

Sono previste tre eccezioni per le forze dell'ordine, con una lista di 16 crimini per le cui indagini può essere ammesso. Serve un'autorizzazione dall'autorità giudiziaria, ma si può partire senza e richiederla in 24 ore

wired.it IT 2023 ai-act intelligenza-artificiale big-data europa regole copyright privacy chatgpt google-bard sorveglianza riconoscimento-facciale
Apple Releases Security Updates to Patch Critical iOS and macOS Security Flaws https://thehackernews.com/2023/12/apple-releases-security-updates-to.html
12/12/2023 08:50:45
QRCode
archive.org
thumbnail

Apple has released patches for iOS, iPadOS, macOS, tvOS, watchOS, and Safari to address multiple vulnerabilities.

thehackernews EN 2023 Apple Security Updates November2023 iOS macOS tvOS watchOS patch CVE-2023-45866
US healthcare giant Norton says hackers stole millions of patients' data during ransomware attack | TechCrunch https://techcrunch.com/2023/12/11/norton-cyberattack-ransomware-hacker-millions/
12/12/2023 08:45:53
QRCode
archive.org
thumbnail

Hackers accessed the personal and health data of 2.5 million patients — and employees — during a May ransomware attack.

techcrunch EN 2023 data-breach healthcare ransomware Norton
L’AI Act européen adopté après des négociations marathon | ICTjournal https://www.ictjournal.ch/articles/2023-12-11/lai-act-europeen-adopte-apres-des-negociations-marathon
11/12/2023 18:57:30
QRCode
archive.org
thumbnail

Les négociateurs du Parlement et du Conseil européens sont parvenus à un accord concernant la réglementation de l'intelligence artificielle. L'approche basée sur les risques, à la base du projet, est confirmée. Des compromis sont censés garantir la protection contre les risques liés à l’IA, tout en encourageant l’innovation.

ictjournal FR 2023 EU IA réglementation act AI
The EU Just Passed Sweeping New Rules to Regulate AI https://www.wired.com/story/eu-ai-act/
11/12/2023 15:51:09
QRCode
archive.org
thumbnail

The European Union agreed on terms of the AI Act, a major new set of rules that will govern the building and use of AI and have major implications for Google, OpenAI, and others racing to develop AI systems.

wired EN 2023 artificial intelligence openai EU legal act ai
Amazon sues group that fakes returns so people can get free MacBooks - The Verge https://www.theverge.com/2023/12/8/23993573/amazon-rekk-refund-return-fraud-lawsuit
11/12/2023 15:50:26
QRCode
archive.org
thumbnail

Amazon sues REKK, which allegedly helped shoppers get other expensive items for free by hacking and bribing fulfillment center employees to approve fake returns.

theverge 2023 EN Amazon REKK fake MacBook
Early Warning Notification - the use of Bluetooth trackers for geolocation in organised crime | Europol https://www.europol.europa.eu/publications-events/publications/early-warning-notification-use-of-bluetooth-trackers-for-geolocation-in-organised-crime
11/12/2023 12:34:04
QRCode
archive.org
thumbnail

Bluetooth Trackers Exploited for Geolocation in Organised CrimeBluetooth trackers, commonly used for locating personal items and vehicles, have become an unexpected tool in organised crime, according to recent findings reported by Europol in an Early Warning Notification. Typically designed for purposes such as finding lost keys or preventing vehicle theft, Bluetooth trackers are now being leveraged by criminals for geo-locating...

europol EN 2023 warning bluetoot tracker Geolocation tag AirTags
23andMe changes terms of service amid legal fallout from data breach https://www.axios.com/2023/12/07/23andme-terms-of-service-update-data-breach
09/12/2023 18:46:10
QRCode
archive.org

Days after a data breach allowed hackers to steal 6.9 million 23andMe users' personal details, the genetic testing company changed its terms of service to prevent customers from formally suing the firm or pursuing class-action lawsuits against it.

Why it matters: It's unclear if 23andMe is attempting to retroactively shield itself from lawsuits alleging it acted negligently.

axios EN 2023 23andMe legal data-breach retroactively shield lawsuits
Russian Hacker Vladimir Dunaev Pleads Guilty for Creating TrickBot Malware https://thehackernews.com/2023/12/russian-hacker-vladimir-dunaev.html
09/12/2023 18:15:40
QRCode
archive.org
thumbnail

Russian national Vladimir Dunaev found guilty for developing TrickBot malware, facing up to 35 years in prison.

thehackernews EN 2023 TrickBot Dunaev Malware Guilty
Inside Job: How a Hacker Helped Cocaine Traffickers Infiltrate Europe’s Biggest Ports https://www.occrp.org/en/narcofiles-the-new-criminal-order/inside-job-how-a-hacker-helped-cocaine-traffickers-infiltrate-europes-biggest-ports
09/12/2023 18:14:19
QRCode
archive.org
thumbnail

Europe’s commercial ports are top entry points for cocaine flooding in at record rates. The work of a Dutch hacker, who was hired by drug traffickers to penetrate port IT networks, reveals how this...

OCCRP EN 2023 narcofiles Hacker Cocaine Traffickers Europe Dutch
Ransomware : un mois de novembre hors-norme https://www.lemagit.fr/actualites/366562655/Ransomware-un-mois-de-novembre-hors-norme
09/12/2023 16:16:52
QRCode
archive.org
thumbnail

Globalement, le mois écoulé se distingue par un niveau inédit de la menace observable, et incohérent avec la saisonnalité historiquement constatée. Mais cela ne vaut pas pour la France.

lemagit FR 2023 Ransomware Novembre2023 analyse
Scanning Danger: Unmasking the Threats of Quishing https://www.trellix.com/about/newsroom/stories/research/scanning-danger-unmasking-the-threats-of-quishing/
08/12/2023 14:18:12
QRCode
archive.org
thumbnail

In this blog, we explore the modus operandi of threat actors utilizing QR code attacks, by examining recent and widespread quishing campaigns detected by Trellix.

trellix EN 2023 Quishing QRCode QR analysis attacks
Qualcomm Releases Details on Chip Vulnerabilities Exploited in Targeted Attacks https://thehackernews.com/2023/12/qualcomm-releases-details-on-chip.html
08/12/2023 10:28:46
QRCode
archive.org
thumbnail

Qualcomm has disclosed details about three high-severity security vulnerabilities that were exploited in limited, targeted attacks in October 2023.

thehackernews EN 2023 Qualcomm Chip Vulnerabilities Targeted CVE-2023-33063 CVE-2023-33106 CVE-2023-33107
ASSET Research Group: 5Ghoul https://asset-group.github.io/disclosures/5ghoul/
08/12/2023 10:25:28
QRCode
archive.org

In this vulnerability disclosure report, we discuss details of 5Ghoul – a family of implementation-level 5G vulnerabilities. Such a family of vulnerabilities are present in the firmware implementation of 5G mobile network modems from major chipset vendors i.e., Qualcomm and MediaTek. Consequently, many 5G-capable commercial products such as smartphones, Customer-premises Equipment (CPE) routers and USB modems are potentially impacted due to the employment of vulnerable 5G modems in such products. In total, we have found 12 new vulnerabilities (14 total), out of which 10 affect 5G modems from Qualcomm and MediaTek. More importantly, three of these ten vulnerabilities are confirmed to have high severity. We also wrote a scraper to send crafted queries to https://www.kimovil.com/en/ and to have an estimate on the number of smartphone models affected due to these vulnerabilities. We found over 710 smartphone models that are currently in the market to be affected. We emphasize that the actual number of affected models might be more, as firmware code is often shared across different modem versions. In this disclosure report, we also demonstrate the exploitation of 5Ghoul vulnerabilities to drop and freeze 5G connection on smartphones and CPE routers. We also show downgrade attacks across multiple smartphones that result in downgrading the 5G connection to 4G.

asset-group.github.io EN 2023 5Ghoul 5g Qualcomm MediaTek
page 7 / 59
4845 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn