Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 75 / 218
4358 résultats taggé EN  ✕
Wifi routers and VPN appliances targeted by notorious botnet Quad7 https://cybernews.com/security/wifi-routers-and-vpn-appliances-targeted-by-quad7/
10/09/2024 10:32:27
QRCode
archive.org

The mysterious Quad7 botnet has evolved its tactics to compromise several brands of Wi-Fi routers and VPN appliances. It’s armed with new backdoors, multiple vulnerabilities, some of which were previously unknown, and new staging servers and clusters, according to a report by Sekoia, a cybersecurity firm.

cybernews EN 2024 quad7 TP-Link VPN appliances routers targeted
Arctic Wolf Observes Akira Ransomware Campaign Targeting SonicWall SSLVPN Accounts https://arcticwolf.com/resources/blog/arctic-wolf-observes-akira-ransomware-campaign-targeting-sonicwall-sslvpn-accounts/
10/09/2024 08:26:42
QRCode
archive.org
thumbnail

In recent threat activity observed by Arctic Wolf, Akira ransomware affiliates carried out ransomware attacks with an initial access vector involving the compromise of SSLVPN user accounts on SonicWall devices.

arcticwolf EN 2024 SonicWall Akira SSLVPN ransomware CVE-2024-40766
Critical SonicWall SSLVPN bug exploited in ransomware attacks https://www.bleepingcomputer.com/news/security/critical-sonicwall-sslvpn-bug-exploited-in-ransomware-attacks/
10/09/2024 08:23:13
QRCode
archive.org
thumbnail

Ransomware affiliates exploit a critical security vulnerability in SonicWall SonicOS firewall devices to breach victims' networks.

bleepingcomputer EN 2024 SonicWall SSLVPN bug CVE-2024-40766
Veeam Backup & Response - RCE With Auth, But Mostly Without Auth (CVE-2024-40711) https://labs.watchtowr.com/veeam-backup-response-rce-with-auth-but-mostly-without-auth-cve-2024-40711-2/
09/09/2024 22:08:37
QRCode
archive.org
thumbnail

Every sysadmin is familiar with Veeam’s enterprise-oriented backup solution, ‘Veeam Backup & Replication’. Unfortunately, so is every ransomware operator, given it's somewhat 'privileged position' in the storage world of most enterprise's networks. There's no point deploying cryptolocker malware on a target unless you can also deny access to backups, and so, this class of attackers absolutely loves to break this particular software.
With so many eyes focussed on it, then, it is no huge surprise that it has a rich history of CVEs. Today, we're going to look at the latest episode - CVE-2024-40711.
Well, that was a complex vulnerability, requiring a lot of code-reading! We’ve successfully shown how multiple bugs can be chained together to gain RCE in a variety of versions of Veeam Backup & Replication.

watchtowr EN 2024 EN Veeam CVE-2024-40711 analysis PoC
Sextortion scams now use your "cheating" spouse’s name as a lure https://www.bleepingcomputer.com/news/security/sextortion-scams-now-use-your-cheating-spouses-name-as-a-lure/
09/09/2024 21:15:53
QRCode
archive.org
thumbnail

A new variant of the ongoing sextortion email scams is now targeting spouses, saying that their husband or wife is cheating on them, with links to the alleged proof.

bleepingcomputer EN 2024 Cheating Spouse Extortion Security Sextortion
New Android SpyAgent Campaign Steals Crypto Credentials via Image Recognition https://www.mcafee.com/blogs/other-blogs/mcafee-labs/new-android-spyagent-campaign-steals-crypto-credentials-via-image-recognition/
09/09/2024 21:14:57
QRCode
archive.org
thumbnail

Authored by SangRyol Ryu Recently, McAfee’s Mobile Research Team uncovered a new type of mobile malware that targets mnemonic keys by scanning for images

mcafee EN 2024 SpyAgent Campaign OCR Android
Russia focusing on US social media stars to covertly influence voters https://www.reuters.com/world/russia-focusing-american-social-media-stars-covertly-influence-voters-2024-09-09/
09/09/2024 16:07:16
QRCode
archive.org

Russia is increasingly turning to American social media stars to covertly influence voters ahead of the 2024 presidential election, according to U.S. officials and recently unveiled criminal charges.
“What we see them doing is relying on witting and unwitting Americans to seed, promote and add credibility to narratives that serve these foreign actors’ interest,” a senior intelligence official said in a briefing on Friday. “These foreign countries typically calculate that Americans are more likely to believe other Americans’ views.”

reuters EN 2024 US social media stars influence Russia presidential election
Major US car rental breach exposes hundreds of thousands https://cybernews.com/cybercrime/avis-car-rental-data-breach/
09/09/2024 12:09:07
QRCode
archive.org

Attackers roamed the systems of Avis Car Rental, a major car rental service provider, for several days, accessing data of nearly 300,000 individuals.

Malicious actors breached Avis systems on August 3rd and roamed inside the system for three days until the company secured its networks.

The company’s data breach notification letter, submitted to the Maine Attorney General’s Office, states that Avis discovered the breach on August 5th, indicating it took at least one day to kick the malicious actors out.

cybernews EN 2024 US avis Data-Breach car rental
Progress LoadMaster vulnerable to 10/10 severity RCE flaw https://www.bleepingcomputer.com/news/security/progress-loadmaster-vulnerable-to-10-10-severity-rce-flaw/
08/09/2024 18:43:58
QRCode
archive.org
thumbnail

Progress Software has issued an emergency fix for a maximum (10/10) severity vulnerability impacting its LoadMaster and LoadMaster Multi-Tenant (MT) Hypervisor products that allows attackers to remotely execute commands on the device.

bleepingcomputer EN 2024 LoadMaster Progress-Software RCE Remote-Command-Execution Vulnerability
Free Russia Foundation to investigate data breach after internal documents published online — Novaya Gazeta Europe https://novayagazeta.eu/articles/2024/09/07/free-russia-foundation-to-investigate-data-breach-after-internal-documents-published-online-en-news
08/09/2024 15:51:06
QRCode
archive.org
thumbnail

One of Russia’s most prominent pro-democracy organisations, the Free Russia Foundation, announced that it was investigating a potential cyberattack on Friday, following a leak of thousands of emails and documents related to its work.

novayagazeta EN 2024 investigation Data-Leak Russia pro-democracy cyberattack
The state of sandbox evasion techniques in 2024 https://fudgedotdotdot.github.io/posts/sandbox-evasion-in-2024/sandboxes.html
08/09/2024 11:12:24
QRCode
archive.org

This post is about sandbox evasion techniques and their usefulness in more targeted engagements.

There's a lot of sandbox evasion techniques, some are simple: query WMI, some are cool: parsing SMBIOS tables, most try to detect sandbox artifacts. I wanted to know if these techniques are still effective for detecting sandboxes, or if the sandboxes have since been updated to counter them.

fudgedotdotdot EN 2024 sandbox-evasion technique analysis
Swiss found to be gullible regarding fake news https://www.swissinfo.ch/eng/democracy/swiss-found-to-be-gullible-regarding-fake-news/87475624
07/09/2024 12:14:58
QRCode
archive.org
thumbnail

The Swiss do not seem to be particularly good at separating truth from lies, according to a study by the Organisation for Economic Co-operation and Development (OECD).

The Truth Quest Survey involved 40,765 participants in 21 countries. The 1,531 participants from Switzerland came third from last. Only Colombia and Brazil did worse. The US and France were also in the bottom third of the international comparison. By contrast, the best results were achieved by participants from Finland, the UK and Norway.

swissinfo EN 2024 Swiss OECD fake-news study
Predator Spyware Infrastructure Resurfaces Post-Sanctions – What You Need to Know https://www.recordedfuture.com/research/predator-spyware-infrastructure-returns-following-exposure-sanctions
07/09/2024 12:06:12
QRCode
archive.org
thumbnail

Intellexa’s Predator spyware infrastructure re-emerges after sanctions. Learn how this mercenary spyware is evolving, targeting high-profile individuals, and what defensive measures can be taken.

recordedfuture EN 2024 Predator spyware infrastructure re-emerges Intellexa
D-Link says it is not fixing four RCE flaws in DIR-846W routers https://www.bleepingcomputer.com/news/security/d-link-says-it-is-not-fixing-four-rce-flaws-in-dir-846w-routers/
07/09/2024 12:02:52
QRCode
archive.org
thumbnail

D-Link is warning that four remote code execution (RCE) flaws impacting all hardware and firmware versions of its DIR-846W router will not be fixed as the products are no longer supported.

bleepingcomputer EN 2024 D-Link End-of-Life End-of-Service Hardware RCE Remote-Code-Execution Vulnerability DIR-846W
Sextortion Scams Now Include Photos of Your Home https://krebsonsecurity.com/2024/09/sextortion-scams-now-include-photos-of-your-home/
07/09/2024 11:55:39
QRCode
archive.org

An old but persistent email scam known as "sextortion" has a new personalized touch: The missives, which claim that malware has captured webcam footage of recipients pleasuring themselves, now include a photo of the target's home in a bid to make…

krebsonsecurity EN 2024 Sextortion Scams Photos home
U.S. charges five Russian military members for destructive cyber ops, hack-and-leak campaigns | CyberScoop https://cyberscoop.com/u-s-charges-five-russian-military-members-for-destructive-cyber-ops-hack-and-leak-campaigns/
07/09/2024 11:53:16
QRCode
archive.org
thumbnail

The hackers were working with a unit in the Russian Main Intelligence Directorate, according to the DOJ.

cyberscoop EN 2024 US charged GRU DOJ Russia destructives cyberops
Fake OnlyFans Checker Tool Infects Hackers with Lummac Stealer Malware https://hackread.com/onlyfans-checker-tool-hackers-lummac-stealer-malware/
07/09/2024 11:47:11
QRCode
archive.org
thumbnail

Cybersecurity experts uncover the infamous Lummac Stealer malware, disguised as an OnlyFans "Checker" tool, targeting hackers.

hackread EN Lumma Lummac Stealer malware OnlyFans
Obfuscated PowerShell leads to Lumma C2 Stealer https://www.ontinue.com/resource/obfuscated-powershell-leads-to-lumma-c2-stealer/
07/09/2024 11:46:07
QRCode
archive.org
thumbnail

Ontinue Cyber Defenders have observed an uptick in activities related to the LummaC2 infostealer being used as a Malware-as-a-Service.

ontinue EN 2024 obfuscated Powershell analysis Lumma LummaC2 Stealer Malware-as-a-Service
Recent SonicWall Firewall Vulnerability Potentially Exploited in the Wild https://www.securityweek.com/recent-sonicwall-firewall-vulnerability-potentially-exploited-in-the-wild/
06/09/2024 17:15:22
QRCode
archive.org

SonicWall is warning customers that the recently patched critical vulnerability CVE-2024-40766 may be exploited in the wild.

securityweek EN 2024 Vulnerability CVE-2024-40766 exploited
Online AI Mental Health and Addiction Treatment Provider Exposed Patient Data https://www.vpnmentor.com/news/report-confidanthealth-breach/
06/09/2024 14:55:45
QRCode
archive.org
thumbnail

Thousands of records belonging to Confidant Health exposed on a non-password-protected database, including ID, insurance, medicaid cards, and more.

vpnmentor EN 2024 Data-Leak OnlineAI Mental Health Patient Data health
page 75 / 218
4968 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn