Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 77 / 213
4245 résultats taggé E*N  ✕
Cybercriminals Abusing Cloudflare Tunnels to Evade Detection and Spread Malware https://thehackernews.com/2024/08/cybercriminals-abusing-cloudflare.html
03/08/2024 21:07:17
QRCode
archive.org
thumbnail

Cloudflare's TryCloudflare is being exploited by cybercriminals for malware delivery via phishing emails, reports say.

thehackernews EN 2024 Cloudflare Tunnels TryCloudflare
Quartet of Trouble: XWorm, AsyncRAT, VenomRAT, and… https://www.esentire.com/blog/quartet-of-trouble-xworm-asyncrat-venomrat-and-purelogs-stealer-leverage-trycloudflare
03/08/2024 21:06:45
QRCode
archive.org
thumbnail

Learn more about how four malware, XWorm, AsyncRAT, VenomRAT, and PureLogs Stealer, are leveraging TryCloudflare and get security recommendations from our…

esentire EN 2024 research analysis XWorm AsyncRAT VenomRAT PureLogStealer TryCloudflare
Black Basta ransomware switches to more evasive custom malware https://www.bleepingcomputer.com/news/security/black-basta-ransomware-switches-to-more-evasive-custom-malware/
03/08/2024 21:04:49
QRCode
archive.org
thumbnail

The Black Basta ransomware gang has shown resilience and an ability to adapt to a constantly shifting space, using new custom tools and tactics to evade detection and spread throughout a network.

bleepingcomputer EN 2024 BlackBasta Initial-Access Malware Ransomware mandiant UNC4393
UNC4393 Goes Gently into the SILENTNIGHT https://cloud.google.com/blog/topics/threat-intelligence/unc4393-goes-gently-into-silentnight/?hl=en
03/08/2024 21:04:00
QRCode
archive.org
thumbnail

In mid-2022, Mandiant's Managed Defense detected multiple intrusions involving QAKBOT, leading to the deployment of BEACON coupled with other pre-ransomware indicators. This marked Mandiant's initial identification of UNC4393, the primary user of BASTA ransomware. Mandiant has responded to over 40 separate UNC4393 intrusions across 20 different industry verticals. While healthcare organizations have not traditionally been a focus for UNC4393, several breaches in the industry this year indicate a possible expansion of their interests. However, this represents only a fraction of the cluster's victims, with the Black Basta data leak site purporting over 500 victims since inception.

Over the course of this blog post, Mandiant will detail the evolution of UNC4393's operational tactics and malware usage throughout its active lifespan, with a focus on the period following the QAKBOT botnet takedown. We will highlight the cluster's transition from readily available tools to custom malware development as well as its evolving reliance on access brokers and diversification of initial access techniques.

Mandiant EN 2024 QAKBOT UNC4393 BlackBasta SILENTNIGHT UNC4393
Cyber Espionage Group XDSpy Targets Companies in Russia and Moldova https://thehackernews.com/2024/07/cyber-espionage-group-xdspy-targets.html
03/08/2024 21:01:33
QRCode
archive.org
thumbnail

Russian and Moldovan companies targeted by XDSpy phishing campaign, deploying DSDownloader malware, amid escalating cyber conflicts.

thehackernews EN 2024 Cyber Espionage Group XDSpy Russia Moldova DSDownloader malware
How the theft of 40M UK voter register records was entirely preventable https://techcrunch.com/2024/08/02/how-the-theft-of-40-million-uk-voter-register-records-was-entirely-preventable/
03/08/2024 13:39:59
QRCode
archive.org
thumbnail

A scathing rebuke by the U.K. data protection watchdog reveals what led to the compromise of tens of millions of U.K. voters' information.

techcrunch EN 2024 UK data-protection watchdog compromise UK voters
US sues TikTok for collecting mass data on kids 13 and under https://cybernews.com/privacy/us-sues-tiktok-data-collection-kids-children-coppa
03/08/2024 11:09:25
QRCode
archive.org

The US government is suing TikTok and its Chinese parent company ByteDance over “widespread” privacy violations that it illegally collects data on kids 13 and under.

cybernews EN 2024 tiktok coppa US legal sued kids
Social Media Malvertising Campaign Promotes Fake AI Editor Website for Credential Theft https://www.trendmicro.com/en_us/research/24/h/malvertising-campaign-fake-ai-editor-website-credential-theft.html
03/08/2024 02:04:24
QRCode
archive.org
thumbnail

We uncovered a malvertising campaign where the threat actor hijacks social media pages, renames them to mimic popular AI photo editors, then posts malicious links to fake websites.

trendmicro EN 2024 malware cyber-crime research phishing malvertising social media fake mimic campaign
Don’t Let Your Domain Name Become a “Sitting Duck” https://krebsonsecurity.com/2024/07/dont-let-your-domain-name-become-a-sitting-duck/
03/08/2024 01:55:47
QRCode
archive.org

More than a million domain names -- including many registered by Fortune 100 firms and brand protection companies -- are vulnerable to takeover by cybercriminals thanks to authentication weaknesses at a number of large web hosting providers and domain registrars,…

krebsonsecurity EN 2024 abused DNS takeover weaknesses Duck domain
Mozilla follows Google in distrusting Entrust’s TLS certs • The Register https://www.theregister.com/2024/08/01/mozilla_entrust
03/08/2024 01:52:16
QRCode
archive.org
thumbnail

Compliance failures and unsatisfactory responses mount from the long-time certificate authority

theregister EN 2024 Mozilla Entrust Distrust certificate authority
Turkey blocks access to Instagram – POLITICO https://www.politico.eu/article/turkey-blocks-access-to-instagram/
02/08/2024 19:43:02
QRCode
archive.org
thumbnail

A senior official previously condemned the platform for ‘censoring’ Hamas-related content.

politico EN 2024 Israel-Hamas Turkey war Social Media Communications Israel Palestine Platforms Iran
News Greek Court Clears State Institutions of Involvement With Illegal Spyware https://balkaninsight.com/2024/07/30/greek-court-clears-state-institutions-of-involvement-with-illegal-spyware/
02/08/2024 18:07:14
QRCode
archive.org

Supreme Court ruling that Greek state agencies were not involved in the use of illegal spy software shocks opposition leader who says confidence in the justice system had been 'seriously shaken'.

balkaninsight EN 2024 Greece Pegasus ruled Supreme Court Spyware Illegal
Who are the two major hackers Russia just received in a prisoner swap? https://arstechnica.com/security/2024/08/who-are-the-two-major-hackers-russia-just-received-in-a-prisoner-swap/
02/08/2024 11:07:30
QRCode
archive.org
thumbnail

Both men committed major financial crimes—and had powerful friends.

arstechnica EN 2024 swap US Russia hackers financial crimes
Certificate Revocation Incident https://www.digicert.com/support/certificate-revocation-incident
01/08/2024 23:09:18
QRCode
archive.org

DigiCert will be revoking certificates that did not have proper Domain Control Verification (DCV). Before issuing a certificate to a customer, DigiCert validates the customer’s control or ownership over the domain name for which they are requesting a certificate using one of several methods approved by the CA/Browser Forum (CABF). One of these methods relies on the customer adding a DNS CNAME record which includes a random value provided to them by DigiCert. DigiCert then does a DNS lookup for the domain and verifies the same random value, thereby proving domain control by the customer..

digicert EN 2024 Certificate Revocation Incident DCV
'Fortune 50' Company Made Record-Breaking $75M Ransomware Payment https://www.pcmag.com/news/fortune-50-company-made-record-breaking-75m-ransomware-payment
01/08/2024 23:07:59
QRCode
archive.org

A major company made a staggering $75 million ransomware payment to hackers earlier this year, according to cybersecurity vendor Zscaler.

Zscaler made the claim in a Tuesday report examining the latest trends in ransomware attacks, which continue to ensnare companies, hospitals, and schools across the country.

pcmag EN 2024 Zscaler report Fortune50 record ransomware payment DarkAngels
Swiss stock exchange halts trading due to technolgy issues https://www.swissinfo.ch/eng/banking-fintech/six-swiss-exchange-halts-again-as-technology-issues-are-ongoing/85568336
01/08/2024 22:59:37
QRCode
archive.org
thumbnail

The stock exchange was forced to halt equity trading for several hours on Wednesday due to persistent technical snags.

swissinfo EN 2024 Swiss stock exchange halts technolgy issues Switzerland
CrowdStrike is sued by shareholders over huge software outage https://www.reuters.com/legal/crowdstrike-is-sued-by-shareholders-over-huge-software-outage-2024-07-31/?user_email=9e19aa6ed986d20195d4113ba5a6a3e709c18e0549688aa9b20d5f2e8d0dec05&lctg=6596a37f125992f7eb0b5ac9
01/08/2024 22:28:56
QRCode
archive.org

CrowdStrike (CRWD.O), opens new tab has been sued by shareholders who said the cybersecurity company defrauded them by concealing how its inadequate software testing could cause the July 19 global outage that crashed more than 8 million computers.
In a proposed class action filed on Tuesday night in the Austin, Texas federal court, shareholders said they learned that CrowdStrike's assurances about its technology were materially false and misleading when a flawed software update disrupted airlines, banks, hospitals and emergency lines around the world.

reuters EN 2024 CrowdStrike outage shareholders sued
'Error' in Microsoft's DDoS defenses amplified Azure outage https://www.theregister.com/2024/07/31/microsoft_ddos_azure/
01/08/2024 14:18:00
QRCode
archive.org
thumbnail

o you have problems configuring Microsoft's Defender? You might not be alone: Microsoft admitted that whatever it's using for its defensive implementation exacerbated yesterday's Azure instability.

No one has blamed the actual product named "Windows Defender," we must note.

According to Microsoft, the initial trigger event for yesterday's outage, which took out great swathes of the web, was a distributed denial-of-service (DDoS) attack. Such attacks are hardly unheard of, and an industry has sprung up around warding them off.

theregister EN 2024 Microsoft DDoS Azure outage
IBM: Cost of a breach reaches nearly $5 million, with healthcare being hit the hardest https://therecord.media/ibm-breach-report-cost-rise-to-5-million
01/08/2024 06:58:00
QRCode
archive.org
thumbnail

Businesses that fall victim to a data breach can expect a financial hit of nearly $5 million on average — a 10% increase compared to last year — according to IBM’s annual report on cybersecurity incidents.

therecord.media EN 2024 IBM cost financial data-breach report
Cyberattack hits blood-donation nonprofit OneBlood https://edition.cnn.com/2024/07/31/politics/cyberattack-oneblood-blood-donation/
01/08/2024 06:57:34
QRCode
archive.org
thumbnail

A cyberattack has hit a blood-donation nonprofit that serves hundreds of hospitals in the southeastern US.

The hack, which was first reported by CNN, has raised concerns about potential impacts on OneBlood’s service to some hospitals, multiple sources familiar with the matter said, and the incident is being investigated as a potential ransomware attack.

cnn EN 2024 cyberattack US OneBlood Healthcare ransomware incident
page 77 / 213
4826 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn