Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 80 / 236
Windows Update Flaws Allow Undetectable Downgrade Attacks https://www.securityweek.com/safebreach-sounds-alarm-on-windows-update-flaws-allowing-undetectable-downgrade-attacks/
08/08/2024 10:07:49
QRCode
archive.org

Researcher showcases hack against Microsoft Windows Update architecture, turning fixed vulnerabilities into zero-days.

securityweek EN 2024 Microsoft Windows Update Downgrade
Open letter to UK online service providers https://www.ofcom.org.uk/topic-and-subtopics/online-safety/illegal-and-harmful-content/news-and-updates/open-letter-to-uk-online-service-providers/
08/08/2024 06:49:29
QRCode
archive.org
thumbnail

Today we've published an open letter to online service providers operating in the UK about the increased risk of their platforms being used to stir up hatred, provoke violence and commit other offences under UK law, in the context of recent acts of violence in the UK.

ofcom.org.uk EN 2024 open-letter provoke violence legal online service providers UK
INTERPOL recovers over $40 million stolen in a BEC attack https://www.bleepingcomputer.com/news/security/interpol-recovers-over-40-million-stolen-in-a-bec-attack/?ref=metacurity.com
07/08/2024 21:56:01
QRCode
archive.org
thumbnail

A global stop-payment mechanism created by INTERPOL successfully recovered over $40 million stolen in a BEC attack on a company in Singapore.

bleepingcomputer EN 2024 BEC Business-Email-Compromise I-GRIP INTERPOL
Major Payment Disruption: Ransomware Strikes Indian Banking Infrastructure https://www.cloudsek.com/blog/major-payment-disruption-ransomware-strikes-indian-banking-infrastructure
07/08/2024 10:56:43
QRCode
archive.org
thumbnail

CloudSEK's threat research team has uncovered a ransomware attack disrupting India's banking system, targeting banks and payment providers. Initiated through a misconfigured Jenkins server at Brontoo Technology Solutions, the attack is linked to the RansomEXX group.

cloudsek EN ransomware analysis Jenkins India RansomEXX CVE-2024-23897
Critical Vulnerability in Apache OFBiz Requires Immediate Patching - Infosecurity Magazine https://www.infosecurity-magazine.com/news/fla-apache-ofbiz-requires-patching/?ref=metacurity.com
07/08/2024 10:18:18
QRCode
archive.org
thumbnail

SonicWall discovered the Apache OFBiz flaw, identifying it as a critical issue enabling unauthenticated remote code execution

infosecurity-magazine. EN 2024 SonicWall Apache OFBiz flaw critical CVE-2024-38856
CrowdStrike says it isn't to blame for Delta's flight cancellations after July outage https://www.cnbc.com/2024/08/05/crowdstrike-says-it-isnt-to-blame-for-deltas-flight-cancellations-after-outage.html?ref=news.risky.biz
07/08/2024 10:16:57
QRCode
archive.org
thumbnail

Delta CEO Ed Bastian said the company plans to seek compensation from Microsoft and CrowdStrike.

cnbc EN 2024 Transportation Business Air Lawsuits Technology Corp defense Life Aerospace Holdings Airlines Microsoft Breaking industry Delta CrowdStrike outage
Security Incident | August 2024 https://www.mobileguardian.com/security-incident-august-2024/
07/08/2024 09:03:00
QRCode
archive.org

Mobile Guardian experienced a security incident that involved unauthorized access to the iOS and ChromeOS devices enrolled to the Mobile Guardian platform on the 4th of August.

We have halted servers in order to prevent further disruption by the perpetrator.

This is not related to an error in configuration that occurred on the 30th of July which affected Mobile Guardian iPads on our Singapore instance only.

mobileguardian EN 2024 security incident MDM
Hackers breached MDM firm Mobile Guardian and wiped thousands of devices https://securityaffairs.com/166710/hacking/mobile-guardian-firm-security-breach.html
07/08/2024 08:46:49
QRCode
archive.org
thumbnail

Threat actors breached the UK-based mobile device management (MDM) firm Mobile Guardian and remotely wiped thousands of devices.

securityaffairs EN 2024 MDM Mobile-Guardian breached
Exploring Anti-Phishing Measures in Microsoft 365 https://certitude.consulting/blog/en/o365-anti-phishing-measures/
07/08/2024 07:28:47
QRCode
archive.org

In this post we will explore some of the anti-phishing measures employed by Microsoft 365 (formally Office 365) as well as their weaknesses. Certitude was able to identify an issue in that allows malicious actors to bypass anti-phishing measures.

certitude EN 2024 antiphishing Microsoft365 weaknesses research
Cybersécurité : le Grand Palais et plusieurs musées dont le Louvre victimes d’une attaque par rançongiciel https://www.leparisien.fr/high-tech/cybersecurite-le-grand-palais-et-plusieurs-musees-dont-le-louvre-victimes-dune-attaque-par-rancongiciel-05-08-2024-LYA4YVRAW5CQHPVRHSC3LAGPHM.php
06/08/2024 12:22:00
QRCode
archive.org
thumbnail

Les attaquants ont chiffré une partie des données financières et menacent de les diffuser s’ils ne reçoivent pas une rançon. Une enquête a été ouverte.

leparisien FR 2024 France Ransomware Louvre musées
Threat Actors Capitalize On ServiceNow Vulnerability https://cyble.com/blog/from-weaponization-to-victimization-fallout-from-the-servicenow-vulnerability/
06/08/2024 09:57:34
QRCode
archive.org
thumbnail

Cyble observes how Dark Web forums reveal ServiceNow users falling victim to a Remote Code Execution vulnerability, which exposes sensitive data & escalates risks across sectors.

cyble EN 2024 ServiceNow darkweb CVE-2024-4879 CVE-2024-5178 CVE-2024-5217
Ransomware gang targets IT workers with new SharpRhino malware https://www.bleepingcomputer.com/news/security/hunters-international-ransomware-gang-targets-it-workers-with-new-sharprhino-malware/
06/08/2024 09:55:35
QRCode
archive.org
thumbnail

The Hunters International ransomware group is targeting IT workers with a new C# remote access trojan (RAT) called SharpRhino to breach corporate networks.

bleepingcomputer EN 2024 Hunters-International Malware Ransomware SharpRhino Typo-Squatting
New Hunters International RAT identified by Quorum Cyber https://www.quorumcyber.com/insights/sharprhino-new-hunters-international-rat-identified-by-quorum-cyber/
06/08/2024 09:54:02
QRCode
archive.org

During a recent ransomware incident investigated by the Quorum Cyber Incident Response team, novel malware was identified previously unknown.

quorumcyber EN 2024 RAT ransomware Rust ipscan-3.9.1-setup.exe Hunters-International
Google fixes Android kernel zero-day exploited in targeted attacks https://www.bleepingcomputer.com/news/security/google-fixes-android-kernel-zero-day-exploited-in-targeted-attacks/
06/08/2024 09:42:33
QRCode
archive.org
thumbnail

Android security updates this month patch 46 vulnerabilities, including a high-severity remote code execution (RCE) exploited in targeted attacks.

bleepingcomputer EN 2024 Android Google Kernel Zero-Day CVE-2024-36971
European Commission forces TikTok rewards program to shut down on the continent https://therecord.media/tiktok-lite-rewards-program-shuts-down-europe?_hsenc=p2ANqtz-8fLIc3iO11Az98TveGHO83VkWGotpjRybGPWS47Nm_lV2LgDkaYpGN9N6psQSb8jJQi120wuAHoiWGpkzr_D3yA2NgMQ&_hsmi=318780083
06/08/2024 08:22:21
QRCode
archive.org
thumbnail

European regulators said TikTok Lite Rewards potentially caused addictive behavior, and the company failed to provide a risk assessment before launching the program.

therecord.media EU legal TikTok Rewards addictive risk
Moscow’s Spies Were Stealing US Tech — Until the FBI Started a Sabotage Campaign https://www.politico.com/news/magazine/2024/08/04/us-spies-soviet-technology-00164126?
05/08/2024 21:41:28
QRCode
archive.org

One day at the dawn of the 1980s, an FBI agent in his 30s named Rick Smith walked into the Balboa Café, an ornate, historic watering hole in San Francisco’s leafy Cow Hollow neighborhood. Smith, who was single at the time, lived nearby and regularly frequented the spot.

As he approached the oak wood bar to order a drink he suddenly spotted a familiar face — someone Smith had met about a year before, after the man had walked into the Soviet Consulate in San Francisco. He was Austrian by birth, but a denizen of Silicon Valley, an entrepreneur who operated as a middleman between American tech companies and European countries hungry for the latest hi-tech goods. 

politico EN 2024 sabotage operation history US URSS SiliconValley FBI
China-Linked Hackers Compromise ISP to Deploy Malicious Software Updates https://thehackernews.com/2024/08/china-linked-hackers-compromise-isp-to.html
05/08/2024 14:05:27
QRCode
archive.org
thumbnail

Chinese hacking group Evasive Panda compromises ISP to push malware, targeting companies through DNS poisoning and insecure update mechanisms.

thehackernews EN 2024 ISP Malicious Software Updates EvasivePanda
Surge in Magniber ransomware attacks impact home users worldwide https://www.bleepingcomputer.com/news/security/surge-in-magniber-ransomware-attacks-impact-home-users-worldwide/
05/08/2024 13:34:44
QRCode
archive.org
thumbnail

A massive Magniber ransomware campaign is underway, encrypting home users' devices worldwide and demanding thousand-dollar ransoms to receive a decryptor.

Magniber launched in 2017 as a successor to the Cerber ransomware operation when it was spotted being distributed by the Magnitude exploit kit.

Since then, the ransomware operation has seen bursts of activity over the years, with the threat actors utilizing various methods to distribute Magniber and encrypt devices. These tactics include using Windows zero-days, fake Windows and browser updates, and trojanized software cracks and key generators.

bleepingcomputer EN 2024 Cracks Encryptor Magniber Ransomware Warez
Ten Arrests Made and 108 Charges Laid in Project Disrupt, a SIM Swap Fraud Investigation https://www.tps.ca/media-centre/news-releases/60454/?ref=news.risky.biz
05/08/2024 13:02:44
QRCode
archive.org

The Toronto Police Service is making the public aware of 10 arrests made and 108 charges laid in a major SIM swap fraud investigation dubbed Project Disrupt.

On Thursday, August 1, 2024, Detective David Coffey, from the Financial Crimes Unit, and Detective Constable Michael Gow, from the Coordinated Cyber Center (C3), held a news conference about Project Disrupt.

tps.ca EN 2024 Toronto Police Service Canada busted arrested SIMSwappers
Light on Safety https://foundation.mozilla.org/en/campaigns/light-on-safety/
04/08/2024 10:14:43
QRCode
archive.org

To attract users across the Global Majority, many technology companies have introduced “lite” versions of their products: Applications that are designed for lower-bandwidth contexts. TikTok is no exception, with TikTok Lite estimated to have more than 1 billion users.

Mozilla and AI Forensics research reveals that TikTok Lite doesn’t just reduce required bandwidth, however. In our opinion, it also reduces trust and safety. In comparing TikTok Lite with the classic TikTok app, we found several discrepancies between trust and safety features that could have potentially dangerous consequences in the context of elections and public health.

Our research revealed TikTok Lite lacks basic protections that are afforded to other TikTok users, including content labels for graphic, AI-generated, misinformation, and dangerous acts videos. TikTok Lite users also encounter arbitrarily shortened video descriptions that can easily eliminate crucial context.

Further, TikTok Lite users have fewer proactive controls at their disposal. Unlike traditional TikTok users, they cannot filter offensive keywords or implement screen management practices.

Our findings are concerning, and reinforce patterns of double-standard. Technology platforms have a history of neglecting users outside of the US and EU, where there is markedly less potential for constraining regulation and enforcement. As part of our research, we discuss the implications of this pattern and also offer concrete recommendations for TikTok Lite to improve.

foundation.mozilla EN 2024 TikTok lite research double-standard disinformation privacy safety
page 80 / 236
4714 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio