Cyberveille
curated by Decio
Nuage de tags
Mur d'images
Quotidien
Rechercher
Flux RSS
Flux RSS
Daily Feed
Weekly Feed
Monthly Feed
tags
search
Rogue RDP – Revisiting Initial Access Methods
178,000 SonicWall firewalls are vulnerable to old DoS bugs
FBI: Play ransomware gang has attacked 300 orgs since 2022
2022 RTF Global Ransomware Incident Map: Attacks continue worldwide, groups splinter, education sector hit hard
Security advisory: malicious crate rustdecimal
Move, Patch, Get Out the Way: 2022 Zero-Day Exploitation Continues at an Elevated Pace
Welcome to Goot Camp: Tracking the Evolution of GOOTLOADER Operations
Google Ads Exploited to Spread Malware
Watch: Ukraine Army Video Tells Russians How to Surrender to a Drone
Accidentally Crashing a Botnet
The OWASSRF + TabShell exploit chain
New CatB Ransomware Employs 2-Year Old DLL Hijacking Technique To Evade Detection
Piratage Adecco : des données personnelles et bancaires (IBAN) dans la nature
The Mac Malware of 2022 👾
Compromised PyTorch-nightly dependency chain between December 25th and December 30th, 2022.
U.S. targeted adversary cyber infrastructure to safeguard midterm vote
Russian cyberattacks - Special Services - Gov.pl website
New YouTube Bot Malware Spotted Stealing User’s Sensitive Information
Pure coder offers multiple malware for sale in Darkweb forums
Twitter in data-protection probe after '400 million' user details up for sale
ZINC weaponizing open-source software - Microsoft Security Blog
ZetaNile: Open source software trojans from North Korea
New RisePro Stealer distributed by the prominent PrivateLoader
Cost of data breaches to surpass US$5mn per incident in 2023
What’s in a PR statement: LastPass breach explained
L’art de l’évasion How Shlayer hides its configuration inside Apple proprietary DMG files
Hacker claims to be selling Twitter data of 400 million users
Threat Spotlight: XLLing in Excel - threat actors using malicious add-ins
Raspberry Robin Malware Targets Telecom, Governments
Custom-Branded Ransomware: The Vice Society Group and the Threat of Outsourced Development - SentinelOne
An infostealer comes to town: Dissecting a highly evasive malware targeting Italy
Notice of Recent Security Incident
New Ransomware Strains Emerging from Leaked Conti’s Source Code
EXCLUSIVE: TikTok Spied On Forbes Journalists
Meddler-in-the-Middle Phishing Attacks Explained MitM
Stolen certificates in two waves of ransomware and wiper attacks
New Kiss-a-dog Cryptojacking Campaign Targets Docker and Kubernetes
A Roomba recorded a woman on the toilet. How did screenshots end up on Facebook?
Guardian hit by serious IT incident believed to be ransomware attack
Okta's source code stolen after GitHub repositories hacked
2022: A Look Back On A Year Of Mass Exploitation
SentinelSneak: Malicious PyPI module poses as security software development kit
CVE-2022-41040 and CVE-2022-41082 – zero-days in MS Exchange
GoTrim: Go-based Botnet Actively Brute Forces WordPress Websites
Support King, banned by FTC, linked to new phone spying operation
Google ads lead to fake software pages pushing IcedID (Bokbot)
How ChatGPT can turn anyone into a ransomware and malware threat actor
Global crackdown against DDoS services shuts down most popular platforms
Très courtisées, les sociétés suisses de cybersécurité s’arrachent
Microsoft-signed malicious Windows drivers used in ransomware attacks
A Custom Python Backdoor for VMWare ESXi Servers
Apple fixes 'actively exploited' zero-day security vulnerability affecting most iPhones
Mallox Ransomware showing signs of Increased Activity
State-sponsored attackers actively exploiting RCE in Citrix devices, patch ASAP! (CVE-2022-27518)
Released: Citrix ADC and Citrix Gateway (security bulletin CTX474995) security update
Check Point Research analyzes files on the Dark Web and finds millions of records available
Pulling the Curtains on Azov Ransomware: Not a Skidsware but Polymorphic Wiper - Check Point Research
Scammers Are Scamming Other Scammers Out of Millions of Dollars
Phylum Detects Ongoing Typosquat/Ransomware Campaign in PyPI and NPM
Apple announces 3 new security features
Cisco discloses high-severity IP phone zero-day with exploit code
Pilfered Keys Free App Infected by Malware Steals Keychain Data
Cryptocurrency Scam - Pig Butchering
Pulse Connect Secure: A View from the Internet
Gaming firm Razer wins lawsuit against IT vendor over data leak, awarded $8.7m in damages
Hitching a ride with Mustang Panda
New MuddyWater Threat: Old Kitten; New Tricks
Apple rolls out end-to-end encryption for iCloud backups
Mustang Panda Uses the Russian-Ukrainian War to Attack Europe and Asia Pacific Targets
Leaked: The Altrnativ world of cybersurveillance
Top 10 macOS Malware Discoveries in 2022
Zerobot – New Go-Based Botnet Campaign Targets Multiple Vulnerabilities
Vice Society: Profiling a Persistent Threat to the Education Sector
Le renseignement espagnol muet sur le scandale du logiciel espion Pegasus
Critical Ping Vulnerability Allows Remote Attackers to Take Over FreeBSD Systems
Winbiz change d’hébergeur: des milliers de clients toujours sans accès à leur comptabilité | ICTjournal
Blowing Cobalt Strike Out of the Water With Memory Analysis
W4SP continues to nest in PyPI: Same supply chain attack, different distribution method
Post-quantum cryptography: What is Emmanuel Macron talking about?
Purpose Built Proxy Services and the Malicious Activity They Enable
CVE-2022-21661: Exposing Database Info via WordPress SQL Injection
Connected medical devices are the Achilles' heel of healthcare orgs - Help Net Security
Schoolyard Bully Trojan Facebook Credential Stealer - Zimperium
Yvelines : cyberattaque contre l'hôpital André Mignot du centre hospitalier de Versailles
Preparing for a Russian cyber offensive against Ukraine this winter
Darknet markets generate millions in revenue selling stolen personal data
Fuite de données sensibles au Département de la justice à Zurich
The Mystery of Metador | Unpicking Mafalda’s Anti-Analysis Techniques
Samsung, LG, Mediatek certificates compromised to sign Android malware
Google Online Security Blog: Memory Safe Languages in Android 13
Lastpass says hackers accessed customer data in new breach
LockBit 3.0 ‘Black’ attacks and leaks reveal wormable capabilities and tooling
Play, ce nouveau ransomware utilisé contre les Alpes-Maritimes et ITS Group
Libye: la mise en examen de la société française Amesys et l'inculpation de deux cadres, confirmées en appel
U.S. bans sale and import of some tech from Chinese companies Huawei and ZTE
Detecting and Fingerprinting Infostealer Malware-as-a-Service platforms
Ransomware Roundup: Cryptonite Ransomware
Suisse: Une cyberattaque bloque la comptabilité de milliers de sociétés
Des dizaines de milliers d'entreprises victimes indirectes d'une cyberattaque
Nighthawk: An Up-and-Coming Pentest Tool Likely to Gain Threat Actor Notice | Proofpoint US
Android SharkBot Droppers on Google Play Underline Platform's Security Needs
Why would you want to hack Electric Vehicle Charging Stations?
Researchers Explore Hacking VirusTotal to Find Stolen Credentials
Over 2 million users Affected with Browser Hijackers
Aurora: a rising stealer flying under the radar
A Leak Details Apple's Secret Dirt on Corellium, a Trusted Security Startup
Le ministre de l'Éducation nationale ne veut pas de Microsoft Office 365 ni de Google Workspace
Endurance Ransomware Claims Breach of US Federal Government
Vanuatu: Hackers strand Pacific island government for over a week
Control Your Types or Get Pwned: Remote Code Execution in Exchange PowerShell Backend
Exploit released for actively abused ProxyNotShell Exchange bug
Making Cobalt Strike harder for threat actors to abuse
Wi-Spy
Technical Analysis of the RedLine Stealer
AXLocker, Octocrypt, and Alice: Leading a new wave of Ransomware Campaigns
Michigan school districts reopen after three-day closure due to ransomware attack
A Comprehensive Look at Emotet’s Fall 2022 Return
CVE-2022-41622 and CVE-2022-41800 (FIXED): F5 BIG-IP and iControl REST Vulnerabilities and Exposures
Firefox fixes fullscreen fakery flaw – get the update now! – Naked Security
Cryptex: how a custom iPhone is changing macOS updates – The Eclectic Light Company
New RapperBot Campaign – We Know What You Bruting for this Time
Google Reaches $391.5 Million Settlement With States Over Location Tracking Practices
CVE-2022-45047: Apache MINA SSHD unsafe deserialization vulnerability
BumbleBee Zeros in on Meterpreter
Apple Hit With Class Action Alleging It Tracks Users Despite Privacy Assurances
LockBit ransomware suspect nabbed in Canada, faces charges in the US
Compromising Plesk via its REST API
Exploring ZIP Mark-of-the-Web Bypass Vulnerability (CVE-2022-41049)
PNG Steganography Hides Backdoor
Massive ois[.]is Black Hat Redirect Malware Campaign
Threat Spotlight: Cyber Criminal Adoption of IPFS for Phishing, Malware Campaigns
Attacking Apple's Neural Engine
Prigozhin interests and Russian information operations
Mysterious company with government ties plays key internet role
Microsoft fixes many zero-days under attack
The Case of Cloud9 Chrome Botnet
A cyberattack blocked the trains in Denmark
Nation-state cyberattacks become more brazen as authoritarian leaders ramp up aggression
Insurance giant settles NotPetya lawsuit, signaling cyber insurance shakeup
Inside the global hack-for-hire industry
Crime group hijacks hundreds of US news websites to push malware
Last Week on My Mac: Home truths about macOS
Department for Education warned after gambling companies benefit from learning records database
How Qatar hacked the World Cup
Microsoft ties Vice Society hackers to additional ransomware strains
Crimson Kingsnake: BEC Group Impersonates…
Exploiting Static Site Generators: When Static Is Not Actually Static
Black Basta Ransomware | Attacks Deploy Custom EDR Evasion Tools Tied to FIN7 Threat Actor
Malware on the Google Play store leads to harmful phishing sites
U.S. banks processed about $1.2 billion in ransomware payments in 2021
Nothing PUNY About OpenSSL (CVE-2022-3602)
Phylum Discovers Dozens More PyPI Packages Attempting to Deliver W4SP Stealer in Ongoing Supply-Chain Attack
New Azov data wiper tries to frame researchers and BleepingComputer
Unmasking WindTape - Speaker Deck
How we handled a recent phishing incident that targeted Dropbox
Dormant Colors browser hijackers could be used for more nefarious tasks, report says
The Hunt for the Kingpin Behind AlphaBay, Part 1: The Shadow | WIRED
Inside TheTruthSpy, the stalkerware network spying on thousands • TechCrunch
What is ransomware-as-a-service and how is it evolving?
Incident Report: Employee and Customer Account Compromise
SiriSpy - iOS bug allowed apps to eavesdrop on your conversations with Siri
LV Ransomware Exploits ProxyShell in Attack on a Jordan-based Company
Pro-PRC DRAGONBRIDGE Influence Campaign Leverages New TTPs to Aggressively Target U.S. Interests, Including Midterm Elections
Stranger Strings: An exploitable flaw in SQLite
Advisory: Atlassian Jira Align Application, Version… | Bishop Fox
Unattributed RomCom Threat Actor Spoofing Popular Apps Now Hits Ukrainian Militaries
TommyLeaks and SchoolBoys: Two sides of the same ransomware gang
“Dormant Colors”: Live Campaign With Over 1M Data Stealing Extensions Installed
Intelligence Insights: October 2022
Mirai, RAR1Ransom, and GuardMiner – Multiple Malware Campaigns Target VMware Vulnerability
Operation Jackal: Interpol arrests Black Axe fraud suspects
Mairies : les pirates du groupe CUBA vident deux mairies françaises de leurs contenus
Exploited Windows zero-day lets JavaScript files bypass security warnings
Analysis of a Remote Code Execution (RCE) Vulnerability in Cobalt Strike 4.7.1
Reverse Engineering the Apple MultiPeer Connectivity Framework
How Vice Society got away with a global ransomware spree | Ars Technica
Starlink signals can be reverse-engineered to work like GPS—whether SpaceX likes it or not
Archive Sidestepping: Emotet Botnet Pushing Self-Unlocking Password-Protected RAR
From RM3 to LDR4: URSNIF Leaves Banking Fraud Behind
Domestic Kitten campaign spying on Iranian citizens with new FurBall malware
Grâce à une fausse enceinte Bluetooth JBL, ils réussissaient à voler des voitures
Melting the DNS Iceberg: Taking over your infrastructure Kaminsky style
TeamTNT Returns – or Does It?
Nouvelle cyberattaque contre le Réseau pédagogique neuchâtelois
Cyberattaque : comment Caen a évité le pire grâce à l’EDR d’HarfangLab
SafeBreach Uncovers Fully Undetectable Powershell Backdoor
A New Attack Surface on MS Exchange Part 4 - ProxyRelay!
CVE-2022-42889: Keep Calm and Stop Saying "4Shell"
Cyble Phishing ERMAC Android Malware Increasingly Active
Ransom Cartel Ransomware: A Possible Connection With REvil
BianLian Ransomware Encrypts Files in the Blink of an Eye
New “Prestige” ransomware impacts organizations in Ukraine and Poland
Microsoft Office 365 Message Encryption Insecure Mode of Operation | WithSecure™ Labs
New PHP Variant of Ducktail Infostealer Targeting Facebook Business Accounts
Threat Alert: Private npm Packages Disclosed via Timing Attacks
Alchimist: A new attack framework in Chinese for Mac, Linux and Windows
Black Basta Ransomware Gang Infiltrates networks via QAKBOT, Brute Ratel, and Cobalt Strike
POLONIUM targets Israel with Creepy malware
Malicious WhatsApp mod distributed through legitimate apps
Ransomware : qui paie et pourquoi ?
The Fresh Phish Market: Behind the Scenes of the Caffeine Phishing-as-a-Service Platform
New US Executive Order unlikely to satisfy EU law
Fake Ransomware Infection Under widespread
Software Supply Chain Attackers; Organized, Persistent, and Operating for over a Year
On Agent Compromise in the Field
Hackers release data after LAUSD refuses to pay ransom
Jamf Threat Labs identifies macOS Archive Utility vulnerability allowing for Gatekeeper bypass (CVE-2022-32910)
White House announces new surveillance guardrails to meet EU Privacy Shield expectations
CVE-2022-40684: Critical Authentication Bypass in FortiOS and FortiProxy
CVE-2022-41352
Man arrested for alleged data breach SMS scam
MSSQL, meet Maggie. A novel backdoor for Microsoft SQL…
How 3 hours of inaction from Amazon cost cryptocurrency holders $235,000
Remove All The Callbacks – BlackByte Ransomware Disables EDR Via RTCore64.sys Abuse
PHP Supply Chain Attack on Composer
Bumblebee: increasing its capacity and evolving its TTPs
Malicious Tor Browser spreads through YouTube
A glimpse into the shadowy realm of a Chinese APT: detailed analysis of a ShadowPad intrusion – NCC Group Research
DeftTorero TTPs in 2019–2021
Bad VIB(E)s Part One: Investigating Novel Malware Persistence Within ESXi Hypervisors | Mandiant
Lazarus hackers abuse Dell driver bug using new FudModule rootkit
Amazon‑themed campaigns of Lazarus in the Netherlands and Belgium
Ukraine warns of 'massive cyberattacks' coming from Russia on critical infrastructure sites
Mystery Hackers Are ‘Hyperjacking’ Targets for Insidious Spying
Chaos is a Go-based Swiss army knife of malware
Warning: New attack campaign utilized a new 0-day RCE vulnerability on Microsoft Exchange Server
Witchetty: Group Uses Updated Toolset in Attacks on Governments in Middle East
ZINC weaponizing open-source software
Lindy Cameron at Chatham House security and defence conference 2022
BumbleBee: Round Two
NullMixer drops Redline Stealer, SmokeLoader and other malware | Securelist
Lazarus ‘Operation In(ter)ception’ Targets macOS Users Dreaming of Jobs in Crypto
Slack’s and Teams’ Lax App Security Raises Alarms
Poseidon’s Offspring: Charybdis and Scylla
In the footsteps of the Fancy Bear: PowerPoint mouse-over event abused to deliver Graphite implants
GRU: Rise of the (Telegram) MinIOns
BitBucket Server and Data Center at risk via Command Injection Vulnerability
New Malware Campaign Targets Zoom Users
2K Games' Support System Hacked
Tarfile: Exploiting the World With a 15-Year-Old Vulnerability
Noberus Ransomware: Darkside and BlackMatter Successor Continues to Evolve its Tactics
Malicious OAuth applications abuse cloud email services to spread spam
Void Balaur | The Sprawling Infrastructure of a Careless Mercenary
The Apple security landscape: Moving into the world of enterprise risk
Apple Kills Passwords in iOS 16 and macOS Ventura | WIRED
Domain Shadowing: A Stealthy Use of DNS Compromise for Cybercrime
Revealed: US Military Bought Mass Monitoring Tool That Includes Internet Browsing, Email Data
Los Angeles School District Hit by Ransomware Attack
Online Attack Disrupts Michigan School District for 2nd Day
LockBit ransomware builder leaked online by “angry developer”
Azure Cloud Shell Command Injection Stealing User’s Access Tokens
Threat Alert: New Malware in the Cloud By TeamTNT
Chromium Blog: Announcing the Launch of the Chrome Root Program
Affaire Pegasus: l'Union européenne se penche sur le dossier suisse - rts.ch - Monde
Six months into Breached: The legacy of RaidForums?
Incoscienti e sfacciati: le tecniche dei teenager che violano aziende
Revolut hack exposes data of 50,000 users, fuels new phishing wave
Credential Gathering From Third-Party Software
Malvertising on Microsoft Edge's News Feed pushes tech support scams
Ermittlungserfolg gegen Ransomware-Gruppierung
GTA 6 gameplay leaks online in 90 videos
Security update
Iran’s cyberwar goes global
Webworm: Espionage Attackers Testing and Using Older Modified RATs
RedLine spreads through ads for cheats and cracks on YouTube
Undermining Microsoft Teams Security by Mining Tokens
How Human Traffickers Force Victims Into Cyberscamming
Charming Kitten: “Can We Have A Meeting?”
Breach of software maker used to backdoor as many as 200,000 servers
New Wave of Espionage Activity Targets Asian Governments
Bumblebee Returns with New Infection Technique
Lampion Trojan Utilizes New Delivery through Cloud-Based Sharing
Dead or Alive? An Emotet Story
The Curious Case of “Monti” Ransomware: A Real-World Doppelganger
Inside Fog Data Science, the Secretive Company Selling Mass Surveillance to Local Police
Likely Iranian Threat Actor Conducts Politically Motivated Disruptive Activity Against Albanian Government Organizations
Corte dei conti e l'hacker che ha violato account WhatsApp
Campagne de phishing Instagram : la certification sur les réseaux sociaux, ou le nouveau piège des hackers
Documentos portugueses da NATO apanhados à venda na darkweb
Microsoft investigates Iranian attacks against the Albanian government
Crimeware Trends | Ransomware Developers Turn to Intermittent Encryption to Evade Detection
L'Albanie accuse l'Iran d'une cyberattaque qui a paralysé ses services publics
Conti vs. Monti: A Reinvention or Just a Simple Rebranding?
Centre hospitalier Sud-Francilien : ce que dit l’autopsie de la cyberattaque
PSA: Nearly 5 Million Attacks Blocked Targeting 0-Day in BackupBuddy Plugin
MagicRAT: Lazarus’ latest gateway into victim networks
Shikitega - New stealthy malware targeting Linux
Mirai Variant MooBot Targeting D-Link Devices
QNAP warns of zero-day vulnerability in latest DeadBolt ransomware campaign
SafeBreach Uncovers New Remote Access Trojan (RAT)
Malicious Cookie Stuffing Chrome Extensions with 1.4 Million Users
Sharkbot is back in Google Play
Hackers Create Traffic Jam in Moscow by Ordering Dozens of Taxis at Once Through App
PyPI Phishing Campaign | JuiceLedger Threat Actor Pivots From Fake Apps to Supply Chain Attacks
Tech tool offers police ‘mass surveillance on a budget’
Researchers found one-click exploits in Discord and Teams
Traffers: a deep dive into the information stealer ecosystem
Cette entreprise vend des données aussi sensibles que des visites dans des centres IVG - Numerama
FTC says data broker sold consumers’ precise geolocation, including presence at sensitive healthcare facilities
Kimsuky’s GoldDragon cluster and its C2 operations | Securelist
Revealing Europe's NSO
An interview with initial access broker Wazawaka: 'There is no such money anywhere as there is in ransomware
Linux Kernel Exploit (CVE-2022-32250) with mqueue
Roasting 0ktapus: The phishing campaign going after Okta identity credentials
Looking for the ‘Sliver’ lining: Hunting for emerging command-and-control frameworks - Microsoft Security Blog
MagicWeb: NOBELIUM’s post-compromise trick to authenticate as anyone
Legitimate SaaS Platforms Being Used to Host Phishing Attacks
XCSSET Malware Update | macOS Threat Actors Prepare for Life Without Python
Vulnerability in Linux containers – investigation and mitigation
THREAT ANALYSIS REPORT: Bumblebee Loader – The High Road to Enterprise Domain Control
Fake DDoS Pages On WordPress Sites Lead to Drive-By-Downloads
Lloyd’s to Exclude Catastrophic Nation-Backed Cyberattacks From Insurance Coverage
CVE-2022-27925
Overview of the Cyber Weapons Used in the Ukraine
Making Sense of the Killnet, Russia’s Favorite Hacktivists
Disrupting SEABORGIUM’s ongoing phishing operations
Operation In(ter)ception: Aerospace and military companies in the crosshairs of cyberspies | WeLiveSecurity
North Korean hackers use signed macOS malware to target IT job seekers
An inside view of domain anonymization as-a-service
The Return of LOIC, HOIC, HULK, and Slowloris to the Threat Landscape
DigitalOcean says customer email addresses were exposed after latest Mailchimp breach – TechCrunch
Impact to DigitalOcean customers resulting from Mailchimp security incident
Ransomware Now Threatens the Global South
Zoom’s latest update on Mac includes a fix for a dangerous security flaw
NHS IT supplier held to ransom by hackers
Cisco confirms May attack by Yanluowang ransomware group
Phishers who breached Twilio and targeted Cloudflare could easily get you, too
Hands-on with Lockdown Mode in iOS 16
You're M̶u̶t̶e̶d̶ Rooted
Palo Alto bug used for DDoS attacks and there's no fix yet
The Hacking of Starlink Terminals Has Begun
CISA warns of Windows and UnRAR flaws exploited in the wild
Comprehensive Threat Intelligence: Cisco Talos shares insights related to recent cyber attack on Cisco
So RapperBot, What Ya Bruting For?
Greek intelligence service admits spying on journalist
Last Week on My Mac: Is your Mac still secure from malware?
Attackers leveraging Dark Utilities "C2aaS" platform in malware campaigns
Woody RAT: A new feature-rich malware spotted in the wild
A Detailed Analysis of the RedLine Stealer
Manjusaka: A Chinese sibling of Sliver and Cobalt Strike
Large-Scale AiTM Attack targeting enterprise users of Microsoft email services
Raccoon Stealer v2: The Latest Generation of the Raccoon Family
Investigation report about the abuse of the Mac Appstore | by Privacy1St
A Cyberattack Illuminates the Shaky State of Student Privacy
Discovery of new UEFI rootkit exposes an ugly truth: The attacks are invisible to us
Microsoft links Raspberry Robin malware to Evil Corp attacks
IPFS: The New Hotbed of Phishing
SEKOIA.IO Mid-2022 Ransomware Threat Landscape
LockBit Implements New Technique by Leaking Victim Negotiations
LockBit Ransomware Group Augments Its Latest Variant, LockBit 3.0, With BlackMatter Capabilities
Untangling KNOTWEED: European private-sector offensive actor using 0-day exploits
Justice Department seizes $500K from North Korean hackers who targeted US medical organizations
8220 Gang Massively Expands Cloud Botnet to 30,000 Infected Hosts
Kaspersky report on Luna and Black Basta ransomware
Exclusive: U.S. probes China's Huawei over equipment near missile silos
[CVE-2022-34918] A crack in the Linux firewall
Google ads lead to major malvertising campaign
Russia Released a Ukrainian App for Hacking Russia That Was Actually Malware
China: Declaration by the Minister for Foreign Affairs on behalf of the Belgian Government urging Chinese authorities to take action against malicious cyber activities undertaken by Chinese actors
I see what you did there: A look at the CloudMensis macOS spyware
Pegasus used to spy on protesters, a popular actress, and dozens more in Thailand, report shows
Busting browser fails: What attackers see when they hack your employees’ browser
Joker, Facestealer and Coper banking malwares on Google Play store
How I Hacked my Car Guides: Creating Custom Firmware
North Korean threat actor targets small and midsize businesses with H0lyGh0st ransomware
Did You Know Your Browser’s Autofill Credentials Could Be Stolen via Cross-Site Scripting (XSS)
Google Play hides app permissions in favor of developer-written descriptions
From cookie theft to BEC: Attackers use AiTM phishing sites as entry point to further financial fraud
Ongoing phishing campaign can hack you even when you’re protected with MFA
European Central Bank head targeted in hacking attempt
Vice Society: a discreet but steady double extortion ransomware group
The US military wants to understand the most important software on Earth
A New Attack Can Unmask Anonymous Users on Any Major Browser
Uncovering a macOS App Sandbox escape vulnerability: A deep dive into CVE-2022-26706 - Microsoft Security Blog
Europe’s PegasusGate: Countering spyware abuse
Russia, Killnet ha dichiarato guerra ai paesi che sostengono l'Ucraina
Verified Twitter accounts phished via hate speech warnings
Predatory Sparrow: Who are the hackers who say they started a fire in Iran?
THREAT ALERT: Raspberry Robin Worm Abuses Windows Installer and QNAP Devices
'I can fight with a keyboard': How one Ukrainian IT specialist exposed a notorious Russian ransomware gang
Hacktivists claiming attack on Iranian steel facilities dump tranche of 'top secret documents
Google Let Sberbank-Owned RuTarget Harvest User Data for Months
Il malware EnvyScout (APT29) è stato veicolato anche in Italia
This Is the Code the FBI Used to Wiretap the World
Cybersecurity experts question Microsoft's Ukraine report
After invasion of Ukraine, a reckoning on Russian influence in Austria
China Police Database Was Left Open Online for Over a Year, Enabling Leak
How a fake job offer took down the world’s most popular crypto game
Why the Equation Group (EQGRP) is NOT the NSA | xorl %eax, %eax
Unprecedented Shift: The Trickbot Group is Systematically Attacking Ukraine
Mykhailo Fedorov, de l’ombre à la cyberguerre
Dutch university wins big after Bitcoin ransom returned
Microsoft finds Raspberry Robin worm in hundreds of Windows networks
Ransomware review: June 2022
Mandiant Finds Possible Link Between Kremlin, Pro-Russian ‘Hacktivists’
Flubot: the evolution of a notorious Android Banking Malware
The SessionManager IIS backdoor: a possibly overlooked GELSEMIUM artefact
ZuoRAT Hijacks SOHO Routers to Silently Stalk Networks
Facing reality? Law enforcement and the challenge of deepfakes
FBI warns hackers are using deepfakes to apply for jobs
Unrar Path Traversal Vulnerability affects Zimbra Mail
Conti vs. LockBit: A Comparative Analysis of Ransomware Groups
LockBit 3.0 introduces the first ransomware bug bounty program
The hateful eight: Kaspersky’s guide to modern ransomware groups’ TTPs
There Is More Than One Way to Sleep: Dive Deep Into the Implementations of API Hammering by Various Malware Families
From NtObjectManager to PetitPotam
Conti ransomware finally shuts down data leak, negotiation sites
NSA, Partners Recommend Properly Configuring, Monitoring PowerShell in New Report
7-zip now supports Windows ‘Mark-of-the-Web’ security feature
Raspberry Robin gets the worm early
The forgotten SUAVEEYEFUL FreeBSD software implant of the EQUATION GROUP
The curious tale of a fake Carrier.app
Spyware vendor targets users in Italy and Kazakhstan
APT ToddyCat
Defending Ukraine: Early Lessons from the Cyber War
Microsoft Plans to Eliminate Face Analysis Tools in Push for ‘Responsible A.I.’
How Russia’s vaunted cyber capabilities were frustrated in Ukraine
Council conclusions on a Framework for a coordinated EU response to hybrid campaigns
Nothing Has Changed: Website Retailers Selling Domains Meant for Illicit Goods and Services, Digital Citizens Alliance Investigation Finds
FBI says fraud on LinkedIn a 'significant threat' to platform and consumers
Russia's APT28 uses fear of nuclear war to spread Follina docs in Ukraine
Zero Day Initiative — CVE-2022-23088: Exploiting a Heap Overflow in the FreeBSD Wi-Fi Stack
BRATA is evolving into an Advanced Persistent Threat
Lookout Découverte d'un logiciel espion Android déployé au Kazakhstan
What It Means that the U.S. Is Conducting Offensive Cyber Operations Against Russia
Last Week on My Mac: Introducing XProtect Remediator, successor to MRT – The Eclectic Light Company
Analysis of dark web posts selling access to corporate networks
Telerik UI exploitation leads to cryptominer, Cobalt Strike infections
Police Linked to Hacking Campaign to Frame Indian Activists
Zimbra Email - Stealing Clear-Text Credentials via Memcache injection
Alphv-BlackCat non è più solo darkweb, pubblica anche su Internet "in chiaro"
A new vulnerability in Intel and AMD CPUs lets hackers steal encryption keys
Linux Threat Hunting: 'Syslogk' a kernel rootkit found under development in the wild
Vulnerability discovered in Apple M1 chip
SeaFlower 藏海花 A backdoor targeting iOS web3 wallets
Lyceum .NET DNS Backdoor
ASyncRat surpasses Dridex, TrickBot and Emotet to become dominant email threat
Ucraina, oltre 100 attacchi cyber della guerra hanno avuto impatti in Europa
Symbiote: A New, Nearly-Impossible-to-Detect Linux Threat
EXCLUSIVE: U.S. Government Ordered Travel Companies To Spy On Russian Hacker For Years And Report His Whereabouts Every Week
Microsoft Diagnostic Tool "DogWalk" Package Path Traversal Gets Free Micropatches (0day/WontFix)
DOJ, FBI shut down marketplace for stolen Social Security numbers - The Record by Recorded Future
Russian Cyberattack Hits Wales-Ukraine Football Broadcast
SVCReady: A New Loader Gets Ready
Liveness tests used by banks to verify ID are ‘extremely vulnerable’ to deepfake attacks
Smartphones Blur the Line Between Civilian and Combatant
TrustPid is another worrying, imperfect attempt to replace tracking cookies
Horde Webmail - Remote Code Execution via Email
Analysis and Attribution of the Eternity Ransomware: Timeline and Emergence of the Eternity Group
Anonymous Hacktivists Leak 1TB of Top Russian Law Firm Data
Deadly secret: Electronic warfare shapes Russia-Ukraine war
Zero-Day Exploitation of Atlassian Confluence
Cyberattaques: «Il s'agit davantage de terrorisme que de crime organisé»
US military hackers conducting offensive operations in support of Ukraine, says head of Cyber Command
Android FluBot enters Switzerland – SWITCH Security-Blog
Takedown of SMS-based FluBot spyware infecting Android phones
XLoader Botnet: Find Me If You Can
Pegasus, il Parlamento europeo vuole chiarezza. Gli Stati Ue no
ICO fines facial recognition database company Clearview AI Inc more than £7.5m and orders UK data to be deleted
Fronton: A Botnet for Creation, Command, and Control of Coordinated Inauthentic Behavior
Des chercheurs reprogramment un AirTag et pointent quelques trous dans la raquette d'Apple
Gimmick MacOS Malware Spreads Through Customized Files, Enables MacOS CodeSign Bypass - CloudSEK
New Linux-Based Ransomware Cheerscrypt Targets ESXi Devices
Large-scale Analysis of DNS-based Tracking Evasion - broad data leaks included?
Exclusive: Russian hackers are linked to new Brexit leak website, Google says
Guerre en Ukraine : Anonymous déclare la cyberguerre à Killnet, un collectif de hackers pro-russes
Anonymous Declares Cyber War Against Pro-Russia Hacker Group Killnet
PyPI package 'ctx' and PHP library 'phpass' compromised to steal environment variables
Remote Code Execution on Western Digital PR4100 NAS (CVE-2022-23121)
Rise in XorDdos: A deeper look at the stealthy DDoS malware targeting Linux devices - Microsoft Security Blog
CrateDepression | Rust Supply-Chain Attack Infects Cloud CI Pipelines with Go Malware
Protecting Android users from 0-Day attacks
The IO Offensive: Information Operations Surrounding the Russian Invasion of Ukraine
Canada bans Huawei and ZTE from 5G networks over security concerns
Fears grow for smaller nations after ransomware attack on Costa Rica escalates
President Rodrigo Chaves says Costa Rica is at war with Conti hackers
Exploiting an Unbounded memcpy in Parallels Desktop
KillNet: Pro-Russian Hacktivists.
Killnet Cyber Attacks Against Italy and NATO Countries
New 'Smart' Cheese Rinds Help Fight Parmesan Fraud
Data Marketplace Selling Info About Who Uses Period Tracking Apps
Critical Privilege Escalation Vulnerability in Jupiter and JupiterX Premium Themes
Researchers devise iPhone malware that runs even when device is turned off
La vulnérabilité PetitPotam persiste malgré le patch tuesday
Eternity, poche centinaia di dollari per un ransomware o un malware per furto dati
Multi-factor Authentication to Generate $27 Billion Globally for Mobile Operators in 2022, Juniper Research Study Finds
Web ad firms scrape email addresses before you know it
US links Thanos and Jigsaw ransomware to 55-year-old doctor
A closer look at Eternity Malware
macOS Vulnerabilities Hiding in Plain Sight (Black Hat Asia 2022 presentation)
EU lands new law to fight off hackers in critical sectors
The Linux Foundation and Open Source Software Security Foundation (OpenSSF) Gather Industry and Government Leaders for Open Source Software Security Summit II
Known macOS Vulnerabilities Led Researcher to Root Out New Flaws
Patch tuesday mai 2022 : 74 failles corrigées dont 1 exploitée
Russia hacked an American satellite company one hour before the Ukraine invasion
npm Supply Chain Attack Targeting Germany-Based Companies
Ransomware-as-a-service: Understanding the cybercrime gig economy and how to protect yourself
Costa Rica declares national emergency after Conti ransomware attacks
L’Europe de la cyberdéfense
Dissecting Saintstealer
Russian TVs, search engines hacked on Victory Day with antiwar message
Apple, Google, and Microsoft commit to expanded support for FIDO standard
Vulnerability Analysis - CVE-2022-1388
From the Front Lines | Unsigned macOS oRAT Malware Gambles For The Win
MacOS Two-machine Kernel Debugging
Operation CuckooBees: Cybereason Uncovers Massive Chinese Intellectual Property Theft Operation
Apple, Google and Microsoft Commit to Expanded Support for FIDO Standard to Accelerate Availability of Passwordless Sign-Ins
Nozomi Networks Discovers Unpatched DNS Bug in Popular C Standard Library Putting IoT at Risk
UNC3524: Eye Spy on Your Email
Google Online Security Blog: The Package Analysis Project: Scalable detection of malicious open source packages
Spanish prime minister’s phone ‘targeted with Pegasus spyware’
Russia’s cyber warfare against Ukraine more nuanced than expected
How the French fiber optic cable attacks accentuate critical infrastructure vulnerabilities
Jamf Threat Labs identifies Safari vulnerability (CVE-2022-22616) allowing for Gatekeeper bypass
Dec0ne/KrbRelayUp: KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).
Microsoft finds new elevation of privilege Linux vulnerability, Nimbuspwn
Kaspersky DDoS report, Q1 2022
Zero Tolerance: More Zero-Days Exploited in 2021 Than Ever Before
LemonDuck botnet plunders Docker cloud instances in cryptocurrency crime wave
CVE-2022-21449: Psychic Signatures in Java
The More You Know, The More You Know You Don’t Know
CatalanGate: Extensive Mercenary Spyware Operation against Catalans Using Pegasus and Candiru
GitHub: Attacker breached dozens of orgs using stolen OAuth tokens
Increased Enterprise Use of iOS, Mac Means More Malware
Researcher uses 379-year-old algorithm to crack crypto keys found in the wild
Microsoft Zero-Days, Wormable Bugs Spark Concern
Russia’s Sandworm hackers attempted a third blackout in Ukraine
RaidForums hacking forum seized by police, owner arrested
Git security vulnerability announced
The U.S. is using declassified intel to fight an info war with Russia, even when the intel isn't rock solid
Industroyer2: Industroyer reloaded
CVE-2022-22965 Analyzing the Exploitation of Spring4Shell Vulnerability in Weaponizing and Executing the Mirai Botnet Malware
Spionaggio cyber alla Commissione europea
Police Records Show Women Are Being Stalked With Apple AirTags Across the Country
FBI Disrupts Cyclops Blink Botnet Used by Russian Intelligence Directorate
DoS attacks hit Finnish websites during Zelenskyy address • The Register
Svizzera, covo di spie russe
U.S. Says It Secretly Removed Malware Worldwide, Pre-empting Russian Cyberattacks - The New York Times
Chinese hackers abuse VLC Media Player to launch malware loader
MacOS SUHelper Root Privilege Escalation Vulnerability A Deep Dive Into CVE-2022-22639
Hackers breach MailChimp's internal tools to target crypto customers
Explaining Spring4Shell: The Internet security disaster that wasn’t
Faille Spring4shell, encore un cauchemar pour les entreprises
En Russie, des informations sur la police secrète fuitent à cause d'une appli de livraison
Lapsus$: Two UK teenagers charged with hacking for gang
Apple releases macOS 12.3.1, iOS 15.4.1, watchOS 8.5.1 and more - The Mac Security Blog
Chinese Hackers Target VMware Horizon Servers with Log4Shell to Deploy Rootkit
QNAP warns severe OpenSSL bug affects most of its NAS devices
Putin's hackers gained full access to Hungary's foreign ministry networks, the Orbán government has been unable to stop them
Apple and Meta Gave User Data to Hackers Who Used Forged Legal Requests
Lapsus$ and SolarWinds hackers both use the same old trick to bypass MFA
New Lapsus$ Hack Documents Make Okta’s Response Look More Bizarre
Sophos patches critical remote code execution vulnerability in Firewall
When Nokia Pulled Out of Russia, a Vast Surveillance System Remained
Chrome Releases: Stable Channel Update for Desktop
Behold, a password phishing site that can trick even savvy users
Lapsus$: Oxford teen accused of being multi-millionaire cyber-criminal
Storm Cloud on the Horizon: GIMMICK Malware Strikes at macOS
Lapsus$: when kiddies play in the big league
Piratage Okta : 375 des clients concernés par l'attaque de Lapsus$
Updated Okta Statement on LAPSUS$
DEV-0537 criminal actor targeting organizations for data exfiltration and destruction
Anonymous Takes Anti-Putin Battle To Russian People With Printer Attack To Disrupt Kremlin's Propaganda
Lapsus$ hackers leak 37GB of Microsoft's alleged source code
Piratage d'Okta : l'entreprise admet enquêter, LAPSUS$ revendique
Protestware : l’open source n’échappe pas au conflit russo-ukrainien
Activists are targeting Russians with open-source "protestware"
Ukraine warns of InvisiMole attacks tied to state-sponsored Russian hackers
Gas Is Too Expensive; Let’s Make It Cheap!
Sabotage: Code added to popular NPM package wiped files in Russia and Belarus | Ars Technica
OpenSSL plombé par une importante faille de sécurité
L’Ukraine reconnaît « une énorme perte de communication » après la cyberattaque contre le satellite KA-SAT
PROPHET SPIDER Exploits Citrix ShareFile
Cyber-attaques en Suisse sur des particuliers? «On ne peut rien exclure»
Raccoon Stealer: “Trash panda” abuses Telegram
Cyber Security Incident Pushes Ubisoft to Issue Internal Password Reset
Exclusive: U.S. spy agency probes sabotage of satellite internet during Russian invasion, sources say | Reuters
Armis Finds Three Critical Zero-Day Vulnerabilities in APC Smart-UPS Devices, Dubbed "TLStorm," Exposing More than 20 Million Enterprise Devices
EU and UK launch antitrust investigation into Google and Meta’s adtech dealings - The Verge
Iranian linked conglomerate MuddyWater comprised of regionally focused subgroups
Guerre en Ukraine : les utilisateurs du réseau satellitaire Viasat victimes d’une cyberattaque
New method that amplifies DDoSes by 4 billion-fold. What could go wrong?
Belarus conducted widespread phishing campaigns against Ukraine, Poland, Google says
An update on the threat landscape
Samsung confirms hackers stole Galaxy devices source code
Hackers leak 190GB of alleged Samsung data, source code
Cybercriminals who breached Nvidia issue one of the most unusual demands ever
Malware now using stolen NVIDIA code signing certificates
Crypto Bug in Samsung Galaxy Devices: Breaking Trusted Execution Environments (TEEs)
Scam E-Mail Impersonating Red CrossScam E-Mail Impersonating Red Cross
Asylum Ambuscade: State Actor Uses Compromised Private Ukrainian Military Emails to Target European Governments and Refugee Movement
L'Anssi sème le doute sur l'usage des solutions Kaspersky
Cyber Realism in a Time of War
Phishing attacks target countries aiding Ukrainian refugees
Toyota suspends domestic factory operations after suspected cyber attack
Ukrainian cyber resistance group targets Russian power grid, railways
Face à un incident de cybersécurité, Nvidia soupçonné d'avoir répliqué - ZDNet
Nvidia Confirms Company Data Was Stolen in Hack
IsaacWiper and HermeticWizard: New wiper and worm targeting Ukraine
Cybersécurité : l’Union européenne va aider l’Ukraine face à la Russie
Ukrainian Researcher Leaks Conti Ransomware Gang Data
Cyberattaque contre l’Université de Neuchâtel: des données volées publiées sur le darkweb (update)
The Next Web
Crypto Donations to Ukraine Jumps to $20M
Chinese Cybersecurity Company Doxes Apparent NSA Hacking Operation
Google follows YouTube in cutting off ad revenue to Russian state media
2022 Russia-Ukraine war — Cyber group tracker
STORMOUS ransomware si schiera senza dirlo, contro l'Ucraina - (in)sicurezza digitale
Twitter and Facebook restricted in Russia amid conflict with Ukraine
Facebook, Twitter remove disinformation accounts targeting Ukrainians
Ukraine border control hit with wiper cyberattack, slowing refugee crossing
Anonymous: the hacker collective that has declared cyberwar on Russia | Ukraine
Nvidia allegedly hacked its hackers, stole its data back
Ukraine takes the resistance to cyberspace, assembling an “IT army” to hack sites from Russia and its allies, calls on tech leaders to get involved
New Malware Capable of Controlling Social Media Accounts Infects 5,000+ Machines and is actively being Distributed via Gaming Applications on Microsoft's Official Store
Anonymous hacktivists, ransomware groups get involved in Ukraine-Russia conflict
US microchip powerhouse Nvidia hit by cyber attack
Conti ransomware group announces support of Russia, threatens retaliatory attacks
Attacchi informatici, c'è un nuovo malware di uno dei più importanti gruppi di cybercriminali russi
Ukraine links phishing targeting military to Belarusian hackers
Aquarium Leaks. Inside the GRU’s Psychological Warfare Program
Ukraine: Disk-wiping Attacks Precede Russian Invasion
EXCLUSIVE Ukraine calls on hacker underground to defend against Russia
HermeticWiper | New Destructive Malware Used In Cyber Attacks on Ukraine
New data-wiping malware used in destructive attacks on Ukraine
The Bvp47 - a Top-tier Backdoor of US NSA Equation Group
Find You: Building a stealth AirTag clone | Positive Security
Un ex-officier de la CIA sur l’Ukraine: «Jamais les Etats-Unis n’ont divulgué autant d’informations sensibles et aussi vite»
Chinese cyber-attackers 'targeted Taiwanese financial firms'
Horde Webmail 5.2.22 - Account Takeover via Email
Behind the stalkerware network spilling the private phone data of hundreds of thousands
The US is unmasking Russian hackers faster than ever
Comment le leader mondial des data centers a contré l’attaque par rançongiciel de NetWalker
Risque de cybersécurité – RUAG doit être plus vigilante sur ses données sensibles
Une faille vulnérabilise le gestionnaire de paquets Snap pour Linux
Cosa sappiamo di sLoad e perchè è così elusivo? –
Pegasus spyware scandal uncovered by fake image file on an iPhone
Who Is Behind QAnon? Linguistic Detectives Find Fingerprints
Cyberattack targets Vodafone Portugal, disrupts services
‘Zero-Click’ Hacks Are Growing in Popularity. There’s Practically No Way to Stop Them
Une cyberattaque met à genou l’Université de Neuchâtel
Kazakhstan's Internet Shutdowns Could Be a Warning for Ukraine
VMware Horizon servers are under active exploit by Iranian state hackers
The Elite Hackers of the FSB
Passware parvient à trouver le mot de passe des Mac T2 par force brute
Twitter cans 2FA service provider over surveillance claims
Red Cross traces hack back to unpatched Zoho vulnerability
Assurances cyber : vers une « jurisprudence NotPetya » ?
Merck’s $1.4 Billion Insurance Win Splits Cyber From ‘Act of War’
Chrome Zero-Day Under Active Attack: Patch ASAP | Threatpost
New Emotet Infection Method
Russian hackers have obtained sensitive defense information technology by targeting US contractors, according to CISA
Meta to Pay $90 Million to Settle Facebook Data Privacy Lawsuit
Flood of malicious junk traffic makes Ukrainian websites unreachable | Ars Technica
Vaud – Etudiant débouté en raison de son inactivité en ligne
Cyberattack takes Ukraine military, bank websites offline
New DeadBolt ransomware targets QNAP devices, asks 50 BTC for master key
EDPS Preliminary Remarks on Modern Spyware
KlaySwap crypto users lose funds after BGP hijack