Source: www.bleepingcomputer.com – Author: Sergiu Gatlan Microsoft has released an optional fix to address a Kernel information disclosure vulnerability affecting systems running multiple Windows versions, including...
Day: June 14, 2023
Fake WannaCry ransomware targets Russian “Enlisted” FPS players – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A ransomware operation targets Russian players of the Enlisted multiplayer first-person shooter, using a fake website to spread trojanized versions...
Windows 11 KB5027231 update breaks Google Chrome for Malwarebytes users – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Sergiu Gatlan Malwarebytes confirmed today that the Windows 11 22H2 KB5027231 cumulative update released this Patch Tuesday breaks Google Chrome on its customers’...
New ‘Shampoo’ Chromeloader malware pushed via fake warez sites – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A new ChromeLoader campaign is underway, infecting visitors of warez and pirated movie sites with a new variant of the...
Microsoft links data wiping attacks to new Russian GRU hacking group – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Sergiu Gatlan Microsoft has linked a threat group it tracks as Cadet Blizzard since April 2023 to Russia’s Main Directorate of the General Staff...
Chinese hackers use DNS-over-HTTPS for Linux malware communication – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The Chinese threat group ‘ChamelGang’ infects Linux devices with a previously unknown implant named ‘ChamelDoH,’ allowing DNS-over-HTTPS communications with attackers’...
CISA: LockBit ransomware extorted $91 million in 1,700 U.S. attacks – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Sergiu Gatlan U.S. and international cybersecurity authorities said in a joint LockBit ransomware advisory that the gang successfully extorted roughly $91 million...
Compliance Automation: Your Audit Experience Before and After – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Sponsored by Drata Richard Stevenson, Manager of Cybersecurity Risk Management and Compliance at Drata Automation transforms the audit experience. What was once...
Fake zero-day PoC exploits on GitHub push Windows, Linux malware – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Hackers are impersonating cybersecurity researchers on Twitter and GitHub to publish fake proof-of-concept exploits for zero-day vulnerabilities that infect Windows...
The fascinating history of cyber security you never knew – Source: www.cybertalk.org
Source: www.cybertalk.org – Author: slandau Contributed by George Mack, Content Marketing Manager, Check Point Software Cyber security has evolved significantly throughout the years. Much of it...
Google introduces Secure AI Framework (SAIF) – Source: www.cybertalk.org
Source: www.cybertalk.org – Author: slandau EXECUTIVE SUMMARY: In the wake of ChatGPT’s debut on the world stage, interest in generative artificial intelligence (AI) exploded. Generative AI...
News alert: Cybersixgill introduces generative AI for Dark Web threat intelligence gathering – Source: www.lastwatchdog.com
Source: www.lastwatchdog.com – Author: bacohido Tel Aviv, Israel – June 14, 2023 – Cybersixgill, the global cyber threat intelligence data provider, announced today Cybersixgill IQ, its new generative AI, representing a...
Malicious Actors Exploit GitHub to Distribute Fake Exploits – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 A series of malicious GitHub repositories masquerading as legitimate security research projects have been discovered. VulnCheck researcher Jacob Baines shared the...
PII Exposed: Unauthenticated IDOR in WooCommerce Stripe Plugin – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 A critical security vulnerability has been discovered in the popular WooCommerce Stripe Gateway plugin, potentially exposing users’ personally identifiable information (PII). The...
EU Passes Landmark Artificial Intelligence Act – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 It’s a done deal. The EU’s Artificial Intelligence Act will become law. The European Parliament adopted the latest draft of the legislation...
Researchers Uncover XSS Vulnerabilities in Azure Services – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 Cybersecurity experts at Orca Security have identified two critical cross-site scripting (XSS) vulnerabilities in Microsoft Azure services. The flaws, which exploited...
#InfosecurityEurope: (ISC)² and CIISec Release Guide to Inclusive Language in Cybersecurity – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 Ahead of Infosecurity Europe, (ISC)² and the Chartered Institute of Information Security (CIISec) have released a new guide to inclusive language...
#InfosecurityEurope: Cyber Leaders’ Plea to Tackle the Industry’s Mental Health Crisis – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 Unsustainable pressures are being placed on cyber leaders and professionals’ mental health because of a combination of factors, such as the...
Europol Warns of Metaverse and AI Terror Threat – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 New and emerging technologies like conversational AI, deepfakes and the metaverse could be utilized by terrorists and extremists to radicalize and...
MFA Bypass Kits Account For One Million Monthly Messages – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 Threat actors continued to evolve their tactics to sidestep user defenses in 2022, with multi-factor authentication (MFA) bypass kits accounting for...
No Zero-Days but PGM Flaws Cause Patch Tuesday Concern – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 System administrators breathed a sigh of relief yesterday after Microsoft issued a relatively light patch update round, with no zero-day vulnerabilities and...
It’s Official – FedRAMP has moved to Rev. 5 – Source: securityboulevard.com
Source: securityboulevard.com – Author: Jenn Sherman As of May 30, 2023, FedRAMP has officially approved and adopted the new Rev. 5 baselines – aligning with the...
Your Personal Data Sold to US Intelligence Agencies – Source: securityboulevard.com
Source: securityboulevard.com – Author: Richi Jennings Warrant not needed if info bought from brokers. An 18-month-old secret report—recently declassified—“raises significant issues related to privacy and civil...
Attacker Infrastructure: How Hackers Build It and How to Use It Against Them – Source: securityboulevard.com
Source: securityboulevard.com – Author: HYAS Hackers often spend weeks or months lurking on a target network to prepare for an eventual cyberattack. They will attempt to...
Tracking Patch Tuesday Vulnerabilities – Source: securityboulevard.com
Source: securityboulevard.com – Author: Flashpoint Intel Team June 2023 While most security vendors mainly focus on Microsoft releases on Patch Tuesday, our Flashpoint VulnDB team closely...
The Pros and Cons of reCAPTCHA Enterprise – Source: securityboulevard.com
Source: securityboulevard.com – Author: Heidi Anderson Google’s web security service, reCAPTCHA, is seemingly ubiquitous on the internet. Virtually anyone who has logged into one digital account...
AWS Expands Cloud Security Services Portfolio – Source: securityboulevard.com
Source: securityboulevard.com – Author: Michael Vizard Amazon Web Services (AWS) this week added a bevy of offerings and capabilities to its cloud security portfolio as part...
Unifying Your Cybersecurity Posture: A Guide to Assessing Your Enterprise Maturity – Source: securityboulevard.com
Source: securityboulevard.com – Author: Kanika Thapar As technology relentlessly progresses, we witness a continuous stream of newer, more innovative tools replacing their antiquated counterparts. Rotary phones...
BSidesSF 2023 – Ben Schmerler – What I Learned About Security Working Minimum Wage At Hollywood Video – Source: securityboulevard.com
Source: securityboulevard.com – Author: Marc Handelman Security Boulevard The Home of the Security Bloggers Network Community Chats Webinars Library Home Cybersecurity News Features Industry Spotlight News...
Improving Performance and Scalability: Updates and Lessons from Inspector, Our End-to-End Testing Solution – Source: securityboulevard.com
Source: securityboulevard.com – Author: emmaline Overview In a previous article titled Inspector or: How I Learned to Stop Worrying and Love Testing in Prod, we discussed...