Source: www.csoonline.com – Author: News 11 Dec 20242 mins CyberattacksHealthcare IndustryRansomware Ransomware attack hits administrative processes at Artivion and hinders delivery of important medical equipment. The...
Day: December 11, 2024
Microsoft secretly stopped actors from snooping on your MFA codes – Source: www.csoonline.com
Source: www.csoonline.com – Author: The issue could allow threat actors to brute force MFA authentication codes for Outlook, Teams, and Azure access with 50% accuracy. Microsoft...
Hersteller von Geräten für die Herzchirurgie angegriffen – Source: www.csoonline.com
Source: www.csoonline.com – Author: News 11 Dezember 20243 Minuten Ransomware-Angriff trifft Verwaltungsabläufe bei Artivion und behindert die Auslieferung wichtiger medizinischer Ausrüstung. Cyberkriminelle üben immer häufiger Druck...
Rumänien kommt digital weiterhin nicht zur Ruhe – Source: www.csoonline.com
Source: www.csoonline.com – Author: News 11 Dezember 20242 Minuten Rumänischer Energieversorger Electrica von Ransomware-Angriff betroffen. Nehmen die Russen Rache an Rumänien für die gescheiterte Wahl „ihres“...
Salt Typhoon poses a serious supply chain risk to most organizations – Source: www.csoonline.com
Source: www.csoonline.com – Author: The Salt Typhoon intrusion gives China a chance to exfiltrate massive amounts of data from most organizations, especially voice calls that can...
Bug bounty programs can deliver significant benefits, but only if you’re ready – Source: www.csoonline.com
Source: www.csoonline.com – Author: Bug bounty programs can be a big boon to software security and provide expanded vulnerability visibility, but they’re not for all organizations...
ISO und ISMS: Darum gehen Security-Zertifizierungen schief – Source: www.csoonline.com
Source: www.csoonline.com – Author: Bei der ISO-Zertifizierung von Unternehmen können vielfältige Probleme auftreten. Welche das sind und wie Lösungen dazu aussehen können, erfahren Sie in diesem...
US sanctions Chinese cybersecurity firm over global malware campaign – Source: www.csoonline.com
Source: www.csoonline.com – Author: Sichuan Silence and employee accused of exploiting firewall vulnerabilities in 2020. The US government has imposed sanctions on Chinese cybersecurity firm Sichuan...
Attackers exploit zero-day RCE flaw in Cleo managed file transfer – Source: www.csoonline.com
Source: www.csoonline.com – Author: The exploit takes advantage of a known file upload vulnerability that was not efficiently patched and can still be exploited in up-to-date...
Secret Blizzard Targets Ukrainian Military with Custom Malware – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: Russian state threat actor Secret Blizzard has leveraged resources and tools used by other cyber groups to support the Kremlin’s military efforts...
Sophisticated Scam Targets UAE Residents with Fake Police Fines – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: A large-scale scam campaign impersonating UAE law enforcement and exploiting citizen trust has been uncovered by security researchers. The fraudulent scheme, which...
Cyber Incident Disrupting Krispy Kreme Online Orders – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: Krispy Kreme has been hit by a cyber-incident which is disrupting operations including online orders, the firm has reported in a filing...
South Korea Takes Down Fraudulent Online Trading Network Used to Extort $6.3M – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: A South Korean law enforcement operation has taken down a large-scale fraud network that extorted $6.3m from victims with fake online trading...
Microsoft Azure MFA Flaw Allowed Easy Access Bypass – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: A vulnerability in Microsoft’s Multi-Factor Authentication (MFA) system has left millions of accounts susceptible to unauthorized access. Exploited successfully, the flaw could...
Operation PowerOFF Takes Down DDoS Boosters – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: Written by Global law enforcement agencies have seized 27 popular platforms used to launch Distributed Denial-of-Service (DDoS) attacks to take websites offline....
US Sanctions Chinese Firm at Center of Global Firewall Hack – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: The US government has sanctioned a Chinese cybersecurity company and one of its employees for their involvement in the large-scale compromise of...
Microsoft Fixes 71 CVEs Including Actively Exploited Zero-Day – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: Microsoft issued patches for scores of vulnerabilities in its December Patch Tuesday yesterday, including one that is currently being exploited by threat...
Hackers Exploit Misconfigurations in Public Websites With Improperly Exposed AWS Credentials – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: A significant cyber operation exploiting vulnerabilities in improperly configured public websites has been linked to the Nemesis and ShinyHunters hacking groups, exposing sensitive data,...
The Stealthy Stalker: Remcos RAT – Source:www.mcafee.com
Source: www.mcafee.com – Author: McAfee Labs. Authored By Sakshi Jaiswal, Anuradha M In Q3 2024, McAfee Labs identified a sharp rise in the Remcos RAT threat....
Financial Sector Turning to Multi-Cloud Strategies – Source: www.databreachtoday.com
Source: www.databreachtoday.com – Author: Cloud Security , Finance & Banking , Industry Specific Report: Financial Orgs Shift to Multi-Cloud to Address Cyberthreats and Regulation Chris Riotta...
Citrix Acquisitions Boost Zero Trust Defense for Hybrid Work – Source: www.databreachtoday.com
Source: www.databreachtoday.com – Author: Governance & Risk Management , Remote Workforce , Zero Trust deviceTRUST, Strong Network Acquisitions Improve Zero Trust, Developer Protections Michael Novinson (MichaelNovinson)...
OpenWrt Update Flaw Exposed Devices to Malicious Firmware – Source: www.databreachtoday.com
Source: www.databreachtoday.com – Author: Endpoint Security , Internet of Things Security Flaw in Embedded Device Operating System Allowed Hackers to Bypass Integrity Check Anviksha More (AnvikshaMore)...
Hospital Notifies 316,000 of Breach in Christmas 2023 Hack – Source: www.databreachtoday.com
Source: www.databreachtoday.com – Author: Breach Notification , Fraud Management & Cybercrime , Healthcare Cybercriminal Gang ‘Money Message’ Claims Credit, Publishes Stolen Records Marianne Kolbasuk McGee (HealthInfoSec)...
Microsoft MFA AuthQuake Flaw Enabled Unlimited Brute-Force Attempts Without Alerts – Source:thehackernews.com
Source: thehackernews.com – Author: . Cybersecurity researchers have flagged a “critical” security vulnerability in Microsoft’s multi-factor authentication (MFA) implementation that allows an attacker to trivially sidestep...
ZLoader Malware Returns With DNS Tunneling to Stealthily Mask C2 Comms – Source:thehackernews.com
Source: thehackernews.com – Author: . Cybersecurity researchers have discovered a new version of the ZLoader malware that employs a Domain Name System (DNS) tunnel for command-and-control...
Chinese EagleMsgSpy Spyware Found Exploiting Mobile Devices Since 2017 – Source:thehackernews.com
Source: thehackernews.com – Author: . Cybersecurity researchers have discovered a novel surveillance program that’s suspected to be used by Chinese police departments as a lawful intercept...
Researchers Uncover Espionage Tactics of China-Based APT Groups in Southeast Asia – Source:thehackernews.com
Source: thehackernews.com – Author: . A suspected China-based threat actor has been linked to a series of cyber attacks targeting high-profile organizations in Southeast Asia since...
Microsoft Fixes 72 Flaws, Including Patch for Actively Exploited CLFS Vulnerability – Source:thehackernews.com
Source: thehackernews.com – Author: . Microsoft closed out its Patch Tuesday updates for 2024 with fixes for a total of 72 security flaws spanning its software...
U.S. Charges Chinese Hacker for Exploiting Zero-Day in 81,000 Sophos Firewalls – Source:thehackernews.com
Source: thehackernews.com – Author: . The U.S. government on Tuesday unsealed charges against a Chinese national for allegedly breaking into thousands of Sophos firewall devices globally...
Ivanti Issues Critical Security Updates for CSA and Connect Secure Vulnerabilities – Source:thehackernews.com
Source: thehackernews.com – Author: . Ivanti has released security updates to address multiple critical flaws in its Cloud Services Application (CSA) and Connect Secure products that...