Source: securityaffairs.com – Author: Pierluigi Paganini Paramount Global disclosed a data breach Multinational mass media conglomerate Paramount Global suffered a data breach after an unauthorized party...
Author:
National Safety Council data leak: Credentials of NASA, Tesla, DoJ, Verizon, and 2K others leaked by workplace safety organization – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini National Safety Council data leak: Credentials of NASA, Tesla, DoJ, Verizon, and 2K others leaked by workplace safety organization The...
Abusing Windows Container Isolation Framework to avoid detection by security products – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Abusing Windows Container Isolation Framework to avoid detection by security products Researchers demonstrated how attackers can abuse the Windows Container...
Chinese GREF APT distributes spyware via trojanized Signal and Telegram apps on Google Play and Samsung Galaxy stores – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Chinese GREF APT distributes spyware via trojanized Signal and Telegram apps on Google Play and Samsung Galaxy stores China-linked APT...
Threat actors started exploiting Juniper flaws shortly after PoC release – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Threat actors started exploiting Juniper flaws shortly after PoC release Threat actors started using the exploit chain in attacks on...
Why are we seeing such a huge demand for AI at the moment? – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Why are we seeing such a huge demand for AI at the moment? This is my interview for TRT Money...
Critical RCE flaw impacts VMware Aria Operations Networks – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Critical RCE flaw impacts VMware Aria Operations Networks VMware fixed two security flaws in Aria Operations for Networks that could...
FBI: Operation ‘Duck Hunt’ dismantled the Qakbot botnet – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini FBI: Operation ‘Duck Hunt’ dismantled the Qakbot botnet FBI coordinated an international law enforcement operation, named Operation ‘Duck Hunt’, that...
UNC4841 threat actors hacked US government email servers exploiting Barracuda ESG flaw – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini UNC4841 threat actors hacked US government email servers exploiting Barracuda ESG flaw China-linked threat actors breached government organizations worldwide with...
Hackers infiltrated Japan’s National Center of Incident Readiness and Strategy for Cybersecurity (NISC) for months – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Hackers infiltrated Japan’s National Center of Incident Readiness and Strategy for Cybersecurity (NISC) for months Japan’s National Center of Incident...
FIN8-linked actor targets Citrix NetScaler systems – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini FIN8-linked actor targets Citrix NetScaler systems A financially motivated actor linked to the FIN8 group exploits the CVE-2023-3519 RCE in...
Japan’s JPCERT warns of new ‘MalDoc in PDF’ attack technique – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Japan’s JPCERT warns of new ‘MalDoc in PDF’ attack technique Japan’s JPCERT warns of a new recently detected ‘MalDoc in...
Attackers can discover IP address by sending a link over the Skype mobile app – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Attackers can discover IP address by sending a link over the Skype mobile app A security researcher demonstrated how to...
Researchers published PoC exploit code for Juniper SRX firewall flaws – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Researchers published PoC exploit code for Juniper SRX firewall flaws Researchers published a PoC exploit code for Juniper SRX firewall...
Rhysida ransomware group claims the hack of Prospect Medical – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Rhysida ransomware group claims the hack of Prospect Medical The Rhysida ransomware group claimed to have hacked Prospect Medical Holdings...
Updated Kmsdx botnet targets IoT devices – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Updated Kmsdx botnet targets IoT devices Researchers spotted an updated version of the KmsdBot botnet that is now targeting Internet of...
Massive MOVEit campaign already impacted at least 1,000 organizations and 60 million individuals – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Massive MOVEit campaign already impacted at least 1,000 organizations and 60 million individuals The recent wave of MOVEit attacks conducted by the...
Poland’s authorities investigate a hacking attack on country’s railways – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Poland’s authorities investigate a hacking attack on country’s railways The Polish domestic security agency is investigating a hacking attack on...
Leaked LockBit 3.0 ransomware builder used by multiple threat actors – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Leaked LockBit 3.0 ransomware builder used by multiple threat actors The leak of the source code of the LockBit 3.0 ransomware builder...
Security Affairs newsletter Round 434 by Pierluigi Paganini – International edition – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Privacy Overview This website uses cookies to improve your experience while you navigate through the website. Out of these cookies,...
Cisco fixes 3 high-severity DoS flaws in NX-OS and FXOS software – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Cisco addressed three high-severity flaws in NX-OS and FXOS software that could cause denial-of-service (DoS) conditions. Cisco this week addressed...
Cloud and hosting provider Leaseweb took down critical systems after a cyber attack – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The cloud and hosting provider Leaseweb suffered a security breach that impacted some “critical” systems of the company. Global hosting...
French employment agency Pôle emploi data breach impacted 10M people – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Pôle emploi, the French government employment agency suffered a data breach that impacted 10 million individuals. The French government employment agency...
Crypto investor data exposed by a SIM swapping attack against a Kroll employee – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Security consulting giant Kroll disclosed a data breach resulting from a SIM-swapping attack against one of its employees. Security consulting firm Kroll revealed...
China-linked Flax Typhoon APT targets Taiwan – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini China-linked APT group Flax Typhoon targeted dozens of organizations in Taiwan as part of a suspected espionage campaign. Microsoft linked...
Whiffy Recon malware triangulates the position of infected systems via Wi-Fi – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Experts observed the SmokeLoader malware delivering a new Wi-Fi scanning malware strain dubbed Whiffy Recon. Secureworks Counter Threat Unit (CTU) researchers...
FBI: Patches for Barracuda ESG Zero-Day CVE-2023-2868 are ineffective – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The FBI warned that patches for a critical Barracuda ESG flaw CVE-2023-2868 are “ineffective” and patched appliances are still being...
Researchers released PoC exploit for Ivanti Sentry flaw CVE-2023-38035 – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Proof-of-concept exploit code for critical Ivanti Sentry authentication bypass flaw CVE-2023-38035 has been released. Researchers released a proof-of-concept (PoC) exploit...
Lazarus APT exploits Zoho ManageEngine flaw to target an Internet backbone infrastructure provider – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The North Korea-linked Lazarus group exploits a critical flaw in Zoho ManageEngine ServiceDesk Plus to deliver the QuiteRAT malware. The...
Lapsus$ member has been convicted of having hacked multiple high-profile companies – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini An 18-year-old member of the Lapsus$ gang has been convicted of having helped hack multiple high-profile companies. A teenage member of...