Source: securityaffairs.com – Author: Pierluigi Paganini Experts warn of a threat actor, tracked as CloudWizard APT, that is targeting organizations involved in the region of the Russo-Ukrainian...
Author:
BlackCat Ransomware affiliate uses signed kernel driver to evade detection – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Experts spotted the ALPHV/BlackCat ransomware group using signed malicious Windows kernel drivers to evade detection. Trend Micro researchers shared details...
CISA adds iPhone bugs to its Known Exploited Vulnerabilities catalog – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini US CISA added three zero-day vulnerabilities affecting iPhones, Macs, and iPads to its Known Exploited Vulnerabilities catalog. US Cybersecurity and Infrastructure...
EU hits Meta with $1.3 billion fine for transferring European user data to the US – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The European Union condemned Meta with a record $1.3 billion fine for transferring European user data to the US. The European Union...
Dish Network says the February ransomware attack impacted +300,000 individuals – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Satellite TV giant Dish Network disclosed a data breach after the February ransomware attack and started notifying impacted individuals. The...
China bans chip maker Micron from its key information infrastructure – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The Chinese government announced the ban on the products made by the US memory chip giant Micron Technology over national...
BatLoader campaign impersonates ChatGPT and Midjourney to deliver Redline Stealer – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Researchers identified an ongoing BatLoader campaign relying on Google Search Ads to deliver rogue web pages for ChatGPT and Midjourney....
PyPI Repository temporarily suspends user sign-ups and package uploads due to ongoing attacks – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The Python Package Index (PyPI) maintainers have temporarily disabled the sign up and package upload processes due to an ongoing...
Security Affairs newsletter Round 420 by Pierluigi Paganini – International edition – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Privacy Overview This website uses cookies to improve your experience while you navigate through the website. Out of these cookies,...
2021 data breach exposed data of 70 Million Luxottica customers – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Luxottica has finally confirmed the 2021 data breach that exposed the personal information of 70 million customers. Luxottica Group S.p.A. is...
Cybercrime gang FIN7 returned and was spotted delivering Clop ransomware – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Cybercriminal gang FIN7 returned with a new wave of attacks aimed at deploying the Clop ransomware on victims’ networks. Researchers...
US CISA warns of a Samsung vulnerability under active exploitation – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini US CISA added the vulnerability CVE-2023-21492 flaw affecting Samsung devices to its Known Exploited Vulnerabilities Catalog. US CISA added the...
February cyber incident will cost molten metal flow engineering firm Vesuvius £3.5 million – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Vesuvius, a leader in molten metal flow engineering and technology, revealed that the February cyber incident will cost it £3.5...
NPM packages found containing the TurkoRat infostealer – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Experts discovered two malicious packages in the npm package repository, both were laced with an open-source info-stealer called TurkoRat. ReversingLabs discovered...
Lemon Group gang pre-infected 9 million Android devices for fraudulent activities – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The Lemon Group cybercrime ring has reportedly pre-installed malware known as Guerilla on almost 9 million Android devices. A cybercrime...
Apple fixed three new actively exploited zero-day vulnerabilities – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Apple released security updates to address three zero-day vulnerabilities in iPhones, Macs, and iPads that are actively exploited in attacks....
KeePass 2.X Master Password Dumper allows retrieving the KeePass master password – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini A researcher published a PoC tool to retrieve the master password from KeePass by exploiting the CVE-2023-32784 vulnerability. Security researcher...
Admin of the darknet carding platform Skynet Market pleads guilty – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini A US national has pleaded guilty to operating the carding site Skynet Market and selling financial information belonging to tens...
Critical fixed critical flaws in Cisco Small Business Switches – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Cisco fixed nine flaws in its Small Business Series Switches that could be exploited to execute arbitrary code or cause...
Ukraine, Ireland, Japan and Iceland join NATO Cooperative Cyber Defence Centre of Excellence (CCDCOE) – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The NATO Cooperative Cyber Defence Centre of Excellence (CCDCOE) announced that Ukraine, Ireland, Japan and Iceland joined the organization. The...
Monitoring the dark web to identify threats to energy sector organizations – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Searchlight Cyber researchers warn of threat actors that are offering on the dark web access to energy sector organizations. Dark...
US Gov offers a $10M reward for a Russian ransomware actor – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The US government is offering a $10M reward for Russian national Mikhail Pavlovich Matveev (30) charged for his role in...
Multiple flaws in Teltonika industrial cellular router expose OT networks to hack – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Experts found multiple vulnerabilities in Teltonika industrial cellular routers that could expose OT networks to cyber attacks. A joint analysis...
University admission platform Leverage EDU exposed student passports – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The popular university admission platform Leverage EDU leaked almost 240,000 sensitive files, including students’ passports, financial documents, certificates, and exam...
Lacroix Group shut down three facilities after a ‘targeted cyberattack’ – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini French electronics manufacturer Lacroix Group shut down three plants after a cyber attack, experts believe it was the victim of...
China-linked APT Mustang Panda targets TP-Link routers with a custom firmware implant – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini China-linked APT group Mustang Panda employed a custom firmware implant targeting TP-Link routers in targeted attacks since January 2023. Since January...
President Zelensky imposes sanctions against the Russian IT sector – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Ukraine’s President Zelensky and the country’s Council of National Security introduced new sanctions against individuals and businesses. Ukraine’s President Volodymyr...
CISA adds Ruckus bug and another six flaws to its Known Exploited Vulnerabilities catalog – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini US Cybersecurity and Infrastructure Security Agency (CISA) added seven new flaws to its Known Exploited Vulnerabilities catalog. U.S. Cybersecurity and...
Lancefly APT uses powerful Merdoor backdoor in attacks on Asian orgs – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The Lancefly APT group is using a custom powerful backdoor called Merdoor in attacks against organizations in South and Southeast...


























