Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 74 / 214
4263 résultats taggé EN  ✕
TodoSwift Disguises Malware Download Behind Bitcoin PDF https://www.kandji.io/blog/todoswift-disguises-malware-download-behind-bitcoin-pdf
24/08/2024 12:18:51
QRCode
archive.org
thumbnail

A new piece of malware that we're calling TodoSwift downloads its malicious payload alongside a seemingly legitimate piece of content about cryptocurrency.

kandji EN 2024 TodoSwift Malware Bitcoin PDF
Cthulhu Stealer malware aimed to take macOS user data https://appleinsider.com/articles/24/08/23/evolved-and-more-powerful-macos-malware-strain-sold-cheaply-to-criminals
24/08/2024 12:17:33
QRCode
archive.org
thumbnail

Researchers have discovered another data-seizing macOS malware, with "Cthulhu Stealer" sold to online criminals for just $500 a month.

appleinsider EN 2024 Cthulhu-Stealer MaaS macos
From the Depths: Analyzing the Cthulhu Stealer Malware for macOS https://www.cadosecurity.com/blog/from-the-depths-analyzing-the-cthulhu-stealer-malware-for-macos
24/08/2024 12:13:11
QRCode
archive.org
thumbnail

Cado Security has identified a malware-as-a-service (MaaS) targeting macOS users named “Cthulhu Stealer”.

cadosecurity EN 2024 Cthulhu-Stealer macos analysis MaaS malware-as-a-service
FIN7: The Truth Doesn't Need to be so STARK https://www.team-cymru.com/post/fin7-the-truth-doesn-t-need-to-be-so-stark
24/08/2024 12:11:38
QRCode
archive.org
thumbnail

First and foremost, our thanks go to the threat research team at Silent Push and the security team at Stark Industries Solutions (referred to as “Stark” from this point forwards) for their enthusiastic cooperation in the ‘behind the scenes’ efforts of this blog post.IntroductionIn our opening statement, we also introduce the subject of this post: the cross-team and cross-organization collaborative efforts of Silent Push, Stark, and Team Cymru in taking action against a common and well-known adve

team-cymru EN 2024 FIN7 Stark-Industries-Solutions STARK PostLtd SmartApe investigation
Qilin ransomware caught stealing credentials stored in Google Chrome https://news.sophos.com/en-us/2024/08/22/qilin-ransomware-caught-stealing-credentials-stored-in-google-chrome/
23/08/2024 10:31:13
QRCode
archive.org
thumbnail

Familiar ransomware develops an appetite for passwords to third-party sites

sophos EN 2024 ransomware Qilin Chrome passwords
NGate Android malware relays NFC traffic to steal cash https://www.welivesecurity.com/en/eset-research/ngate-android-malware-relays-nfc-traffic-to-steal-cash/
23/08/2024 10:25:56
QRCode
archive.org
thumbnail

ESET Research uncovers Android malware that relays NFC data from victims’ payment cards, via victims’ mobile phones, to the device of a perpetrator waiting at an ATM.

ESET welivesecurity EN 2024 Android malware NFC ATM
No one’s ready for this https://www.theverge.com/2024/8/22/24225972/ai-photo-era-what-is-reality-google-pixel-9
23/08/2024 09:34:53
QRCode
archive.org
thumbnail

With AI photo editing getting easy and convincing, the world isn’t prepared for an era where photographs aren’t to be trusted.

theverge EN 2024 photo-editing AI fake trust images
Security Advisory CVE-2024-40766 https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0015
22/08/2024 23:34:35
QRCode
archive.org

An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the firewall to crash.

This issue affects SonicWall Firewall Gen 5 and Gen 6 devices, as well as Gen 7 devices running SonicOS 7.0.1-5035 and older versions.

sonicwall EN 2024 Advisory CVE-2024-40766
SolarWinds Trust Center Security Advisories | CVE-2024-28987 https://www.solarwinds.com/trust-center/security-advisories/cve-2024-28987
22/08/2024 20:48:11
QRCode
archive.org

The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing remote unauthenticated user to access internal functionality and modify data.

solarwinds EN 2024 CVE-2024-28987 hardcoded credential Advisorie WHD WebHelpDesk
Windows 0-day was exploited by North Korea to install advanced rootkit https://arstechnica.com/security/2024/08/windows-0-day-was-exploited-by-north-korea-to-install-advanced-rootkit/
21/08/2024 21:01:00
QRCode
archive.org
thumbnail

FudModule rootkit burrows deep into Windows, where it can bypass key security defenses.

arstechnica EN 2024 FudModule rootkit Lazarus rootkit CVE-2024-38193,
Litespeed Cache bug exposes millions of WordPress sites to takeover attacks https://www.bleepingcomputer.com/news/security/litespeed-cache-bug-exposes-millions-of-wordpress-sites-to-takeover-attacks/
21/08/2024 19:24:37
QRCode
archive.org
thumbnail

A critical vulnerability in the LiteSpeed Cache WordPress plugin can let attackers take over millions of websites after creating rogue admin accounts.
#Admin #Cache #Computer #InfoSec #LiteSpeed #Plugin #Security #Takeover #Website #WordPress

bleepingcomputer EN 2024 Plugin Computer LiteSpeed InfoSec Takeover WordPress Cache Security Website Admin
Iran Reportedly Grapples With Major Cyberattack on Banking Systems https://www.darkreading.com/cyberattacks-data-breaches/iran-reportedly-grapples-with-major-cyberattack-on-banking-systems
21/08/2024 12:08:11
QRCode
archive.org
thumbnail

The last known cyberattack waged against Iranian infrastructure took place last December with blame placed on Israel and the US.

darkreading EN 2024 Iran cyberattack Banking Systems
Widespread Cloud Exposure: Extortion Campaign Used Exposed AWS ENV Files To Target 110,000 Domains https://cyble.com/blog/widespread-cloud-exposure/
21/08/2024 09:22:52
QRCode
archive.org
thumbnail

A cloud extortion campaign exploited misconfigured AWS .env files to target 110,000 domains, stealing credentials and ransoming cloud storage data.

cyble EN 2024 Cloud Exposure env AWS extortion
Microchip August 20, 2024 https://www.sec.gov/Archives/edgar/data/827054/000082705424000153/mchp-20240820.htm
21/08/2024 08:51:09
QRCode
archive.org
sec.gov EN 2024 SEC filing Microchip
Chipmaker Microchip reveals cyber attack https://www.theregister.com/2024/08/21/microchip_technology_security_incident/
21/08/2024 08:30:03
QRCode
archive.org
thumbnail

Defense contractor gets hacked – what's the worst that could happen

theregister EN 2024 SEC Microchip cyber-attack hacked defense-contractor
MITRE Marks Major Milestone, Minting 400 CNAs as NVD Backlog Grows - Socket https://socket.dev/blog/mitre-marks-major-milestone-minting-400-cnas-as-nvd-backlog-grows?is=e4f6b16c6de31130985364bb824bcb39ef6b2c4e902e4e553f0ec11bdbefc118
21/08/2024 08:29:06
QRCode
archive.org
thumbnail

MITRE has just minted its 400th CNA, as the NVD struggles to tame its backlog of CVEs awaiting analysis, which has increased by 30% since June.

socket.dev EN 2024 MITRE Backlog CNA
Data Exfiltration from Slack AI via indirect prompt injection https://promptarmor.substack.com/p/data-exfiltration-from-slack-ai-via
20/08/2024 21:40:04
QRCode
archive.org

This vulnerability can allow attackers to steal anything a user puts in a private Slack channel by manipulating the language model used for content generation. This was responsibly disclosed to Slack (more details in Responsible Disclosure section at the end).

promptarmor EN 2024 Slack prompt-injection LLM vulnerability steal indirect-prompt injection
The Abuse of ITarian RMM by Dolphin Loader https://russianpanda.com/The-Abuse-of-ITarian-RMM-by-Dolphin-Loader
20/08/2024 19:28:49
QRCode
archive.org
thumbnail

Looking into the abuse of ITarian RMM and introducing Dolphin Loader

russianpanda EN 2024 DolphinLoader ITarian-RMM analysis
Toyota confirms breach after stolen data leaks on hacking forum https://www.bleepingcomputer.com/news/security/toyota-confirms-breach-after-stolen-data-leaks-on-hacking-forum/
20/08/2024 09:55:05
QRCode
archive.org
thumbnail

Toyota confirmed that its network was breached after a threat actor leaked an archive of 240GB of data stolen from the company's systems on a hacking forum.

bleepingcomputer EN 2024 Data-Breach Data-Leak Toyota
Routers from China-based TP-Link a national security threat, US lawmakers claim https://therecord.media/routers-from-tp-link-security-commerce-department
20/08/2024 09:16:28
QRCode
archive.org
thumbnail

The two members of Congress called on the Commerce Department to investigate risks related to TP-Link routers amid concerns over state-backed Chinese hacking operations.

therecord.media EN 2024 TP-Link US China national-threat threat state-backed
page 74 / 214
4872 links
Shaarli - Le gestionnaire de marque-pages personnel, minimaliste, et sans base de données par la communauté Shaarli - Theme by kalvn