Logo Cyber News

Logo Dorin M Wolf

 

- Russian state-sponsored cyber actors access networks misconfigured with default MFA protocols. (to the original material)
 
- Updated: Kubernetes Hardening Guide. (to the original material)
 
- CISA adds 15 known exploited vulnerabilities to Catalog. (to the original material)
 
- Press release: 'ro' websites are already used in cyber attacks. (to the original material)
 
- Veeam fixes critical RCEs in backup solution (CVE-2022-26500, CVE-2022-26501). (to the original material)
 
- Financially motivated threat actors willing to go after Russian targets. (to the original material)
 
- Are you willing to take a calculated risk? Quantifying your cyber risk and predicting future threats. (to the original material)
 
- The simple secret to app security? Time. (to the original material)
 
- The massive impact of vulnerabilities in critical infrastructure. (to the original material)
 
- Malicious web application requests skyrocketing, bad actors stealthier than ever before. (to the original material)
 
- Top threats for the financial sector. (to the original material)
 
- Top automotive tech obstacles: Cybersecurity, software quality and functional safety. (to the original material)
 
- 70% of financial service providers are implementing API security. (to the original material)
 
- CaddyWiper: New wiper malware discovered in Ukraine. (to the original material)
 
- Podcast Episode: Watching the Watchers. (to the original material)
 
- Node.js security: Parse Server remote code execution vulnerability resolved. (to the original material)
 
- Israeli government websites were temporarily knocked offline by ‘massive’ cyber-attack. (to the original material)
 
- Most QNAP NAS devices are affected by ‘Dirty Pipe’ Linux flaw. (to the original material)
 
- Pandora ransomware hits giant automotive supplier Denso. (to the original material)
 
- Staff think Conti group is a legit employer - Podcast. (to the original material)
 
- Cybercrooks’ political in-fighting threatens the West. (to the original material)
 
- How cloud services become weapons in Russia-Ukraine cyber conflict. (to the original material)
 
- CaddyWiper: More destructive wiper malware strikes Ukraine. (to the original material)
 
- FTC Takes action against CafePress for data breach cover-up and poor security. (to the original material)
 
- East Tennessee Children’s Hospital statement on the security issue. (to the original material)
 
- Comprehensive Health Services pays false claims act settlement involving EMR Security. (to the original material)
 
- Ireland’s privacy watchdog sued for inaction over ‘massive Google data breach’. (to the original material)
 
- Israeli government websites crash after ‘massive’ cyberattack, officials say. (to the original material)
 
- PayTM clarifies RBI bar on new customers. (to the original material)
 
- State Bar breach exposed thousands more confidential records than original estimates, investigation shows. (to the original material)
 
- The Rising importance of research communities for industrial cybersecurity. (to the original material)
 
- Thousands of secret keys were found in leaked Samsung source code. (to the original material)
 
- HackerOne apologizes to Ukrainian hackers for mistakenly blocking payouts. (to the original material)
 
- Dozens of ransomware variants were used in 722 attacks over 3 months. (to the original material)
 
- FBI warns of MFA flaws used by state hackers for lateral movement. (to the original material)
 
- New Linux botnet exploits Log4J, uses DNS tunneling for comms. (to the original material)
 
- Android trojan persists on the Google Play Store since January. (to the original material)
 
- FTC to fine CafePress for cover-up of massive data breach. (to the original material)
 
- Massive phishing campaign uses 500+ domains to steal credentials. (to the original material)
 
- German government advises against using Kaspersky antivirus. (to the original material)
 
- NAS Vendor says several of its products likely contain Linux 'Dirty Pipe' flaw. (to the original material)
 
- Mobile App developers leave behind 2,100 open databases. (to the original material)
 
- As Log4j continues to remind us, what's old is new again. (to the original material)
 
- Traffic interception and MitM (Man-in-the-Middle) attacks among security risks of Russian TLS (Transport Layer Security) certs. (to the original material)
 
- UK blocks Assange's extradition appeal. (to the original material)
 
- Hackers hit Rosneft. (to the original material)
 
- Nearly 300k heart patients’ data was exposed. (to the original material)
 
- Top 10: Cybersecurity lessons CISOs should take from the Russia-Ukraine conflict. (to the original material)
 
- Top 3 Ways hackers get into your supplier's network to launch a supply chain attack. (to the original material)
 
- Why the cybersecurity industry needs to change its siloed perception. (to the original material)
 
- Israeli Government websites were taken offline in large-scale cyber-attack. (to the original material)
 
- Mobile devices see a 466% annual increase in zero-day attacks. (to the original material)
 
- Ukrainian targets hit by another destructive malware variant. (to the original material)
 
- Clearview AI helping the Ukrainian war effort. (to the original material)
 
- Raccoon Stealer using Telegram for hidden communications. (to the original material)
 
- Lampion trojan returns with its old attack infrastructure. (to the original material)
 
- MuddyWater uses SloughRAT to target Turkey and the Arabian peninsula. (to the original material)
 
- Facebook hit with $18.6 million GDPR fine over 12 data breaches in 2018. (to the original material)
 
- Nearly 34 ransomware variants were observed in hundreds of cyberattacks in Q4 2021. (to the original material)
 
- CaddyWiper: Yet another data wiping malware targeting Ukrainian networks. (to the original material)
 
- Massive DDoS attack knocked Israeli government websites offline. (to the original material)
 
- Germany advises citizens to uninstall Kaspersky antivirus. (to the original material)
 
- OpenSSL patches crash-me bug triggered by rogue certs. (to the original material)
 
- Microsoft Azure DevOps revives TLS 1.0/1.1 with rollback. (to the original material)
 
- UK Supreme Court snubs Assange's anti-extradition bid. (to the original material)
 
- Huge DDoS attack temporarily kicks Israeli government sites offline. (to the original material)
 
- Russian demand for VPNs skyrockets by 2,692%. (to the original material)
 
- UK criminal defense lawyer hadn't patched when ransomware hit. (to the original material)
 
- NASA in 'serious jeopardy' due to a big black hole in security. (to the original material)
 
- Russia's invasion of Ukraine tears open a political rift between cybercriminals. (to the original material)
 
- Threat Advisory: CaddyWiper. (to the original material)
 
- Private Equity Firm snaps up RSA conference. (to the original material)
 
- You should not trust Russia’s new “Trusted Root CA”. (to the original material)
 
- Links in conflict: to click or not to click. (to the original material)
 
- A Brief History of the evolution of malware. (to the original material)
 
- Hard truths from Ukraine: The government cannot save us in cyberwar. (to the original material)
 
- 1Password launches new tools to help developers build secure software. (to the original material)
 
- Ukraine conflict puts organizations’ cyber-resilience to the test. (to the original material)
 
- Cloud security tool sprawl leads to missed issues, false positives, burnout, and more. (to the original material)

 

Logo Dorin M Wolf

No comments