Biztonsági szemle
2024. Dec. 9.
Biztonsági szemle
Unauthorized file access possible with chained Mitel MiCollab flaws
Intrusions leveraging CVE-2024-41713, which stems from insufficient input validation in MiCollab's NuPoint Unified Messaging component, could facilitate not only unauthenticated provisioning data access but also unauthenticated admin task execution...
2024. Dec. 9.
Biztonsági szemle
Intrusions targeting I-O Data router zero-days underway
Most severe of the vulnerabilities is the undocumented features inclusion issue, tracked as CVE-2024-52564, which could be exploited to facilitate remote firewall deactivation, device setting manipulation, and arbitrary OS command execution...
2024. Dec. 9.
Biztonsági szemle
Cyberattack deluge hits Romanian election infrastructure
After compromising the Romanian Permanent Electoral Authority's IT infrastructure on Nov. 19, threat actors went on to expose the account credentials for several of the country's election sites while deploying persistent intrusions that sought to...
2024. Dec. 9.
Biztonsági szemle
Novel Earth Minotaur hackers' surveillance operation uncovered
Earth Minotaur leverages instant messaging apps to send messages with malicious links purporting to be Tibetan or Uyghur music and dance-related videos, which redirected to dozens of MOONSHINE exploit kit servers that would enable the download of a...
2024. Dec. 9.
Biztonsági szemle
Cybercrime techniques leveraged for child-targeted crimes
Aside from luring children into providing sexually explicit photos of themselves, such methods have also been used to force youths into harming family members and animals, as well as committing suicide, an intelligence report from the Joint Regional...
2024. Dec. 9.
Biztonsági szemle
Mitigating NTLM Relay Attacks by Default
Introduction In February 2024, we released an update to Exchange Server which contained a security improvement referenced by CVE-2024-21410 that enabled Extended Protection for Authentication (EPA) by default for new and existing installs of Exchange...
2024. Dec. 9.
Biztonsági szemle
ISC Stormcast For Monday, December 9th, 2024 https://isc.sans.edu/podcastdetail/9246, (Mon, Dec 9th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
2024. Dec. 9.
Biztonsági szemle
CURLing for Crypto on Honeypots, (Mon, Dec 9th)
I get a daily report from my honeypots for Cowrie activity [1], which includes telnet and SSH sessions attempted on the honyepot. One indicator I use to find sessions of interest is the number of commands run. Most of the time there are about 20...
2024. Dec. 7.
Biztonsági szemle
Semperis InFocus with Mickey Bresman
In this SC Media InFocus, Security Weekly News' Adrian Sanabria discusses improving cyber defenses against ransomware with Semperis' Mickey Bresman.
2024. Dec. 7.
Biztonsági szemle
ML clients, ‘safe’ model formats exploitable through open-source AI vulnerabilities
Four flaws in open-source machine learning tools could lead to code execution or path traversal.
2024. Dec. 6.
Biztonsági szemle
Texas Teen Arrested for Scattered Spider Telecom Hacks
An FBI operation nabbed a member of the infamous cybercrime group, who is spilling the tea on 'key Scattered Spider members' and their tactics.
2024. Dec. 6.
Biztonsági szemle
Microsoft Expands Access to Windows Recall AI Feature
The activity-recording capability has drawn concerns from the security community and privacy experts, but the tech giant is being measured in its gradual rollout, which is still in preview mode.
Oldalszámozás
- Előző oldal ‹‹
- 452. oldal
- Következő oldal ››