Biztonsági szemle
2024. december 16.
Biztonsági szemle
Cybersecurity best practices toolkit: Power up your mid-market defenses
Mid-market enterprises need strong defenses. This Cybersecurity Best Practices Toolkit features cheat sheets and tabletop exercises to help organization stay ahead of threats.
2024. december 16.
Biztonsági szemle
Closing the SMB cybersecurity skills gap: Key steps
SMBs face a growing cybersecurity crisis, exacerbated by a severe shortage of skilled professionals. A global survey commissioned by Sophos highlights the pressing nature of the challenge.
2024. december 16.
Biztonsági szemle
Microsoft Teams Vishing Spreads DarkGate RAT
A thwarted attack demonstrates that threat actors using yet another delivery method for the malware, which already has been spread using phishing emails, malvertising, hijacking of instant messages, and SEO poisoning.
2024. december 16.
Biztonsági szemle
ISC Stormcast For Monday, December 16th, 2024 https://isc.sans.edu/podcastdetail/9256, (Mon, Dec 16th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
2024. december 15.
Biztonsági szemle
Exploit attempts inspired by recent Struts2 File Upload Vulnerability (CVE-2024-53677, CVE-2023-50164), (Sun, Dec 15th)
Last week, Apache announced a vulnerability in Struts2 [1]. The path traversal vulnerability scored 9.5 on the CVSS scale. If exploited, the vulnerability allows file uploads into otherwise restricted directories, which may lead to remote code...
2024. december 14.
Biztonsági szemle
PDQ Deploy users warned of credential-theft risk
An attacker with local access can grab admin credentials from active memory prior to deletion.
2024. december 13.
Biztonsági szemle
Immediate patching of actively exploited Cleo flaw urged
Immediate blocking of IP addresses leveraging the issue has also been recommended by Cleo.
2024. december 13.
Biztonsági szemle
Byte Federal breach exposes 58K clients
Infiltration of Byte Federal's systems exposed individuals' full names, birthdates, physical addresses, email addresses, phone numbers, Social Security numbers, government-issued IDs, photos, and transaction activity, according to the firm's data...
2024. december 13.
Biztonsági szemle
DoS attacks, data compromise threaten over 330K Prometheus instances
Aside from disrupting servers through a deluge of requests to "debug/pprof/heap" and other endpoints, attackers could also exploit Prometheus' "metrics" endpoint to obtain information from internal API endpoints, Docker registries, subdomains, and...
2024. december 13.
Biztonsági szemle
Upstart Pumakit Linux rootkit malware examined
Attacks with Pumakit commence with the deployment of the cron dropper, which executes the '/memfd:tgt' and '/memfd:wpn' payloads, with the former eventually launching the 'puma.ko' LKM rootkit module that loads only after ensuring secure boot status...
2024. december 13.
Biztonsági szemle
New BoneSpy, PlainGnome Android spyware deployed by Gamaredon
Malicious battery charge tracking and photo gallery apps, as well as a phony Samsung Knox app and trojanized Telegram app, have been leveraged to distribute the similar BoneSpy and PlainGnome spyware, which facilitate compromise of device location...
2024. december 13.
Biztonsági szemle
US, Israeli critical infrastructure subjected to attacks with novel IOCONTROL malware
Identified within a Gasboy fuel control system's payment terminal believed to have been targeted by the Iranian state-backed operation CyberAv3ngers, IOCONTROL features a modular configuration and sophisticated script enabling the persistent...
Oldalszámozás
- Előző oldal ‹‹
- 514. oldal
- Következő oldal ››