Biztonsági szemle
2024. július 29.
Biztonsági szemle
Joint France, Europol operation seeks to purge PlugX malware infections
France and Europol's joint operation to dismantle the PlugX worm botnet, which has impacted millions of devices worldwide, involved the usage of a disinfection solution from Sekoia.io.
2024. július 29.
Biztonsági szemle
Nearly 14K hit by BMW Hong Kong breach
Included in the impacted data were names, mobile numbers, and SMS opt-out preferences, said BMW Concessionaires in a statement to Hong Kong's Office of the Privacy Commissioner for Personal Data.
2024. július 29.
Biztonsági szemle
Suspected ALPHV/BlackCat successor sets sights on South Carolina town police
While Summerville noted that operations of its municipal departments have not been impacted by the incident, which was immediately contained, the Embargo group admitted to having stolen 1.71 TB of data from the town's Police Department.
2024. július 29.
Biztonsági szemle
Google Cloud credentials in macOS targeted by malicious PyPI package
Such a package, which has been taken down after accumulating 59 downloads, initially verifies targeted systems to be macOS before checking the machines' Universally Unique Identifier and infiltrating files that have Google Cloud authentication...
2024. július 29.
Biztonsági szemle
Third-party breach impacts Gemini
Infiltration of the third-party provider's systems between June 3 and 7 allowed threat actors to exfiltrate the customers' certain banking details, including full names, bank account numbers, and routing numbers leveraged for ACH fund transfers.
2024. július 29.
Biztonsági szemle
CrowdStrike outage exploited in new spear-phishing campaign
The campaign lured targets into downloading a fraudulent CrowdStrike Crash Reporter tool as a ZIP file with a trojanized InnoSetup installer.
2024. július 29.
Biztonsági szemle
CISA Adds Three Known Exploited Vulnerabilities to Catalog
CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2024-4879 ServiceNow Improper Input Validation Vulnerability CVE-2024-5217 ServiceNow Incomplete List of Disallowed...
2024. július 29.
Biztonsági szemle
Three ways to mitigate AI-based supply chain attacks
Security teams have to face that the attackers also have AI – here are three ways to more effectively operate in this new environment.
2024. július 29.
Biztonsági szemle
China-Backed Phishing Attack Targets India Postal System Users
A large text-message phishing attack campaign attributed to the China-based Smishing Triad employs malicious iMessages.
2024. július 29.
Biztonsági szemle
ISC Stormcast For Monday, July 29th, 2024 https://isc.sans.edu/podcastdetail/9072, (Mon, Jul 29th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
2024. július 29.
Biztonsági szemle
CrowdStrike Outage Themed Maldoc, (Mon, Jul 29th)
I found a malicious Word document with VBA code using the CrowdStrike outage for social engineering purposes. It's an .ASD file (AutoRecover file). My tool oledump.py can analyze it:
2024. július 29.
Biztonsági szemle

Quickie: Password Cracking & Energy, (Sun, Jul 28th)
When Johannes talked about my diary entry " Protected OOXML Spreadsheets" on his StormCast podcast, he mentioned that I privately shared data on the power consumption of my desktop with a NVIDIA GeForce RTX 3080 GPU when running Hashcat.
Oldalszámozás
- Előző oldal ‹‹
- 822. oldal
- Következő oldal ››