Security Bulletin
30 Jan 2025
Biztonsági szemle
DeepSeek AI platform exposed user data through unsecured database
Researchers from cloud security firm Wiz discovered the issue and attempted to contact DeepSeek through multiple channels.
30 Jan 2025
Biztonsági szemle
Lazarus Group found using web-based admin panel for campaign management
Based on reporting from SecurityScorecard's STRIKE team, the North Korean state-backed threat actor employs a React and Node.js-based system in each C2 server to enable centralized management of stolen data, observation of compromised hosts, and...
30 Jan 2025
Biztonsági szemle
Exposure Management Provider CYE Acquires Solvo
The addition of Solvo CSPM to CYE Hyver aims to address need for multicloud vulnerability monitoring and risk assessment.
30 Jan 2025
Biztonsági szemle
How the Rise of GenAI is Disrupting a Delicate Balance Between Innovation and Data Security
Rogue AI models are exposing sensitive data without regulation, creating an environment for accidentaldata breaches and misuse.
30 Jan 2025
Biztonsági szemle
Fake Videos of Former First Lady Scam Namibians
Amateurish financial scams are common across Africa, and Namibia's influential former first lady, Monica Geingos, has emerged as a particularly effective host body for these messages.
30 Jan 2025
Biztonsági szemle
UK agency floats plan to overhaul vulnerability classifications
The UK’s cybersecurity regulator has pitched a plan that would see the elimination of vulnerability ratings.
30 Jan 2025
Biztonsági szemle
Lynx ransomware infiltration reveals affiliate panel details
Group-IB researchers uncovered a structured affiliate workflow and “all-in-one” RaaS with multiple encryption modes.
29 Jan 2025
Biztonsági szemle
Minutes are miles: Why automatic rollbacks are too slow to protect you
When it comes to cyber threats, protection is better than response.
29 Jan 2025
Biztonsági szemle
PrintNightmare Aftermath: Windows Print Spooler Is Better. What's Next?
While Microsoft has boosted the security of Windows Print Spooler in the three years since the disclosure of the PrintNightmare vulnerability, the service remains a spooky threat that organizations cannot afford to ignore.
29 Jan 2025
Biztonsági szemle
The CISO Role Elevates, Boosts, Rises, and Evolves - BSW #380
29 Jan 2025
Biztonsági szemle
Researchers Uncover Lazarus Group Admin Layer for C2 Servers
The threat actor is using a sophisticated network of VPNs and proxies to centrally manage command-and-control servers from Pyongyang.
29 Jan 2025
Biztonsági szemle
Unpatched Zyxel CPE Zero-Day Pummeled by Cyberattackers
VulnCheck initially disclosed the critical command-injection vulnerability (CVE-2024-40891) six months ago, but Zyxel has yet to mention its existence or offer users a patch to mitigate threats.
Pagination
- Previous page ‹‹
- Page 284
- Next page ››