Security Bulletin
21 Oct 2024
Biztonsági szemle
Hacked access tokens leveraged to breach Internet Archive anew
Internet Archive's latest breach was noted by the threat actor to have stemmed from the digital library nonprofit's failure to rotate its authentication tokens.
21 Oct 2024
Biztonsági szemle
Russia subjected to intrusions with LockBit 3.0, Babuk ransomware
Initial access in a pair of intrusions part of the attack campaign involved Crypto Ghouls utilizing a VPN and a contractor's login credentials, followed by the exploitation of NSSM and Localtonet for remote access.
21 Oct 2024
Biztonsági szemle
Wiper malware deployed against Israel via spoofed ESET emails
Malicious emails alerting of state-sponsored intrusions have been sent to lure organizations' cybersecurity teams into downloading the fraudulent "ESET Unleashed program," which features several ESET DLLs and would enable file and data deletion upon...
21 Oct 2024
Biztonsági szemle
Oktane 2024: Okta bets big on AI and security industry collaboration
Okta brought its partners to Las Vegas for the annual Oktane conference. Here are the highlights.
21 Oct 2024
Biztonsági szemle
Why the industry needs GAAP-style accounting standards for cyber
For CISOs to keep the board apprised of the potential risks from a breach, they’ll need the security equivalent of the GAAP accounting standards.
21 Oct 2024
Biztonsági szemle
DPRK Uses Microsoft Zero-Day in No-Click Toast Attacks
The "Code-on-Toast" supply chain cyberattacks by APT37 delivered data-stealing malware to users in South Korea who had enabled Toast pop-up ads.
20 Oct 2024
Biztonsági szemle
EU Adopts Cyber Resilience Act to Regulate Internet of Things
The European Union adopted a new law setting EU-wide cybersecurity requirements for connected devices to ensure their safety.
18 Oct 2024
Biztonsági szemle
Grafana critical vulnerability risks remote code execution
The experimental SQL Expressions feature contains a flaw due to insufficient query sanitization.
18 Oct 2024
Biztonsági szemle
MacOS Safari 'HM Surf' Exploit Exposes Camera, Mic, Browser Data
Microsoft researchers toyed with app permissions to uncover CVE-2024-44133, using it to access sensitive user data. Adware merchants may have as well.
18 Oct 2024
Biztonsági szemle
Adload malware exploits flaw to bypass macOS protections for Safari
Microsoft warns users to patch the HM Surf flaw because Defender detected it was actively exploited.
18 Oct 2024
Biztonsági szemle
Time to Get Strict With DMARC
Adoption of the email authentication and policy specification remains low, and only about a tenth of DMARC-enabled domains enforce policies. Everyone is waiting for major email providers to get strict.
18 Oct 2024
Biztonsági szemle
ESET-Branded Wiper Attack Targets Israel; Firm Denies Compromise
The security firm is denying an assessment that its systems were compromised in Israel by pro-Palestinian cyberattackers, but acknowledged an attack on one of its partners.
Pagination
- Previous page ‹‹
- Page 357
- Next page ››