Security Bulletin

22 Aug 2024
Biztonsági szemle
Slack Patches AI Bug That Let Attackers Steal Data From Private Channels
A prompt injection flaw in the AI feature of the workforce collaboration suite makes malicious queries of data sources appear legitimate.

22 Aug 2024
Biztonsági szemle
Why End of Life for Applications Is the Beginning of Life for Hackers
In the next year, more than 35,000 applications will move to end-of-life status. To manage risk effectively, we need to plan ahead.

22 Aug 2024
Biztonsági szemle
Updated QNAP QTS for NAS devices gains ransomware defenses
Security Center would enable customers to opt for read-only volumes, volume snapshot creation, and volume snapshot cessation in the event of atypical NAS device activity, according to QNAP.

22 Aug 2024
Biztonsági szemle
Google Play bug bounty program shutdown imminent
While additional submissions would no longer be accepted by Aug. 31, Google noted that triaging of reports provided before then will be completed by Sept. 15, with rewards to be decided upon before the end of September.

22 Aug 2024
Biztonsági szemle
New airplane cyber rules advanced by FAA
Aside from mandating the identification and evaluation of cybersecurity gaps in networks involved in the operations of airplanes, engines, and propellers, organizations in the aviation sector would also be required to establish cyberattack response...

22 Aug 2024
Biztonsági szemle
SEC fines Equiniti Trust $850K for cybersecurity failings
Nearly $4.78 million had been stolen by threat actors that compromised Equiniti via email chain hijacking in 2022, nearly $1 million of which has been recovered, while another intrusion in April 2023 that involved the exfiltration of certain Equiniti...

22 Aug 2024
Biztonsági szemle
Nearly 139K impacted by Arden Claims Service breach
Attackers who infiltrated Arden Claims Service's systems around Oct. 3, 2023, were able to exfiltrate individuals' names and other personally identifiable information, according to the notification letter provided to Vermont and Maine regulators.

22 Aug 2024
Biztonsági szemle
Halliburton IT system issue confirmed amid reported cyberattack
Such a reported cyberattack was neither confirmed nor denied by Halliburton, which only noted the ongoing investigation into the cause and extent of the identified issue.

22 Aug 2024
Biztonsági szemle
Crypto scammers breach McDonald's Instagram account
Aside from modifying the account's bio to include a rug pull reference, the acquisition of $700,000 worth of Solana cryptocurrency, and the flag of India, threat actors also published posts with the caption "a McDonald's experiment on Soluna" and a...

22 Aug 2024
Biztonsági szemle
Widespread WordPress site compromise likely with critical LiteSpeed Cache bug
Exploitation of the flaw, which was addressed last week, through a brute-force attack iterating and passing all known possible security hash values in the litespeed_hash cookie could facilitate immediate site access through any user ID provided that...

22 Aug 2024
Biztonsági szemle
Cryptomining aimed by new PostgreSQL database-targeting malware
Intrusions commence with brute-force attempts to guess the PostgreSQL database's credentials, which when achieved would be followed by the establishment of a superuser role that would ensure database access even after modifications to the original...

22 Aug 2024
Biztonsági szemle
Novel MoonPeak RAT leveraged by North Korean hackers
UAT-5394 — which has been suspected to be Kimsuky, its subgroup, or a separate operation leveraging Kimsuky's toolkit — established updated test virtual machines, payload-hosting sites, and command-and-control servers to support the creation of new...
Pagination
- Previous page ‹‹
- Page 408
- Next page ››