Security Bulletin
22 Aug 2024
Biztonsági szemle
SEC fines Equiniti Trust $850K for cybersecurity failings
Nearly $4.78 million had been stolen by threat actors that compromised Equiniti via email chain hijacking in 2022, nearly $1 million of which has been recovered, while another intrusion in April 2023 that involved the exfiltration of certain Equiniti...
22 Aug 2024
Biztonsági szemle
Nearly 139K impacted by Arden Claims Service breach
Attackers who infiltrated Arden Claims Service's systems around Oct. 3, 2023, were able to exfiltrate individuals' names and other personally identifiable information, according to the notification letter provided to Vermont and Maine regulators.
22 Aug 2024
Biztonsági szemle
Halliburton IT system issue confirmed amid reported cyberattack
Such a reported cyberattack was neither confirmed nor denied by Halliburton, which only noted the ongoing investigation into the cause and extent of the identified issue.
22 Aug 2024
Biztonsági szemle
Crypto scammers breach McDonald's Instagram account
Aside from modifying the account's bio to include a rug pull reference, the acquisition of $700,000 worth of Solana cryptocurrency, and the flag of India, threat actors also published posts with the caption "a McDonald's experiment on Soluna" and a...
22 Aug 2024
Biztonsági szemle
Widespread WordPress site compromise likely with critical LiteSpeed Cache bug
Exploitation of the flaw, which was addressed last week, through a brute-force attack iterating and passing all known possible security hash values in the litespeed_hash cookie could facilitate immediate site access through any user ID provided that...
22 Aug 2024
Biztonsági szemle
Cryptomining aimed by new PostgreSQL database-targeting malware
Intrusions commence with brute-force attempts to guess the PostgreSQL database's credentials, which when achieved would be followed by the establishment of a superuser role that would ensure database access even after modifications to the original...
22 Aug 2024
Biztonsági szemle
Novel MoonPeak RAT leveraged by North Korean hackers
UAT-5394 — which has been suspected to be Kimsuky, its subgroup, or a separate operation leveraging Kimsuky's toolkit — established updated test virtual machines, payload-hosting sites, and command-and-control servers to support the creation of new...
22 Aug 2024
Biztonsági szemle
When it comes to hiring remote IT workers: Caveat emptor
There’s so much pressure to hire good IT workers that it’s no wonder some of the best companies get caught by fraudsters.
22 Aug 2024
Biztonsági szemle
Chinese Threat Actors Use MSI Files to Bypass Windows, VT Detection
Analysts have been picking up increased cases of malware delivery via Windows Installer files in Southeast Asia.
22 Aug 2024
Biztonsági szemle
The Silver Bullet of MFA Was Never Enough
There is no such thing as a silver bullet in cybersecurity. No, not even multifactor authentication.
21 Aug 2024
Biztonsági szemle
Hackers leak their own operations through exposed Telegram Bot API tokens
Location history, contacts and customer data of the Styx Stealer MaaS operator were uncovered by researchers.
21 Aug 2024
Biztonsági szemle
Malicious Links, AI-Enabled Tools, and Attacks on SMBs Among Top Cybersecurity Threats in H1 Mimecast Global Threat Intelligence Report
Pagination
- Previous page ‹‹
- Page 441
- Next page ››