Security Bulletin
14 Nov 2024
Biztonsági szemle
Novel ShrinkLocker ransomware decryptor unveiled
Attacks with ShrinkLocker, which leverages Microsoft BitLocker for accelerated drive encryption and a random password for re-encryption in Windows 7 and 8 or Windows Server 2008 and 2012 systems, have been deployed against organizations in Mexico...
14 Nov 2024
Biztonsági szemle
Data aggregator breach exposes 122M individuals' info
Information compromised in the breach has been obtained from a system that had been inactive for nearly two years, noted DemandScience in an email sent to an individual who inquired the firm after seeing his data in the leak.
14 Nov 2024
Biztonsági szemle
Chinese malware attack hits Tibetan websites
TAG-112 may be a subgroup of Chinese advanced persistent threat group Evasive Panda, also known as TAG-102 and StormBamboo, due to significant similarities in attack tactics, techniques, and procedures, an analysis from Recorded Future's Insikt Group...
14 Nov 2024
Biztonsági szemle
American Associated Pharmacies allegedly breached by Embargo ransomware
Such an intrusion has not yet been confirmed by the AAP, whose website warned of the recent forced reset of all user passwords without further information but the organization was noted by Embargo to have already provided $1.3 million in exchange for...
14 Nov 2024
Biztonsági szemle
Expanded cyberattacks launched by Hamas-linked hackers against Israel
After engaging in cyberespionage attacks that involved the distribution of RAR archive lures to deploy the IronWind downloader and Havoc post-exploitation framework, WIRTE proceeded to target numerous Israeli entities with the updated SameCoin Wiper...
14 Nov 2024
Biztonsági szemle
Washington's Cybersecurity Storm of Complacency
If the government truly wants to protect the US's most vital assets, it must rethink its cybersecurity policies and prioritize proactive, coordinated, and enforceable measures.
14 Nov 2024
Biztonsági szemle
Microsoft Power Pages Leak Millions of Private Records
Less-experienced users of Microsoft's website building platform may not understand all the implications of the access controls in its low- or no-code environment.
14 Nov 2024
Biztonsági szemle
Baxter Life2000 Ventilation System
View CSAF 1. EXECUTIVE SUMMARY CVSS v4 10.0 ATTENTION: Exploitable remotely/low attack complexity Vendor: Baxter Equipment: Life2000 Ventilation System Vulnerabilities: Cleartext Transmission of Sensitive Information, Improper Restriction of...
14 Nov 2024
Biztonsági szemle
Rockwell Automation Arena Input Analyzer
View CSAF 1. EXECUTIVE SUMMARY CVSS v4 7.0 ATTENTION: Low attack complexity Vendor: Rockwell Automation Equipment: Arena Input Analyzer Vulnerability: Improper Validation of Specified Quantity in Input 2. RISK EVALUATION Successful exploitation of...
14 Nov 2024
Biztonsági szemle
Siemens SIMATIC CP
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT...
14 Nov 2024
Biztonsági szemle
Siemens Solid Edge
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT...
14 Nov 2024
Biztonsági szemle
Siemens Engineering Platforms
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT...
Pagination
- Previous page ‹‹
- Page 18
- Next page ››