Security Bulletin

3 Jan 2025
Biztonsági szemle
Chrome Extension Compromises Highlight Software Supply Challenges
The Christmas Eve compromise of data-security firm Cyberhaven's Chrome extension spotlights the challenges in shoring up third-party software supply chains.

3 Jan 2025
Biztonsági szemle
Not guilty plea entered by Terraform Labs co-founder over alleged crypto fraud
Investors were deceived by Do Kwon to purchase Terraform products and increase the value of Luna to $50 billion in early 2022 after he claimed to restore the dwindling value of the TerraUSD stablecoin only for the values of both coins to crash in May...

3 Jan 2025
Biztonsági szemle
More stringent drone regulations proposed
Such a rule, which is open for public comments until Mar. 4, would not only limit but also potentially prohibit the sales of Chinese-made drones, which account for most of the unmanned aerial vehicle market in the U.S.

3 Jan 2025
Biztonsági szemle
Visionworks hit with lawsuit over data breach
Aside from deferring the delivery of breach notifications two months later, Visionworks also did not sufficiently defend its systems, resulting in the exfiltration of customers' names, birthdates, Social Security numbers, home and email addresses...

3 Jan 2025
Biztonsági szemle
Patched data exposing Microsoft Dynamics 365, Power Apps Web API bugs detailed
Power Platform's OData Web API Filter was impacted by two of the discovered security issues, the first of which stemmed from inadequate access control that enabled access to sensitive data and potential exploitation to obtain complete hashes while...

3 Jan 2025
Biztonsági szemle
DDoS attack impacts NTT Docomo operations
Most of the impacted services have since been restored but additional details regarding the identity of the intrusion's perpetrators have not been provided by the firm.

3 Jan 2025
Biztonsági szemle
Network sniffing attacks threaten millions of unencrypted mail servers
"This means that passwords used for mail access may be intercepted by a network sniffer. Additionally, service exposure may enable password guessing attacks against the server," said Shadowserver.

3 Jan 2025
Biztonsági szemle
Treasury's sanctions office reportedly subjected to Chinese hack
Officials revealed that the department's Office of Financial Research had also been infiltrated as part of the incident, which was noted to have stemmed from an attack against the agency's implementation of the BeyondTrust remote support software-as...

3 Jan 2025
Biztonsági szemle
Cybersecurity deserves a place in the political spotlight
A proactive approach by business that looks to align with government can make cybersecurity more of a priority in Washington.

3 Jan 2025
Biztonsági szemle
SwaetRAT Delivery Through Python, (Fri, Jan 3rd)
We entered a new year, but attack scenarios have not changed (yet). I found a Python script with an interesting behavior[ 1] and a low Virustotal score (7/61). It targets Microsoft Windows hosts because it starts by loading all libraries required to...

3 Jan 2025
Biztonsági szemle
Apple to settle claims Siri collected user data without permission
Tech giant will be paying out a $95 million settlement over claims it exposed user data.

3 Jan 2025
Biztonsági szemle
GenAI cybersecurity ROI outlook shared by business leaders
Surveyed COOs reported savings of up to 7.7% of annual revenue due to GenAI use.
Pagination
- Previous page ‹‹
- Page 311
- Next page ››