Security Bulletin

30 Sep 2024
Biztonsági szemle
FERC Outlines Supply Chain Security Rules for Power Plants
The US Federal Energy Regulatory Commission spells out what electric utilities should do to protect their software supply chains, as well as their network "trust zones."

30 Sep 2024
Biztonsági szemle
Reachability Analysis Pares Down Static Security-Testing Overload
For development teams awash in vulnerability reports, reachability analysis can help tame the chaos and offer another path to prioritize exploitable issues.

30 Sep 2024
Biztonsági szemle
Louisiana accounting firm breach affects 127,000 customers
Midsize accounting firm takes nearly a year to notify customers of a breach.

30 Sep 2024
Biztonsági szemle
Tool update: mac-robber.py and le-hex-to-ip.py, (Mon, Sep 30th)
One of the problems I've had since I originally wrote mac-robber.py [ 1][ 2][ 3] seven years ago is that because of the underlying os.stat python library we couldn't get file creation times (B-times). Since the release of GNU...

30 Sep 2024
Biztonsági szemle
Sloppy Entra ID Credentials Attract Hybrid Cloud Ransomware
Microsoft warns that ransomware group Storm-0501 has shifted from buying initial access to leveraging weak credentials to gain on-premises access before moving laterally to the cloud.

30 Sep 2024
Biztonsági szemle
5 Reasons Why Developers Should Attend Security Conferences
On the first night of BlackHat USA, I made conversation with a few friendly penetration testers who were perplexed when I told them I was a developer. Why would I be at a cybersecurity conference? …What was I hoping to get out of it? My general (and...

30 Sep 2024
Biztonsági szemle
Elaborate Deepfake Operation Takes a Meeting With US Senator
The threat actors managed to gain access to Sen. Ben Cardin (D-Md.) by posing as a Ukrainian official, before quickly being outed.

30 Sep 2024
Biztonsági szemle
Treat Your Enterprise Data Like a Digital Nomad
By combining agility with compliance, and security with accessibility, businesses will treat their data as a well-prepared traveler, ready for any adventure.

30 Sep 2024
Biztonsági szemle
California AI safety legislation vetoed
While the legislation has been opposed by Google and OpenAI due to additional burdens, such disapproval from Newsom has been regarded by bill sponsor Sen. Scott Wiener to be a step back in AI regulations.

30 Sep 2024
Biztonsági szemle
Nearly $70K stolen by WalletConnect-spoofing crypto drainer
Check Point Research researchers discovered that installation of the fake WalletConnect app triggers a wallet connection request and the stealthy activation of the MS Drainer toolkit, which then conducts token and NFT scanning and exfiltration...

30 Sep 2024
Biztonsági szemle
About $102M fine imposed against Meta over plaintext Facebook password storage
Passwords should never be kept in plaintext due to potential exploitation, according to Irish DPC Deputy Commissioner Graham Doyle. Meanwhile, Meta noted the prompt remediation of the security issue.

30 Sep 2024
Biztonsági szemle
Critical NVIDIA Container Toolkit bug has widespread impact
All NVIDIA Container Toolkit versions up to 1.16.1 and GPU Operator instances up to version 24.6.1 are impacted by the flaw, which stems from the absence of secure containerized GPU isolation from the host that exposes sensitive host file system and...
Pagination
- Previous page ‹‹
- Page 331
- Next page ››