Security Bulletin

23 Dec 2024
Biztonsági szemle
Supply chain attack compromises rspack, Vant packages with XMRig cryptominer
BleepingComputer reports that high-performance JavaScript bundler Rspack and customizable Vue.js UI library Vant had a trio of widely-used npm packages discovered by Sonatype and Socket researchers to have been breached to facilitate the distribution...

23 Dec 2024
Biztonsági szemle
Novel FlowerStorm PhaaS gains traction after Rockstar2FA disruption
Malicious activity involving the new FlowerStorm phishing-as-a-service platform aimed at Microsoft 365 credentials has escalated following a technical issue that prompted the "partial" infrastructure collapse of the Rockstar2FA PhaaS platform last...

23 Dec 2024
Biztonsági szemle
How CISOs Can Communicate With Their Boards Effectively
With the increased frequency of board reporting, CISOs need to ensure their interactions are brief, productive, and valuable.

23 Dec 2024
Biztonsági szemle
Middle East Cyberwar Rages On, With No End in Sight
Since October 2023, cyberattacks among countries in the Middle East have persisted, fueled by the conflict between Israel and Hamas, reeling in others on a global scale.

23 Dec 2024
Biztonsági szemle
Name That Toon: Sneaking Around
Feeling creative? Submit your caption and our panel of experts will reward the winner with a $25 gift card.
23 Dec 2024
Biztonsági szemle
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2021-44207 Acclaim Systems USAHERDS Use of Hard-Coded Credentials Vulnerability These types of vulnerabilities are...

23 Dec 2024
Biztonsági szemle
Modiloader From Obfuscated Batch File, (Mon, Dec 23rd)
My last investigation is a file called âAlbertsons_payment.GZâ, received via email. The file looks like an archive but is identified as a picture by TrID:

21 Dec 2024
Biztonsági szemle
North Korean hackers targeting workers in nuclear power sector
Threat actors associated with the notorious North Korean hacking outfit Lazarus Group are now setting their sites on targets in the nuclear power sector

20 Dec 2024
Biztonsági szemle
How to Protect Your Environment From the NTLM Vulnerability
This Tech Tip outlines what enterprise defenders need to do to protect their enterprise environment from the new NTLM vulnerability.

20 Dec 2024
Biztonsági szemle
LockBit Ransomware Developer Arrested in Israel
Dual Russian-Israeli national Rostislav Panev was arrested last August and is facing extradition to the US for playing a critical role in LockBit's RaaS activities, dating back to the ransomware gang's origins.

20 Dec 2024
Biztonsági szemle
US Ban on TP-Link Routers More About Politics Than Exploitation Risk
While a number of threat groups have used TP-Link bugs to infiltrate networks, a proposed ban of the company's popular routers is more about geopolitics than actual cybersecurity — and that may not be a bad thing.

20 Dec 2024
Biztonsági szemle
Dysentery, TP-Link, Piracy, Calendar Scams, Tencent, TikTok, Aaran Leyland and More.. - SWN #439
Pagination
- Previous page ‹‹
- Page 357
- Next page ››