Security Bulletin
4 Feb 2024
Biztonsági szemle
Novel cryptojacking campaign targets Docker APIs
Threat actors have targeted internet-exposed Docker API endpoints with the advanced Commando Cat cryptojacking campaign since the beginning of the year, The Hacker News reports.
3 Feb 2024
Biztonsági szemle
DShield Sensor Log Collection with Elasticsearch, (Sat, Feb 3rd)
This is fork from the original work by Scott Jensen [ 1][ 2] originally published here as guest diary part of the SANS.edu BACS program. This update has a number of new features now available in Github [ 4].
3 Feb 2024
Biztonsági szemle
BlackBaud settles FTC charges on ransomware data breach
Major U.S. cloud software provider Blackbaud has agreed to bolster its security defenses and remove unneeded customer data from its systems to settle charges by the Federal Trade Commission alleging the company's several security failings that...
3 Feb 2024
Biztonsági szemle
GAO calls for improved implementation of national cybersecurity plan
The U.S. Office of the National Cyber Director has been urged by the Government Accountability Office to strengthen the implementation of the national cybersecurity strategy by adding outcome-oriented performance measures, as well as details...
3 Feb 2024
Biztonsági szemle
Impact of Johnson Controls ransomware attack detailed
Multinational building automation systems manufacturer Johnson Controls International has reported spending $27 million to remediate a ransomware attack in September attributed to the Dark Angels ransomware operation, which had demanded $51 million...
3 Feb 2024
Biztonsági szemle
Google supply chain bug patched in code-testing tool Bazel
A GitHub Actions workflow could have been used for a command injection vulnerability in Bazel, which had the potential for threat actors to add malicious code into the production environment for projects using the Google open-source product.
2 Feb 2024
Biztonsági szemle
Forget Deepfakes or Phishing: Prompt Injection is GenAI's Biggest Problem
With prompt injection, AI puts new spin on an old security problem
2 Feb 2024
Biztonsági szemle
Global cybercrime operation leads to arrests, dismantled C2 servers
Interpol has disclosed the disruption of 70% of 1,300 malicious command-and-control servers leveraged in malware and phishing attacks, as well as the arrests of 31 suspected threat actors as part of its Operation Synergia between September and...
2 Feb 2024
Biztonsági szemle
Flydubai targeted by Anonymous Sudan DDoS attacks
Hackread reports that the United Arab Emirates' government-owned airline Flydubai was claimed to be subjected to several distributed denial-of-service attacks by the self-proclaimed hacktivist operation Anonymous Sudan.
2 Feb 2024
Biztonsági szemle
Ukraine subjected to PurpleFox malware attacks
More than 2,000 computers across Ukraine were noted by the country's Computer Emergency Response Team to have been compromised as part of a widespread attack campaign with the modular Windows botnet payload PurpleFox, also known as DirtyMoe, which...
2 Feb 2024
Biztonsági szemle
Data breach impacts Exactech
Global orthopedic implant device and surgical instrument manufacturer Exactech had its computer network breached in April, resulting in the potential compromise of personal data belonging to 4,230 individuals across the U.S., reports Cybernews.
2 Feb 2024
Biztonsági szemle
CISO Corner: Gen Z Challenges, CISO Liability & Cathay Pacific Case Study
Dark Reading's roundup of strategic cyber-operations insights for chief information security officers.
Pagination
- Previous page ‹‹
- Page 1079
- Next page ››