Security Bulletin
9 Dec 2024
Biztonsági szemle
Intrusions targeting I-O Data router zero-days underway
Most severe of the vulnerabilities is the undocumented features inclusion issue, tracked as CVE-2024-52564, which could be exploited to facilitate remote firewall deactivation, device setting manipulation, and arbitrary OS command execution...
9 Dec 2024
Biztonsági szemle
Cyberattack deluge hits Romanian election infrastructure
After compromising the Romanian Permanent Electoral Authority's IT infrastructure on Nov. 19, threat actors went on to expose the account credentials for several of the country's election sites while deploying persistent intrusions that sought to...
9 Dec 2024
Biztonsági szemle
Novel Earth Minotaur hackers' surveillance operation uncovered
Earth Minotaur leverages instant messaging apps to send messages with malicious links purporting to be Tibetan or Uyghur music and dance-related videos, which redirected to dozens of MOONSHINE exploit kit servers that would enable the download of a...
9 Dec 2024
Biztonsági szemle
Cybercrime techniques leveraged for child-targeted crimes
Aside from luring children into providing sexually explicit photos of themselves, such methods have also been used to force youths into harming family members and animals, as well as committing suicide, an intelligence report from the Joint Regional...
9 Dec 2024
Biztonsági szemle
Mitigating NTLM Relay Attacks by Default
Introduction In February 2024, we released an update to Exchange Server which contained a security improvement referenced by CVE-2024-21410 that enabled Extended Protection for Authentication (EPA) by default for new and existing installs of Exchange...
9 Dec 2024
Biztonsági szemle
ISC Stormcast For Monday, December 9th, 2024 https://isc.sans.edu/podcastdetail/9246, (Mon, Dec 9th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
9 Dec 2024
Biztonsági szemle
CURLing for Crypto on Honeypots, (Mon, Dec 9th)
I get a daily report from my honeypots for Cowrie activity [1], which includes telnet and SSH sessions attempted on the honyepot. One indicator I use to find sessions of interest is the number of commands run. Most of the time there are about 20...
7 Dec 2024
Biztonsági szemle
Semperis InFocus with Mickey Bresman
In this SC Media InFocus, Security Weekly News' Adrian Sanabria discusses improving cyber defenses against ransomware with Semperis' Mickey Bresman.
7 Dec 2024
Biztonsági szemle
ML clients, ‘safe’ model formats exploitable through open-source AI vulnerabilities
Four flaws in open-source machine learning tools could lead to code execution or path traversal.
6 Dec 2024
Biztonsági szemle
Texas Teen Arrested for Scattered Spider Telecom Hacks
An FBI operation nabbed a member of the infamous cybercrime group, who is spilling the tea on 'key Scattered Spider members' and their tactics.
6 Dec 2024
Biztonsági szemle
Microsoft Expands Access to Windows Recall AI Feature
The activity-recording capability has drawn concerns from the security community and privacy experts, but the tech giant is being measured in its gradual rollout, which is still in preview mode.
6 Dec 2024
Biztonsági szemle
FCC to telecoms: Secure your networks from hacks like China's Salt Typhoon
There’s bipartisan support for a tougher stance on China’s attacks on U.S. telecoms, including issuing stiff fines.
Pagination
- Previous page ‹‹
- Page 452
- Next page ››