Security Bulletin
29 Jul 2024
Biztonsági szemle
CrowdStrike Outage Themed Maldoc, (Mon, Jul 29th)
I found a malicious Word document with VBA code using the CrowdStrike outage for social engineering purposes. It's an .ASD file (AutoRecover file). My tool oledump.py can analyze it:
29 Jul 2024
Biztonsági szemle

Quickie: Password Cracking & Energy, (Sun, Jul 28th)
When Johannes talked about my diary entry " Protected OOXML Spreadsheets" on his StormCast podcast, he mentioned that I privately shared data on the power consumption of my desktop with a NVIDIA GeForce RTX 3080 GPU when running Hashcat.
27 Jul 2024
Biztonsági szemle
Create Your Own BSOD: NotMyFault, (Sat, Jul 27th)
With all the Blue Screen Of Death screenshots we saw lately, I got the idea to write about Sysinternals' tool NotMyFault.
26 Jul 2024
Biztonsági szemle
PKFail bug puts firmware security at risk
Researchers say that a years-old security leak is putting a number of production model PCs at risk of persistent remote takeover.
26 Jul 2024
Biztonsági szemle
Millions of Devices Vulnerable to 'PKFail' Secure Boot Bypass Issue
Several vendors for consumer and enterprise PCs share a compromised crypto key that should never have been on the devices in the first place.
26 Jul 2024
Biztonsági szemle
CrowdStrike Outage Losses Estimated at a Staggering $5.4B
Researchers track the healthcare sector as experiencing the biggest financial losses, with banking and transportation following close behind.
26 Jul 2024
Biztonsági szemle
Targeted PyPi Package Steals Google Cloud Credentials from macOS Devs
The campaign is laser-targeted, bucking the trend of "spray-and-pray" malicious open source packages turning up in code repositories seemingly every other day.
26 Jul 2024
Biztonsági szemle
Twitter, the DOJ, DarkSeoul, Fake Employees, PlugX, Stargazer Ghost, Aaran Leyland... - SWN #401
26 Jul 2024
Biztonsági szemle
Foreign threat actors exploit ServiceNow bugs
Security pros say the bugs are input validation flaws that can lead to remote code execution.
26 Jul 2024
Biztonsági szemle
Companies Struggle to Recover From CrowdStrike's Crippling Falcon Update
The cybersecurity firm says that 97% of sensors are back online, but some organizations continue to recover, with costs tallied at $5.4 billion for the Fortune 500 alone.
26 Jul 2024
Biztonsági szemle
US Offers $10M Reward for Information on North Korean Hacker
The individual is part of a DPRK-backed group known as Andariel, which is known for using the 'Maui' ransomware strain to target and extort healthcare entities.
26 Jul 2024
Biztonsági szemle
Nvidia Embraces LLMs & Commonsense Cybersecurity Strategy
Nvidia doesn't just make the chips that accelerate a lot of AI applications — the company regularly creates and uses its own large language models, too.
Pagination
- Previous page ‹‹
- Page 699
- Next page ››