Security Bulletin
15 Jul 2024
Biztonsági szemle
Over 1.5M Exim servers impacted by critical security bypassing bug
The U.S., Russia, and Canada accounted for most of the vulnerable Exim servers, which are on versions 4.97.1 or earlier, according to a report from Censys.
15 Jul 2024
Biztonsági szemle
Nearly $25M added to BlackSuit wallet after CDK Global hack
Nearly $15 million of the received payment, which was also confirmed by another source close to the matter, has been reallocated to over 20 addresses across five global exchanges.
15 Jul 2024
Biztonsági szemle
Data breach confirmed by Rite Aid following RansomHub claims
While RansomHub admitted to having compromised Rite Aid customers' ID numbers and rewards numbers, Rite Aid emphasized that none of its clients' health information, financial details, and Social Security numbers have been exposed.
15 Jul 2024
Biztonsági szemle
Alleged Disney breach admitted by suspected LockBit-linked hacktivist group
Allegedly included in the data dump were messages, files, and data sent by Disney's development team via Slack.
15 Jul 2024
Biztonsági szemle
Medusa ransomware claims American Golf Corporation hack
Infiltration of American Golf's systems has purportedly enabled the exfiltration of members' information, user IDs, passwords, and secret keys, as well as emails, licenses, passports, reports, and financial details.
15 Jul 2024
Biztonsági szemle
Samba file shares leveraged to facilitate DarkGate malware delivery
Malicious Microsoft Excel files have been used by threat actors to facilitate the execution of a Samba file share-hosted VBS code.
15 Jul 2024
Biztonsági szemle
Squarespace-registered DeFi platforms subjected to DNS hijacking
Several decentralized finance platforms, including Compound Finance, Celer Network, and Pendle, had domains registered with Squarespace impacted by DNS hijacking attacks on Thursday.
15 Jul 2024
Biztonsági szemle
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2024-36401 OSGeo GeoServer GeoTools Eval Injection Vulnerability These types of vulnerabilities are frequent attack...
15 Jul 2024
Biztonsági szemle
Five security risks from Generative AI
GenAI has created great excitement and promise, but security teams still must grapple with the risks.
15 Jul 2024
Biztonsági szemle
Protected OOXML Spreadsheets, (Mon, Jul 15th)
I was asked a question about the protection of an .xlsm spreadsheet. I've written before on the protection of .xls spreadsheets, for example in diary entries " Unprotecting Malicious Documents For Inspection" and " 16-bit Hash Collisions in...
15 Jul 2024
Biztonsági szemle
ISC Stormcast For Monday, July 15th, 2024 https://isc.sans.edu/podcastdetail/9052, (Mon, Jul 15th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
14 Jul 2024
Biztonsági szemle
Wireshark 4.2.6 Released, (Sun, Jul 14th)
Wireshark release 4.2.6 fixes 1 vulnerability ( SPRT parser crash) and 10 bugs.
Pagination
- Previous page ‹‹
- Page 726
- Next page ››