SecurityAffairs | xxx | 第 3 页SecurityAffairs – 第3页 – xxx
菜单

SecurityAffairs

John McAfee found dead in prison cell ahead of extradition to US
The popular cybersecurity entrepreneur John McAfee has been found dead in a Barcelona prison cell, a few hours after Spain’s National Court agreed to [...]
The European Commission proposed to launch the new Joint Cyber Unit
The European Commission proposed on Wednesday the creation of a new Joint Cyber Unit that aims at providing a coordinated response to large-scale cyber [...]
LV ransomware operators repurposed a REvil binary to launch a new RaaS
A threat actor known as LV ransomware gang is trying to enter the cybercrime arena, it repurposed a REvil binary almost to create their own strain and [...]
VMware fixes privilege escalation issue in VMware Tools for Windows
VMware patched a high-severity local privilege escalation vulnerability, tracked as CVE-2021-21999, in VMware Tools for Windows that could be exploited by [...]
Clop ransomware is back into action after the recent police operation
A week after the international operation conducted by law enforcement that targeted several members of the Clop ransomware gang, the group is back into action.
Palo Alto Networks fixes critical flaw (CVE-2021-3044) in Cortex XSOAR
Researchers from Palo Alto Networks discovered and addresses a critical improper authorization vulnerability, tracked as CVE-2021-3044, that affects its [...]
SonicWall finally fixed a flaw resulting from a partially patched 2020 zero-day
In October last year, experts reported a critical stack-based Buffer Overflow vulnerability, tracked as CVE-2020-5135, in SonicWall Network Security [...]
MITRE adds D3FEND defensive cybersecurity techniques to ATT&CK Framework
D3FEND is a new project promoted by MITRE Corporation aimed to add a knowledge graph of cybersecurity countermeasures to the ATT&CK Framework.
Wormable bash DarkRadiation Ransomware targets Linux distros and docker containers
Trend Micro researchers spotted a new strain of ransomware, dubbed DarkRadiation, which is writted in Bash script and target Linux distributions (Red [...]
ADVERSARIAL OCTOPUS – ATTACK DEMO FOR AI-DRIVEN FACIAL RECOGNITION ENGINE
THE INTENTION BEHIND THIS PROJECTDriven by our mission to increase trust in AI, Adversa’s AI Red Team is constantly exploring new methods of assessing and [...]
A ransomware attack disrupted the IT network of the City of Liege
Liege, one of the biggest cities in Belgium, was hit by a ransomware attack that has disrupted the IT network of the municipality and its online services.
DirtyMoe botnet infected 100,000+ Windows systems in H1 2021
Researchers from Avast are warning of the rapid growth of the DirtyMoe botnet (PurpleFox, Perkiler, and NuggetPhantom), which passed from 10,000 infected [...]
Tor Browser 10.0.18 fixes a bug that allows to track users by fingerprinting installed apps
The Tor Project has released Tor Browser 10.0.18, the new version of the popular browser addresses multiple flaws, including a vulnerability that could be [...]
DroidMorph tool generates Android Malware Clones that
A group of researchers from Adana Science and Technology University (Turkey) and the National University of Science and Technology (Islamabad, Pakistan) [...]
Ragnar Locker ransomware leaked data stolen from ADATA chipmaker
The Ragnar Locker ransomware gang has published on its leak sites more than 700GB of data stolen from Taiwanese memory and storage chip maker ADATA.
Threat actors in January attempted to poison the water at a US facility
The news that a threat actor in January attempted to poison the water at a facility in the U.S. made the headlines and highlights the importance of [...]
NSA releases guidance for securing Unified Communications and VVoIP
NSA last week released guidance for securing their communication systems, specifically Unified Communications (UC) and Voice and Video over IP (VVoIP).
MI5 seized Boris Johnson’s phone over security risk fears
The British Security Service, also known as MI5, has seized the mobile devices used by PM Boris Johnson over concerns that were raised after the discovery [...]
Poland: The leader of the PiS party blames Russia for the recent attack
Jaroslaw Kaczynski, the leader of the Poland Law and Justice party (PiS), blames Russia for the recent cyberattack that targeted top Polish politicians.
Norway blames China-linked APT31 for 2018 government hack
Norway’s Police Security Service (PST) said that the China-linked APT31 cyberespionage group was behind the attack that breached the government’s IT [...]
This bug can permanently break iPhone WiFi connectivity
The researcher Carl Schou discovered a new bug in iPhone that can permanently break users’ WiFi by disabling it, the issue could be triggered by [...]
Security Affairs newsletter Round 319
If you want to also receive for free the international press subscribe here.Follow me on Twitter: @securityaffairs and Facebook
North Korean APT group Kimsuky allegedly hacked South Korea’s atomic research agency KAERI
South Korean representatives declared on Friday that North Korea-linked APT group Kimsuky is believed to have breached the internal network of the South [...]
RedFoxtrot operations linked to China’s PLA Unit 69010 due to bad opsec
Experts from Recorded Future’s Insikt Group linked a series of attacks, part of RedFoxtrot China-linked campaigns, to the PLA China-linked Unit 69010
Vigilante malware stops victims from visiting piracy websites
Sophos researchers uncovered a malware campaign that aims at blocking infected users’ from visiting a large number of websites dedicated to software [...]
US supermarket chain Wegmans discloses data breach
Wegmans Food Markets disclosed a data breach, the supermarket chain notified customers that some of their information was exposed as a result of the [...]
Expert found multiple flaws in Cisco Small Business 220 series
Security researcher Jasper Lievisse Adriaanse has discovered multiple vulnerabilities Cisco’s Small Business 220 series smart switches. The vulnerabilities [...]
Cruise operator Carnival discloses a security breach
Carnival Corp. this week confirmed that the data breach that took place in March might have exposed personal information about customers and employees of [...]
Akamai outage was caused by an issue with its Prolexic DDoS protection service
CDN, cybersecurity and cloud services provider Akamai revealed that the recent outage suffered by the company was caused by a problem with its Prolexic [...]
The return of TA402 Molerats APT after a short pause
The TA402 APT group (aka Molerats and Gaza Cybergang) is back after a two-month of apparent inactivity, it is targeting government institutions in the [...]
Over a billion records belonging to CVS Health exposed online
This week WebsitePlanet along with the researcher Jeremiah Fowler discovered an unsecured database, belonging to the US healthcare and pharmaceutical giant [...]
Ferocious Kitten APT targets Telegram and Psiphon VPN users in Iran
Researchers from Kaspersky reported that Iran-linked threat actors, tracked as Ferocious Kitten, used instant messaging apps and VPN software like Telegram [...]
Cosmolog Kozmetik Data Breach: Hundreds of Thousands of Customers impacted
WizCase’s security team, led by Ata Hakçıl, has found a major breach in popular online retailer Cosmolog Kozmetik’s database. This breach exposed [...]
Oleg Koshkin was convicted for operating a crypting service also used by Kelihos botnet
Russian national Oleg Koshkin was convicted for charges related to the operation of a malware crypting service used by the Kelihos botnet to obfuscate [...]
UNC2465 cybercrime group launched a supply chain attack on CCTV vendor
An affiliate of the Darkside ransomware gang, tracked as UNC2465, has conducted a supply chain attack against a CCTV vendor, Mandiant researchers [...]
An international joint operation resulted in the arrest of Clop ransomware members
Ukraine police arrested multiple individuals that are believed to be linked to the Clop ransomware gang as part of an international operation conducted by [...]
Poland institutions and individuals targeted by an unprecedented series of cyber attacks
Poland’s parliament had a closed-door session to discuss an unprecedented wave of cyber attacks that hit its institutions and individuals. Mateusz [...]
A flaw in Peloton Bike+ could allow hackers to control it
A vulnerability in the popular Peloton Bike+ could have allowed an attacker to gain complete control over the device, including the camera and microphone [...]
Cyberium malware-hosting domain employed in multiple Mirai variants campaigns
Researchers from AT&T Alien Lab have spotted a new variant of the Mirai botnet, tracked asu Moobot, which was scanning the Internet for the [...]
Fujifilm restores operations after recent ransomware attack
On June 4, the Japanese multinational conglomerate Fujifilm announced that it was hit by a ransomware attack and shut down its network in response to the [...]
The source code of the Paradise Ransomware was leaked on XSS hacking forum
The source code for the Paradise Ransomware has been released on the hacking forum XSS allowing threat actors to develop their own customized ransomware [...]
Former NSA contractor Reality Winner who leaked gov report will be released on November
Reality Winner is a former NSA intelligence contractor who leaked a classified hacking report to the press in 2017.
Instagram flaw allowed to see private, archived Posts/Stories of users without following them
Researcher Mayur Fartade has found a vulnerability in Instagram that allowed anyone to access private accounts, viewing archived posts and stories without [...]
Wear your MASQ! New Device Fingerprint Spoofing Tool Available in Dark Web
The Resecurity® HUNTER unit has identified a new tool available for sale in the Dark Web called MASQ, enabling bad actors to emulate device fingerprints [...]
REvil ransomware gang hit US nuclear weapons contractor Sol Oriens
US nuclear weapons contractor Sol Oriens was hit by a cyberattack carried out by the REvil ransomware operators, which claims to have stolen data.
Apple fixed 2 WebKit flaws exploited to target older iPhones
Apple released an out-of-band iOS update ( iOS 12.5.4 patch) for older iPhones and iPad, the IT giant also warned that some vulnerabilities affecting its [...]
Microsoft experts disrupted a large-scale BEC campaign
Microsoft researchers announced to have disrupted the cloud-based infrastructure used by crooks in a recent large-scale business email compromise (BEC) campaign.
SEO poisoning campaign aims at delivering RAT, Microsoft warns
Microsoft is monitoring a wave of cyber attacks that leverages SEO poisoning to deliver a remote access trojan (RAT) to steal sensitive data from the [...]
G7 calls on Russia to dismantle operations of ransomware gangs within its borders
G7 member states have called on Russia and other states to dismantle operations of ransomware gangs operating within their countries.
Major blackouts across Puerto Rico. Are the DDoS and the fire linked?
A large fire at the Luma’s Monacillo electrical substation in San Juan for Puerto Rico’s new electricity provider, Luma Energy, caused major [...]

Notice: Undefined variable: canUpdate in /var/www/html/wordpress/wp-content/plugins/wp-autopost-pro/wp-autopost-function.php on line 51