What's new arround internet

Last one

Src Date (GMT) Titre Description Tags Stories Notes
SecurityWeek.webp 2018-07-26 15:32:02 Iran-Linked \'Leafminer\' Espionage Campaign Targets Middle East (lien direct) A group of cyberspies believed to be operating out of Iran has targeted government and other types of organizations in the Middle East since at least early 2017, Symantec revealed on Wednesday.
SecurityWeek.webp 2018-07-26 11:20:01 Iranian Hackers Use QUADAGENT Backdoor in Recent Attacks (lien direct) A series of recent attacks attributed to an Iran-linked cyber-espionage group delivered a PowerShell backdoor onto compromised machines, Palo Alto Networks has discovered.
SecurityWeek.webp 2018-07-26 06:08:02 Shipping Giant COSCO Hit by Ransomware (lien direct) Chinese state-owned shipping and logistics company COSCO was reportedly hit by a piece of ransomware that disrupted some of its systems in the United States. Ransomware
SecurityWeek.webp 2018-07-25 17:07:04 Big Tech Firms Agree on \'Data Portability\' Plan (lien direct) Facebook, Google, Microsoft and Twitter unveiled plans Friday to make it easier for users to take their personal data and leave one online service for another.
SecurityWeek.webp 2018-07-25 16:20:03 Car Sharing Apps Vulnerable to Hacker Attacks: Kaspersky (lien direct) Researchers at Kaspersky Lab have analyzed over a dozen mobile applications provided by car sharing companies and discovered serious security holes that can be exploited to obtain personal information and even steal vehicles.
SecurityWeek.webp 2018-07-25 16:09:04 Chrome Now Marks HTTP Sites as "Not Secure" (lien direct) The latest version of Google's Chrome web browser (Chrome 68) represents another step the search giant is making toward a more secure web: the browser now marks HTTP sites as “Not Secure.”
SecurityWeek.webp 2018-07-25 15:20:03 Twitter Curbs Access for 143,000 Apps in New Crackdown (lien direct) Twitter said Tuesday it had removed more than 143,000 apps from the messaging service since April in a fresh crackdown on "malicious" activity from automated accounts. The San Francisco-based social network said it was tightening access to its application programming interfaces (APIs) that allows developers to make automated Twitter posts.
SecurityWeek.webp 2018-07-25 14:46:01 Kronos Banking Trojan Has Returned (lien direct) The Kronos banking Trojan is showing renewed strength and has been very active over the past several months, Proofpoint security researchers warn. 
SecurityWeek.webp 2018-07-25 14:13:03 Researchers Resurrect Decade-Old Oracle Solaris Vulnerability (lien direct) One of the Solaris vulnerabilities patched by Oracle with its July 2018 Critical Patch Update (CPU) exists due to an ineffective fix implemented by the company for a flaw first discovered in 2007. Vulnerability
SecurityWeek.webp 2018-07-25 11:44:03 The Foundation of Cyber-Attacks: Credential Harvesting (lien direct) Recent reports of a newly detected Smoke Loader infection campaign and the re-emergence of Magecart-based cyber-attacks illustrate a common tactic used by cyber criminals and state-sponsored attackers alike ― credential harvesting. According to the Verizon 2017 Data Breach Investigation Report, 81% of hacking-related breaches leverage either stolen, default, or weak credentials. Data Breach
SecurityWeek.webp 2018-07-25 11:29:00 Don\'t Ignore Identity Governance for Privileged Users (lien direct) It's summer time, which means privileged users are away on vacations and contractors or co-workers are taking up the slack. Managing the temporary access that this requires is not something you want to leave to chance. 
SecurityWeek.webp 2018-07-25 10:55:04 Customer Identity and Access Management Firm LoginRadius Raises $17 Million (lien direct) Vancouver, Canada-based customer identity and access management (cIAM) firm LoginRadius has raised $17 million Series A funding led by ForgePoint Capital and Microsoft's venture fund, M12.
SecurityWeek.webp 2018-07-25 06:51:02 US, Australia Work to Improve Cyber Capabilities (lien direct) The United States and Australia have signed an agreement that will enable the two allies to conduct research and development to advance their combined cyber capabilities, officials said Tuesday.
SecurityWeek.webp 2018-07-25 06:45:05 Apache OpenWhisk Flaws Allowed Attackers to Overwrite Code in IBM Cloud (lien direct) Researchers discovered that two vulnerabilities in the Apache OpenWhisk serverless cloud platform could have allowed malicious actors to overwrite and execute arbitrary code.
SecurityWeek.webp 2018-07-24 19:33:00 Hide \'N Seek Botnet Targets Smart Homes (lien direct) The infamous Hide 'N Seek botnet is now targeting vulnerabilities in home automation solutions, network security firm Fortinet says.
SecurityWeek.webp 2018-07-20 17:22:05 Microsoft Addresses Serious Vulnerability in Translator Hub (lien direct) A serious vulnerability in the Microsoft Translator Hub could be exploited to delete any or all of the 13000+ projects hosted by the service, a security researcher has discovered. Vulnerability
SecurityWeek.webp 2018-07-20 15:56:03 "MoneyTaker" Hackers Stole $1 Million From Russian Bank (lien direct) A cybercriminal group referred to as
SecurityWeek.webp 2018-07-20 14:31:04 Trump-Putin Meeting Puts Finland on Cyber-Attack Target List (lien direct) Historically, Finland has not been targeted by a high number of cyber-attacks, but digital assaults spiked in the days prior to the July 16 meeting between U.S. President Donald Trump and Russian President Vladimir Putin in Helsinki.
SecurityWeek.webp 2018-07-20 13:55:02 DOJ Cybersecurity Task Force Outlines Plans for Protecting Elections (lien direct) The U.S. Justice Department's Cyber-Digital Task Force made public its first report on Thursday, covering the threat to elections, cybercrime schemes, and various other topics. Threat
SecurityWeek.webp 2018-07-20 12:35:00 A Cyber Axis of Evil is Rewriting the Cyber Kill Chain (lien direct) Survey of Incident Responders Shows That Businesses Needs to Re-architect Cybersecurity
SecurityWeek.webp 2018-07-20 11:20:03 Singapore Says Hackers Stole 1.5 Million Health Records in Massive Cyberattack (lien direct) Hackers have stolen the health records of 1.5 million Singaporeans including Prime Minister Lee Hsien Loong, authorities said Friday, with the leader specifically targeted in the city-state's biggest ever data breach. Guideline
SecurityWeek.webp 2018-07-20 10:57:03 Adobe Patches Vulnerability Affecting Internal Systems (lien direct) Adobe has patched what researchers describe as a potentially serious security issue in its internal systems, but the company has downplayed the impact of the vulnerability. Vulnerability
SecurityWeek.webp 2018-07-20 05:06:04 HR Services Firm ComplyRight Suffers Data Breach (lien direct) Florida-based HR services provider ComplyRight revealed recently that its tax reporting platform was involved in a cybersecurity incident that resulted in the exposure of personal information. Data Breach
SecurityWeek.webp 2018-07-19 16:36:02 The Path to Securing IoT Ecosystems Starts at the Network (lien direct) Security at the Device and Network Level is Critical to the Successful Operation of IoT
SecurityWeek.webp 2018-07-19 14:42:03 Robocalling Firm Exposes U.S. Voter Records (lien direct) A publicly accessible Amazon Web Services S3 bucket belonging to a political autodial firm was exposing hundreds of thousands of United States voter records.
SecurityWeek.webp 2018-07-19 14:35:01 Industry Reactions to U.S. Indicting 12 Russians for DNC Hack (lien direct) The U.S. last week indicted 12 Russian intelligence officers over their alleged role in a hacking operation targeting the Democratic National Committee (DNC) and Hillary Clinton's 2016 presidential campaign. Hack
SecurityWeek.webp 2018-07-19 12:28:00 Ransomware Attack Hits Health Firm LabCorp (lien direct) Burlington, North Carolina-based LabCorp took some of its systems offline last weekend after discovering that some had been infected by ransomware. Ransomware
SecurityWeek.webp 2018-07-19 11:20:05 Okta Acquires Access Control Startup ScaleFT (lien direct) Enterprise identity management firm Okta this week announced that it has acquired ScaleFT, a company that offers a Zero Trust access control platform.
SecurityWeek.webp 2018-07-19 10:50:03 Financial Industry Insiders Put the Keys to the Kingdom at Risk (lien direct) Monitoring for Illicit Insider Activity Shouldn't Focus Exclusively on Dark Web and Criminal Forums
SecurityWeek.webp 2018-07-19 09:28:05 ABB to Patch Code Execution Flaw in HMI Tool (lien direct) Swiss industrial tech company ABB is working on a patch for a serious arbitrary code execution vulnerability affecting one of its engineering tools. Tool Vulnerability
SecurityWeek.webp 2018-07-19 05:14:00 Cisco Finds Serious Flaws in Policy Suite, SD-WAN Products (lien direct) Cisco informed customers on Wednesday that it has found and patched over a dozen critical and high severity vulnerabilities in its Policy Suite, SD-WAN, WebEx and Nexus products.
SecurityWeek.webp 2018-07-18 18:18:05 Vulnerability or Not? Pen Tester Quarrels With Software Maker (lien direct) Security Industry Battles Over Testing Methods Vulnerability
SecurityWeek.webp 2018-07-18 16:31:04 NIST to Withdraw 11 Outdated Cybersecurity Publications (lien direct) The U.S. National Institute of Standards and Technology (NIST) announced on Tuesday that its Computer Security Division has decided to withdraw eleven outdated SP 800 publications.
SecurityWeek.webp 2018-07-18 16:27:00 Data Privacy Automation Provider Integris Software Raises $10 Million (lien direct) Integris Software, a Seattle-based provider of data privacy automation tools, today announced that it has raised $10 million through a Series A financing round led by Aspect Ventures.
SecurityWeek.webp 2018-07-18 15:23:03 Flashpoint Launches Ransomware Response & Readiness Service (lien direct) Threat intelligence and research company Flashpoint on Wednesday announced the launch of a new service designed to help organizations prepare and respond to ransomware and other types of cyber extortion incidents. Ransomware
SecurityWeek.webp 2018-07-13 16:29:02 12 Russian Intelligence Officers Indicted for Hacking U.S. Democrats (lien direct) Twelve Russian intelligence officers were indicted by a US grand jury on Friday -- just three days before President Donald Trump is scheduled to meet with Russia's Vladimir Putin -- for interfering in the November 2016 presidential election.
SecurityWeek.webp 2018-07-13 14:28:04 Attackers Target iPhones Using Open Source MDM Solution (lien direct) Recently discovered cyber attacks targeting iPhone users have been using an open source mobile device management (MDM) system to control enrolled devices, Talos reports.
SecurityWeek.webp 2018-07-13 14:14:01 Taken by Ransomware? Certain Skills Required. (lien direct) About Ransomware Campaigns Ransomware
SecurityWeek.webp 2018-07-13 13:56:02 Flaws Expose Siemens Protection Relays to DoS Attacks (lien direct) Siemens has informed customers that some of the company's SIPROTEC protection relays are exposed to denial-of-service (DoS) attacks due to a couple of vulnerabilities present in the EN100 communication module.
SecurityWeek.webp 2018-07-13 13:45:02 Cisco Patches High Risk Flaws in StarOS, IP Phone (lien direct) Cisco this week released a set of security patches to address several vulnerabilities in its products, including High risk issues impacting StarOS and 6800, 7800, and 8800 Series IP Phones.
SecurityWeek.webp 2018-07-13 12:23:03 Support for Python Packages Added to GitHub Security Alerts (lien direct) GitHub announced on Thursday that developers will be warned if the Python packages used by their applications are affected by known vulnerabilities.
SecurityWeek.webp 2018-07-13 05:33:02 VPNFilter Malware Hits Critical Infrastructure in Ukraine (lien direct) The Security Service of Ukraine (SBU) revealed this week that the VPNFilter malware, which it attributed to Russian intelligence agencies, had targeted a critical infrastructure organization. Malware VPNFilter
SecurityWeek.webp 2018-07-12 17:50:04 Dark Web Chatter Helpful in Predicting Real World Hacks, Firm Says (lien direct) Some hacks are serendipitous events for skiddies who happen across a website with an easily exploitable common vulnerability. Others, especially the major breaches of major enterprises, are planned and executed with care. Such planning often leaves traces of noise across the internet. IntSights, founded in 2015, searches both the surface and deep web for this noise, and converts it into actionable intelligence. It looks for evidence of planned attacks before they actually occur.
SecurityWeek.webp 2018-07-12 14:10:00 Arch Linux AUR Repository Compromised (lien direct) A user-maintained Arch Linux AUR (Arch User Repository) software repository was pulled earlier this week after it was found to contain malware.
SecurityWeek.webp 2018-07-12 13:54:02 HackerOne Bug Bounty Programs Paid Out $11 Million in 2017 (lien direct) White hat hackers who responsibly disclosed vulnerabilities through bug bounty programs hosted by HackerOne earned more than $11 million last year, according to the company's 2018 Hacker-Powered Security Report.
SecurityWeek.webp 2018-07-12 12:47:03 Timehop Shares More Details on Data Breach (lien direct) Timehop has shared additional details about the recent data breach that impacted roughly 21 million user accounts, including what the attackers did once they gained access to the company's systems and what other type of information was compromised. Data Breach
SecurityWeek.webp 2018-07-12 10:22:01 Five Steps to Security Automation (lien direct) Two weeks ago, Volvo, the Swedish automaker, announced plans for a Level 4 self-driving car by 2021.
SecurityWeek.webp 2018-07-12 10:08:01 Three Emerging Technologies to Accelerate Incident Readiness (lien direct) Purple Teaming is a Boon to Incident Readiness and Response
SecurityWeek.webp 2018-07-12 09:18:04 Broadcom Buys Business Software Firm CA for $18.9 Billion (lien direct) Semi-conductor giant Broadcom, which recently failed in a bid to buy US rival Qualcomm, on Wednesday announced a cash deal to buy software and services firm CA Technologies for $18.9 billion.
SecurityWeek.webp 2018-07-11 21:03:01 Hackers Can Chain Multiple Flaws to Attack WAGO HMI Devices (lien direct) Germany-based industrial automation company WAGO has patched several vulnerabilities in its e!DISPLAY 7300T Web Panel human-machine interface (HMI) products that can be chained to take control of affected devices.
Last update at: 2024-07-23 16:07:37
See our sources.
My email:

To see everything: Our RSS (filtrered) Twitter