Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2025-02-11 14:00:00 |
Ransomware Gangs Increasingly Prioritize Speed and Volume in Attacks (lien direct) |
Ransomware groups are adopting agile techniques in a quantity-over-quality approach, according to a new report from Huntress
Ransomware groups are adopting agile techniques in a quantity-over-quality approach, according to a new report from Huntress |
Ransomware
|
|
★★★
|
 |
2025-02-11 12:40:00 |
8Base Ransomware Site Seized, Phobos Suspects Arrested in Thailand (lien direct) |
Four Europeans were arrested in Phuket, believed to be members of the Phobos ransomware group |
|
|
★★★
|
 |
2025-02-11 10:30:00 |
Apple Mitigates “Extremely Sophisticated” Zero-Day Exploit (lien direct) |
Apple has patched a zero-day vulnerability being exploited in targeted attacks
Apple has patched a zero-day vulnerability being exploited in targeted attacks |
Vulnerability
Threat
|
|
★★★
|
 |
2025-02-11 09:45:00 |
OpenAI Was Not Breached, Say Researchers (lien direct) |
Kela researchers explain that infostealers are to blame for compromised OpenAI logins
Kela researchers explain that infostealers are to blame for compromised OpenAI logins |
|
|
★★★
|
 |
2025-02-10 17:15:00 |
BadIIS Malware Exploits IIS Servers for SEO Fraud (lien direct) |
Trend Micro uncovers BadIIS malware exploiting IIS servers for SEO fraud and malicious redirects
Trend Micro uncovers BadIIS malware exploiting IIS servers for SEO fraud and malicious redirects |
Malware
Prediction
|
|
★★★
|
 |
2025-02-10 16:30:00 |
Georgia Hospital Alerts 120,000 Individuals of Data Breach (lien direct) |
Memorial Hospital and Manor, located in Bainbridge, Georgia, has alerted 120,000 individuals that their data was breached following a ransomware attack last November
Memorial Hospital and Manor, located in Bainbridge, Georgia, has alerted 120,000 individuals that their data was breached following a ransomware attack last November |
Ransomware
Data Breach
|
|
★★★
|
 |
2025-02-10 13:45:00 |
US: Man Gets 20 Years for $37m Crypto Heist (lien direct) |
A US resident based in Indiana was charged with cyber intrusion and cryptocurrency theft conspiracies
A US resident based in Indiana was charged with cyber intrusion and cryptocurrency theft conspiracies |
|
|
★★★
|
 |
2025-02-10 11:15:00 |
UK Military Fast-Tracks Cybersecurity Recruitment (lien direct) |
The UK MoD has announced it is fast-tracking the recruitment of specialist cybersecurity roles, with recruits offered a starting salary of above £40,000
The UK MoD has announced it is fast-tracking the recruitment of specialist cybersecurity roles, with recruits offered a starting salary of above £40,000 |
|
|
★★★
|
 |
2025-02-10 10:30:00 |
Experts Dismayed at UK\\'s Apple Decryption Demands (lien direct) |
Security and privacy experts have questioned a new demand from the UK Home Office on Apple\'s encrypted iCloud service
Security and privacy experts have questioned a new demand from the UK Home Office on Apple\'s encrypted iCloud service |
|
|
★★★
|
 |
2025-02-10 09:45:00 |
Europol Warns Financial Sector of “Imminent” Quantum Threat (lien direct) |
Europol has urged the financial sector to prioritize quantum-safe cryptography
Europol has urged the financial sector to prioritize quantum-safe cryptography |
Threat
|
|
★★★
|
 |
2025-02-07 16:00:00 |
Most UK GDPR Enforcement Actions Targeted Public Sector in 2024 (lien direct) |
27 UK public sector organizations faced ICO enforcement actions in 2024, with three fines issued, according to URM Consulting
27 UK public sector organizations faced ICO enforcement actions in 2024, with three fines issued, according to URM Consulting |
Legislation
|
|
★★★
|
 |
2025-02-07 14:00:00 |
Malicious AI Models on Hugging Face Exploit Novel Attack Technique (lien direct) |
The technique, called nullifAI, allows the models to bypass Hugging Face\'s protective measures against malicious AI models
The technique, called nullifAI, allows the models to bypass Hugging Face\'s protective measures against malicious AI models |
Threat
|
|
★★★
|
 |
2025-02-07 11:20:00 |
Third-Party Risk Management Failures Expose UK Finance Sector (lien direct) |
Orange Cyberdefense found that over half of UK financial firms suffered at least one third-party attack in 2024, linked to significant gaps in risk management strategies
Orange Cyberdefense found that over half of UK financial firms suffered at least one third-party attack in 2024, linked to significant gaps in risk management strategies |
|
|
★★★
|
 |
2025-02-07 09:30:00 |
Cybercriminals Weaponize Graphics Files in Phishing Attacks (lien direct) |
Sophos has observed cybercriminals ramping up their use of graphics files as part of email phishing attacks to bypass conventional security protections
Sophos has observed cybercriminals ramping up their use of graphics files as part of email phishing attacks to bypass conventional security protections |
|
|
★★★
|
 |
2025-02-06 17:15:00 |
Europol Cracks Down on Global Child Abuse Network “The Com” (lien direct) |
US and Europol dismantle neo-Nazi child abuse network in global crackdown against online exploitation
US and Europol dismantle neo-Nazi child abuse network in global crackdown against online exploitation |
|
|
★★
|
 |
2025-02-06 16:30:00 |
WordPress ASE Plugin Vulnerability Threatens Site Security (lien direct) |
Patchstack urges admins to patch new WordPress ASE plugin vulnerability that lets users restore previous admin privileges
Patchstack urges admins to patch new WordPress ASE plugin vulnerability that lets users restore previous admin privileges |
Vulnerability
|
|
★★
|
 |
2025-02-06 15:10:00 |
New UK Cyber Monitoring Centre Introduces \\'Richter Scale\\' for Cyber-Attacks (lien direct) |
This new independent non-profit was set up by the UK insurance industry to bring more transparency around cyber events
This new independent non-profit was set up by the UK insurance industry to bring more transparency around cyber events |
|
|
★★★
|
 |
2025-02-06 14:50:00 |
Lazarus Group Targets Bitdefender Researcher with LinkedIn Recruiting Scam (lien direct) |
A Bitdefender researcher was targeted by North Korea\'s Lazarus with the lure of a fake job offer
A Bitdefender researcher was targeted by North Korea\'s Lazarus with the lure of a fake job offer |
|
APT 38
|
★★★
|
 |
2025-02-06 10:30:00 |
NCSC Issues Guidance to Protect UK Research and Innovation (lien direct) |
The UK\'s National Cyber Security Centre has published a new set of resources for startups and researchers
The UK\'s National Cyber Security Centre has published a new set of resources for startups and researchers |
|
|
★★
|
 |
2025-02-06 10:00:00 |
Spanish Police Arrest Suspected NATO and US Army Hacker (lien direct) |
Spain\'s National Police force has arrested a suspected data thief who targeted government and military victims
Spain\'s National Police force has arrested a suspected data thief who targeted government and military victims |
Legislation
|
|
★★★
|
 |
2025-02-05 16:30:00 |
Sophisticated Phishing Campaign Targets Ukraine\\'s Largest Bank (lien direct) |
A new phishing attack by UAC-0006 has been discovered targeting PrivatBank with malicious files in password-protected archives to evade detection
A new phishing attack by UAC-0006 has been discovered targeting PrivatBank with malicious files in password-protected archives to evade detection |
|
|
★★★
|
 |
2025-02-05 15:55:00 |
Ransomware Payments Decline 35% as Victims Resist Demands (lien direct) |
Chainalysis found that ransomware payments fell significantly year-over-year despite a recorded increase in the number of ransomware events in 2024
Chainalysis found that ransomware payments fell significantly year-over-year despite a recorded increase in the number of ransomware events in 2024 |
Ransomware
|
|
★★★
|
 |
2025-02-05 14:00:00 |
Mobile Malware Targeting Indian Banks Exposes 50,000 Users (lien direct) |
Indian banking malware attack exposes 50,000 users, stealing financial data via SMS interception and phishing
Indian banking malware attack exposes 50,000 users, stealing financial data via SMS interception and phishing |
Malware
Mobile
|
|
★★★
|
 |
2025-02-05 11:00:00 |
Five Eyes Launch Guidance to Improve Edge Device Security (lien direct) |
The UK and its Five Eyes partners have launched new security guidance for edge device manufacturers and network defenders
The UK and its Five Eyes partners have launched new security guidance for edge device manufacturers and network defenders |
|
|
★★★
|
 |
2025-02-05 10:30:00 |
Cybercriminals Eye DeepSeek, Alibaba LLMs for Malware Development (lien direct) |
Check Point has observed cybercriminals toy with Alibaba\'s Qwen LLM to develop infostealers
Check Point has observed cybercriminals toy with Alibaba\'s Qwen LLM to develop infostealers |
Malware
|
|
★★
|
 |
2025-02-05 10:00:00 |
Destructive Attacks on Financial Institutions Surge (lien direct) |
Contrast Security reveals a 12.5% annual increase in destructive cyber-attacks on banks
Contrast Security reveals a 12.5% annual increase in destructive cyber-attacks on banks |
|
|
★★
|
 |
2025-02-04 14:30:00 |
DaggerFly-Linked Linux Malware Targets Network Appliances (lien direct) |
DaggerFly\'s Lunar Peek campaign is using a new malware strain, identified by FortiGuard Labs, to compromise Linux networks
DaggerFly\'s Lunar Peek campaign is using a new malware strain, identified by FortiGuard Labs, to compromise Linux networks |
Malware
|
|
★★★
|
 |
2025-02-04 14:00:00 |
Threefold Increase in Malware Targeting Credential Stores (lien direct) |
Picus Security reports infostealer surge after revealing credentials appear in 29% of malware
Picus Security reports infostealer surge after revealing credentials appear in 29% of malware |
Malware
|
|
★★★
|
 |
2025-02-04 14:00:00 |
Sophisticated Phishing Attack Bypasses Microsoft ADFS MFA (lien direct) |
A sophisticated phishing campaign targeting Microsoft ADFS has been observed, affecting more than 150 organizations
A sophisticated phishing campaign targeting Microsoft ADFS has been observed, affecting more than 150 organizations |
|
|
★★★
|
 |
2025-02-04 12:00:00 |
Surge in Infostealer Attacks Threatens EMEA Organizations\\' Data Security (lien direct) |
Check Point Research has found over 10 million stolen credentials associated with EMEA organizations exposed on cybercrime markets
Check Point Research has found over 10 million stolen credentials associated with EMEA organizations exposed on cybercrime markets |
|
|
★★★
|
 |
2025-02-04 11:20:00 |
Texas to Establish Cyber Command Amid “Dramatic” Rise in Attacks (lien direct) |
Texas Governor Greg Abbott announced a Cyber Command, designed to combat surging attacks on the state by nation-states and cybercriminals
Texas Governor Greg Abbott announced a Cyber Command, designed to combat surging attacks on the state by nation-states and cybercriminals |
|
|
★★★
|
 |
2025-02-04 09:45:00 |
Casio and Others Hit by Magento Web Skimmer Campaign (lien direct) |
Jscambler claims at least 17 sites have been infected with web skimmers, including Casio\'s
Jscambler claims at least 17 sites have been infected with web skimmers, including Casio\'s |
|
|
★★★
|
 |
2025-02-03 17:15:00 |
CISA Warns of Backdoor Vulnerability in Contec Patient Monitors (lien direct) |
CISA has identified a backdoor in Contec CMS8000 devices that could allow unauthorized access to patient data and disrupt monitoring functions
CISA has identified a backdoor in Contec CMS8000 devices that could allow unauthorized access to patient data and disrupt monitoring functions |
Vulnerability
|
|
★★★
|
 |
2025-02-03 16:30:00 |
High-profile X Accounts Targeted in Phishing Campaign (lien direct) |
Hackers hijack high-profile X accounts with phishing scams to steal credentials and promote fraudulent cryptocurrency schemes
Hackers hijack high-profile X accounts with phishing scams to steal credentials and promote fraudulent cryptocurrency schemes |
|
|
★★★
|
 |
2025-02-03 14:00:00 |
768 CVEs Exploited in the Wild in 2024 (lien direct) |
VulnCheck observed 768 public reports of CVEs exploited in the wild for the first time in 2024, a 20% rise compared to 2023
VulnCheck observed 768 public reports of CVEs exploited in the wild for the first time in 2024, a 20% rise compared to 2023 |
|
|
★★
|
 |
2025-02-03 10:30:00 |
European Police: Data Volumes and Deletion Hindering Investigations (lien direct) |
A new Europol report warns of major challenges accessing and analyzing data for cybercrime investigations
A new Europol report warns of major challenges accessing and analyzing data for cybercrime investigations |
Legislation
|
|
★★★
|
 |
2025-02-03 09:30:00 |
UK Announces “World-First” AI Security Standard (lien direct) |
The UK government has launched a new AI security code of practice it believes will become an ETSI standard
The UK government has launched a new AI security code of practice it believes will become an ETSI standard |
|
|
★★★
|
 |
2025-01-31 14:30:00 |
Threat Actors Target Public-Facing Apps for Initial Access (lien direct) |
Cisco Talos found that exploitation of public-facing applications made up 40% of incidents it observed in Q4 2024, marking a notable shift in initial access techniques
Cisco Talos found that exploitation of public-facing applications made up 40% of incidents it observed in Q4 2024, marking a notable shift in initial access techniques |
Threat
|
|
★★★
|
 |
2025-01-31 12:45:00 |
Tata Technologies Hit by Ransomware Attack (lien direct) |
The Indian tech giant temporarily suspended some of its IT services, which have now been restored
The Indian tech giant temporarily suspended some of its IT services, which have now been restored |
Ransomware
|
|
★★★
|
 |
2025-01-31 10:37:00 |
DeepSeek\\'s Flagship AI Model Under Fire for Security Vulnerabilities (lien direct) |
Cyber reports exposed major security flaws in DeepSeek\'s R1 LLM
Cyber reports exposed major security flaws in DeepSeek\'s R1 LLM |
Vulnerability
|
|
★★★
|
 |
2025-01-31 09:35:00 |
International Operation Dismantles Cracked and Nulled Cybercrime Hubs (lien direct) |
A global law enforcement operation has taken down infrastructure used by Cracked.io and Nulled.io, which provide cybercriminal tools and services
A global law enforcement operation has taken down infrastructure used by Cracked.io and Nulled.io, which provide cybercriminal tools and services |
Tool
Legislation
|
|
★★★★
|
 |
2025-01-30 17:15:00 |
Google Blocked 2.36 Million Policy-Violating Apps (lien direct) |
Google Play blocked 2.36 million policy-violating apps and banned 158,000 harmful developer accounts in 2024
Google Play blocked 2.36 million policy-violating apps and banned 158,000 harmful developer accounts in 2024 |
|
|
★★★
|
 |
2025-01-30 16:30:00 |
Attackers Increase Use of HTTP Clients for Account Takeovers (lien direct) |
HTTP client tools used to compromise Microsoft 365 environments with 78% of tenants targeted in 2024
HTTP client tools used to compromise Microsoft 365 environments with 78% of tenants targeted in 2024 |
Tool
|
|
★★★
|
 |
2025-01-30 14:00:00 |
Syncjacking Attack Enables Full Browser and Device Takeover (lien direct) |
SquareX researchers warn that browser syncjacking could lead to full browser and device hijacking
SquareX researchers warn that browser syncjacking could lead to full browser and device hijacking |
|
|
★★★
|
 |
2025-01-30 12:45:00 |
DeepSeek Exposed Database Leaks Sensitive Data (lien direct) |
Researchers at Wiz uncovered a publicly accessible database belonging to Chinese GenAI provider DeepSeek that leaked sensitive data, including chat history
Researchers at Wiz uncovered a publicly accessible database belonging to Chinese GenAI provider DeepSeek that leaked sensitive data, including chat history |
|
|
★★★
|
 |
2025-01-30 12:00:00 |
Ransomware Attack Disrupts Blood Donation Services in US (lien direct) |
New York Blood Center Enterprises revealed that it has been hit by a ransomware attack, disrupting activities and blood drives at its centers across the country
New York Blood Center Enterprises revealed that it has been hit by a ransomware attack, disrupting activities and blood drives at its centers across the country |
Ransomware
|
|
★★
|
 |
2025-01-30 11:15:00 |
UK Organizations Boosting Cybersecurity Budgets (lien direct) |
UK organizations are significantly increasing cybersecurity budgets, with a projected 31% growth in the next year
UK organizations are significantly increasing cybersecurity budgets, with a projected 31% growth in the next year |
|
|
★★
|
 |
2025-01-30 10:00:00 |
NCSC Calls on Vendors to Eradicate “Unforgivable” Vulnerabilities (lien direct) |
The UK\'s National Cyber Security Centre has released a new paper making it easier to assess if a flaw is “unforgivable”
The UK\'s National Cyber Security Centre has released a new paper making it easier to assess if a flaw is “unforgivable” |
Vulnerability
|
|
★★★
|
 |
2025-01-29 16:30:00 |
AI Surge Drives Record 1205% Increase in API Vulnerabilities (lien direct) |
AI-related API vulnerabilities surged 1,205% in 2024, with 99% tied to API flaws, according to a new report by Wallarm
AI-related API vulnerabilities surged 1,205% in 2024, with 99% tied to API flaws, according to a new report by Wallarm |
Vulnerability
|
|
★★★
|
 |
2025-01-29 16:00:00 |
Nation-State Hackers Abuse Gemini AI Tool (lien direct) |
Google highlighted significant abuse of its Gemini LLM tool by nation state actors to support malicious activities, including research and malware development
Google highlighted significant abuse of its Gemini LLM tool by nation state actors to support malicious activities, including research and malware development |
Malware
Tool
|
|
★★★
|