Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2025-01-29 14:45:00 |
New Hellcat Ransomware Gang Employs Humiliation Tactics (lien direct) |
Cato Networks highlighted how the recently emerged HellCat ransomware group is using novel psychological tactics to court attention and pressurize victims
Cato Networks highlighted how the recently emerged HellCat ransomware group is using novel psychological tactics to court attention and pressurize victims |
Ransomware
|
|
★★★
|
 |
2025-01-29 14:00:00 |
Threat Actors Exploit Government Websites for Phishing (lien direct) |
Cybercriminals exploit government websites using open redirects and phishing tactics, bypassing secure email gateway protections
Cybercriminals exploit government websites using open redirects and phishing tactics, bypassing secure email gateway protections |
Threat
|
|
★★★
|
 |
2025-01-29 12:00:00 |
Chinese GenAI Startup DeepSeek Sparks Global Privacy Debate (lien direct) |
Government agencies and privacy watchdogs have started investigating the Chinese AI chatbot provider over data privacy concerns
Government agencies and privacy watchdogs have started investigating the Chinese AI chatbot provider over data privacy concerns |
|
|
★★★
|
 |
2025-01-29 10:30:00 |
Breakout Time Accelerates 22% as Cyber-Attacks Speed Up (lien direct) |
ReliaQuest warns threat actor innovation and infostealer activity helped to accelerate breakout time by 22% in 2024
ReliaQuest warns threat actor innovation and infostealer activity helped to accelerate breakout time by 22% in 2024 |
Threat
|
|
★★★
|
 |
2025-01-29 09:30:00 |
Scores of Critical UK Government IT Systems Have Major Security Holes (lien direct) |
The National Audit Office warns of major gaps in cyber resilience across UK government departments
The National Audit Office warns of major gaps in cyber resilience across UK government departments |
|
|
★★
|
 |
2025-01-28 17:00:00 |
ENGlobal Cyber-Attack Exposes Sensitive Data (lien direct) |
Energy contractor ENGlobal reported that sensitive personal data was stolen by threat actors, with the incident disrupting operations for six weeks
Energy contractor ENGlobal reported that sensitive personal data was stolen by threat actors, with the incident disrupting operations for six weeks |
Threat
|
|
★★★
|
 |
2025-01-28 16:30:00 |
Lynx Ransomware Group Unveiled with Sophisticated Affiliate Program (lien direct) |
Group-IB researchers have exposed the highly organized affiliate platform and sophisticated operations of the Lynx Ransomware-as-a-Service group
Group-IB researchers have exposed the highly organized affiliate platform and sophisticated operations of the Lynx Ransomware-as-a-Service group |
Ransomware
|
|
★★★
|
 |
2025-01-28 14:00:00 |
API Supply Chain Attacks Put Millions of Airline Users at Risk (lien direct) |
An API supply-chain attack affecting a popular online travel booking service put millions of airline users at risk
An API supply-chain attack affecting a popular online travel booking service put millions of airline users at risk |
|
|
★★
|
 |
2025-01-28 14:00:00 |
58% of Ransomware Victims Forced to Shut Down Operations (lien direct) |
A Ponemon Institute survey highlighted the growing impact of ransomware attacks on victims\' revenue and reputation
A Ponemon Institute survey highlighted the growing impact of ransomware attacks on victims\' revenue and reputation |
Ransomware
|
|
★★
|
 |
2025-01-28 12:45:00 |
Mega Data Breaches Push US Victim Count to 1.7 Billion (lien direct) |
The number of data breach victims increased 312% annually to exceed 1.7 billion in 2024, according to the ITRC 2024 Annual Data Breach Report
The number of data breach victims increased 312% annually to exceed 1.7 billion in 2024, according to the ITRC 2024 Annual Data Breach Report |
Data Breach
|
|
★★
|
 |
2025-01-28 11:45:00 |
EU Sanctions Three Russians For 2020 Cyber-Attack on Estonia (lien direct) |
The three Russian hackers are believed to be part of Unit 29155 of the GRU, also known as Cadet Blizzard, Ember Bear and Ruinous Ursa
The three Russian hackers are believed to be part of Unit 29155 of the GRU, also known as Cadet Blizzard, Ember Bear and Ruinous Ursa |
|
|
★★★
|
 |
2025-01-28 09:30:00 |
British Vishing-as-a-Service Trio Sentenced (lien direct) |
Three men have been sentenced after pleading guilty to running an account hijacking service for fraudsters
Three men have been sentenced after pleading guilty to running an account hijacking service for fraudsters |
|
|
★★
|
 |
2025-01-27 16:30:00 |
Hidden Text Salting Disrupts Brand Name Detection Systems (lien direct) |
A new phishing tactic has been identified by Cisco Talos, using hidden text salting to evade email security measures
A new phishing tactic has been identified by Cisco Talos, using hidden text salting to evade email security measures |
|
|
★★★
|
 |
2025-01-27 14:00:00 |
New Phishing Campaign Targets Mobile Devices with Malicious PDFs (lien direct) |
A novel phishing campaign identified by Zimperium targets mobile users with malicious PDFs, impersonating USPS to steal credentials
A novel phishing campaign identified by Zimperium targets mobile users with malicious PDFs, impersonating USPS to steal credentials |
Mobile
|
|
★★★★
|
 |
2025-01-27 14:00:00 |
SaaS Breaches Skyrocket 300% as Traditional Defenses Fall Short (lien direct) |
Obsidian found that threat actors are focusing on SaaS applications to steal sensitive data, with most organizations\' security measures not set up to deal with these attacks
Obsidian found that threat actors are focusing on SaaS applications to steal sensitive data, with most organizations\' security measures not set up to deal with these attacks |
Threat
Cloud
|
|
★★★★
|
 |
2025-01-27 12:00:00 |
CISOs Boost Crisis Simulation Budgets Amid High-Profile Cyber-Attacks (lien direct) |
74% of CISOs plan to increase their cyber crisis simulation budgets in 2025
74% of CISOs plan to increase their cyber crisis simulation budgets in 2025 |
|
|
★★
|
 |
2025-01-27 11:00:00 |
Subaru Bug Enabled Remote Vehicle Tracking and Hijacking (lien direct) |
A now-patched vulnerability could have enabled threat actors to remotely control Subaru cars
A now-patched vulnerability could have enabled threat actors to remotely control Subaru cars |
Vulnerability
Threat
|
|
★★★
|
 |
2025-01-27 10:15:00 |
Change Healthcare Breach Almost Doubles in Size to 190 Million Victims (lien direct) |
Change Healthcare has claimed 190 million customers were affected by a mega-breach last year
Change Healthcare has claimed 190 million customers were affected by a mega-breach last year |
Medical
|
|
★★★
|
 |
2025-01-24 14:30:00 |
AWS Announces £5m Grant for Cyber Education in the UK (lien direct) |
Amazon Web Services has launched its Cyber Education Grant Program in the UK
Amazon Web Services has launched its Cyber Education Grant Program in the UK |
|
|
★★
|
 |
2025-01-24 12:15:00 |
Russian Scammers Target Crypto Influencers with Infostealers (lien direct) |
Crazy Evil, a group of crypto scammers, exploit NFTs and cryptocurrencies with malware targeting influencers and tech professionals
Crazy Evil, a group of crypto scammers, exploit NFTs and cryptocurrencies with malware targeting influencers and tech professionals |
Malware
Threat
|
|
★★★
|
 |
2025-01-24 11:05:00 |
North Korean IT Workers Holding Data Hostage for Extortion, FBI Warns (lien direct) |
A new FBI advisory warned that North Korean IT worker schemes have escalated their activities in recent months to include data extortion
A new FBI advisory warned that North Korean IT worker schemes have escalated their activities in recent months to include data extortion |
|
|
★★★
|
 |
2025-01-24 09:15:00 |
Ransomware Gangs Linked by Shared Code and Ransom Notes (lien direct) |
SentinelOne researchers highlighted similarities in the approaches used by the HellCat and Morpheus ransomware groups, suggesting shared infrastructure
SentinelOne researchers highlighted similarities in the approaches used by the HellCat and Morpheus ransomware groups, suggesting shared infrastructure |
Ransomware
|
|
★★★
|
 |
2025-01-23 16:30:00 |
Chained Vulnerabilities Exploited in Ivanti Cloud Service Appliances (lien direct) |
Threat actors chained Ivanti CSA vulnerabilities for RCE, credential theft & webshell deployment
Threat actors chained Ivanti CSA vulnerabilities for RCE, credential theft & webshell deployment |
Vulnerability
Threat
Cloud
|
|
★★★
|
 |
2025-01-23 15:30:00 |
Bookmakers Ramp Up Efforts to Combat Arbitrage Betting Fraud (lien direct) |
Arbitrage betting fraud rises, forcing bookmakers to adopt stricter measures against automated scams
Arbitrage betting fraud rises, forcing bookmakers to adopt stricter measures against automated scams |
|
|
★★★
|
 |
2025-01-23 13:00:00 |
CISOs Dramatically Increase Boardroom Influence but Still Lack Soft Skills (lien direct) |
Splunk reveals that 82% of CISOs now report directly to the CEO, but many lack EQ
Splunk reveals that 82% of CISOs now report directly to the CEO, but many lack EQ |
|
|
★★★
|
 |
2025-01-23 12:15:00 |
Cisco Fixes Critical Vulnerability in Meeting Management (lien direct) |
The network equipment giant urged customers to patch immediately
The network equipment giant urged customers to patch immediately |
Vulnerability
|
|
★★★
|
 |
2025-01-23 11:30:00 |
New GhostGPT AI Chatbot Facilitates Malware Creation and Phishing (lien direct) |
Cybercriminals are selling access to the malicious GenAI chatbot via Telegram, providing rapid assistance for a range of nefarious activities, according to Abnormal Security
Cybercriminals are selling access to the malicious GenAI chatbot via Telegram, providing rapid assistance for a range of nefarious activities, according to Abnormal Security |
Malware
|
|
★★★
|
 |
2025-01-23 10:55:00 |
Trump Pardons Silk Road Founder Ulbricht (lien direct) |
President Trump has pardoned the founder of original dark web marketplace Silk Road
President Trump has pardoned the founder of original dark web marketplace Silk Road |
|
|
★★★★
|
 |
2025-01-22 17:01:00 |
PlushDaemon APT Targeted South Korean VPN Software (lien direct) |
PlushDaemon APT hacked South Korean VPN software with SlowStepper backdoor as part of a 2023 espionage campaign
PlushDaemon APT hacked South Korean VPN software with SlowStepper backdoor as part of a 2023 espionage campaign |
|
|
★★★
|
 |
2025-01-22 15:45:00 |
Tycoon 2FA Phishing Kit Upgraded to Bypass Security Measures (lien direct) |
Threat researchers analyzed the updated Tycoon 2FA phishing kit, which bypasses MFA
Threat researchers analyzed the updated Tycoon 2FA phishing kit, which bypasses MFA |
Threat
|
|
★★★
|
 |
2025-01-22 14:10:00 |
73% of UK Education Sector Hit by Cyber-Attacks in Past Five Years (lien direct) |
New ESET research reveals that 73% of UK educational institutions experienced at least one cyber-attack or breach in the past five years
New ESET research reveals that 73% of UK educational institutions experienced at least one cyber-attack or breach in the past five years |
|
|
★★★
|
 |
2025-01-22 13:00:00 |
Ransomware Attacks Surge to Record High in December 2024 (lien direct) |
NCC Group observed 574 global ransomware attacks in December, the highest monthly volume it has recorded
NCC Group observed 574 global ransomware attacks in December, the highest monthly volume it has recorded |
Ransomware
|
|
★★
|
 |
2025-01-22 12:00:00 |
Major Cybersecurity Vendors\\' Credentials Found on Dark Web (lien direct) |
Cyble has found thousands of security vendors\' credentials on the dark web, likely pulled from infostealer logs
Cyble has found thousands of security vendors\' credentials on the dark web, likely pulled from infostealer logs |
|
|
★★★
|
 |
2025-01-22 11:10:00 |
Account Compromise and Phishing Top Healthcare Security Incidents (lien direct) |
Netwrix claims 84% of healthcare organizations detected a cyber-attack in the past year
Netwrix claims 84% of healthcare organizations detected a cyber-attack in the past year |
Medical
|
|
★★★
|
 |
2025-01-22 10:15:00 |
Cloudflare Mitigates Record-Breaking 5.6Tbps DDoS Attack (lien direct) |
Cloudflare warns of a surge in hyper-volumetric DDoS after revealing it stopped a massive 5.6Tbps attack
Cloudflare warns of a surge in hyper-volumetric DDoS after revealing it stopped a massive 5.6Tbps attack |
|
|
★★★★
|
 |
2025-01-21 17:00:00 |
New Mirai Malware Variant Targets AVTECH Cameras, Huawei Routers (lien direct) |
Murdoc_Botnet used Mirai malware to exploit IoT vulnerabilities, targeting devices globally
Murdoc_Botnet used Mirai malware to exploit IoT vulnerabilities, targeting devices globally |
Malware
Vulnerability
Threat
|
|
★★★
|
 |
2025-01-21 16:25:00 |
UK\\'s New Digital IDs Raise Security and Privacy Fears (lien direct) |
Security experts have outlined security and privacy concerns around the UK government\'s GOV.UK Wallet, which will allow citizens to store all their ID documents in a single place
Security experts have outlined security and privacy concerns around the UK government\'s GOV.UK Wallet, which will allow citizens to store all their ID documents in a single place |
|
|
★★★
|
 |
2025-01-21 15:45:00 |
Phishing Risks Rise as Zendesk Subdomains Facilitate Attacks (lien direct) |
A CloudSEK report revealed Zendesk\'s platform can be exploited for phishing and investment scams
A CloudSEK report revealed Zendesk\'s platform can be exploited for phishing and investment scams |
|
|
★★★
|
 |
2025-01-21 13:50:00 |
GDPR Fines Total €1.2bn in 2024 (lien direct) |
Data from DLA Piper showed a 33% year-on-year fall in GDPR fines issued in Europe in 2024, with total penalties reaching €1.2bn
Data from DLA Piper showed a 33% year-on-year fall in GDPR fines issued in Europe in 2024, with total penalties reaching €1.2bn |
|
|
★★★
|
 |
2025-01-21 12:45:00 |
Oracle To Address 320 Vulnerabilities in January Patch Update (lien direct) |
Critical flaws include those in Oracle Supply Chain products
Critical flaws include those in Oracle Supply Chain products |
Vulnerability
|
|
★★★
|
 |
2025-01-21 11:30:00 |
Russian Ransomware Groups Deploy Email Bombing and Teams Vishing (lien direct) |
Sophos has warned of IT impersonation vishing attacks designed to remotely deploy ransomware
Sophos has warned of IT impersonation vishing attacks designed to remotely deploy ransomware |
Ransomware
|
|
★★★
|
 |
2025-01-21 09:30:00 |
Most European Privacy Teams Are Understaffed and Underfunded (lien direct) |
ISACA research claims privacy budgets are set to decline further in 2025
ISACA research claims privacy budgets are set to decline further in 2025 |
|
|
★★★
|
 |
2025-01-20 16:40:00 |
HPE Launches Investigation After Hacker Claims Data Breach (lien direct) |
HPE is investigating claims of data breach by hacker IntelBroker, who offered stolen files for sale
HPE is investigating claims of data breach by hacker IntelBroker, who offered stolen files for sale |
Data Breach
|
|
★★★
|
 |
2025-01-20 16:05:00 |
Indian APT Group DONOT Misuses App for Intelligence Gathering (lien direct) |
Android apps, linked to APT group DONOT, disguised as a chat platform for intelligence gathering
Android apps, linked to APT group DONOT, disguised as a chat platform for intelligence gathering |
Mobile
|
|
★★★
|
 |
2025-01-20 13:30:00 |
Ukraine\\'s State Registers Restored Following Cyber-Attack (lien direct) |
The December 2024 cyber-attack on the country\'s state registers, was attributed to Russian military intelligence services
The December 2024 cyber-attack on the country\'s state registers, was attributed to Russian military intelligence services |
|
|
★★★
|
 |
2025-01-20 12:00:00 |
US Sanctions Chinese Hackers for Treasury, Telecom Breaches (lien direct) |
The US has issued sanctions against an individual and a company involved in recent high-profile compromises of government officials by Chinese state-affiliated hackers
The US has issued sanctions against an individual and a company involved in recent high-profile compromises of government officials by Chinese state-affiliated hackers |
|
|
★★★
|
 |
2025-01-20 11:00:00 |
Former CIA Analyst Pleads Guilty to Sharing Top Secret Files (lien direct) |
CIA analysts Asif William Rahman has pleaded guilty to sharing classified documents about an Israeli attack
CIA analysts Asif William Rahman has pleaded guilty to sharing classified documents about an Israeli attack |
|
|
★★★
|
 |
2025-01-20 09:40:00 |
Data on Half a Million Hotel Guests Exposed After Otelier Breach (lien direct) |
At least half a million accounts have been compromised after a breach at hotel management software firm Otelier
At least half a million accounts have been compromised after a breach at hotel management software firm Otelier |
|
|
★★★
|
 |
2025-01-17 16:16:00 |
US Supreme Court Gives Green Light to TikTok Ban (lien direct) |
The Supreme Court has upheld a law that could potentially ban TikTok in the US
The Supreme Court has upheld a law that could potentially ban TikTok in the US |
|
|
★★★
|
 |
2025-01-17 15:30:00 |
Lazarus Group Targets Developers in New Data Theft Campaign (lien direct) |
SecurityScorecard identified a new campaign in which the North Korean Lazarus group aims to steal source code, secrets and cryptocurrency wallet keys from developer environments
SecurityScorecard identified a new campaign in which the North Korean Lazarus group aims to steal source code, secrets and cryptocurrency wallet keys from developer environments |
|
APT 38
|
★★★
|