Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2022-10-13 10:05:10 |
What the Uber Hack can teach us about navigating IT Security (lien direct) |
The recent Uber cyberattack shows us the myriad tactics employed by threat actors to breach corporate networks. Learn more about these tactics used and how to navigate IT Security. [...] |
Hack
Threat
|
Uber
Uber
|
|
 |
2022-10-11 12:59:44 |
Microsoft Exchange servers hacked to deploy LockBit ransomware (lien direct) |
Microsoft is investigating reports of a new zero-day bug abused to hack Exchange servers which were later used to launch Lockbit ransomware attacks. [...] |
Ransomware
Hack
|
|
|
 |
2022-10-03 14:35:40 |
Russian retail chain \'DNS\' confirms hack after data leaked online (lien direct) |
Russian retail chain 'DNS' (Digital Network System) disclosed yesterday that they suffered a data breach that allegedly exposed the personal information of 16 million customers and employees. [...] |
Data Breach
Hack
|
|
★★★
|
 |
2022-09-27 14:55:43 |
Lazarus hackers drop macOS malware via Crypto.com job offers (lien direct) |
The North Korean Lazarus hacking group is now using fake 'Crypto.com' job offers to hack developers and artists in the crypto space, likely with a long-term goal of stealing digital assets and cryptocurrency. [...] |
Malware
Hack
|
APT 38
|
|
 |
2022-09-19 14:26:20 |
Uber links breach to Lapsus$ group, blames contractor for hack (lien direct) |
Uber believes the hacker behind last week's breach is affiliated with the Lapsus$ extortion group, known for breaching other high-profile tech companies such as Microsoft, Cisco, Nvidia, Samsung, and Okta. [...] |
Hack
|
Uber
Uber
|
|
 |
2022-09-19 10:13:55 |
Revolut hack exposes data of 50,000 users, fuels new phishing wave (lien direct) |
Revolut is sending out notices of a data breach to a small percentage of impacted users, informing them of a security incident where an unauthorized third party accessed internal data. [...] |
Data Breach
Hack
|
|
|
 |
2022-09-18 16:23:07 |
GTA 6 source code and videos leaked after Rockstar Games hack (lien direct) |
Grand Theft Auto 6 gameplay videos and source code have been leaked after a hacker allegedly breached Rockstar Game's Slack server and Confluence wiki. [...] |
Hack
|
|
|
 |
2022-09-12 14:20:48 |
Apple fixes eighth zero-day used to hack iPhones and Macs this year (lien direct) |
Apple has released security updates to address the eighth zero-day vulnerability used in attacks against iPhones and Macs since the start of the year. [...] |
Hack
Vulnerability
|
|
|
 |
2022-09-05 09:52:03 |
TikTok denies hack following leak of user data, source code (lien direct) |
TikTok denies recent claims it was breached, and source code and user data were stolen, telling BleepingComputer that data posted to a hacking forum is "completely unrelated" to the company. [...] |
Hack
|
|
|
 |
2022-09-02 13:23:29 |
Samsung discloses data breach after July hack (lien direct) |
Electronics giant Samsung has confirmed a new data breach today after some of its U.S. systems were hacked to steal customer data. [...] |
Data Breach
Hack
|
|
|
 |
2022-08-28 13:15:05 |
(Déjà vu) Okta one-time MFA passcodes exposed in Twilio cyberattack (lien direct) |
The threat actor behind the Twilio hack used their access to steal one-time passwords (OTPs) delivered over SMS to from customers of Okta identity and access management company. [...] |
Hack
Threat
|
|
|
 |
2022-08-28 13:15:05 |
Twilio breach let hackers see Okta\'s one-time MFA passwords (lien direct) |
The threat actor behind the Twilio hack used their access to steal one-time passwords (OTPs) delivered over SMS to from customers of Okta identity and access management company. [...] |
Hack
Threat
|
|
|
 |
2022-08-26 15:30:34 |
DoorDash discloses new data breach tied to Twilio hack (lien direct) |
Food delivery firm DoorDash has disclosed a data breach exposing customer and employee data that is linked to the recent cyberattack on Twilio. [...] |
Data Breach
Hack
|
|
|
 |
2022-08-24 11:53:36 |
Hackers use AiTM attack to monitor Microsoft 365 accounts for BEC scams (lien direct) |
A new business email compromise (BEC) campaign has been discovered combining sophisticated spear-phishing with Adversary-in-The-Middle (AiTM) tactics to hack corporate executives' Microsoft 365 accounts, even those protected by MFA. [...] |
Hack
|
|
|
 |
2022-08-19 11:10:55 |
Russian APT29 hackers abuse Azure services to hack Microsoft 365 users (lien direct) |
The state-backed Russian cyberespionage group Cozy Bear has been particularly prolific in 2022, targeting Microsoft 365 accounts in NATO countries and attempting to access foreign policy information. [...] |
Hack
|
APT 29
|
|
 |
2022-08-18 15:49:45 |
Apple releases Safari 15.6.1 to fix zero-day bug used in attacks (lien direct) |
Apple has released Safari 15.6.1 for macOS Big Sur and Catalina to fix a zero-day vulnerability exploited in the wild to hack Macs. [...] |
Hack
Vulnerability
|
|
|
 |
2022-08-17 18:35:26 |
Apple security updates fix 2 zero-days used to hack iPhones, Macs (lien direct) |
Apple has released emergency security updates today to fix two zero-day vulnerabilities previously exploited by attackers to hack iPhones, iPads, or Macs. [...] |
Hack
|
|
|
 |
2022-08-15 17:46:24 |
Twilio hack exposed Signal phone numbers of 1,900 users (lien direct) |
Phone numbers of close to 1,900 Signal users were exposed in the data breach Twilio cloud communications company suffered at the beginning of the month. [...] |
Data Breach
Hack
|
|
|
 |
2022-07-13 16:50:18 |
Bandai Namco confirms hack after ALPHV ransomware data leak threat (lien direct) |
Game publishing giant Bandai Namco has confirmed that they suffered a cyberattack that may have resulted in the theft of customers' personal data. [...] |
Ransomware
Hack
Threat
|
|
|
 |
2022-07-12 14:03:27 |
Hackers stole $620 million from Axie Infinity via fake job interviews (lien direct) |
The hack that caused Axie Infinity losses of $620 million in crypto started with a fake job offer from North Korean hackers to one of the game's developers. [...] |
Hack
|
|
|
 |
2022-06-28 13:18:14 |
AMD investigates RansomHouse hack claims, theft of 450GB data (lien direct) |
Chip manufacturer AMD says they are investigating a cyberattack after threat actors claimed to have stolen 450 GB of data from the company last year. [...] |
Hack
Threat
|
|
|
 |
2022-06-28 10:02:01 |
Breaking Down the Zola Hack and Why Password Reuse is so Dangerous (lien direct) |
In May of 2022, the wedding planning and registry site Zola suffered a major security breach due to a credential stuffing attack. due to password reuse. Here's what happened and what could have been done to prevent the attack. [...] |
Hack
|
|
|
 |
2022-06-27 11:39:17 |
Microsoft Exchange bug abused to hack building automation systems (lien direct) |
A Chinese-speaking threat actor has hacked into the building automation systems (used to control HVAC, fire, and security functions) of several Asian organizations to backdoor their networks and gain access to more secured areas in their networks. [...] |
Hack
Threat
|
|
|
 |
2022-06-23 15:28:48 |
CISA: Log4Shell exploits still being used to hack VMware servers (lien direct) |
CISA warned today that threat actors including state-backed hacking groups are still targeting VMware Horizon and Unified Access Gateway (UAG) servers using the Log4Shell (CVE-2021-44228) remote code execution vulnerability. [...] |
Hack
Threat
|
|
|
 |
2022-06-23 06:05:37 |
Conti ransomware hacking spree breaches over 40 orgs in a month (lien direct) |
The Conti cybercrime syndicate runs one of the most aggressive ransomware operations and has grown highly organized, to the point that affiliates were able to hack more than 40 companies in a little over a month. [...] |
Ransomware
Hack
|
|
|
 |
2022-06-04 15:23:45 |
Bored Ape Yacht Club, Otherside NFTs stolen in Discord server hack (lien direct) |
Hackers reportedly stole over $257,000 in Ethereum and thirty-two NFTs after the Yuga Lab's Bored Ape Yacht Club and Otherside Metaverse Discord servers were compromised to post a phishing scam. [...] |
Hack
|
|
|
 |
2022-06-02 15:01:51 |
Ransomware gang now hacks corporate websites to show ransom notes (lien direct) |
A ransomware gang is taking extortion to a new level by publicly hacking corporate websites to publicly display ransom notes. [...] |
Ransomware
Hack
|
|
|
 |
2022-05-23 13:02:01 |
Hackers can hack your online accounts before you even register them (lien direct) |
Security researchers have revealed that hackers can hijack your online accounts before you even register them by exploiting flaws that have been already been fixed on popular websites, including Instagram, LinkedIn, Zoom, WordPress, and Dropbox. [...] |
Hack
|
|
|
 |
2022-05-20 07:53:39 |
Russian Sberbank says it\'s facing massive waves of DDoS attacks (lien direct) |
Sberbank's vice president and director of cybersecurity, Sergei Lebed, has told participants of the Positive Hack Days forum that the company is going through a period of unprecedented targeting by hackers. [...] |
Hack
|
|
|
 |
2022-05-19 13:45:00 |
Microsoft detects massive surge in Linux XorDDoS malware activity (lien direct) |
A stealthy and modular malware used to hack into Linux devices and build a DDoS botnet has seen a massive 254% increase in activity during the last six months, as Microsoft revealed today. [...] |
Malware
Hack
|
|
★★★★★
|
 |
2022-05-16 14:33:32 |
Apple emergency update fixes zero-day used to hack Macs, Watches (lien direct) |
Apple has released security updates to address a zero-day vulnerability that threat actors can exploit in attacks targeting Macs and Apple Watch devices. [...] |
Hack
Vulnerability
Threat
|
|
|
 |
2022-02-10 14:11:02 |
(Déjà vu) Apple patches new zero-day exploited to hack iPhones, iPads, Macs (lien direct) |
Apple has released security updates to fix a new zero-day vulnerability exploited in the wild by attackers to hack iPhones, iPads, and Macs. [...] |
Hack
|
|
|
 |
2022-02-08 12:51:37 |
US seizes $3.6 billion stolen in 2016 Bitfinex cryptoexchange hack (lien direct) |
The US Department of Justice announced that law enforcement seized billions worth of cryptocurrency linked to the 2016 Bitfinex cryptocurrency exchange hack. [...] |
Hack
|
|
|
 |
2022-02-04 09:03:26 |
News Corp discloses hack from "persistent" nation state cyber attacks (lien direct) |
American media and publishing giant News Corp has disclosed today that it was the target of a "persistent" cyberattack. The attack discovered sometime this January, reportedly allowed threat actors to access emails and documents of some News Corp employees, including journalists. [...] |
Hack
|
|
|
 |
2022-01-26 14:39:31 |
Apple fixes new zero-day exploited to hack macOS, iOS devices (lien direct) |
Apple has released security updates to fix two zero-day vulnerabilities, with one publicly disclosed and the other exploited in the wild by attackers to hack into iPhones and Macs. [...] |
Hack
|
|
|
 |
2022-01-20 04:10:00 |
483 Crypto.com accounts compromised in $34 million hack (lien direct) |
Crypto.com has confirmed that a multi-million dollar cyberattack led to the compromise of 483 of its customer accounts. Although, the company's CEO stresses that customer funds are not at risk. Crypto.com is reportedly the world's third-largest cryptocurrency trading platform. [...] |
Hack
|
|
|
 |
2022-01-11 06:24:43 |
Night Sky ransomware uses Log4j bug to hack VMware Horizon servers (lien direct) |
The Night Sky ransomware gang has started to exploit the critical CVE-2021-4422 vulnerability in the Log4j logging library, also known as Log4Shell, to gain access to VMware Horizon systems. [...] |
Ransomware
Hack
Vulnerability
|
|
|
 |
2022-01-04 12:07:08 |
UScellular discloses data breach after billing system hack (lien direct) |
UScellular, self-described as the fourth-largest wireless carrier in the US, has disclosed a data breach after the company's billing system was hacked in December 2021. [...] |
Data Breach
Hack
|
|
|
 |
2021-12-29 07:07:07 |
Fintech firm hit by log4j hack refuses to pay $5 million ransom (lien direct) |
One of the largest Vietnamese crypto trading platforms, ONUS, recently suffered a cyber attack on its payment system running a vulnerable Log4j version. Soon enough, threat actors approached ONUS to extort $5 million and threatened to publish the customer data should ONUS refuse to comply. [...] |
Hack
|
|
|
 |
2021-12-17 10:00:00 |
Conti ransomware uses Log4j bug to hack VMware vCenter servers (lien direct) |
Conti ransomware operation is using the critical Log4Shell exploit to gain rapid access to internal VMware vCenter Server instances and encrypt virtual machines. [...] |
Ransomware
Hack
|
|
|
 |
2021-12-06 13:46:47 |
France warns of Nobelium cyberspies attacking French orgs (lien direct) |
The French national cyber-security agency ANSSI said today that the Russian-backed Nobelium hacking group behind last year's SolarWinds hack has been targeting French organizations since February 2021. [...] |
Hack
|
|
|
 |
2021-11-29 09:40:21 |
Panasonic discloses data breach after network hack (lien direct) |
Japanese multinational conglomerate Panasonic disclosed a security breach after unknown threat actors gained access to servers on its network this month. [...] |
Data Breach
Hack
Threat
|
|
|
 |
2021-11-22 11:43:08 |
GoDaddy hack causes data breach affecting 1.2 million customers (lien direct) |
GoDaddy said in a data breach notification published today that the data of up to 1.2 million of its customers was exposed after hackers gained access to the company's Managed WordPress hosting environment. [...] |
Data Breach
Hack
|
|
|
 |
2021-11-10 12:08:04 |
Lazarus hackers target researchers with trojanized IDA Pro (lien direct) |
A North Korean state-sponsored hacking group known as Lazarus is again trying to hack security researchers, this time with a trojanized pirated version of the popular IDA Pro reverse engineering application. [...] |
Hack
|
APT 38
APT 28
|
|
 |
2021-10-27 13:26:12 |
Twitter employees required to use security keys after 2020 hack (lien direct) |
Twitter rolled out security keys to its entire workforce and made two-factor authentication (2FA) mandatory for accessing internal systems following last year's hack. [...] |
Hack
|
|
|
 |
2021-10-25 04:37:22 |
Microsoft: Russian SVR hacked at least 14 IT supply chain firms since May (lien direct) |
Microsoft says the Russian-backed Nobelium threat group behind last year's SolarWinds hack is still targeting the global IT supply chain, with 140 resellers and technology service providers attacked and at least 14 breached since May 2021. [...] |
Hack
|
|
|
 |
2021-10-19 09:17:45 |
Man gets 7 years in prison for hacking 65K health care employees (lien direct) |
Justin Sean Johnson, also known as TheDearthStar and Dearthy Star, was sentenced this week to seen years in prison for the 2014 hack of the health care provider and insurer University of Pittsburgh Medical Center (UPMC). [...] |
Hack
|
|
|
 |
2021-09-25 10:00:00 |
Bitcoin.org hackers steal $17,000 in \'double your cash\' scam (lien direct) |
This week, threat actors hijacked Bitcoin.org, the authentic website of the Bitcoin project, and altered parts of the website to push a cryptocurrency giveaway scam that unfortunately some users fell for. Although the hack lasted for less than a day, hackers seem to have walked away with a little over $17,000. [...] |
Hack
Threat
|
|
|
 |
2021-09-23 14:23:32 |
(Déjà vu) Apple patches new zero-day bug used to hack iPhones and Macs (lien direct) |
Apple has released security updates to fix a zero-day vulnerability exploited in the wild by attackers to hack into iPhones and Macs running older iOS and macOS versions. [...] |
Hack
|
|
|
 |
2021-09-23 14:23:32 |
Apple fixes another zero-day used to deploy NSO iPhone spyware (lien direct) |
Apple has released security updates to fix three zero-day vulnerabilities exploited in the wild by attackers to hack into iPhones and Macs running older iOS and macOS versions. [...] |
Hack
|
|
|