Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
|
2021-09-26 10:00:00 |
Microsoft will disable Basic Auth in Exchange Online in October 2022 (lien direct) |
Microsoft announced that Basic Authentication will be turned off for all protocols in all tenants starting October 1st, 2022, to protect millions of Exchange Online users. [...] |
|
|
|
|
2021-09-25 12:27:30 |
Windows 10 emergency update resolves KB5005565 app freezes, crashes (lien direct) |
Microsoft has released an emergency fix for freezing and crashing app issues caused by September's KB5005565 and KB5005101 cumulative updates. [...] |
|
|
|
|
2021-09-25 11:16:08 |
Microsoft WPBT flaw lets hackers install rootkits on Windows devices (lien direct) |
Security researchers have found a flaw in the Microsoft Windows Platform Binary Table (WPBT) that could be exploited in easy attacks to install rootkits on all Windows computers shipped since 2012. [...] |
|
|
|
|
2021-09-25 10:00:00 |
Bitcoin.org hackers steal $17,000 in \'double your cash\' scam (lien direct) |
This week, threat actors hijacked Bitcoin.org, the authentic website of the Bitcoin project, and altered parts of the website to push a cryptocurrency giveaway scam that unfortunately some users fell for. Although the hack lasted for less than a day, hackers seem to have walked away with a little over $17,000. [...] |
Hack
Threat
|
|
|
|
2021-09-24 19:27:03 |
The Week in Ransomware - September 24th 2021 - Targeting crypto (lien direct) |
This week's biggest news is the USA sanctioning a crypto exchange used by ransomware gangs to convert cryptocurrency into fiat currency. By targeting rogue exchanges, the US government is hoping to disrupt ransomware's payment system. [...] |
Ransomware
|
|
|
|
2021-09-24 17:10:17 |
United Health Centers ransomware attack claimed by Vice Society (lien direct) |
California-based United Health Centers suffered a ransomware attack that reportedly disrupted all of their locations and resulted in patient data theft. [...] |
Ransomware
|
|
|
|
2021-09-24 14:57:40 |
Google apologizes for scaring Cloud users with \'past due\' emails (lien direct) |
Google has apologized for a wave of emails warning Google Cloud Platform, Firebase, or API customers that their accounts may be suspended for a past due balance. [...] |
|
|
|
|
2021-09-24 14:04:04 |
Hackers exploiting critical VMware vCenter CVE-2021-22005 bug (lien direct) |
Exploit code that could be used for remote code execution on VMware vCenter Server vulnerable to CVE-2021-22005 has been released today and attackers are already using it. [...] |
|
|
|
|
2021-09-24 14:04:04 |
Exploits imminent for critical VMware vCenter CVE-2021-22005 bug (lien direct) |
Exploit code that could be used to achieve remote code execution on VMware vCenter Server vulnerable to CVE-2021-22005 is currently spreading online. [...] |
|
|
|
|
2021-09-24 13:33:19 |
Emergency Google Chrome update fixes zero-day exploited in the wild (lien direct) |
Google has released Chrome 94.0.4606.61 for Windows, Mac, and Linux, an emergency update addressing a high-severity zero-day vulnerability exploited in the wild. [...] |
|
|
|
|
2021-09-24 13:03:52 |
Microsoft rushes to register Autodiscover domains leaking credentials (lien direct) |
Microsoft is rushing to register Internet domains used to steal Windows credentials sent from faulty implementations of the Microsoft Exchange Autodiscover protocol. [...] |
|
|
|
|
2021-09-24 12:11:30 |
EU officially blames Russia for \'Ghostwriter\' hacking activities (lien direct) |
The European Union has officially linked Russia to a hacking operation known as Ghostwriter that targets high-profile EU officials, journalists, and the general public. [...] |
|
|
|
|
2021-09-24 07:13:20 |
(Déjà vu) Researcher drops three iOS zero-days that Apple refused to fix (lien direct) |
Proof-of-concept exploit code for three iOS zero-day vulnerabilities (and a fourth one patched in July) was published on GitHub after Apple delayed patching and failed to credit the researcher. [...] |
Patching
|
|
|
|
2021-09-24 07:13:20 |
Exploit code released for three iOS 0-days that Apple failed to patch (lien direct) |
Proof-of-concept exploit code for three iOS zero-day vulnerabilities (and a fourth one patched in July) was published on GitHub after Apple delayed patching and failed to credit the researcher. [...] |
Patching
|
|
|
|
2021-09-24 03:23:23 |
Cisco fixes highly critical vulnerabilities in IOS XE Software (lien direct) |
Cisco has patched three critical vulnerabilities affecting components in its IOS XE internetworking operating system powering routers and wireless controllers, or products running with a specific configuration. [...] |
|
|
|
|
2021-09-24 02:19:57 |
SonicWall fixes critical bug allowing SMA 100 device takeover (lien direct) |
SonicWall has patched a critical security flaw impacting several Secure Mobile Access (SMA) 100 series products that can let unauthenticated attackers remotely gain admin access on targeted devices. [...] |
|
|
|
|
2021-09-23 18:08:25 |
Google: Manifest V2 Chrome extensions to stop working in 2023 (lien direct) |
Google has shared the phase-out timeline for Manifest V2 Chrome extensions and its plans to bring Manifest V3 to full feature parity. [...] |
|
|
|
|
2021-09-23 17:34:05 |
(Déjà vu) Microsoft gets Windows 11 ready for release with new build (lien direct) |
Microsoft has moved Windows 11 to the Windows Insider 'Release' channel in anticipation of its upcoming launch on October 5th. [...] |
|
|
|
|
2021-09-23 17:34:05 |
Windows 11 is now available in the Insider \'Release\' channel (lien direct) |
Microsoft has moved Windows 11 to the Windows Insider 'Release' channel in anticipation of its upcoming launch on October 5th. [...] |
|
|
|
|
2021-09-23 15:50:32 |
Hacking group used ProxyLogon exploits to breach hotels worldwide (lien direct) |
A newly discovered cyberespionage group has been targeting hotels worldwide around the world since at least 2019, as well as higher-profile targets such as governments, international organizations, law firms, and engineering companies. [...] |
|
|
|
|
2021-09-23 14:23:32 |
(Déjà vu) Apple patches new zero-day bug used to hack iPhones and Macs (lien direct) |
Apple has released security updates to fix a zero-day vulnerability exploited in the wild by attackers to hack into iPhones and Macs running older iOS and macOS versions. [...] |
Hack
|
|
|
|
2021-09-23 14:23:32 |
Apple fixes another zero-day used to deploy NSO iPhone spyware (lien direct) |
Apple has released security updates to fix three zero-day vulnerabilities exploited in the wild by attackers to hack into iPhones and Macs running older iOS and macOS versions. [...] |
Hack
|
|
|
|
2021-09-23 12:24:41 |
Malware devs trick Windows validation with malformed certs (lien direct) |
Google researchers spotted malware developers creating malformed code signatures seen as valid in Windows to bypass security software. [...] |
Malware
|
|
|
|
2021-09-23 09:30:22 |
Google tests if \'Chrome/100.0\' user agent breaks websites (lien direct) |
Google is testing whether changing the Chrome user agent to three-digit 'Chrome/100' will cause loss of functionality on websites that are expecting a two digit version number. [...] |
|
|
|
|
2021-09-23 02:26:00 |
REVil ransomware devs added a backdoor to cheat affiliates (lien direct) |
Cybercriminals are slowly realizing that the REvil ransomware operators have been hijacking ransom negotiations, to cut affiliates out of payments. [...] |
Ransomware
|
|
|
|
2021-09-22 18:03:52 |
Microsoft announces new Windows 11-powered Surface devices (lien direct) |
At its Surface event, Microsoft announced four new devices - Surface Duo 2, Surface Go 3, Surface Laptop Studio, and Surface Pro 8. [...] |
|
|
|
|
2021-09-22 17:44:24 |
Hackers are scanning for VMware CVE-2021-22005 targets, patch now! (lien direct) |
Threat actors have already started targeting Internet-exposed VMware vCenter servers unpatched against a critical arbitrary file upload vulnerability patched yesterday that could lead to remote code execution. [...] |
Vulnerability
Threat
Guideline
|
|
|
|
2021-09-22 13:24:43 |
FBI, CISA, and NSA warn of escalating Conti ransomware attacks (lien direct) |
CISA, the Federal Bureau of Investigation (FBI), and the National Security Agency (NSA) warned today of an increased number of Conti ransomware attacks targeting US organizations. [...] |
Ransomware
|
|
|
|
2021-09-22 12:59:05 |
Apple will disable insecure TLS in future iOS, macOS releases (lien direct) |
Apple has deprecated the insecure Transport Layer Security (TLS) 1.0 and 1.1 protocols in recently launched iOS and macOS versions and plans to remove support in future releases altogether. [...] |
|
|
|
|
2021-09-22 12:09:02 |
Second farming cooperative shut down by ransomware this week (lien direct) |
Minnesota farming supply cooperative Crystal Valley has suffered a ransomware attack, making it the second farming cooperative attacked this weekend. [...] |
Ransomware
|
|
|
|
2021-09-22 09:43:39 |
Phishing-as-a-service operation uses double theft to boost profits (lien direct) |
Microsoft says BulletProofLink, a large-scale phishing-as-a-service operation it spotted while investigating recent phishing attacks, is the driving force behind many phishing campaigns that have targeted many corporate organizations lately. [...] |
|
|
|
|
2021-09-22 08:05:54 |
RaidForums data marketplace accidentally exposes private staff page (lien direct) |
Underground marketplace and hacker forum, Raidforums, recently exposed internal pages from its website, meant for staff members only. Raidforums is a data breach marketplace where threat actors often sell or leak illicitly obtained data dumps. [...] |
Threat
|
|
★★★★★
|
|
2021-09-21 16:01:41 |
(Déjà vu) New macOS zero-day bug lets attackers run commands remotely (lien direct) |
Security researchers disclosed today a new vulnerability in Apple's macOS Finder, which makes it possible for attackers to run arbitrary commands on Macs running any macOS version up to the latest release, Big Sur. [...] |
Vulnerability
|
|
|
|
2021-09-21 16:01:41 |
New zero-day bug lets attackers run arbitrary commands on Macs (lien direct) |
Security researchers disclosed today a new vulnerability in Apple's macOS Finder, which makes it possible for attackers to run arbitrary commands on Macs running any macOS version up to the latest release, Big Sur. [...] |
Vulnerability
|
|
|
|
2021-09-21 14:54:13 |
Microsoft PC Health Check adds detailed Windows 11 compatibility info (lien direct) |
Microsoft has released an updated PC Health Check tool that provides detailed information about whether a device's hardware is compatible with Windows 11. [...] |
Tool
|
|
|
|
2021-09-21 13:40:19 |
VMware warns of critical bug in default vCenter Server installs (lien direct) |
VMware warns customers to immediately patch a critical arbitrary file upload vulnerability in the Analytics service, impacting all appliances running default vCenter Server 6.7 and 7.0 deployments. [...] |
Vulnerability
|
|
|
|
2021-09-21 12:35:14 |
US sanctions cryptocurrency exchange used by ransomware gangs (lien direct) |
The US Treasury Department announced the first-ever sanctions against a cryptocurrency exchange, the Russian-linked Suex, for facilitating ransom transactions for ransomware gangs and helping them evade sanctions. [...] |
Ransomware
|
|
|
|
2021-09-21 11:54:56 |
Russian state hackers use new TinyTurla malware as secondary backdoor (lien direct) |
Russian state-sponsored hackers known as the Turla APT group have been using new malware over the past year that acted as a secondary persistence method on compromised systems in the U.S., Germany, and Afghanistan. [...] |
Malware
|
|
★★★★
|
|
2021-09-21 11:52:10 |
Atlassian Trello is down - second outage this week (lien direct) |
Trello is down for many users around the world, second time this week. Trello is a web-based TODO list-style platform owned by Atlassian, makers of Jira and Confluence. [...] |
|
|
★★★★
|
|
2021-09-21 11:24:30 |
Netgear fixes dangerous code execution bug in multiple routers (lien direct) |
Netgear has fixed a high severity remote code execution (RCE) vulnerability found in the Circle parental control service, which runs with root permissions on almost a dozen modern Small Offices/Home Offices (SOHO) Netgear routers. [...] |
Vulnerability
|
|
|
|
2021-09-21 03:25:06 |
Marketron marketing services hit by Blackmatter ransomware (lien direct) |
BlackMatter ransomware gang over the weekend hit Marketron, a business software solutions provider that serves more than 6,000 customers in the media industry. [...] |
Ransomware
|
|
|
|
2021-09-20 19:03:16 |
How to fix the Windows 0x0000011b network printing error (lien direct) |
A Windows security update released in January and now fully enforced this month is causing Windows users to experience 0x0000011b errors when printing to network printers. [...] |
|
|
|
|
2021-09-20 16:15:36 |
Hacked sites push TeamViewer using fake expired certificate alert (lien direct) |
Threat actors are compromising Windows IIS servers to add expired certificate notification pages that prompt visitors to download a malicious fake installer. [...] |
Threat
|
|
|
|
2021-09-20 14:07:54 |
US farmer cooperative hit by $5.9M BlackMatter ransomware attack (lien direct) |
U.S. farmers cooperative NEW Cooperative has suffered a BlackMatter ransomware attack demanding $5.9 million not to leak stolen data and provide a decryptor. [...] |
Ransomware
|
|
|
|
2021-09-20 13:34:57 |
Microsoft investigates Outlook issues with security keys, search (lien direct) |
Microsoft is investigating several issues impacting Outlook customers and leading to problems related to security keys, search results, and more. [...] |
Guideline
|
|
|
|
2021-09-20 11:39:25 |
VoIP.ms phone services disrupted by DDoS extortion attack (lien direct) |
Threat actors are targeting voice-over-Internet provider VoIP.ms with a DDoS attack and extorting the company to stop the assault that's severely disrupting the company's operation. [...] |
Threat
|
|
|
|
2021-09-20 09:43:58 |
Republican Governors Association email server breached by state hackers (lien direct) |
The Republican Governors Association (RGA) revealed in data breach notification letters sent last week that its servers were breached during an extensive Microsoft Exchange hacking campaign that hit organizations worldwide in March 2021. [...] |
Data Breach
|
|
★★
|
|
2021-09-20 09:37:45 |
EventBuilder misconfiguration exposes Microsoft event registrant data (lien direct) |
Personal details of registrants to virtual events available through the EventBuilder platform have stayed accessible over the public internet, open to indexing by various engines. [...] |
|
|
★★★
|
|
2021-09-20 08:41:14 |
Europol links Italian Mafia to million-dollar phishing scheme (lien direct) |
In collaboration with Europol and Eurojust, European law enforcement dismantled an extensive network of cybercriminals linked to the Italian Mafia that was able to defraud their victims of roughly €10 million ($11.7 million) last year alone. [...] |
|
|
|
|
2021-09-19 12:58:30 |
New "Elon Musk Club" crypto giveaway scam promoted via email (lien direct) |
A new Elon Musk-themed cryptocurrency giveaway scam called the "Elon Musk Mutual Aid Fund" or "Elon Musk Club" is being promoted through spam email campaigns that started over the past few weeks. [...] |
Spam
|
|
|