Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2022-06-07 13:49:40 |
New Dragos OT-CERT Provides Free Industrial Cybersecurity Resources (lien direct) |
Industrial cybersecurity firm Dragos on Tuesday announced the launch of OT-CERT, a new initiative whose goal is to provide free cybersecurity resources for industrial asset owners and operators.
|
|
|
|
 |
2022-06-07 12:40:25 |
RSA Conference 2022 - Announcements Summary (Day 1) (lien direct) |
Hundreds of companies are showcasing their products and services this week at the 2022 edition of the RSA Conference in San Francisco.
|
|
|
|
 |
2022-06-07 12:23:05 |
4 Ways to Close the OT Cybersecurity Talent Gap (lien direct) |
We have a great challenge with the gap in cybersecurity jobs in general, with estimates ranging from 2.72 million to 3.5 million job openings in 2021.
|
|
|
|
 |
2022-06-07 10:34:33 |
Security Awareness Firm CybSafe Bags $28 Million in Series B Funding (lien direct) |
Security awareness provider CybSafe on Monday announced that it has raised $28 million in Series B funding, which brings the total raised by the company to $40 million.
The new investment round was led by Evolution Equity Partners, with participation from Emerald Development Managers, Hannover Digital Investments (HDI), and IQ Capital.
|
|
|
|
 |
2022-06-07 10:09:06 |
Google Patches Critical Android Vulnerabilities With June 2022 Updates (lien direct) |
Google this week announced that the latest Android patches resolve a total of 40 vulnerabilities, including several rated “critical.”
|
|
|
|
 |
2022-06-07 00:48:07 |
Musk Threatens to Walk Away From Twitter Deal (lien direct) |
|
|
|
|
 |
2022-06-06 19:39:13 |
Network Security Firm Perimeter 81 Closes $100 Million Funding Round (lien direct) |
Series C funding round brings company valuation to $1 billion
|
|
|
|
 |
2022-06-06 17:40:14 |
Threat Awareness Firm HackNotice Raises $7 Million (lien direct) |
Threat awareness startup HackNotice has raised $7 million in a Series A funding round led by Strategic Cyber Ventures and Lytical Ventures. The funding will primarily be used to build the team around an already mature product.
|
|
|
|
 |
2022-06-06 14:52:15 |
Critical Account Takeover Vulnerability Patched in GitLab Enterprise Edition (lien direct) |
DevOps platform GitLab has announced security updates that resolve multiple vulnerabilities, including a critical-severity bug leading to account takeover.
|
Vulnerability
Guideline
|
|
|
 |
2022-06-06 14:00:56 |
Apple Blocked 1.6 Million Risky, Vulnerable Apps in 2021 (lien direct) |
Apple says its App Store fraud prevention mechanisms last year stopped potentially fraudulent transactions totaling roughly $1.5 billion.
Throughout 2021, the company prevented more than 3.3 million stolen credit cards from making purchases in the App Store, and banned nearly 600,000 accounts from ever transacting again.
|
|
|
|
 |
2022-06-06 13:00:41 |
Personal Information of Over 30,000 Students Exposed in Unprotected Database (lien direct) |
The personal information of more than 30,000 students was found on an improperly secured Elasticsearch server, security researchers with SafetyDetectives report.
The server, the researchers say, was left connected to the Internet and did not require a password to allow access to the data within.
|
|
|
|
 |
2022-06-06 12:35:16 |
(Déjà vu) Cybersecurity M&A Roundup: 36 Deals Announced in May 2022 (lien direct) |
Thirty-six cybersecurity-related merger and acquisition (M&A) deals were announced in May 2022.
|
|
|
|
 |
2022-06-06 11:09:01 |
Feature: Beating Ransomware With Advanced Backup and Data Defense Technologies (lien direct) |
Type:
Story
Image:
Link:
Beating Ransomware With Advanced Backup and Data Defense Technologies
Beating Ransomware With Advanced Backup and Data Defense Technologies
|
Ransomware
|
|
|
 |
2022-06-06 11:02:40 |
Beating Ransomware With Advanced Backup and Data Defense Technologies (lien direct) |
Question: if we can mitigate file encryption ransomware with backup, can we mitigate double extortion by adding advanced PII protection through data encryption or tokenization?
|
Ransomware
|
|
|
 |
2022-06-06 10:53:20 |
Critical U-Boot Vulnerability Allows Rooting of Embedded Systems (lien direct) |
A critical vulnerability in the U-Boot boot loader could be exploited to write arbitrary data, which can allow an attacker to root Linux-based embedded systems, according to NCC Group.
|
Vulnerability
|
|
|
 |
2022-06-06 10:02:46 |
Atlassian Patches Confluence Zero-Day as Exploitation Attempts Surge (lien direct) |
Atlassian informed customers on Friday that it has released patches for the critical Confluence Server vulnerability that has been exploited in attacks. The announcement came just before cybersecurity organizations warned that exploitation attempts have spiked.
|
Vulnerability
|
|
|
 |
2022-06-06 09:15:39 |
Activists Say Cyber Agency Weakens Voting Tech Advisory (lien direct) |
The nation's leading cybersecurity agency released a final version Friday of an advisory it previously sent state officials on voting machine vulnerabilities in Georgia and other states that voting integrity activists say weakens a security recommendation on using barcodes to tally votes.
|
Guideline
|
|
|
 |
2022-06-03 18:02:33 |
Foxconn Confirms Ransomware Hit Factory in Mexico (lien direct) |
Electronics manufacturing giant Foxconn has confirmed that its Tijuana-based Foxconn Baja California factory was hit by ransomware in late May.
Specialized in consumer electronics, industrial operations, and medical devices, the facility employs roughly 5,000 people.
|
Ransomware
|
|
|
 |
2022-06-03 16:34:02 |
Ten Eleven Ventures Raises $600M Fund for Cybersecurity Investments (lien direct) |
Ten Eleven Ventures has joined a growing list of cybersecurity-focused venture capital firms raising new funds to invest in startups solving information security problems.
|
|
|
|
 |
2022-06-03 16:16:28 |
Digital Experience Monitoring: More Important Than Ever (lien direct) |
With the shift to work-from-anywhere, many organizations have seen an increase in scale of remote work locations that their IT team must support. At the same time, users expect consistent and good quality experiences no matter where they are. Ultimately, users want their technology to work, and they don't care what happens in the backend if they can reliably and consistently access the resources they need.
|
|
|
★★★★
|
 |
2022-06-03 14:41:58 |
Chainguard Bags Massive $50M Series A for Supply Chain Security (lien direct) |
Venture capital powerhouse Sequoia is leading a massive $50 million early-stage investment in Chainguard, a startup created by a team of ex-Google software engineers to "make software supply chain secure by default."
|
Guideline
|
|
|
 |
2022-06-03 14:41:29 |
Deadly Secret: Electronic Warfare Shapes Russia-Ukraine War (lien direct) |
|
|
|
|
 |
2022-06-03 12:17:57 |
Lebanese Threat Actor \'Polonium\' Targets Israeli Organizations (lien direct) |
Microsoft says it has uncovered and disabled the OneDrive infrastructure of a Lebanon-based threat actor targeting organizations in Israel.
|
Threat
|
|
|
 |
2022-06-03 10:50:29 |
TXOne Unveils New OT Network Security Appliance for SMB Manufacturers (lien direct) |
TXOne Networks this week unveiled a new security appliance designed to help small and medium-sized manufacturers protect their operational technology (OT) networks against cyber threats.
|
|
|
|
 |
2022-06-03 10:00:06 |
Atlassian Confluence Servers Hacked via Zero-Day Vulnerability (lien direct) |
Atlassian scrambling to patch Confluence Server zero-day exploited by multiple threat groups
Atlassian customers have been warned that hackers are exploiting a Confluence Server zero-day vulnerability. The flaw is currently unpatched and it appears to have been exploited by multiple threat groups.
|
Vulnerability
Threat
|
|
|
 |
2022-06-02 17:46:42 |
Report: Clipminer Botnet Operators Rake in $1.7 Million (lien direct) |
Cybercriminals operating the Clipminer botnet have raked in at least $1.7 million in illicit gains to date, according to an estimate by security researchers at Symantec.
|
|
|
★★★
|
 |
2022-06-02 17:32:28 |
Exiled Iran Group Claims Tehran Hacking Attack (lien direct) |
An exiled Iranian opposition group Thursday claimed a hacking attack which it said temporarily took control of dozens of websites run by Tehran's municipality and thousands of the capital's surveillance cameras.
|
|
|
★★★★
|
 |
2022-06-02 16:06:11 |
Logging and Security Analytics Firm Devo Banks New $100 Million Investment (lien direct) |
Devo Technology, a late-stage startup building technology for data logging and security analytics, has closed a new $100 million funding round that pushes its valuation in the $2 billion range.
|
|
|
|
 |
2022-06-02 15:00:17 |
Millions of Budget Smartphones With UNISOC Chips Vulnerable to Remote DoS Attacks (lien direct) |
Millions of budget smartphones that use UNISOC chipsets could have their communications remotely disrupted by hackers due to a critical vulnerability discovered recently by researchers at cybersecurity firm Check Point.
|
Vulnerability
|
|
|
 |
2022-06-02 15:00:11 |
Dutch Used Pegasus Spyware on Most-Wanted Criminal: Report (lien direct) |
Dutch secret services have used the controversial Israeli spyware known as Pegasus to hack targets including the country's most-wanted criminal, a news report said on Thursday.
|
Hack
|
|
|
 |
2022-06-02 13:43:48 |
Cloud Data Security Startup Laminar Raises $30 Million (lien direct) |
Public cloud data protection startup Laminar today announced that it has raised an additional $30 million in an extended Series A funding round.
|
|
|
|
 |
2022-06-02 13:19:03 |
US Authorities Seize Domains Selling Stolen Data, DDoS Services (lien direct) |
US law enforcement agencies this week announced the seizure of three domains that sold compromised personal information and facilitated cyberattacks on victim networks.
|
|
|
|
 |
2022-06-02 12:52:06 |
Leaks Show Conti Ransomware Group Working on Firmware Exploits (lien direct) |
The recent Conti leaks show that the notorious ransomware group has been working on firmware exploits targeting the Intel Management Engine (ME) system.
|
Ransomware
|
|
★★★★★
|
 |
2022-06-02 12:38:45 |
US Warns Organizations of \'Karakurt\' Cyber Extortion Group (lien direct) |
Several government agencies in the United States have issued a joint cybersecurity alert to warn organizations about a data extortion group named “Karakurt.”
|
|
|
|
 |
2022-06-02 12:30:00 |
Cloud Security Startup JupiterOne Lands $70 Million at \'Unicorn\' Valuation (lien direct) |
Cloud security startup JupiterOne has raised $70 million in a new round of financing that values the company north of $1 billion.
|
|
|
|
 |
2022-06-02 12:18:34 |
Coralogix Raises $142 Million for Data Observability Platform (lien direct) |
Data analytics company Coralogix announced on Wednesday that it has closed a $142 million Series D funding round, which brings the total raised by the firm to $238 million.
|
|
|
|
 |
2022-06-02 11:11:24 |
Automation. Where do We Go from Here? (lien direct) |
What's next in the evolution of security automation and orchestration?
|
|
|
|
 |
2022-06-02 10:45:08 |
Access Brokers and Ransomware-as-a-Service Gangs Tighten Relationships (lien direct) |
Access brokers sell compromised network access to help ransomware gangs launch attacks
|
Ransomware
|
|
|
 |
2022-06-02 10:04:13 |
Cybercriminals Hold 1,200 Unsecured Elasticsearch Databases for Ransom (lien direct) |
Secureworks warns of a new attack campaign targeting internet-exposed, improperly secured Elasticsearch databases to replace their data with a ransom note.
|
|
|
|
 |
2022-06-01 22:02:37 |
Paladin Capital Closes $372 Million Cyber Fund II (lien direct) |
Cybersecurity and technology investment firm Paladin Capital Group announced on Wednesday that it has closed its Cyber Fund II with over $370 million.
|
|
|
|
 |
2022-06-01 19:41:25 |
Video: A Civil Discourse on SBOMs (lien direct) |
|
|
|
|
 |
2022-06-01 18:38:52 |
Wray: FBI Blocked Planned Cyberattack on Children\'s Hospital (lien direct) |
The FBI thwarted a planned cyberattack on a children's hospital in Boston that was to have been carried out by hackers sponsored by the Iranian government, FBI Director Christopher Wray said Wednesday.
|
|
|
|
 |
2022-06-01 15:32:22 |
ReliaQuest to Buy Digital Shadows for $160 Million (lien direct) |
Fresh off a $300 million funding round and a billion-dollar valuation, security operations vendor ReliaQuest on Wednesday announced plans to acquire threat intelligence startup Digital Shadows in a deal valued at $160 million.
|
Threat
|
|
|
 |
2022-06-01 14:56:36 |
Unpatched Vulnerability Exposes Horde Webmail Servers to Attacks (lien direct) |
The Horde webmail software is affected by a serious vulnerability that can be exploited to gain complete access to an organization's emails.
|
Vulnerability
|
|
★★★
|
 |
2022-06-01 11:44:02 |
Europol Announces Takedown of FluBot Mobile Spyware (lien direct) |
Europol today announced the takedown of FluBot, a piece of mobile malware targeting both Android and iOS devices that has been fast-spreading via SMS messages.
|
Malware
|
|
|
 |
2022-06-01 11:35:03 |
Ransomware Group Claims to Have Breached Foxconn Factory (lien direct) |
Cybercriminals claim to have breached the systems of an important Foxconn factory in Mexico and they are threatening to leak stolen files if the company doesn't pay a ransom.
|
|
|
|
 |
2022-06-01 11:17:24 |
Vendor Refuses to Remove Backdoor Account That Can Facilitate Attacks on Industrial Firms (lien direct) |
Korenix JetPort industrial serial device servers have a backdoor account that could be abused by malicious hackers in attacks aimed at industrial organizations, but the vendor says the account is needed for customer support.
|
|
|
|
 |
2022-06-01 11:16:56 |
Researchers Devise Attack Using IoT and IT to Deliver Ransomware Against OT (lien direct) |
Critical industries must prepare themselves for a new wave of ransomware attacks specifically targeting OT
|
Ransomware
|
|
|
 |
2022-06-01 10:21:24 |
Chinese Threat Actors Exploiting \'Follina\' Vulnerability (lien direct) |
The Windows zero-day vulnerability identified as Follina and CVE-2022-30190 is being exploited in an increasing number of attacks, including by a Chinese APT group.
|
Vulnerability
Threat
|
|
|
 |
2022-06-01 08:40:59 |
Scanning Finds Over 3.6 Million Internet-Accessible MySQL Servers (lien direct) |
The Shadowserver Foundation warns of the security risk associated with more than 3.6 million internet-exposed MySQL servers that accept connections on port 3306/TCP.
|
|
|
|