Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
|
2020-05-11 01:40:36 |
Microsoft and Intel project converts malware into images before analyzing it (lien direct) |
Microsoft and Intel Labs work on STAMINA, a new deep learning approach for detecting and classifying malware. |
Malware
|
|
|
|
2020-05-09 19:37:47 |
Microsoft adds protection against Reply-All email storms in Office 365 (lien direct) |
Redmond adds protection against massive "Reply-All" email storms after suffering two internal incidents in 2019 and 2020. |
|
|
|
|
2020-05-09 14:10:56 |
A hacker group is selling more than 73 million user records on the dark web (lien direct) |
Hacker group "ShinyHunters" is selling the data of 10 companies on a dark web cybercrime marketplace. |
|
|
|
|
2020-05-09 01:32:00 |
Black Hat and DEF CON security conferences to take place in a virtual format (lien direct) |
"Defcon is canceled" meme becomes reality. |
|
|
|
|
2020-05-09 00:20:15 |
US Marshals Service exposed prisoner details in security breach (lien direct) |
Security breach took place in December 2019 and was discovered by the DOJ's JSOC team. |
|
|
|
|
2020-05-08 20:31:00 |
Digital Ocean says it exposed customer data after it left an internal document online (lien direct) |
Digital Ocean says no customer servers were accessed following this security lapse. |
|
APT 32
|
|
|
2020-05-08 16:10:00 |
Cognizant expects to lose between $50m and $70m following ransomware attack (lien direct) |
Cognizant says April ransomware incident will negatively impact Q2 revenue. |
Ransomware
|
|
|
|
2020-05-08 05:10:53 |
Dating app MobiFriends silent on security breach impacting 3.6 million users (lien direct) |
The personal details of 3.68 million MobiFriends users have been posted online in April 2020. |
|
|
|
|
2020-05-08 02:12:37 |
Hacker gains access to a small number of Microsoft\'s private GitHub repos (lien direct) |
Hack considered harmless as the hacker did not gain access to the source code of any major Microsoft apps. |
Hack
|
|
★★★★★
|
|
2020-05-07 22:26:10 |
Microsoft: 150 million people are using passwordless logins each month (lien direct) |
Internally, 90% of Microsoft employees already use a passwordless authentication solution. |
|
|
|
|
2020-05-07 11:15:10 |
Major European private hospital operator struck by ransomware (lien direct) |
Fresenius says despite IT system disruption, patient care is carrying on as normal. |
Ransomware
|
|
|
|
2020-05-07 06:14:23 |
For 8 years, a hacker operated a massive IoT botnet just to download Anime videos (lien direct) |
The botnet consisted solely of D-Link NAS and NVR devices and the botnet peaked at 10,000 bots in 2015. |
|
|
|
|
2020-05-06 18:35:00 |
Samsung patches 0-click vulnerability impacting all smartphones sold since 2014 (lien direct) |
Samsung patched this month a critical bug discovered by Google security researchers. |
Vulnerability
|
|
|
|
2020-05-06 15:15:04 |
Hackers hide web skimmer behind a website\'s favicon (lien direct) |
Hackers created a fake image-hosting portal to hide a web skimming operation. |
|
|
|
|
2020-05-06 12:56:55 |
Search provider Algolia discloses security incident due to Salt vulnerability (lien direct) |
Algolia now joins the ranks of LineageOS, Ghost, Digicert, and Xen Orchestra. |
Vulnerability
|
|
|
|
2020-05-06 12:53:53 |
Facebook wipes out accounts linked to \'fringe conspiracy\' QAnon content (lien direct) |
The QAnon conspiracy theory movement surrounds US President Trump and bringing down the “deep state.” |
|
|
|
|
2020-05-06 10:20:34 |
Logistics giant Toll Group hit by ransomware for the second time in three months (lien direct) |
Toll says that it has no intention of bowing to blackmail. |
Ransomware
|
|
|
|
2020-05-06 01:00:45 |
Details of 44m Pakistani mobile users leaked online, part of bigger 115m cache (lien direct) |
The leak is already under investigation in Pakistan since last month, April 2020. |
|
|
|
|
2020-05-05 21:50:00 |
(Déjà vu) SAP notifying 9% of customers about security bugs in some cloud products (lien direct) |
SAP says an internal security review found issues with seven of its cloud products. |
|
|
|
|
2020-05-05 21:50:00 |
SAP notifying 9% of customers about mysterious cloud products security holes (lien direct) |
SAP says an internal security review found issues with seven of its cloud products. |
|
|
|
|
2020-05-05 18:27:55 |
A hacker group tried to hijack 900,000 WordPress sites over the last week (lien direct) |
Massive hacking operations causes a 30 times spike in bad traffic. |
|
|
|
|
2020-05-05 14:15:00 |
Europol arrests hackers behind Infinity Black hacker group (lien direct) |
Polish police arrests five hackers for selling stolen user credentials and hacking tools. |
|
|
|
|
2020-05-05 13:00:04 |
The Firefox password manager now tells you when you use leaked passwords (lien direct) |
The Firefox password manager also tells you when a website has suffered a security breach. |
|
|
|
|
2020-05-05 12:00:08 |
Enterprises throw money at cybersecurity but half of attacks are still a success (lien direct) |
Mandiant says that intrusions, policy evasion, and reconnaissance are commonplace in today's enterprise environments. |
|
|
|
|
2020-05-05 11:06:27 |
German authorities charge Russian hacker for 2015 Bundestag hack (lien direct) |
The same hacker was previously charged in the US in 2018 for hacking the DNC and WADA. |
Hack
|
|
|
|
2020-05-05 05:00:07 |
New Kaiji malware targets IoT devices via SSH brute-force attacks (lien direct) |
Researchers say the malware was coded by a Chinese developer for the sole purpose of launching DDoS attacks. |
Malware
|
|
|
|
2020-05-04 23:29:00 |
US financial industry regulator warns of widespread phishing campaign (lien direct) |
FINRA warns of phishing campaign aimed at stealing members' Microsoft Office or SharePoint passwords. |
|
|
|
|
2020-05-04 16:06:00 |
Academics turn PC power units into speakers to leak secrets from air-gapped systems (lien direct) |
POWER-SUPPLaY technique uses "singing capacitor" phenomenon for data exfiltration. |
|
|
|
|
2020-05-04 15:05:38 |
Microsoft warns of multiple malspam campaigns carrying malicious disk image files (lien direct) |
Microsoft: Threat group uses malware-laced ISO and IMG files to infect companies with a remote access trojan. |
Threat
|
|
|
|
2020-05-04 10:37:46 |
Hackers are targeting UK universities to steal coronavirus research, NCSC warns (lien direct) |
State-sponsored hackers from Russia, Iran, and China are suspected. |
|
|
|
|
2020-05-04 01:47:09 |
CursedChrome turns your browser into a hacker\'s proxy (lien direct) |
CursedChrome shows how hackers can take full control over your Chrome browser using just one extension. |
|
|
|
|
2020-05-03 17:46:00 |
Ghost blogging platform servers hacked and infected with crypto-miner (lien direct) |
Ghost platform got hacked via the same vulnerability that allowed hackers to breach LineageOS servers hours before. |
Vulnerability
|
|
|
|
2020-05-03 09:25:15 |
Hackers breach LineageOS servers via unpatched vulnerability (lien direct) |
LineageOS source code, OS builds, and signing keys were unaffected, developers said. |
Vulnerability
|
|
|
|
2020-05-03 00:02:35 |
UK NCSC to stop using \'whitelist\' and \'blacklist\' due to racial stereotyping (lien direct) |
UK cyber-security agency to use "allow list" and "deny list" on its website, going forward. |
|
|
|
|
2020-05-02 14:10:00 |
Hacker leaks 15 million records from Tokopedia, Indonesia\'s largest online store (lien direct) |
The Tokopedia data has been published on a well-known hacking forum. |
|
|
|
|
2020-05-01 18:26:58 |
Trump bans acquisition of foreign power grid equipment, citing hacking threats (lien direct) |
White House says foreign-made equipment "augments the ability of foreign adversaries to create and exploit vulnerabilities" in the US power grid. |
|
|
|
|
2020-05-01 14:42:18 |
New Firefox service will generate unique email aliases to enter in online forms (lien direct) |
Firefox Private Relay add-on to help users safeguard their email addresses from spammers. |
|
|
|
|
2020-05-01 11:55:00 |
Oracle warns of attacks against recently patched WebLogic security bug (lien direct) |
Oracle patched the bug last month but attacks began after proof-of-concept code was published on GitHub. |
|
|
|
|
2020-05-01 11:36:00 |
SaltStack Salt critical bugs allow data center, cloud server hijacking as root (lien direct) |
Researchers expect the vulnerabilities to be exploited in the wild within days. |
|
|
|
|
2020-05-01 10:22:09 |
Ninja Forms WordPress bug exposed over a million users to XSS attacks, website hijacking (lien direct) |
The severe XSS vulnerability permitted site takeover and visitor browser redirection to malicious websites. |
Vulnerability
|
|
|
|
2020-05-01 09:00:09 |
Dreambot malware operation goes silent (lien direct) |
Dreambot backend servers have gone down and no new samples have been spotted for weeks. |
Malware
|
|
|
|
2020-04-30 23:25:23 |
DHS CISA to provide DoH and DoT servers for government use (lien direct) |
Until official servers are available, government agencies told to disable DoH (DNS-over-HTTPS) and DoT (DNS-over-TLS) on their networks. |
|
|
|
|
2020-04-30 21:43:46 |
Ransomware mentioned in 1,000+ SEC filings over the past year (lien direct) |
A growing number of public companies have started listing ransomware as a forward-looking risk factor in their SEC documents. |
Ransomware
|
|
|
|
2020-04-30 14:02:08 |
Spear-phishing campaign compromises executives at 150+ companies (lien direct) |
PerSwaysion group appears to be formed of members based in Nigeria and South Africa. |
|
|
|
|
2020-04-30 13:28:10 |
Here\'s the NSA\'s guide for choosing a safe text chat and video conferencing service (lien direct) |
NSA publishes guidance on choosing a secure teleworking service. Assessed tools include Slack, Zoom, Signal, Skype, more. |
|
|
|
|
2020-04-30 10:00:09 |
Critical vulnerabilities in WordPress plugins lead to e-learning platform hijacking (lien direct) |
The most serious issues discovered can be used in remote code execution attacks. |
|
|
|
|
2020-04-30 09:02:29 |
Investors sue LabCorp over security failures in light of data breach, ransomware attack (lien direct) |
The lawsuit claims that the company's security posture led to investor losses. |
Ransomware
|
|
|
|
2020-04-30 04:00:04 |
This new Android mobile malware targets banks, financial services across Europe (lien direct) |
Researchers believe EventBot has the potential to become the “next big mobile threat.” |
Malware
|
|
|
|
2020-04-29 19:39:00 |
Google announces Chrome Web Store crackdown for August 2020 (lien direct) |
Google plans to remove a bunch of garbage and useless Chrome extensions from the Web Store. |
|
|
|
|
2020-04-29 17:17:48 |
Kaspersky: RDP brute-force attacks have gone up since start of COVID-19 (lien direct) |
RDP brute-force attack numbers rose in mid-March as quarantines were being imposed over the globe. |
|
|
|