www.secnews.physaphae.fr This is the RSS 2.0 feed from www.secnews.physaphae.fr. IT's a simple agragated flow of multiple articles soruces. Liste of sources, can be found on www.secnews.physaphae.fr. 2025-05-10T16:34:30+00:00 www.secnews.physaphae.fr Bleeping Computer - Magazine Américain Les packages NuGet malveillants abusent de msbuild pour installer des logiciels malveillants<br>Malicious NuGet packages abuse MSBuild to install malware A new NuGet typosquatting campaign pushes malicious packages that abuse Visual Studio\'s MSBuild integration to execute code and install malware stealthily. [...]]]> 2023-10-31T10:23:46+00:00 https://www.bleepingcomputer.com/news/security/malicious-nuget-packages-abuse-msbuild-to-install-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8403523 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Exploit publié pour Critical Cisco iOS XE Flaw, de nombreux hôtes sont toujours piratés<br>Exploit released for critical Cisco IOS XE flaw, many hosts still hacked Public exploit code is now available for the critical Cisco IOS XE vulnerability tracked as CVE-2023-20198 that was leveraged as a zero-day to hack tens of thousands of devices. [...]]]> 2023-10-30T23:09:43+00:00 https://www.bleepingcomputer.com/news/security/exploit-released-for-critical-cisco-ios-xe-flaw-many-hosts-still-hacked/ www.secnews.physaphae.fr/article.php?IdArticle=8403268 False Hack,Vulnerability,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain BREADE LASTPASS LIENS AU VOL DE 4,4 millions de dollars en crypto<br>LastPass breach linked to theft of $4.4 million in crypto Hackers have stolen $4.4 million in cryptocurrency on October 25th using private keys and passphrases stored in stolen LastPass databases, according to research by crypto fraud researchers who have been researching similar incidents. [...]]]> 2023-10-30T18:46:52+00:00 https://www.bleepingcomputer.com/news/security/lastpass-breach-linked-to-theft-of-44-million-in-crypto/ www.secnews.physaphae.fr/article.php?IdArticle=8403169 False None LastPass,LastPass 4.0000000000000000 Bleeping Computer - Magazine Américain La SEC poursuit Solarwinds pour les investisseurs trompeurs avant 2020 Hack<br>SEC sues SolarWinds for misleading investors before 2020 hack The U.S. Securities and Exchange Commission (SEC) today charged SolarWinds with defrauding investors by allegedly concealing cybersecurity defense issues before a December 2020 linked to APT29, the Russian Foreign Intelligence Service (SVR) hacking division. [...]]]> 2023-10-30T17:54:13+00:00 https://www.bleepingcomputer.com/news/security/sec-sues-solarwinds-for-misleading-investors-before-2020-hack/ www.secnews.physaphae.fr/article.php?IdArticle=8403150 False Hack Solardwinds,APT 29 3.0000000000000000 Bleeping Computer - Magazine Américain La FTC ordonne aux sociétés financières non bancaires de signaler les violations en 30 jours<br>FTC orders non-bank financial firms to report breaches in 30 days The U.S. Federal Trade Commission (FTC) has amended the Safeguards Rules, mandating that all non-banking financial institutions report data breach incidents within 30 days. [...]]]> 2023-10-30T15:57:54+00:00 https://www.bleepingcomputer.com/news/security/ftc-orders-non-bank-financial-firms-to-report-breaches-in-30-days/ www.secnews.physaphae.fr/article.php?IdArticle=8403071 False Data Breach,Legislation None 3.0000000000000000 Bleeping Computer - Magazine Américain Les nouveaux logiciels malveillants Bibi-Linux ciblent les organisations israéliennes dans des attaques destructrices<br>New BiBi-Linux wiper malware targets Israeli orgs in destructive attacks A new malware wiper known as BiBi-Linux is being used to destroy data in attacks targeting Linux systems belonging to Israeli companies. [...]]]> 2023-10-30T12:53:04+00:00 https://www.bleepingcomputer.com/news/security/new-bibi-linux-wiper-malware-targets-israeli-orgs-in-destructive-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8402898 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Huawei, Vivo Phones Tag App Google App comme logiciel malveillant Trojansm-Pa<br>Huawei, Vivo phones tag Google app as TrojanSMS-PA malware Huawei, Honor, and Vivo smartphones and tablets are displaying strange \'Security threat\' alerts urging the deletion of the Google app, warning that it is detected as the \'TrojanSMS-PA\' malware. [...]]]> 2023-10-30T10:47:00+00:00 https://www.bleepingcomputer.com/news/security/huawei-vivo-phones-tag-google-app-as-trojansms-pa-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8402852 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Hackerone a payé des pirates éthiques de plus de 300 millions de dollars en primes de bug<br>HackerOne paid ethical hackers over $300 million in bug bounties HackerOne has announced that its bug bounty programs have awarded over $300 million in rewards to ethical hackers and vulnerability researchers since the platform\'s inception. [...]]]> 2023-10-28T11:17:34+00:00 https://www.bleepingcomputer.com/news/security/hackerone-paid-ethical-hackers-over-300-million-in-bug-bounties/ www.secnews.physaphae.fr/article.php?IdArticle=8402024 False Vulnerability,Studies None 4.0000000000000000 Bleeping Computer - Magazine Américain Les pirates de Lazarus ont violé Dev à plusieurs reprises pour déployer des logiciels malveillants SignBt<br>Lazarus hackers breached dev repeatedly to deploy SIGNBT malware The North Korean Lazarus hacking group repeatedly compromised a software vendor using flaws in vulnerable software despite multiple patches and warnings being made available by the developer. [...]]]> 2023-10-27T12:15:29+00:00 https://www.bleepingcomputer.com/news/security/lazarus-hackers-breached-dev-repeatedly-to-deploy-signbt-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8401514 False Malware APT 38,APT 38 3.0000000000000000 Bleeping Computer - Magazine Américain Windows 10 KB5031445 Aperçu Mise à jour Correction de la fuite de mémoire CTFMON.exe, 9 numéros<br>Windows 10 KB5031445 preview update fixes ctfmon.exe memory leak, 9 issues Microsoft has released the optional KB5031445 Preview cumulative update for Windows 10 22H2 with nine improvements or fixes, including a fix for a memory leak in ctfmon.exe. [...]]]> 2023-10-26T19:37:35+00:00 https://www.bleepingcomputer.com/news/microsoft/windows-10-kb5031445-preview-update-fixes-ctfmonexe-memory-leak-9-issues/ www.secnews.physaphae.fr/article.php?IdArticle=8401135 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Android Adware Apps sur Google Play Amass deux millions d'installations<br>Android adware apps on Google Play amass two million installs Several malicious Google Play Android apps installed over 2 million times push intrusive ads to users while concealing their presence on the infected devices. [...]]]> 2023-10-26T15:01:30+00:00 https://www.bleepingcomputer.com/news/security/android-adware-apps-on-google-play-amass-two-million-installs/ www.secnews.physaphae.fr/article.php?IdArticle=8401099 False Studies None 2.0000000000000000 Bleeping Computer - Magazine Américain StripedFly malware framework infects 1 million Windows, Linux hosts A sophisticated cross-platform malware platform named StripedFly flew under the radar of cybersecurity researchers for five years, infecting over a million Windows and Linux systems during that time. [...]]]> 2023-10-26T10:47:54+00:00 https://www.bleepingcomputer.com/news/security/stripedfly-malware-framework-infects-1-million-windows-linux-hosts/ www.secnews.physaphae.fr/article.php?IdArticle=8400892 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain New Ileakage Attack vole les e-mails, les mots de passe d'Apple Safari<br>New iLeakage attack steals emails, passwords from Apple Safari Academic researchers created a new speculative side-channel attack they named iLeakage that works on all recent Apple devices and can extract sensitive information from the Safari web browser. [...]]]> 2023-10-26T07:26:48+00:00 https://www.bleepingcomputer.com/news/security/new-ileakage-attack-steals-emails-passwords-from-apple-safari/ www.secnews.physaphae.fr/article.php?IdArticle=8400796 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Flipper Zero peut désormais spam Android, utilisateurs Windows avec des alertes Bluetooth<br>Flipper Zero can now spam Android, Windows users with Bluetooth alerts A custom Flipper Zero firmware called \'Xtreme\' has added a new feature to perform Bluetooth spam attacks on Android and Windows devices. [...]]]> 2023-10-25T14:54:44+00:00 https://www.bleepingcomputer.com/news/security/flipper-zero-can-now-spam-android-windows-users-with-bluetooth-alerts/ www.secnews.physaphae.fr/article.php?IdArticle=8400549 False Spam None 2.0000000000000000 Bleeping Computer - Magazine Américain Seiko dit que Ransomware Attack Données clients sensibles exposés<br>Seiko says ransomware attack exposed sensitive customer data Japanese watchmaker Seiko has confirmed it suffered a Black Cat ransomware attack earlier this year, warning that the incident has led to a data breach, exposing sensitive customer, partner, and personnel information. [...]]]> 2023-10-25T12:40:43+00:00 https://www.bleepingcomputer.com/news/security/seiko-says-ransomware-attack-exposed-sensitive-customer-data/ www.secnews.physaphae.fr/article.php?IdArticle=8400201 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain Les serveurs européens de courrier électronique Govt piratés à l'aide de Roundcube Zero-Day<br>European govt email servers hacked using Roundcube zero-day The Winter Vivern Russian hacking group has been exploiting a Roundcube Webmail zero-day since at least October 11 to attack European government entities and think tanks. [...]]]> 2023-10-25T07:00:00+00:00 https://www.bleepingcomputer.com/news/security/european-govt-email-servers-hacked-using-roundcube-zero-day/ www.secnews.physaphae.fr/article.php?IdArticle=8400147 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain L'équipe de basket-ball Asvel confirme la violation des données après une attaque de ransomware<br>ASVEL basketball team confirms data breach after ransomware attack French professional basketball team LDLC ASVEL (ASVEL) has confirmed that data was stolen after the NoEscape ransomware gang claimed to have attacked the club. [...]]]> 2023-10-24T11:07:21+00:00 https://www.bleepingcomputer.com/news/security/asvel-basketball-team-confirms-data-breach-after-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8399764 False Ransomware,Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain 1Password révèle l'incident de sécurité lié à la violation d'Okta<br>1Password discloses security incident linked to Okta breach 1Password, a popular password management platform used by over 100,000 businesses, suffered a security breach after hackers gained access to its Okta ID management tenant. [...]]]> 2023-10-23T18:34:52+00:00 https://www.bleepingcomputer.com/news/security/1password-discloses-security-incident-linked-to-okta-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8399482 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Employé de l'Université du Michigan, données sur les étudiants volés en cyberattaque<br>University of Michigan employee, student data stolen in cyberattack The University of Michigan says in a statement today that they suffered a data breach after hackers broke into its network in August and accessed systems with information belonging to students, applicants, alumni, donors, employees, patients, and research study participants. [...]]]> 2023-10-23T15:34:41+00:00 https://www.bleepingcomputer.com/news/security/university-of-michigan-employee-student-data-stolen-in-cyberattack/ www.secnews.physaphae.fr/article.php?IdArticle=8399428 False Data Breach,Studies None 2.0000000000000000 Bleeping Computer - Magazine Américain Cisco Patches iOS XE Zero-Days utilisé pour pirater plus de 50 000 appareils<br>Cisco patches IOS XE zero-days used to hack over 50,000 devices Cisco has addressed the two vulnerabilities (CVE-2023-20198 and CVE-2023-20273) that hackers exploited to compromise tens of thousands of IOS XE devices over the past week. [...]]]> 2023-10-23T10:08:05+00:00 https://www.bleepingcomputer.com/news/security/cisco-patches-ios-xe-zero-days-used-to-hack-over-50-000-devices/ www.secnews.physaphae.fr/article.php?IdArticle=8399320 False Hack,Vulnerability None 3.0000000000000000 Bleeping Computer - Magazine Américain La ville de Philadelphie révèle la violation des données après cinq mois<br>City of Philadelphia discloses data breach after five months The City of Philadelphia is investigating a data breach after attackers "may have gained access" to City email accounts containing personal and protected health information five months ago, in May. [...]]]> 2023-10-23T05:25:58+00:00 https://www.bleepingcomputer.com/news/security/city-of-philadelphia-discloses-data-breach-after-five-months/ www.secnews.physaphae.fr/article.php?IdArticle=8399233 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain Les nouveaux pirates de Tetrisphantom volent les données des lecteurs USB sécurisés sur les systèmes Govt<br>New TetrisPhantom hackers steal data from secure USB drives on govt systems A new sophisticated threat tracked as \'TetrisPhantom\' has been using compromised secure USB drives to target government systems in the Asia-Pacific region. [...]]]> 2023-10-22T11:18:36+00:00 https://www.bleepingcomputer.com/news/security/new-tetrisphantom-hackers-steal-data-from-secure-usb-drives-on-govt-systems/ www.secnews.physaphae.fr/article.php?IdArticle=8398998 False Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain The Week in Ransomware - 20 octobre 2023 - Right Back<br>The Week in Ransomware - October 20th 2023 - Fighting Back This was a bad week for ransomware, with the Trigona ransomware suffering a data breach and law enforcement disrupting the RagnarLocker ransomware operation. [...]]]> 2023-10-21T11:05:10+00:00 https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-october-20th-2023-fighting-back/ www.secnews.physaphae.fr/article.php?IdArticle=8398686 False Ransomware,Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Systèmes internationaux de la Cour pénale violés pour le cyber-espionnage<br>International Criminal Court systems breached for cyber espionage The International Criminal Court provided additional information about the cyberattack five weeks ago, saying that it was a targeted operation for espionage purposes. [...]]]> 2023-10-21T10:01:10+00:00 https://www.bleepingcomputer.com/news/security/international-criminal-court-systems-breached-for-cyber-espionage/ www.secnews.physaphae.fr/article.php?IdArticle=8398687 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Cisco révèle le nouveau iOS XE Zero-Day exploité pour déployer un implant de logiciels malveillants<br>Cisco discloses new IOS XE zero-day exploited to deploy malware implant Cisco disclosed a new high-severity zero-day (CVE-2023-20273) today, actively exploited to deploy malicious implants on IOS XE devices compromised using the CVE-2023-20198 zero-day unveiled earlier this week. [...]]]> 2023-10-20T18:12:28+00:00 https://www.bleepingcomputer.com/news/security/cisco-discloses-new-ios-xe-zero-day-exploited-to-deploy-malware-implant/ www.secnews.physaphae.fr/article.php?IdArticle=8398420 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Fausses offres de travail Corsair sur LinkedIn Push Darkgate Malware<br>Fake Corsair job offers on LinkedIn push DarkGate malware A threat actor is using fake LinkedIn posts and direct messages about a Facebook Ads specialist position at hardware maker Corsair to lure people into downloading info-stealing malware like DarkGate and RedLine. [...]]]> 2023-10-20T08:48:20+00:00 https://www.bleepingcomputer.com/news/security/fake-corsair-job-offers-on-linkedin-push-darkgate-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8398245 False Malware,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Plus de 40 000 appareils Cisco IOS XE infectés par la porte dérobée en utilisant un jour zéro<br>Over 40,000 Cisco IOS XE devices infected with backdoor using zero-day More than 40,000 Cisco devices running the IOS XE operating system have been compromised after hackers exploited a recently disclosed maximum severity vulnerability tracked as CVE-2023-20198. [...]]]> 2023-10-19T21:08:47+00:00 https://www.bleepingcomputer.com/news/security/over-40-000-cisco-ios-xe-devices-infected-with-backdoor-using-zero-day/ www.secnews.physaphae.fr/article.php?IdArticle=8397991 False Vulnerability None 3.0000000000000000 Bleeping Computer - Magazine Américain L'administrateur de racine électronique fait face à 20 ans pour vendre des comptes RDP volés, SSH<br>E-Root admin faces 20 years for selling stolen RDP, SSH accounts Sandu Diaconu, the operator of the E-Root marketplace, has been extradited to the U.S. to face a maximum imprisonment penalty of 20 years for selling access to compromised computers. [...]]]> 2023-10-19T18:42:04+00:00 https://www.bleepingcomputer.com/news/security/e-root-admin-faces-20-years-for-selling-stolen-rdp-ssh-accounts/ www.secnews.physaphae.fr/article.php?IdArticle=8397919 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Microsoft étend la rétention du journal d'audit de la portée après la violation de juillet<br>Microsoft extends Purview Audit log retention after July breach Microsoft is extending Purview Audit log retention as promised after the Chinese Storm-0558 hacking group breached dozens of Exchange and Microsoft 365 corporate and government accounts in July. [...]]]> 2023-10-19T16:21:25+00:00 https://www.bleepingcomputer.com/news/security/microsoft-extends-purview-audit-log-retention-after-july-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8397864 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Le faux site Keepass utilise Google Ads et Punycode pour pousser les logiciels malveillants<br>Fake KeePass site uses Google Ads and Punycode to push malware A Google Ads campaign was found pushing a fake KeePass download site that used Punycode to appear as the official domain of the KeePass password manager to distribute malware. [...]]]> 2023-10-19T14:17:19+00:00 https://www.bleepingcomputer.com/news/security/fake-keepass-site-uses-google-ads-and-punycode-to-push-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8397827 False Malware,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Les sites d'extorsion Web sombres de Ragnar Locker Ransomware ont été saisis par la police<br>Ragnar Locker ransomware\\'s dark web extortion sites seized by police The Ragnar Locker ransomware operation\'s Tor negotiation and data leak sites were seized Thursday morning as part of an international law enforcement operation. [...]]]> 2023-10-19T10:39:39+00:00 https://www.bleepingcomputer.com/news/security/ragnar-locker-ransomwares-dark-web-extortion-sites-seized-by-police/ www.secnews.physaphae.fr/article.php?IdArticle=8397737 False Ransomware None 1.00000000000000000000 Bleeping Computer - Magazine Américain Casio révèle la violation des données impactant les clients dans 149 pays<br>Casio discloses data breach impacting customers in 149 countries Japanese electronics manufacturer Casio disclosed a data breach impacting customers from 149 countries after hackers gained to the servers of its ClassPad education platform. [...]]]> 2023-10-19T07:37:48+00:00 https://www.bleepingcomputer.com/news/security/casio-discloses-data-breach-impacting-customers-in-149-countries/ www.secnews.physaphae.fr/article.php?IdArticle=8397668 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain Les militants ukrainiens piratent le gang de ransomware Trigona, les serveurs essuyés<br>Ukrainian activists hack Trigona ransomware gang, wipe servers A group of cyber activists under the Ukrainian Cyber Alliance banner has hacked the servers of the Trigona ransomware gang and wiped them clean after copying all the information available. [...]]]> 2023-10-18T19:17:43+00:00 https://www.bleepingcomputer.com/news/security/ukrainian-activists-hack-trigona-ransomware-gang-wipe-servers/ www.secnews.physaphae.fr/article.php?IdArticle=8397477 False Ransomware,Hack None 4.0000000000000000 Bleeping Computer - Magazine Américain Les pirates nord-coréens exploitent la faille critique de Teamcity pour violer les réseaux<br>North Korean hackers exploit critical TeamCity flaw to breach networks Microsoft says that the North Korean Lazarus and Andariel hacking groups are exploiting the CVE-2023-42793 flaw in TeamCity servers to deploy backdoor malware, likely to conduct software supply chain attacks. [...]]]> 2023-10-18T18:33:02+00:00 https://www.bleepingcomputer.com/news/security/north-korean-hackers-exploit-critical-teamcity-flaw-to-breach-networks/ www.secnews.physaphae.fr/article.php?IdArticle=8397455 False Vulnerability APT 38 3.0000000000000000 Bleeping Computer - Magazine Américain Google Play Protect ajoute une numérisation en temps réel pour lutter contre les logiciels malveillants Android<br>Google Play Protect adds real-time scanning to fight Android malware Google has announced new, real-time scanning features for Google Play Protect that make it harder for malicious apps employing polymorphism to evade detection. [...]]]> 2023-10-18T12:00:00+00:00 https://www.bleepingcomputer.com/news/security/google-play-protect-adds-real-time-scanning-to-fight-android-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8397355 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Mata Malware Framework exploite EDR dans les attaques contre les entreprises de défense<br>MATA malware framework exploits EDR in attacks on defense firms An updated version of the MATA backdoor framework was spotted in attacks between August 2022 and May 2023, targeting oil and gas firms and the defense industry in Eastern Europe. [...]]]> 2023-10-18T11:17:34+00:00 https://www.bleepingcomputer.com/news/security/mata-malware-framework-exploits-edr-in-attacks-on-defense-firms/ www.secnews.physaphae.fr/article.php?IdArticle=8397356 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Signe unique et l'écosystème de la cybercriminalité<br>Single Sign On and the Cybercrime Ecosystem One of the trends driving an increase is the compromise of enterprise single sign on (SSO) applications are info-stealer malware attacks. Learn more from Flare about this cybercrime ecosystem. [...]]]> 2023-10-18T10:02:04+00:00 https://www.bleepingcomputer.com/news/security/single-sign-on-and-the-cybercrime-ecosystem/ www.secnews.physaphae.fr/article.php?IdArticle=8397322 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Qubitstrike attaque les serveurs Linux Jupyter Linux pour voler des informations d'identification<br>Qubitstrike attacks rootkit Jupyter Linux servers to steal credentials Hackers are scanning for internet-exposed Jupyter Notebooks to breach servers and deploy a cocktail of malware consisting of a Linux rootkit, crypto miners, and password-stealing scripts. [...]]]> 2023-10-18T06:00:00+00:00 https://www.bleepingcomputer.com/news/security/qubitstrike-attacks-rootkit-jupyter-linux-servers-to-steal-credentials/ www.secnews.physaphae.fr/article.php?IdArticle=8397216 False Malware None 1.00000000000000000000 Bleeping Computer - Magazine Américain Plus de 40 000 comptes de portail d'administration utilisent \\ 'admin \\' comme mot de passe<br>Over 40,000 admin portal accounts use \\'admin\\' as a password Security researchers found that IT administrators are using tens of thousands of weak passwords to protect access to portals, leaving the door open to cyberattacks on enterprise networks. [...]]]> 2023-10-17T17:47:32+00:00 https://www.bleepingcomputer.com/news/security/over-40-000-admin-portal-accounts-use-admin-as-a-password/ www.secnews.physaphae.fr/article.php?IdArticle=8396887 False Studies None 3.0000000000000000 Bleeping Computer - Magazine Américain Amazon ajoute la prise en charge de Passkey comme une nouvelle option de connexion sans mot de passe<br>Amazon adds passkey support as new passwordless login option Amazon has quietly added passkey support as a new passwordless login option for customers, offering better protection from information-stealing malware and phishing attacks. [...]]]> 2023-10-17T15:09:01+00:00 https://www.bleepingcomputer.com/news/security/amazon-adds-passkey-support-as-new-passwordless-login-option/ www.secnews.physaphae.fr/article.php?IdArticle=8396840 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain D-Link confirme la violation des données après l'attaque de phishing des employés<br>D-Link confirms data breach after employee phishing attack Taiwanese networking equipment manufacturer D-Link confirmed a data breach linked to information stolen from its network and put up for sale on BreachForums earlier this month. [...]]]> 2023-10-17T14:48:47+00:00 https://www.bleepingcomputer.com/news/security/d-link-confirms-data-breach-after-employee-phishing-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8396841 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Spynote Android Malware se propage via de fausses alertes d'éruption du volcan<br>SpyNote Android malware spreads via fake volcano eruption alerts Android malware \'SpyNote\' was seen in an Italy-focused campaign that uses a phony \'IT-alert\' public alert service website to infect visitors. [...]]]> 2023-10-17T11:54:11+00:00 https://www.bleepingcomputer.com/news/security/spynote-android-malware-spreads-via-fake-volcano-eruption-alerts/ www.secnews.physaphae.fr/article.php?IdArticle=8396782 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Vous combattez des cyberattaques?Assurez-vous que les informations d'identification de l'utilisateur sont compromises<br>Fighting off cyberattacks? Make sure user credentials aren\\'t compromised Login credential theft presents one of the biggest and most enduring cybersecurity problems. This article by Specops SOftware looks at the motivations driving credential theft and the tactics bad actors are likely to use. [...]]]> 2023-10-17T10:02:04+00:00 https://www.bleepingcomputer.com/news/security/fighting-off-cyberattacks-make-sure-user-credentials-arent-compromised/ www.secnews.physaphae.fr/article.php?IdArticle=8396731 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Discord toujours un foyer d'activité malveillante - maintenant les aptes rejoignent le plaisir<br>Discord still a hotbed of malware activity - Now APTs join the fun Discord continues to be a breeding ground for malicious activity by hackers and now APT groups, with it commonly used to distribute malware, exfiltrate data, and targeted by threat actors to steal authentication tokens. [...]]]> 2023-10-16T17:29:48+00:00 https://www.bleepingcomputer.com/news/security/discord-still-a-hotbed-of-malware-activity-now-apts-join-the-fun/ www.secnews.physaphae.fr/article.php?IdArticle=8396381 False Malware,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Des pirates de ver de sable russes ont violé 11 opérateurs de télécommunications ukrainiens depuis mai<br>Russian Sandworm hackers breached 11 Ukrainian telcos since May The state-sponsored Russian hacking group tracked as \'Sandworm\' has compromised eleven telecommunication service providers in Ukraine between May and September 2023. [...]]]> 2023-10-16T14:06:44+00:00 https://www.bleepingcomputer.com/news/security/russian-sandworm-hackers-breached-11-ukrainian-telcos-since-may/ www.secnews.physaphae.fr/article.php?IdArticle=8396310 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Fake \\ 'RedAlert \\' Rocket Alert App for Israel installe Android Spyware<br>Fake \\'RedAlert\\' rocket alert app for Israel installs Android spyware Israeli Android users are targeted by a malicious version of the \'RedAlert - Rocket Alerts\' app that, while it offers the promised functionality, acts as spyware in the background. [...]]]> 2023-10-16T11:18:28+00:00 https://www.bleepingcomputer.com/news/security/fake-redalert-rocket-alert-app-for-israel-installs-android-spyware/ www.secnews.physaphae.fr/article.php?IdArticle=8396274 False Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain Steam applique la vérification des SMS pour limiter les mises à jour des logiciels malveillants<br>Steam enforces SMS verification to curb malware-ridden updates Valve has announced implementing additional security measures for developers publishing games on Steam, including SMS-based confirmation codes. This is to deal with a recent outbreak of malicious updates pushing malware from compromised publisher accounts. [...]]]> 2023-10-15T11:12:06+00:00 https://www.bleepingcomputer.com/news/security/steam-enforces-sms-verification-to-curb-malware-ridden-updates/ www.secnews.physaphae.fr/article.php?IdArticle=8395872 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Sommet des dirigeants politiques des femmes ciblées dans le phishing malware romcom<br>Women Political Leaders Summit targeted in RomCom malware phishing A new, lightweight variant of the RomCom backdoor was deployed against participants of the Women Political Leaders (WPL) Summit in Brussels, a summit focusing on gender equality and women in politics. [...]]]> 2023-10-15T10:16:32+00:00 https://www.bleepingcomputer.com/news/security/women-political-leaders-summit-targeted-in-romcom-malware-phishing/ www.secnews.physaphae.fr/article.php?IdArticle=8395873 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Darkgate Malware se propage à travers des comptes Skype compromis<br>DarkGate malware spreads through compromised Skype accounts Between July and September, DarkGate malware attacks have used compromised Skype accounts to infect targets through messages containing VBA loader script attachments. [...]]]> 2023-10-14T10:09:08+00:00 https://www.bleepingcomputer.com/news/security/darkgate-malware-spreads-through-compromised-skype-accounts/ www.secnews.physaphae.fr/article.php?IdArticle=8395874 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain La semaine en ransomware - 13 octobre 2023 - Attaques croissantes<br>The Week in Ransomware - October 13th 2023 - Increasing Attacks Ransomware gangs continue to pummel the enterprise, with attacks causing disruption in business operations and resulting in data breaches if a ransom is not paid. [...]]]> 2023-10-13T18:26:21+00:00 https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-october-13th-2023-increasing-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8395316 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain 23andMe a frappé des poursuites après des fuites de pirate<br>23andMe hit with lawsuits after hacker leaks stolen genetics data Genetic testing provider 23andMe faces multiple class action lawsuits in the U.S. following a large-scale data breach that is believed to have impacted millions of its customers. [...]]]> 2023-10-13T16:12:56+00:00 https://www.bleepingcomputer.com/news/security/23andme-hit-with-lawsuits-after-hacker-leaks-stolen-genetics-data/ www.secnews.physaphae.fr/article.php?IdArticle=8395275 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain Le nouveau programme Bounty Microsoft Bug se concentre sur Bing propulsé par l'IA<br>New Microsoft bug bounty program focuses on AI-powered Bing Microsoft announced a new AI bounty program focused on the AI-driven Bing experience, with rewards reaching $15,000. [...]]]> 2023-10-12T13:29:42+00:00 https://www.bleepingcomputer.com/news/security/new-microsoft-bug-bounty-program-focuses-on-ai-powered-bing/ www.secnews.physaphae.fr/article.php?IdArticle=8394823 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Les pirates Todycat utilisent \\ 'Disposable \\' malware pour cibler les télécoms asiatiques<br>ToddyCat hackers use \\'disposable\\' malware to target Asian telecoms A newly discovered campaign dubbed "Stayin\' Alive" has been targeting government organizations and telecommunication service providers across Asia since 2021, using a wide variety of "disposable" malware to evade detection. [...]]]> 2023-10-12T10:09:01+00:00 https://www.bleepingcomputer.com/news/security/toddycat-hackers-use-disposable-malware-to-target-asian-telecoms/ www.secnews.physaphae.fr/article.php?IdArticle=8394762 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Shadow PC met en garde contre la violation de données alors que le pirate essaie de vendre des joueurs \\ '<br>Shadow PC warns of data breach as hacker tries to sell gamers\\' info Shadow PC, a provider of high-end cloud computing services, is warning customers of a data breach that exposed customers\' private information, as a threat actor claims to be selling the stolen data for over 500,000 customers. [...]]]> 2023-10-12T08:13:11+00:00 https://www.bleepingcomputer.com/news/security/shadow-pc-warns-of-data-breach-as-hacker-tries-to-sell-gamers-info/ www.secnews.physaphae.fr/article.php?IdArticle=8394721 False Data Breach,Threat,Cloud None 2.0000000000000000 Bleeping Computer - Magazine Américain New WordPress Backdoor crée des sites Web d'administrateur voyou pour détourner<br>New WordPress backdoor creates rogue admin to hijack websites A new malware has been posing as a legitimate caching plugin to target WordPress sites, allowing threat actors to create an administrator account and control the site\'s activity. [...]]]> 2023-10-11T17:23:36+00:00 https://www.bleepingcomputer.com/news/security/new-wordpress-backdoor-creates-rogue-admin-to-hijack-websites/ www.secnews.physaphae.fr/article.php?IdArticle=8394487 False Malware,Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain Bianlian Extorsion Group affirme une violation récente d'Air Canada<br>BianLian extortion group claims recent Air Canada breach The BianLian extortion group claims to have stolen 210GB of data after breaching the network of Air Canada, the country\'s largest airline and a founding member of Star Alliance. [...]]]> 2023-10-11T17:07:47+00:00 https://www.bleepingcomputer.com/news/security/bianlian-extortion-group-claims-recent-air-canada-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8394488 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Microsoft Defender désormais les comptes compromis auto-isolants<br>Microsoft Defender now auto-isolates compromised accounts Microsoft Defender for Endpoint now uses automatic attack disruption to isolate compromised user accounts and block lateral movement in hands-on-keyboard attacks with the help of a new \'contain user\' capability in public preview. [...]]]> 2023-10-11T14:37:17+00:00 https://www.bleepingcomputer.com/news/security/microsoft-defender-now-auto-isolates-compromised-accounts/ www.secnews.physaphae.fr/article.php?IdArticle=8394422 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain La variante de logiciels malveillants Mirai DDOS étend les cibles avec 13 exploits de routeurs<br>Mirai DDoS malware variant expands targets with 13 router exploits A Mirai-based DDoS (distributed denial of service) malware botnet tracked as IZ1H9 has added thirteen new payloads to target Linux-based routers and routers from D-Link, Zyxel, TP-Link, TOTOLINK, and others. [...]]]> 2023-10-10T16:35:34+00:00 https://www.bleepingcomputer.com/news/security/mirai-ddos-malware-variant-expands-targets-with-13-router-exploits/ www.secnews.physaphae.fr/article.php?IdArticle=8393960 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Microsoft pour tuer VBScript sous Windows pour bloquer la livraison de logiciels malveillants<br>Microsoft to kill off VBScript in Windows to block malware delivery Microsoft is planning to phase out VBScript in future Windows releases after 30 years of use, making it an on-demand feature until it is removed. [...]]]> 2023-10-10T12:36:01+00:00 https://www.bleepingcomputer.com/news/security/microsoft-to-kill-off-vbscript-in-windows-to-block-malware-delivery/ www.secnews.physaphae.fr/article.php?IdArticle=8393858 False Malware None 4.0000000000000000 Bleeping Computer - Magazine Américain Nouveau \\ 'http / 2 Réinitialisation rapide \\' Attaque zéro-jour bat des enregistrements DDOS<br>New \\'HTTP/2 Rapid Reset\\' zero-day attack breaks DDoS records A new DDoS (distributed denial of service) technique named \'HTTP/2 Rapid Reset\' has been actively exploited as a zero-day since August, breaking all previous records in magnitude. [...]]]> 2023-10-10T10:12:26+00:00 https://www.bleepingcomputer.com/news/security/new-http-2-rapid-reset-zero-day-attack-breaks-ddos-records/ www.secnews.physaphae.fr/article.php?IdArticle=8393796 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Une introduction sur l'acceptation du cyber-risque et ce que cela signifie pour votre entreprise<br>A Primer on Cyber Risk Acceptance and What it Means to Your Business A fundamental idea to understand about risk is that it is inevitable. Learn more from Outpost24 on cyber risk acceptance and the role of continuous penetration testing in making informed risk acceptance decisions. [...]]]> 2023-10-10T10:02:01+00:00 https://www.bleepingcomputer.com/news/security/a-primer-on-cyber-risk-acceptance-and-what-it-means-to-your-business/ www.secnews.physaphae.fr/article.php?IdArticle=8393797 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain D-link wifi gamme extender vulnérable aux attaques d'injection de commandement<br>D-Link WiFi range extender vulnerable to command injection attacks The popular D-Link DAP-X1860 WiFi 6 range extender is susceptible to a vulnerability allowing DoS (denial of service) attacks and remote command injection. [...]]]> 2023-10-09T17:53:34+00:00 https://www.bleepingcomputer.com/news/security/d-link-wifi-range-extender-vulnerable-to-command-injection-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8393385 False Vulnerability None 2.0000000000000000 Bleeping Computer - Magazine Américain ALPHV Ransomware Gang affirme une attaque contre la Circuit Circuit Florida<br>ALPHV ransomware gang claims attack on Florida circuit court The ALPHV (BlackCat) ransomware gang has claimed an attack that affected state courts across Northwest Florida (part of the First Judicial Circuit) last week. [...]]]> 2023-10-09T17:32:53+00:00 https://www.bleepingcomputer.com/news/security/alphv-ransomware-gang-claims-attack-on-florida-circuit-court/ www.secnews.physaphae.fr/article.php?IdArticle=8393386 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain Plus de 17 000 sites WordPress piratés dans des attaques d'injecteur de Balada le mois dernier<br>Over 17,000 WordPress sites hacked in Balada Injector attacks last month Multiple Balada Injector campaigns have compromised and infected over 17,000 WordPress sites using known flaws in premium theme plugins. [...]]]> 2023-10-09T15:23:11+00:00 https://www.bleepingcomputer.com/news/security/over-17-000-wordpress-sites-hacked-in-balada-injector-attacks-last-month/ www.secnews.physaphae.fr/article.php?IdArticle=8393350 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain La violation des données de la troisième bancaire Flagstar car 2021 affecte 800 000 clients<br>Third Flagstar Bank data breach since 2021 affects 800,000 customers Flagstar Bank is warning that over 800,000 US customers had their personal information stolen by cybercriminals due to a breach at a third-party service provider. [...]]]> 2023-10-08T10:07:14+00:00 https://www.bleepingcomputer.com/news/security/third-flagstar-bank-data-breach-since-2021-affects-800-000-customers/ www.secnews.physaphae.fr/article.php?IdArticle=8392925 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Bounty offerte pour les graines de NSA secrètes derrière NIST Elliptic Curves Algo<br>Bounty offered for secret NSA seeds behind NIST elliptic curves algo A bounty of $12,288 has been announced for the first person to crack the NIST elliptic curves seeds and discover the original phrases that were hashed to generate them. [...]]]> 2023-10-07T10:12:24+00:00 https://www.bleepingcomputer.com/news/security/bounty-offered-for-secret-nsa-seeds-behind-nist-elliptic-curves-algo/ www.secnews.physaphae.fr/article.php?IdArticle=8392780 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain D.C. Board of Elections Confirme les données des électeurs volées dans le piratage du site<br>D.C. Board of Elections confirms voter data stolen in site hack The District of Columbia Board of Elections (DCBOE) is currently probing a data leak involving an unknown number of voter records following breach claims from a threat actor known as RansomedVC. [...]]]> 2023-10-06T19:07:50+00:00 https://www.bleepingcomputer.com/news/security/dc-board-of-elections-confirms-voter-data-stolen-in-site-hack/ www.secnews.physaphae.fr/article.php?IdArticle=8392423 False Hack,Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain Blackbaud accepte le règlement de 49,5 millions de dollars pour la violation des données des ransomwares<br>Blackbaud agrees to $49.5 million settlement for ransomware data breach Cloud computing provider Blackbaud reached a $49.5 million agreement with attorneys general from 49 U.S. states to settle a multi-state investigation of a May 2020 ransomware attack and the resulting data breach. [...]]]> 2023-10-06T14:43:05+00:00 https://www.bleepingcomputer.com/news/security/blackbaud-agrees-to-495-million-settlement-for-ransomware-data-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8392337 False Ransomware,Data Breach,Cloud None 2.0000000000000000 Bleeping Computer - Magazine Américain La société de génétique 23andMe affirme que les données des utilisateurs ont été volées dans une attaque de bourrage d'identification<br>Genetics firm 23andMe says user data stolen in credential stuffing attack 23andMe has confirmed to BleepingComputer that it is aware of user data from its platform circulating on hacker forums and attributes the leak to a credential-stuffing attack. [...]]]> 2023-10-06T11:48:13+00:00 https://www.bleepingcomputer.com/news/security/genetics-firm-23andme-says-user-data-stolen-in-credential-stuffing-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8392280 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain MGM Resorts Ransomware Attack a entraîné une perte de 100 millions de dollars, Vol de données<br>MGM Resorts ransomware attack led to $100 million loss, data theft MGM Resorts reveals that last month\'s cyberattack cost the company $100 million and allowed the hackers to steal customers\' personal information. [...]]]> 2023-10-06T09:53:05+00:00 https://www.bleepingcomputer.com/news/security/mgm-resorts-ransomware-attack-led-to-100-million-loss-data-theft/ www.secnews.physaphae.fr/article.php?IdArticle=8392281 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Sociétés de semi-conducteur de porte dérobée liée à la Chine avec grève de Cobalt<br>China-linked cyberspies backdoor semiconductor firms with Cobalt Strike Hackers engaging in cyber espionage have targeted Chinese-speaking semiconductor companies with TSMC-themed lures that infect them with Cobalt Strike beacons. [...]]]> 2023-10-05T14:57:09+00:00 https://www.bleepingcomputer.com/news/security/china-linked-cyberspies-backdoor-semiconductor-firms-with-cobalt-strike/ www.secnews.physaphae.fr/article.php?IdArticle=8391932 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain LYCA Mobile enquête sur les données clients fuite après cyberattaque<br>Lyca Mobile investigates customer data leak after cyberattack Lyca Mobile has released a statement about an unexpected disruption on its network caused by a cyberattack that may have also compromised customer data. [...]]]> 2023-10-05T11:01:39+00:00 https://www.bleepingcomputer.com/news/security/lyca-mobile-investigates-customer-data-leak-after-cyberattack/ www.secnews.physaphae.fr/article.php?IdArticle=8391875 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain La mise à jour d'urgence d'Apple corrige la nouvelle journée zéro utilisée pour pirater les iPhones<br>Apple emergency update fixes new zero-day used to hack iPhones Apple released emergency security updates to patch a new zero-day security flaw exploited in attacks targeting iPhone and iPad users. [...]]]> 2023-10-04T14:19:21+00:00 https://www.bleepingcomputer.com/news/apple/apple-emergency-update-fixes-new-zero-day-used-to-hack-iphones/ www.secnews.physaphae.fr/article.php?IdArticle=8391555 False Hack None 2.0000000000000000 Bleeping Computer - Magazine Américain Microsoft: Hackers Target Azure Cloud VMS via des serveurs SQL violés<br>Microsoft: Hackers target Azure cloud VMs via breached SQL servers Hackers have been observed trying to breach cloud environments through Microsoft SQL Servers vulnerable to SQL injection. [...]]]> 2023-10-04T10:53:25+00:00 https://www.bleepingcomputer.com/news/security/microsoft-hackers-target-azure-cloud-vms-via-breached-sql-servers/ www.secnews.physaphae.fr/article.php?IdArticle=8391453 False Cloud None 2.0000000000000000 Bleeping Computer - Magazine Américain Sony confirme la violation des données ayant un impact sur des milliers de personnes aux États-Unis<br>Sony confirms data breach impacting thousands in the U.S. Sony Interactive Entertainment (Sony) has notified current and former employees and their family members about a cybersecurity breach that exposed personal information. [...]]]> 2023-10-04T08:04:49+00:00 https://www.bleepingcomputer.com/news/security/sony-confirms-data-breach-impacting-thousands-in-the-us/ www.secnews.physaphae.fr/article.php?IdArticle=8391389 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Google pour renforcer les défenses de phishing et de logiciels malveillants en 2024<br>Google to bolster phishing and malware delivery defenses in 2024 Google will introduce new sender guidelines in February to bolster email security against phishing and malware delivery by mandating bulk senders to authenticate their emails and adhere to stricter spam thresholds [...]]]> 2023-10-03T14:41:16+00:00 https://www.bleepingcomputer.com/news/security/google-to-bolster-phishing-and-malware-delivery-defenses-in-2024/ www.secnews.physaphae.fr/article.php?IdArticle=8391099 False Spam,Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain La mise à jour de la sécurité Android Octobre corrige les jours zéro exploités dans les attaques<br>Android October security update fixes zero-days exploited in attacks Google has released the October 2023 security updates for Android, addressing 54 unique vulnerabilities, including two known to be actively exploited. [...]]]> 2023-10-03T14:12:57+00:00 https://www.bleepingcomputer.com/news/security/android-october-security-update-fixes-zero-days-exploited-in-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8391100 False Vulnerability,Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Microsoft Defender n'accompagne plus le navigateur comme malware<br>Microsoft Defender no longer flags Tor Browser as malware For Windows users who frequently use the TorBrowser, there\'s been a pressing concern. Recent versions of the TorBrowser, specifically because of the tor.exe file it contained, were being flagged as potential threats by Windows Defender. [...]]]> 2023-10-02T18:33:17+00:00 https://www.bleepingcomputer.com/news/security/microsoft-defender-no-longer-flags-tor-browser-as-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8390668 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Motel One révèle la violation des données après une attaque de ransomware<br>Motel One discloses data breach following ransomware attack The Motel One Group has announced that it has been targeted by ransomware actors who managed to steal some customer data, including the details of 150 credit cards. [...]]]> 2023-10-02T11:10:35+00:00 https://www.bleepingcomputer.com/news/security/motel-one-discloses-data-breach-following-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8390546 False Ransomware,Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Rencontrez LostTrust Ransomware - un changement de marque probable du gang de métaencryptor<br>Meet LostTrust ransomware - A likely rebrand of the MetaEncryptor gang The LostTrust ransomware operation is believed to be a rebrand of MetaEncryptor, utilizing almost identical data leak sites and encryptors. [...]]]> 2023-10-01T11:17:34+00:00 https://www.bleepingcomputer.com/news/security/meet-losttrust-ransomware-a-likely-rebrand-of-the-metaencryptor-gang/ www.secnews.physaphae.fr/article.php?IdArticle=8390191 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain La nouvelle attaque de Marvin remonte à une faille de décryptage de 25 ans dans RSA<br>New Marvin attack revives 25-year-old decryption flaw in RSA A flaw related to the PKCS #1 v1.5 padding in SSL servers discovered in 1998 and believed to have been resolved still impacts several widely-used projects today. [...]]]> 2023-10-01T10:16:08+00:00 https://www.bleepingcomputer.com/news/security/new-marvin-attack-revives-25-year-old-decryption-flaw-in-rsa/ www.secnews.physaphae.fr/article.php?IdArticle=8390192 False Vulnerability None 3.0000000000000000 Bleeping Computer - Magazine Américain CloudFlare DDOS Protections ironiquement contournée à l'aide de CloudFlare<br>Cloudflare DDoS protections ironically bypassed using Cloudflare Cloudflare\'s Firewall and DDoS prevention can be bypassed through a specific attack process that leverages logic flaws in cross-tenant security controls. [...]]]> 2023-09-30T10:16:08+00:00 https://www.bleepingcomputer.com/news/security/cloudflare-ddos-protections-ironically-bypassed-using-cloudflare/ www.secnews.physaphae.fr/article.php?IdArticle=8390128 False Threat None 4.0000000000000000 Bleeping Computer - Magazine Américain Lazarus Hackers inaugure une entreprise aérospatiale avec de nouveaux logiciels malveillants sans lumière<br>Lazarus hackers breach aerospace firm with new LightlessCan malware The North Korean \'Lazarus\' hacking group targeted employees of an aerospace company located in Spain with fake job opportunities to hack into the corporate network using a previously unknown \'LightlessCan\' backdoor. [...]]]> 2023-09-29T05:30:00+00:00 https://www.bleepingcomputer.com/news/security/lazarus-hackers-breach-aerospace-firm-with-new-lightlesscan-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8389428 False Malware,Hack APT 38 3.0000000000000000 Bleeping Computer - Magazine Américain La violation de Microsoft a conduit à un vol de 60 000 e-mails de département d'État américain<br>Microsoft breach led to theft of 60,000 US State Dept emails Chinese hackers stole tens of thousands of emails from U.S. State Department accounts after breaching Microsoft\'s cloud-based Exchange email platform in May. [...]]]> 2023-09-28T16:45:19+00:00 https://www.bleepingcomputer.com/news/security/microsoft-breach-led-to-theft-of-60-000-us-state-dept-emails/ www.secnews.physaphae.fr/article.php?IdArticle=8389206 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Réponses de chat Bing infiltrées par des annonces poussant les logiciels malveillants<br>Bing Chat responses infiltrated by ads pushing malware Malicious advertisements are now being injected into Microsoft\'s AI-powered Bing Chat responses, promoting fake download sites that distribute malware. [...]]]> 2023-09-28T14:35:06+00:00 https://www.bleepingcomputer.com/news/security/bing-chat-responses-infiltrated-by-ads-pushing-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8389162 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain FBI: Les victimes d'attaque à double ransomware sont désormais touchées dans les 48 heures<br>FBI: Dual ransomware attack victims now get hit within 48 hours The FBI has warned about a new trend in ransomware attacks where multiple strains are deployed on victims\' networks to encrypt systems in under two days. [...]]]> 2023-09-28T14:14:42+00:00 https://www.bleepingcomputer.com/news/security/fbi-dual-ransomware-attack-victims-now-get-hit-within-48-hours/ www.secnews.physaphae.fr/article.php?IdArticle=8389163 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Budworm Hackers Target Telcos et Govt Orgs avec des logiciels malveillants personnalisés<br>Budworm hackers target telcos and govt orgs with custom malware A Chinese cyber-espionage hacking group tracked as Budworm has been observed targeting a telecommunication firm in the Middle East and a government entity in Asia using a new variant of its custom \'SysUpdate\' backdoor. [...]]]> 2023-09-28T09:52:38+00:00 https://www.bleepingcomputer.com/news/security/budworm-hackers-target-telcos-and-govt-orgs-with-custom-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8389060 False Malware APT 27 2.0000000000000000 Bleeping Computer - Magazine Américain Les faux sites de bitwarden poussent un nouveau malware de volet de mot de passe zenrat<br>Fake Bitwarden sites push new ZenRAT password-stealing malware Fake Bitwarden sites are pushing installers purportedly for the open-source password manager that carry a new password-stealing malware that security researchers call ZenRAT. [...]]]> 2023-09-27T17:07:52+00:00 https://www.bleepingcomputer.com/news/security/fake-bitwarden-sites-push-new-zenrat-password-stealing-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8388808 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Le géant de l'automatisation des bâtiments Johnson Contrôles frappé par une attaque de ransomware<br>Building automation giant Johnson Controls hit by ransomware attack Johnson Controls International has suffered what is described as a massive ransomware attack that encrypted many of the company devices, including VMware ESXi servers, impacting the company\'s and its subsidiaries\' operations. [...]]]> 2023-09-27T15:48:53+00:00 https://www.bleepingcomputer.com/news/security/building-automation-giant-johnson-controls-hit-by-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8388760 False Ransomware,Industrial None 2.0000000000000000 Bleeping Computer - Magazine Américain Les États-Unis et le Japon mettent en garde contre les routeurs de Cisco en arrière-plan des pirates chinois<br>US and Japan warn of Chinese hackers backdooring Cisco routers A joint cybersecurity advisory by the FBI, NSA, CISA, and the Japanese NISC (cybersecurity) and NPA (police) sheds light on the techniques the Chinese threat actors known as BlackTech use to attack Japanese and U.S. organizations. [...]]]> 2023-09-27T11:51:00+00:00 https://www.bleepingcomputer.com/news/security/us-and-japan-warn-of-chinese-hackers-backdooring-cisco-routers/ www.secnews.physaphae.fr/article.php?IdArticle=8388437 False Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain GPUS modernes vulnérables à une nouvelle attaque de canal latéral GPU.zip<br>Modern GPUs vulnerable to new GPU.zip side-channel attack Researchers from four American universities have developed a new GPU side-channel attack that leverages data compression to leak sensitive visual data from modern graphics cards when visiting web pages. [...]]]> 2023-09-27T10:06:58+00:00 https://www.bleepingcomputer.com/news/security/modern-gpus-vulnerable-to-new-gpuzip-side-channel-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8388411 False Vulnerability None 3.0000000000000000 Bleeping Computer - Magazine Américain Windows 11 22H2 ajoute un gestionnaire dekekey intégré pour Windows Hello<br>Windows 11 22H2 adds a built-in passkey manager for Windows Hello Today\'s Windows 11 update includes several security improvements, including a new passkeys management dashboard designed to help users go passwordless more easily and tools to reduce the attack surface. [...]]]> 2023-09-26T13:00:00+00:00 https://www.bleepingcomputer.com/news/microsoft/windows-11-22h2-adds-a-built-in-passkey-manager-for-windows-hello/ www.secnews.physaphae.fr/article.php?IdArticle=8388054 False Tool None 2.0000000000000000 Bleeping Computer - Magazine Américain SickKids affecté par la violation de données de Born Ontario qui a frappé 3,4 millions<br>SickKids impacted by BORN Ontario data breach that hit 3.4 million The Hospital for Sick Children, more commonly known as SickKids, is among healthcare providers that were impacted by the recent breach at BORN Ontario. The top Canadian pediatric hospital disclosed that as a part of its operations, it shares personal health information with BORN Ontario "related to pregnancy, birth and newborn care." [...]]]> 2023-09-26T05:20:00+00:00 https://www.bleepingcomputer.com/news/security/sickkids-impacted-by-born-ontario-data-breach-that-hit-34-million/ www.secnews.physaphae.fr/article.php?IdArticle=8387934 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain La violation des données du registre des enfants nés de l'Ontario affecte 3,4 millions de personnes<br>BORN Ontario child registry data breach affects 3.4 million people The Better Outcomes Registry & Network (BORN), a healthcare organization funded by the government of Ontario, has announced that it is among the victims of Clop ransomware\'s MOVEit hacking spree. [...]]]> 2023-09-25T13:31:41+00:00 https://www.bleepingcomputer.com/news/security/born-ontario-child-registry-data-breach-affects-34-million-people/ www.secnews.physaphae.fr/article.php?IdArticle=8387685 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Xenomorph Android Malware cible désormais les banques américaines et les portefeuilles crypto<br>Xenomorph Android malware now targets U.S. banks and crypto wallets Security researchers discovered a new campaign that distributes a new version of the Xenomorph malware to Android users in the United States, Canada, Spain, Italy, Portugal, and Belgium. [...]]]> 2023-09-25T11:16:02+00:00 https://www.bleepingcomputer.com/news/security/xenomorph-android-malware-now-targets-us-banks-and-crypto-wallets/ www.secnews.physaphae.fr/article.php?IdArticle=8387657 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Mixin Network suspend les opérations après 200 millions de dollars de piratage<br>Mixin Network suspends operations following $200 million hack Mixin Network, an open-source, peer-to-peer transactional network for digital assets, has announced today on Twitter that deposits and withdrawals are suspended effective immediately due to a $200 million hack the platform suffered on Saturday. [...]]]> 2023-09-25T09:23:16+00:00 https://www.bleepingcomputer.com/news/security/mixin-network-suspends-operations-following-200-million-hack/ www.secnews.physaphae.fr/article.php?IdArticle=8387603 False Hack None 2.0000000000000000 Bleeping Computer - Magazine Américain Fausses vidéos de fuite de photos de célébrités inonde tiktok avec des codes de référence temu<br>Fake celebrity photo leak videos flood TikTok with Temu referral codes TikTok is flooded with videos promoting fake nude celebrity photo leaks used to push referral rewards for the Temu online megastore. [...]]]> 2023-09-24T10:11:22+00:00 https://www.bleepingcomputer.com/news/security/fake-celebrity-photo-leak-videos-flood-tiktok-with-temu-referral-codes/ www.secnews.physaphae.fr/article.php?IdArticle=8387604 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Nouveaux logiciels malveillants furtifs et modulaires utilisés dans les attaques gouvernementales<br>New stealthy and modular Deadglyph malware used in govt attacks A novel and sophisticated backdoor malware named \'Deadglyph\' was seen used in a cyberespionage attack against a government agency in the Middle East. [...]]]> 2023-09-23T17:00:00+00:00 https://www.bleepingcomputer.com/news/security/new-stealthy-and-modular-deadglyph-malware-used-in-govt-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8387605 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Des pirates d'évasive Gelesium repérés en attaque contre le gouvernement asiatique<br>Evasive Gelsemium hackers spotted in attack against Asian govt A stealthy advanced persistent threat (APT) tracked as Gelsemium was observed in attacks targeting a Southeast Asian government that spanned six months between 2022 and 2023. [...]]]> 2023-09-23T11:09:18+00:00 https://www.bleepingcomputer.com/news/security/evasive-gelsemium-hackers-spotted-in-attack-against-asian-govt/ www.secnews.physaphae.fr/article.php?IdArticle=8387112 False Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain La violation nationale des données de la compensation des étudiants a un impact sur 890 écoles<br>National Student Clearinghouse data breach impacts 890 schools U.S. educational nonprofit National Student Clearinghouse has disclosed a data breach affecting 890 schools using its services across the United States. [...]]]> 2023-09-23T10:04:15+00:00 https://www.bleepingcomputer.com/news/security/national-student-clearinghouse-data-breach-impacts-890-schools/ www.secnews.physaphae.fr/article.php?IdArticle=8387113 False Data Breach None 2.0000000000000000