www.secnews.physaphae.fr This is the RSS 2.0 feed from www.secnews.physaphae.fr. IT's a simple agragated flow of multiple articles soruces. Liste of sources, can be found on www.secnews.physaphae.fr. 2025-05-10T16:24:56+00:00 www.secnews.physaphae.fr Bleeping Computer - Magazine Américain La violation des données de Cencora expose les informations américaines aux patients de 8 sociétés pharmaceutiques<br>Cencora data breach exposes US patient info from 8 drug companies Some of the largest drug companies in the world have disclosed data breaches due to a February 2024 cyberattack at Cencora, whom they partner with for pharmaceutical and business services. [...]]]> 2024-05-24T11:44:55+00:00 https://www.bleepingcomputer.com/news/security/cencora-data-breach-exposes-us-patient-info-from-8-drug-companies/ www.secnews.physaphae.fr/article.php?IdArticle=8506190 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain La violation des données de Cencora expose les informations américaines aux patients de 11 sociétés pharmaceutiques<br>Cencora data breach exposes US patient info from 11 drug companies Some of the largest drug companies in the world have disclosed data breaches due to a February 2024 cyberattack at Cencora, whom they partner with for pharmaceutical and business services. [...]]]> 2024-05-24T11:44:55+00:00 https://www.bleepingcomputer.com/news/security/cencora-data-breach-exposes-us-patient-info-from-11-drug-companies/ www.secnews.physaphae.fr/article.php?IdArticle=8506712 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Javs Courtroom Enregistrement du logiciel d'enregistrement arrière dans l'attaque de la chaîne d'approvisionnement<br>JAVS courtroom recording software backdoored in supply chain attack Attackers have backdoored the installer of widely used Justice AV Solutions (JAVS) courtroom video recording software with malware that lets them take over compromised systems. [...]]]> 2024-05-23T17:17:24+00:00 https://www.bleepingcomputer.com/news/security/javs-courtroom-recording-software-backdoored-in-supply-chain-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8505703 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Les pirates d'État se tournent vers des réseaux proxy d'orbe massifs pour échapper à la détection<br>State hackers turn to massive ORB proxy networks to evade detection Security researchers are warning that China-linked state-backed hackers are increasingly relying on vast proxy networks of virtual private servers and compromised connected devices for cyberespionage operations. [...]]]> 2024-05-22T13:37:48+00:00 https://www.bleepingcomputer.com/news/security/state-hackers-turn-to-massive-orb-proxy-networks-to-evade-detection/ www.secnews.physaphae.fr/article.php?IdArticle=8504908 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Échange intercontinental pour payer une pénalité de 10 millions de dollars sur la violation du VPN<br>Intercontinental Exchange to pay $10M SEC penalty over VPN breach The Intercontinental Exchange (ICE) will pay a $10 million penalty to settle charges brought by the U.S. Securities and Exchange Commission (SEC) after failing to ensure its subsidiaries promptly reported an April 2021 VPN security breach. [...]]]> 2024-05-22T13:20:25+00:00 https://www.bleepingcomputer.com/news/security/intercontinental-exchange-to-pay-10m-sec-penalty-over-vpn-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8504909 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Lastpass chiffre désormais les URL dans les voûtes de mot de passe pour une meilleure sécurité<br>LastPass is now encrypting URLs in password vaults for better security LastPass announced it will start encrypting URLs stored in user vaults for enhanced privacy and protection against data breaches and unauthorized access. [...]]]> 2024-05-22T13:04:02+00:00 https://www.bleepingcomputer.com/news/security/lastpass-is-now-encrypting-urls-in-password-vaults-for-better-security/ www.secnews.physaphae.fr/article.php?IdArticle=8504873 False None LastPass 3.0000000000000000 Bleeping Computer - Magazine Américain Le nouveau rappel de Windows 11 de Microsoft \\ est un cauchemar de confidentialité<br>Microsoft\\'s new Windows 11 Recall is a privacy nightmare Microsoft\'s announcement of the new AI-powered Windows 11 Recall feature has sparked a lot of concern, with many thinking that it has created massive privacy risks and a new attack vector that threat actors can exploit to steal data. [...]]]> 2024-05-22T12:02:24+00:00 https://www.bleepingcomputer.com/news/microsoft/microsofts-new-windows-11-recall-is-a-privacy-nightmare/ www.secnews.physaphae.fr/article.php?IdArticle=8504837 False Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Les attaques d'extraction des GhostEngines tuent la sécurité EDR en utilisant des conducteurs vulnérables<br>GhostEngine mining attacks kill EDR security using vulnerable drivers A malicious crypto mining campaign codenamed \'REF4578,\' has been discovered deploying a malicious payload named GhostEngine that uses vulnerable drivers to turn off security products and deploy an XMRig miner. [...]]]> 2024-05-21T18:30:19+00:00 https://www.bleepingcomputer.com/news/security/ghostengine-mining-attacks-kill-edr-security-using-vulnerable-drivers/ www.secnews.physaphae.fr/article.php?IdArticle=8504338 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Lockbit dit qu'ils ont volé des données dans l'attaque des ransomwares de médicaments londoniens<br>LockBit says they stole data in London Drugs ransomware attack Today, the LockBit ransomware gang claimed they were behind the April cyberattack on Canadian pharmacy chain London Drugs and is now threatening to publish stolen data online after allegedly failed negotiations. [...]]]> 2024-05-21T17:23:42+00:00 https://www.bleepingcomputer.com/news/security/lockbit-says-they-stole-data-in-london-drugs-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8504311 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Western Sydney University Data Breach Data Exposed Student Data<br>Western Sydney University data breach exposed student data Western Sydney University (WSU) has notified students and academic staff about a data breach after threat actors breached its Microsoft 365 and Sharepoint environment. [...]]]> 2024-05-21T15:39:43+00:00 https://www.bleepingcomputer.com/news/security/western-sydney-university-data-breach-exposed-student-data/ www.secnews.physaphae.fr/article.php?IdArticle=8504255 False Data Breach,Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain Les fichiers d'artefacts Bitbucket peuvent fuir les secrets d'authentification en texte clair<br>Bitbucket artifact files can leak plaintext authentication secrets Threat actors were found breaching AWS accounts using authentication secrets leaked as plaintext in Atlassian Bitbucket artifact objects. [...]]]> 2024-05-21T15:05:46+00:00 https://www.bleepingcomputer.com/news/security/bitbucket-artifact-files-can-leak-plaintext-authentication-secrets/ www.secnews.physaphae.fr/article.php?IdArticle=8504284 False Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Omnivision divulgue la violation des données après 2023 Attaque des ransomwares<br>OmniVision discloses data breach after 2023 ransomware attack The California-based imaging sensors manufacturer OmniVision is warning of a data breach after the company suffered a Cactus ransomware attack last year. [...]]]> 2024-05-20T16:51:44+00:00 https://www.bleepingcomputer.com/news/security/omnivision-discloses-data-breach-after-2023-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8503621 False Ransomware,Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain La nouvelle version Bibi Wiper détruit également le tableau de partition de disque<br>New BiBi Wiper version also destroys the disk partition table A new version of the BiBi Wiper malware is now deleting the disk partition table to make data restoration harder, extending the downtime for targeted victims. [...]]]> 2024-05-20T12:06:44+00:00 https://www.bleepingcomputer.com/news/security/new-bibi-wiper-version-also-destroys-the-disk-partition-table/ www.secnews.physaphae.fr/article.php?IdArticle=8503476 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Banking Malware Grandoreiro revient après la perturbation de la police<br>Banking malware Grandoreiro returns after police disruption The banking trojan "Grandoreiro" is spreading in a large-scale phishing campaign in over 60 countries, targeting customer accounts of roughly 1,500 banks. [...]]]> 2024-05-18T10:12:24+00:00 https://www.bleepingcomputer.com/news/security/banking-malware-grandoreiro-returns-after-police-disruption/ www.secnews.physaphae.fr/article.php?IdArticle=8502494 False Malware,Legislation None 2.0000000000000000 Bleeping Computer - Magazine Américain SEC: Les organisations financières ont 30 jours pour envoyer des notifications de violation de données<br>SEC: Financial orgs have 30 days to send data breach notifications The Securities and Exchange Commission (SEC) has adopted amendments to Regulation S-P that require certain financial institutions to disclose data breach incidents to impacted individuals within 30 days of discovery. [...]]]> 2024-05-17T12:13:25+00:00 https://www.bleepingcomputer.com/news/security/sec-financial-orgs-have-30-days-to-send-data-breach-notifications/ www.secnews.physaphae.fr/article.php?IdArticle=8501768 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain La violation de données WebTPA a un impact de 2,4 millions de titulaires d'assurance<br>WebTPA data breach impacts 2.4 million insurance policyholders The WebTPA Employer Services (WebTPA) data breach disclosed earlier this month is impacting close to 2.5 million individuals, the U.S. Department of Health and Human Services notes. [...]]]> 2024-05-17T10:45:02+00:00 https://www.bleepingcomputer.com/news/security/webtpa-data-breach-impacts-24-million-insurance-policyholders/ www.secnews.physaphae.fr/article.php?IdArticle=8501678 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain La femme américaine a aidé les travailleurs informatiques nord-coréens à infiltrer 300 entreprises<br>US woman helped North Korean IT workers infiltrate 300 companies ​The U.S. Justice Department charged five individuals today, a U.S. Citizen woman, a Ukrainian man, and three foreign nationals, for their involvement in cyber schemes that generated revenue for North Korea\'s nuclear weapons program. [...]]]> 2024-05-16T15:17:13+00:00 https://www.bleepingcomputer.com/news/security/five-arizona-ukraine-charged-for-cyber-schemes-infiltrating-over-300-companies-to-benefit-north-koreas-weapons-program/ www.secnews.physaphae.fr/article.php?IdArticle=8501736 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain La Norvège recommande de remplacer le VPN SSL pour éviter les violations<br>Norway recommends replacing SSL VPN to prevent breaches The Norwegian National Cyber Security Centre (NCSC) recommends replacing SSLVPN/WebVPN solutions with alternatives due to the repeated exploitation of related vulnerabilities in edge network devices to breach corporate networks. [...]]]> 2024-05-16T15:07:45+00:00 https://www.bleepingcomputer.com/news/security/norway-recommends-replacing-ssl-vpn-to-prevent-breaches/ www.secnews.physaphae.fr/article.php?IdArticle=8501129 False Vulnerability None 3.0000000000000000 Bleeping Computer - Magazine Américain Médisesecure Entreprise de script électronique frappée par la violation de données de ransomware à grande échelle à grande échelle<br>MediSecure e-script firm hit by \\'large-scale\\' ransomware data breach Electronic prescription provider MediSecure in Australia has shut down its website and phone lines following a ransomware attack believed to originate from a third-party vendor. [...]]]> 2024-05-16T13:08:22+00:00 https://www.bleepingcomputer.com/news/security/medisecure-e-script-firm-hit-by-large-scale-ransomware-data-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8501102 False Ransomware,Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain Les pirates russes utilisent de nouveaux logiciels malveillants lunaires pour briser les agences européennes du gouvernement \\<br>Russian hackers use new Lunar malware to breach a European govt\\'s agencies Security researchers discovered two previously unseen backdoors dubbed LunarWeb and LunarMail that were used to compromise a European government\'s diplomatic institutions abroad. [...]]]> 2024-05-16T11:57:15+00:00 https://www.bleepingcomputer.com/news/security/russian-hackers-use-new-lunar-malware-to-breach-a-european-govts-agencies/ www.secnews.physaphae.fr/article.php?IdArticle=8501037 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Les pirates Kimsuky déploient une nouvelle porte dérobée Linux en attaques contre la Corée du Sud<br>Kimsuky hackers deploy new Linux backdoor in attacks on South Korea The North Korean hacker group Kimsuki has been using a new Linux malware called Gomir that is a version of the GoBear backdoor delivered via trojanized software installers. [...]]]> 2024-05-16T09:28:37+00:00 https://www.bleepingcomputer.com/news/security/kimsuky-hackers-deploy-new-linux-backdoor-in-attacks-on-south-korea/ www.secnews.physaphae.fr/article.php?IdArticle=8501038 False Malware APT 43 3.0000000000000000 Bleeping Computer - Magazine Américain Android pour ajouter de nouvelles fonctionnalités antivol et de protection des données<br>Android to add new anti-theft and data protection features ​Google is introducing multiple anti-theft and data protection features later this year, some available only for Android 15+ devices, while others will roll out to billions of devices running Android 10 and later. [...]]]> 2024-05-15T16:10:21+00:00 https://www.bleepingcomputer.com/news/google/android-to-add-new-anti-theft-and-data-protection-features/ www.secnews.physaphae.fr/article.php?IdArticle=8500467 False Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain Android 15, Google Play Protect Obtenez de nouvelles fonctionnalités anti-malware et anti-fraude<br>Android 15, Google Play Protect get new anti-malware and anti-fraud features Today, Google announced new security features coming to Android 15 and Google Play Protect that will help block scams, fraud, and malware apps on users\' devices. [...]]]> 2024-05-15T15:53:51+00:00 https://www.bleepingcomputer.com/news/google/android-15-google-play-protect-get-new-anti-malware-and-anti-fraud-features/ www.secnews.physaphae.fr/article.php?IdArticle=8500632 False Malware,Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain Nissan Amérique du Nord Les violations des données ont un impact sur 53 000 employés<br>Nissan North America data breach impacts over 53,000 employees Nissan North America (Nissan) suffered a data breach last year when a threat actor targeted the company\'s external VPN and shut down systems to receive a ransom. [...]]]> 2024-05-15T15:32:22+00:00 https://www.bleepingcomputer.com/news/security/nissan-north-america-data-breach-impacts-over-53-000-employees/ www.secnews.physaphae.fr/article.php?IdArticle=8500436 False Data Breach,Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain Frères arrêtés pour 25 millions de dollars de vol d'attaque de la blockchain Ethereum<br>Brothers arrested for $25 million theft in Ethereum blockchain attack ​The U.S. Department of Justice has indicted two brothers for allegedly manipulating the Ethereum blockchain and stealing $25 million worth of cryptocurrency within approximately 12 seconds in a "first-of-its-kind" scheme. [...]]]> 2024-05-15T14:36:46+00:00 https://www.bleepingcomputer.com/news/security/brothers-arrested-for-25-million-theft-in-ethereum-blockchain-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8500406 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain FBI saisir le forum de piratage de BreachForums utilisé pour fuir les données volées<br>FBI seize BreachForums hacking forum used to leak stolen data The FBI has seized the notorious BreachForums hacking forum used to leak and sell stolen corporate data to other cybercriminals. [...]]]> 2024-05-15T10:44:00+00:00 https://www.bleepingcomputer.com/news/security/fbi-seize-breachforums-hacking-forum-used-to-leak-stolen-data/ www.secnews.physaphae.fr/article.php?IdArticle=8500262 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Banco Santander avertit une violation de données exposant les informations des clients<br>Banco Santander warns of a data breach exposing customer info Banco Santander S.A. announced it suffered a data breach impacting customers after an unauthorized actor accessed a database hosted by one of its third-party service providers. [...]]]> 2024-05-15T10:11:06+00:00 https://www.bleepingcomputer.com/news/security/banco-santander-warns-of-a-data-breach-exposing-customer-info/ www.secnews.physaphae.fr/article.php?IdArticle=8500263 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Singing River Health System: Données de 895 000 volés dans une attaque de ransomware<br>Singing River Health System: Data of 895,000 stolen in ransomware attack The Singing River Health System is warning that it is now estimating that 895,204 people are impacted by a ransomware attack it suffered in August 2023. [...]]]> 2024-05-14T16:08:33+00:00 https://www.bleepingcomputer.com/news/security/singing-river-health-system-data-of-895-000-stolen-in-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8499795 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Microsoft corrige Windows Zero-Day exploité dans les attaques de logiciels malveillants Qakbot<br>Microsoft fixes Windows zero-day exploited in QakBot malware attacks ​Microsoft has fixed a zero-day vulnerability exploited in attacks to deliver QakBot and other malware payloads on vulnerable Windows systems. [...]]]> 2024-05-14T14:18:05+00:00 https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-windows-zero-day-exploited-in-qakbot-malware-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8499741 False Malware,Vulnerability,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Embury Botnet Malware a infecté 400 000 serveurs Linux depuis 2009<br>Ebury botnet malware infected 400,000 Linux servers since 2009 A malware botnet known as \'Ebury\' has infected almost 400,000 Linux servers since 2009, with roughly 100,000 still compromised as of late 2023. [...]]]> 2024-05-14T12:31:22+00:00 https://www.bleepingcomputer.com/news/security/ebury-botnet-malware-infected-400-000-linux-servers-since-2009/ www.secnews.physaphae.fr/article.php?IdArticle=8499666 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Apple et Google ajoutent des alertes pour les trackers Bluetooth inconnus à iOS, Android<br>Apple and Google add alerts for unknown Bluetooth trackers to iOS, Android On Monday, Apple and Google jointly announced a new privacy feature that warns Android and iOS users when an unknown Bluetooth tracking device travels with them. [...]]]> 2024-05-14T11:07:22+00:00 https://www.bleepingcomputer.com/news/security/apple-and-google-add-alerts-for-unknown-bluetooth-trackers-to-ios-android/ www.secnews.physaphae.fr/article.php?IdArticle=8499601 False Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Inc Ransomware Code source vendant sur les forums de piratage pour 300 000 $<br>INC ransomware source code selling on hacking forums for $300,000 A cybercriminal using the name "salfetka" claims to be selling the source code of INC Ransom, a ransomware-as-a-service (RaaS) operation launched in August 2023. [...]]]> 2024-05-13T16:22:55+00:00 https://www.bleepingcomputer.com/news/security/inc-ransomware-source-code-selling-on-hacking-forums-for-300-000/ www.secnews.physaphae.fr/article.php?IdArticle=8499113 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Helsinki subit une violation de données après que les pirates exploitent une faille non corrigée<br>Helsinki suffers data breach after hackers exploit unpatched flaw The City of Helsinki is investigating a data breach in its education division, which it discovered in late April 2024, impacting tens of thousands of students, guardians, and personnel. [...]]]> 2024-05-13T11:17:58+00:00 https://www.bleepingcomputer.com/news/security/helsinki-suffers-data-breach-after-hackers-exploit-unpatched-flaw/ www.secnews.physaphae.fr/article.php?IdArticle=8498983 False Data Breach,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Le plus grand prêteur non bancaire en Australie met en garde contre une violation de données<br>Largest non-bank lender in Australia warns of a data breach Firstmac Limited is warning customers that it suffered a data breach a day after the new Embargo cyber-extortion group leaked over 500GB of data allegedly stolen from the firm. [...]]]> 2024-05-12T10:16:32+00:00 https://www.bleepingcomputer.com/news/security/largest-non-bank-lender-in-australia-warns-of-a-data-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8498954 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain Le hack post-millénaire a divulgué des données ayant un impact sur 26 millions de personnes<br>The Post Millennial hack leaked data impacting 26 million people Have I Been Pwned has added the information for 26,818,266 people whose data was leaked in a recent hack of The Post Millennial conservative news website. [...]]]> 2024-05-11T11:17:34+00:00 https://www.bleepingcomputer.com/news/security/the-post-millennial-hack-leaked-data-impacting-26-million-people/ www.secnews.physaphae.fr/article.php?IdArticle=8498955 False Hack None 3.0000000000000000 Bleeping Computer - Magazine Américain Europol confirme la violation du portail Web, indique qu'aucune donnée opérationnelle volée<br>Europol confirms web portal breach, says no operational data stolen ​Europol, the European Union\'s law enforcement agency, confirmed that its Europol Platform for Experts (EPE) portal was breached and is now investigating the incident after a threat actor claimed they stole For Official Use Only (FOUO) documents containing classified data. [...]]]> 2024-05-11T08:36:25+00:00 https://www.bleepingcomputer.com/news/security/europol-confirms-web-portal-breach-says-no-operational-data-stolen/ www.secnews.physaphae.fr/article.php?IdArticle=8497796 False Threat,Legislation None 3.0000000000000000 Bleeping Computer - Magazine Américain L'API Dell a abusé de voler 49 millions d'enregistrements clients dans la violation de données<br>Dell API abused to steal 49 million customer records in data breach The threat actor behind the recent Dell data breach revealed they scraped information of 49 million customer records using an partner portal API they accessed as a fake company. [...]]]> 2024-05-10T15:30:07+00:00 https://www.bleepingcomputer.com/news/security/dell-api-abused-to-steal-49-million-customer-records-in-data-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8497398 False Data Breach,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Ascension redirige les ambulances après une attaque de ransomware suspectée<br>Ascension redirects ambulances after suspected ransomware attack Ascension, a major U.S. healthcare network, is diverting ambulances from several hospitals due to a suspected ransomware attack that has been causing clinical operation disruptions and system outages since Wednesday. [...]]]> 2024-05-10T14:51:56+00:00 https://www.bleepingcomputer.com/news/security/healthcare-giant-ascension-redirects-ambulances-after-suspected-Black-Basta-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8497369 False Ransomware,Medical None 2.0000000000000000 Bleeping Computer - Magazine Américain L'attaque des ransomwares de loterie de l'Ohio a un impact sur 538 000 personnes<br>Ohio Lottery ransomware attack impacts over 538,000 individuals ​The Ohio Lottery is sending data breach notification letters to over 538,000 individuals affected by a cyberattack that hit the organization\'s systems on Christmas Eve. [...]]]> 2024-05-10T11:38:32+00:00 https://www.bleepingcomputer.com/news/security/ohio-lottery-ransomware-attack-impacts-over-538-000-individuals/ www.secnews.physaphae.fr/article.php?IdArticle=8497282 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain Des modems largement utilisés dans les appareils IoT industriels ouverts à l'attaque SMS<br>Widely used modems in industrial IoT devices open to SMS attack Security flaws in Telit Cinterion cellular modems, widely used in sectors including industrial, healthcare, and telecommunications, could allow remote attackers to execute arbitrary code via SMS. [...]]]> 2024-05-10T04:00:00+00:00 https://www.bleepingcomputer.com/news/security/widely-used-modems-in-industrial-iot-devices-open-to-sms-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8497313 False Industrial,Medical None 3.0000000000000000 Bleeping Computer - Magazine Américain Dell met en garde contre la violation des données, 49 millions de clients auraient été touchés<br>Dell warns of data breach, 49 million customers allegedly affected Dell is warning customers of a data breach after a threat actor claimed to have stolen information for approximately 49 million customers. [...]]]> 2024-05-09T11:21:59+00:00 https://www.bleepingcomputer.com/news/security/dell-warns-of-data-breach-49-million-customers-allegedly-affected/ www.secnews.physaphae.fr/article.php?IdArticle=8496646 False Data Breach,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Zscaler prend "Environnement de test" hors ligne après les rumeurs d'une violation<br>Zscaler takes "test environment" offline after rumors of a breach Zscaler says that they discovered an exposed "test environment" that was taken offline for analysis after rumors circulated that a threat actor was selling access to the company\'s systems. [...]]]> 2024-05-08T19:30:25+00:00 https://www.bleepingcomputer.com/news/security/zscaler-takes-test-environment-offline-after-rumors-of-a-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8496241 False Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Système universitaire de Géorgie: 800k exposés en 2023 Movet Attack<br>University System of Georgia: 800K exposed in 2023 MOVEit attack The University System of Georgia (USG) is sending data breach notifications to 800,000 individuals whose data was exposed in the 2023 Clop MOVEit attacks. [...]]]> 2024-05-08T17:48:59+00:00 https://www.bleepingcomputer.com/news/security/university-system-of-georgia-800k-exposed-in-2023-moveit-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8496153 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Ville de Wichita Breach revendiquée par Lockbit Ransomware Gang<br>City of Wichita breach claimed by LockBit ransomware gang The LockBit ransomware gang has claimed responsibility for a disruptive cyberattack on the City of Wichita, which has forced the City\'s authorities to shut down IT systems used for online bill payment, including court fines, water bills, and public transportation. [...]]]> 2024-05-08T12:16:36+00:00 https://www.bleepingcomputer.com/news/security/city-of-wichita-breach-claimed-by-lockbit-ransomware-gang/ www.secnews.physaphae.fr/article.php?IdArticle=8496023 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Le Royaume-Uni confirme les données de paie du ministère de la Défense exposées dans la violation de données<br>UK confirms Ministry of Defence payroll data exposed in data breach The UK Government confirmed today that a threat actor recently breached the country\'s Ministry of Defence and gained access to part of the Armed Forces payment network. [...]]]> 2024-05-07T15:41:53+00:00 https://www.bleepingcomputer.com/news/security/uk-confirms-ministry-of-defence-payroll-data-exposed-in-data-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8495434 False Data Breach,Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain La nouvelle attaque fuit le trafic VPN à l'aide de serveurs Rogue DHCP<br>New attack leaks VPN traffic using rogue DHCP servers A new attack dubbed "TunnelVision" can route traffic outside a VPN\'s encryption tunnel, allowing attackers to snoop on unencrypted traffic while maintaining the appearance of a secure VPN connection. [...]]]> 2024-05-07T14:46:52+00:00 https://www.bleepingcomputer.com/news/security/new-tunnelvision-attack-leaks-vpn-traffic-using-rogue-dhcp-servers/ www.secnews.physaphae.fr/article.php?IdArticle=8495402 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain La ville de Wichita arrête le réseau informatique après une attaque de ransomware<br>City of Wichita shuts down IT network after ransomware attack The City of Wichita, Kansas, disclosed it was forced to shut down portions of its network after suffering a weekend ransomware attack. [...]]]> 2024-05-06T10:34:36+00:00 https://www.bleepingcomputer.com/news/security/city-of-wichita-shuts-down-it-network-after-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8494656 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain Le site saisi de Lockbit \\ prend vie pour taquiner de nouvelles annonces de police<br>Lockbit\\'s seized site comes alive to tease new police announcements The NCA, FBI, and Europol have revived a seized LockBit ransomware data leak site to hint at new information being revealed by law enforcement this Tuesday. [...]]]> 2024-05-06T07:06:12+00:00 https://www.bleepingcomputer.com/news/security/lockbits-seized-site-comes-alive-to-tease-new-police-announcements/ www.secnews.physaphae.fr/article.php?IdArticle=8494657 False Ransomware,Legislation None 3.0000000000000000 Bleeping Computer - Magazine Américain La Finlande met en garde contre les attaques de logiciels malveillants Android vioder les comptes bancaires<br>Finland warns of Android malware attacks breaching bank accounts Finland\'s Transport and Communications Agency (Traficom) has issued a warning about an ongoing Android malware campaign targeting banking accounts. [...]]]> 2024-05-05T10:19:38+00:00 https://www.bleepingcomputer.com/news/security/finland-warns-of-android-malware-attacks-breaching-bank-accounts/ www.secnews.physaphae.fr/article.php?IdArticle=8494115 False Malware,Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Les pirates iraniens se présentent en tant que journalistes pour pousser les logiciels malveillants de porte dérobée<br>Iranian hackers pose as journalists to push backdoor malware The Iranian state-backed threat actor tracked as APT42 is employing social engineering attacks, including posing as journalists, to breach corporate networks and cloud environments of Western and Middle Eastern targets. [...]]]> 2024-05-04T10:17:34+00:00 https://www.bleepingcomputer.com/news/security/iranian-hackers-pose-as-journalists-to-push-backdoor-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8493646 False Malware,Threat,Cloud APT 42 3.0000000000000000 Bleeping Computer - Magazine Américain Android Bug fuit les requêtes DNS même lorsque VPN Kill Switch est activé<br>Android bug leaks DNS queries even when VPN kill switch is enabled A Mullvad VPN user has discovered that Android devices leak DNS queries when switching VPN servers even though the "Always-on VPN" feature was enabled with the "Block connections without VPN" option. [...]]]> 2024-05-03T17:02:42+00:00 https://www.bleepingcomputer.com/news/security/android-bug-leaks-dns-queries-even-when-vpn-kill-switch-is-enabled/ www.secnews.physaphae.fr/article.php?IdArticle=8493647 False Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain L'OTAN et l'UE condamnent les cyberattaques de la Russie contre l'Allemagne, la Tchéche<br>NATO and EU condemn Russia\\'s cyberattacks against Germany, Czechia ​NATO and the European Union, with international partners, formally condemned a long-term cyber espionage campaign against European countries conducted by the Russian threat group APT28. [...]]]> 2024-05-03T11:47:35+00:00 https://www.bleepingcomputer.com/news/security/nato-and-eu-condemn-russias-cyberattacks-against-germany-czechia/ www.secnews.physaphae.fr/article.php?IdArticle=8493049 False Threat APT 28 3.0000000000000000 Bleeping Computer - Magazine Américain Bitwarden lance la nouvelle application MFA Authenticator pour iOS, Android<br>Bitwarden launches new MFA Authenticator app for iOS, Android Bitwarden, the creator of the popular open-source password manager, has just launched a new authenticator app called Bitwarden Authenticator, which is available for iOS and Android devices. [...]]]> 2024-05-02T16:20:51+00:00 https://www.bleepingcomputer.com/news/software/bitwarden-launches-new-mfa-authenticator-app-for-ios-android/ www.secnews.physaphae.fr/article.php?IdArticle=8492599 False Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain Microsoft met en garde contre l'attaque "sale stream" impactant les applications Android<br>Microsoft warns of "Dirty Stream" attack impacting Android apps Microsoft has highlighted a novel attack dubbed "Dirty Stream," which could allow malicious Android apps to overwrite files in another application\'s home directory, potentially leading to arbitrary code execution and secrets theft. [...]]]> 2024-05-02T12:02:45+00:00 https://www.bleepingcomputer.com/news/security/microsoft-warns-of-dirty-stream-attack-impacting-android-apps/ www.secnews.physaphae.fr/article.php?IdArticle=8492473 False Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Revil Hacker derrière Kaseya Ransomware Attack obtient 13 ans de prison<br>REvil hacker behind Kaseya ransomware attack gets 13 years in prison Yaroslav Vasinskyi, a Ukrainian national, was sentenced to 13 years and seven months in prison and ordered to pay $16 million in restitution for his involvement in the REvil ransomware operation. [...]]]> 2024-05-02T10:44:23+00:00 https://www.bleepingcomputer.com/news/security/revil-hacker-behind-kaseya-ransomware-attack-gets-13-years-in-prison/ www.secnews.physaphae.fr/article.php?IdArticle=8492439 False Ransomware,Legislation None 2.0000000000000000 Bleeping Computer - Magazine Américain Panda Restaurants révèle la violation des données après le piratage des systèmes d'entreprise<br>Panda Restaurants discloses data breach after corporate systems hack Panda Restaurant Group, the parent company of Panda Express, Panda Inn, and Hibachi-San, disclosed a data breach after attackers compromised its corporate systems in March and stole the personal information of an undisclosed number of individuals. [...]]]> 2024-05-01T13:35:03+00:00 https://www.bleepingcomputer.com/news/security/panda-restaurants-discloses-a-data-breach-after-corporate-systems-hack/ www.secnews.physaphae.fr/article.php?IdArticle=8491959 False Data Breach,Hack None 3.0000000000000000 Bleeping Computer - Magazine Américain French hospital CHC-SV refuses to pay LockBit extortion demand The Hôpital de Cannes - Simone Veil (CHC-SV) in France announced it received a ransom demand from the Lockbit 3.0 ransomware gang, saying they refuse to pay the ransom. [...]]]> 2024-05-01T12:38:04+00:00 https://www.bleepingcomputer.com/news/security/french-hospital-chc-sv-refuses-to-pay-lockbit-extortion-demand/ www.secnews.physaphae.fr/article.php?IdArticle=8491932 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain CISA dit que le bug de la prise de contrôle du compte Gitlab est activement exploité dans les attaques<br>CISA says GitLab account takeover bug is actively exploited in attacks ​CISA warned today that attackers are actively exploiting a maximum-severity GitLab vulnerability that allows them to take over accounts via password resets. [...]]]> 2024-05-01T12:29:36+00:00 https://www.bleepingcomputer.com/news/security/cisa-says-gitlab-account-takeover-bug-is-actively-exploited-in-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8491933 False Vulnerability None 3.0000000000000000 Bleeping Computer - Magazine Américain Les nouveaux logiciels malveillants de seiche infectent les routeurs pour surveiller le trafic pour les informations d'identification<br>New Cuttlefish malware infects routers to monitor traffic for credentials A new malware named \'Cuttlefish\' has been spotted infecting enterprise-grade and small office/home office (SOHO) routers to monitor data that passes through them and steal authentication information. [...]]]> 2024-05-01T09:00:00+00:00 https://www.bleepingcomputer.com/news/security/new-cuttlefish-malware-infects-routers-to-monitor-traffic-for-credentials/ www.secnews.physaphae.fr/article.php?IdArticle=8491839 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Les nouvelles attaques de logiciels malveillants de nouvelles latrodectus utilisent des thèmes Microsoft, CloudFlare<br>New Latrodectus malware attacks use Microsoft, Cloudflare themes Latrodectus malware is now being distributed in phishing campaigns using Microsoft Azure and Cloudflare lures to appear legitimate while making it harder for email security platforms to detect the emails as malicious. [...]]]> 2024-04-30T18:08:49+00:00 https://www.bleepingcomputer.com/news/security/new-latrodectus-malware-attacks-use-microsoft-cloudflare-themes/ www.secnews.physaphae.fr/article.php?IdArticle=8491506 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Philadelphia Inquirer: Données de plus de 25 000 personnes volées en 2023 violation<br>Philadelphia Inquirer: Data of over 25,000 people stolen in 2023 breach Daily newspaper Philadelphia Inquirer revealed that attackers behind a May 2023 security breach have stolen the personal and financial information of 25,549 individuals. [...]]]> 2024-04-30T16:12:01+00:00 https://www.bleepingcomputer.com/news/security/philadelphia-inquirer-data-of-over-25-000-people-stolen-in-2023-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8491465 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Google paie maintenant jusqu'à 450 000 $ pour les bogues RCE dans certaines applications Android<br>Google now pays up to $450,000 for RCE bugs in some Android apps Google has increased rewards for reporting remote code execution vulnerabilities within select Android apps by ten times, from $30,000 to $300,000, with the maximum reward reaching $450,000 for exceptional quality reports. [...]]]> 2024-04-30T14:33:51+00:00 https://www.bleepingcomputer.com/news/security/google-now-pays-up-to-450-000-for-rce-bugs-in-some-android-apps/ www.secnews.physaphae.fr/article.php?IdArticle=8491419 False Vulnerability,Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Des millions de repos de docker ont trouvé des logiciels malveillants, des sites de phishing<br>Millions of Docker repos found pushing malware, phishing sites Three large-scale campaigns have targeted Docker Hub users, planting millions of repositories designed to push malware and phishing sites since early 2021. [...]]]> 2024-04-30T13:32:10+00:00 https://www.bleepingcomputer.com/news/security/millions-of-docker-repos-found-pushing-malware-phishing-sites/ www.secnews.physaphae.fr/article.php?IdArticle=8491395 False Malware None 4.0000000000000000 Bleeping Computer - Magazine Américain Nouveau Wpeeper Android Malware se cache derrière des sites WordPress piratés<br>New Wpeeper Android malware hides behind hacked WordPress sites A new Android backdoor malware named \'Wpeeper\' has been spotted in at least two unofficial app stores mimicking the Uptodown App Store, a popular third-party app store for Android devices with over 220 million downloads. [...]]]> 2024-04-30T12:41:57+00:00 https://www.bleepingcomputer.com/news/security/new-wpeeper-android-malware-hides-behind-hacked-wordpress-sites/ www.secnews.physaphae.fr/article.php?IdArticle=8491367 False Malware,Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain Google a rejeté 2,28 millions d'applications Android risquées de Play Store en 2023<br>Google rejected 2.28 million risky Android apps from Play store in 2023 Google blocked 2.28 million Android apps from being published on Google Play after finding various policy violations that could threaten user\'s security. [...]]]> 2024-04-29T12:00:00+00:00 https://www.bleepingcomputer.com/news/security/google-rejected-228-million-risky-android-apps-from-play-store-in-2023/ www.secnews.physaphae.fr/article.php?IdArticle=8490755 False Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Google a rejeté 2,28 millions d'applications risquées de Play Store en 2023<br>Google rejected 2.28 million risky apps from Play Store in 2023 Google blocked 2.28 million Android apps from being published on Google Play after finding various policy violations that could threaten user\'s security. [...]]]> 2024-04-29T12:00:00+00:00 https://www.bleepingcomputer.com/news/security/google-rejected-228-million-risky-apps-from-play-store-in-2023/ www.secnews.physaphae.fr/article.php?IdArticle=8490728 False Mobile None 1.00000000000000000000 Bleeping Computer - Magazine Américain L'agence de collecte FBCS prévient une violation des données sur les données de 1,9 million de personnes<br>Collection agency FBCS warns data breach impacts 1.9 million people Financial Business and Consumer Solutions (FBCS) is warning 1,955,385 impacted individuals in the United States that the company suffered a data breach after discovering unauthorized access to specific systems in its network. [...]]]> 2024-04-29T10:23:32+00:00 https://www.bleepingcomputer.com/news/security/collection-agency-fbcs-warns-data-breach-impacts-19-million-people/ www.secnews.physaphae.fr/article.php?IdArticle=8490699 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Kaiser Permanente: la violation des données peut avoir un impact sur 13,4 millions de patients<br>Kaiser Permanente: Data breach may impact 13.4 million patients Healthcare service provider Kaiser Permanente disclosed a data security incident that may impact 13.4 million people in the United States. [...]]]> 2024-04-26T05:34:06+00:00 https://www.bleepingcomputer.com/news/security/kaiser-permanente-data-breach-may-impact-134-million-patients/ www.secnews.physaphae.fr/article.php?IdArticle=8488979 False Data Breach,Medical None 2.0000000000000000 Bleeping Computer - Magazine Américain LA County Health Services: Patients\' data exposed in phishing attack ​The Los Angeles County Department of Health Services disclosed a data breach after thousands of patients\' personal and health information was exposed in a data breach resulting from a recent phishing attack impacting over two dozen employees. [...]]]> 2024-04-25T15:55:17+00:00 https://www.bleepingcomputer.com/news/security/la-county-health-services-thousands-of-patients-data-exposed-in-email-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8488980 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Les chercheurs servent de malware Plugx Sinkhole avec 2,5 millions d'IP uniques<br>Researchers sinkhole PlugX malware server with 2.5 million unique IPs Researchers have sinkholed a command and control server for a variant of the PlugX malware and observed in six months more than 2.5 million connections from unique IP addresses. [...]]]> 2024-04-25T15:20:30+00:00 https://www.bleepingcomputer.com/news/security/researchers-sinkhole-plugx-malware-server-with-25-million-unique-ips/ www.secnews.physaphae.fr/article.php?IdArticle=8488691 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Les nouveaux logiciels malveillants Brokewell prennent le contrôle des appareils Android, vole des données<br>New Brokewell malware takes over Android devices, steals data Security researchers have discovered a new Android banking trojan they named Brokewell that can capture every event on the device, from touches and information displayed to text input and the applications the user launches. [...]]]> 2024-04-25T06:00:00+00:00 https://www.bleepingcomputer.com/news/security/new-brokewell-malware-takes-over-android-devices-steals-data/ www.secnews.physaphae.fr/article.php?IdArticle=8488547 False Malware,Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain Les pirates Arcaneroor exploitent Cisco Zero-Days pour briser les réseaux Govt<br>ArcaneDoor hackers exploit Cisco zero-days to breach govt networks ​Cisco warned today that a state-backed hacking group has been exploiting two zero-day vulnerabilities in Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) firewalls since November 2023 to breach government networks worldwide. [...]]]> 2024-04-24T13:07:51+00:00 https://www.bleepingcomputer.com/news/security/arcanedoor-hackers-exploit-cisco-zero-days-to-breach-govt-networks/ www.secnews.physaphae.fr/article.php?IdArticle=8488121 False Vulnerability,Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain Les clients de Ring obtiennent 5,6 millions de dollars en règlement de violation de confidentialité<br>Ring customers get $5.6 million in privacy breach settlement The Federal Trade Commission is sending $5.6 million in refunds to Ring users whose private video feeds were accessed without consent by Amazon employees and contractors, or had their accounts and devices hacked because of insufficient security protections. [...]]]> 2024-04-24T10:31:26+00:00 https://www.bleepingcomputer.com/news/security/ring-customers-get-56-million-in-privacy-breach-settlement/ www.secnews.physaphae.fr/article.php?IdArticle=8488042 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Les attaques de Coralraider utilisent le cache CDN pour pousser les logiciels malveillants du voleur d'informations<br>CoralRaider attacks use CDN cache to push info-stealer malware A threat actor has been using a content delivery network cache to store information-stealing malware in an ongoing campaign targeting systems U.S., the U.K., Germany, and Japan. [...]]]> 2024-04-23T17:27:54+00:00 https://www.bleepingcomputer.com/news/security/coralraider-attacks-use-cdn-cache-to-push-info-stealer-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8487636 False Malware,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Les groupes de piratage de la RPDC enfreignent les entrepreneurs de la défense sud-coréenne<br>DPRK hacking groups breach South Korean defense contractors The National Police Agency in South Korea issued an urgent warning today about North Korean hacking groups targeting defense industry entities to steal valuable technology information. [...]]]> 2024-04-23T12:56:50+00:00 https://www.bleepingcomputer.com/news/security/dprk-hacking-groups-breach-south-korean-defense-contractors/ www.secnews.physaphae.fr/article.php?IdArticle=8487508 False Legislation None 3.0000000000000000 Bleeping Computer - Magazine Américain Les États-Unis impose des interdictions de visa sur 13 fabricants de logiciels espions et leurs familles<br>US imposes visa bans on 13 spyware makers and their families ​The Department of State has started imposing visa restrictions on mercenary spyware makers and peddlers, prohibiting their entry into the United States, as announced earlier in February. [...]]]> 2024-04-23T11:38:21+00:00 https://www.bleepingcomputer.com/news/security/us-imposes-visa-bans-on-13-spyware-makers-and-their-families/ www.secnews.physaphae.fr/article.php?IdArticle=8487484 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Hackers Hijack Antivirus Mises à jour pour déposer des logiciels malveillants Guptiner<br>Hackers hijack antivirus updates to drop GuptiMiner malware North Korean hackers have been exploiting the updating mechanism of the eScan antivirus to plant backdoors on big corporate networks and deliver cryptocurrency miners through GuptiMiner malware. [...]]]> 2024-04-23T10:56:24+00:00 https://www.bleepingcomputer.com/news/security/hackers-hijack-antivirus-updates-to-drop-guptiminer-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8487448 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain UnitedHealth confirme qu'il a payé un gang de ransomware pour arrêter la fuite de données<br>UnitedHealth confirms it paid ransomware gang to stop data leak The UnitedHealth Group has confirmed that it paid a ransom to cybercriminals to protect sensitive data stolen during the Optum ransomware attack in late February. [...]]]> 2024-04-23T10:28:36+00:00 https://www.bleepingcomputer.com/news/security/unitedhealth-confirms-it-paid-ransomware-gang-to-stop-data-leak/ www.secnews.physaphae.fr/article.php?IdArticle=8487449 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Synlab Italia suspend les opérations après une attaque de ransomware<br>Synlab Italia suspends operations following ransomware attack Synlab Italia has suspended all its medical diagnostic and testing services after a ransomware attack forced its IT systems to be taken offline. [...]]]> 2024-04-22T11:27:52+00:00 https://www.bleepingcomputer.com/news/security/synlab-italia-suspends-operations-following-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8486883 False Ransomware,Medical None 2.0000000000000000 Bleeping Computer - Magazine Américain Gitlab affecté par une faille CDN de style Github permettant l'hébergement de logiciels malveillants<br>GitLab affected by GitHub-style CDN flaw allowing malware hosting BleepingComputer recently reported how a GitHub flaw, or possibly a design decision, is being abused by threat actors to distribute malware using URLs associated with Microsoft repositories, making the files appear trustworthy. It turns out, GitLab is also affected by this issue and could be abused in a similar fashion. [...]]]> 2024-04-22T11:05:44+00:00 https://www.bleepingcomputer.com/news/security/gitlab-affected-by-github-style-cdn-flaw-allowing-malware-hosting/ www.secnews.physaphae.fr/article.php?IdArticle=8486857 False Malware,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Le développement malware attire les enfants exploiteurs dans Honeytrap pour les extorquer<br>Malware dev lures child exploiters into honeytrap to extort them You rarely root for a cybercriminal, but a new malware campaign targeting child exploiters doesn\'t make you feel bad for the victims. [...]]]> 2024-04-21T14:49:58+00:00 https://www.bleepingcomputer.com/news/security/malware-dev-lures-child-exploiters-into-honeytrap-to-extort-them/ www.secnews.physaphae.fr/article.php?IdArticle=8486413 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Les commentaires GitHub ont été maltraités pour pousser les logiciels malveillants via les URL de Microsoft Repo<br>GitHub comments abused to push malware via Microsoft repo URLs A GitHub flaw, or possibly a design decision, is being abused by threat actors to distribute malware using URLs associated with a Microsoft repository, making the files appear trustworthy. [...]]]> 2024-04-20T10:14:28+00:00 https://www.bleepingcomputer.com/news/security/github-comments-abused-to-push-malware-via-microsoft-repo-urls/ www.secnews.physaphae.fr/article.php?IdArticle=8485979 False Malware,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain L'agence des Nations Unies enquête sur l'attaque des ransomwares, le vol de données<br>United Nations agency investigates ransomware attack, data theft ​The United Nations Development Programme (UNDP) is investigating a cyberattack after threat actors breached its IT systems to steal human resources data. [...]]]> 2024-04-19T14:03:31+00:00 https://www.bleepingcomputer.com/news/security/united-nations-agency-investigates-ransomware-attack-claimed-by-8Base-gang/ www.secnews.physaphae.fr/article.php?IdArticle=8485404 False Ransomware,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Fake Cheat attire les joueurs dans la propagation du malware d'infostealer<br>Fake cheat lures gamers into spreading infostealer malware A new info-stealing malware linked to Redline poses as a game cheat called \'Cheat Lab,\' promising downloaders a free copy if they convince their friends to install it too. [...]]]> 2024-04-18T20:46:29+00:00 https://www.bleepingcomputer.com/news/security/fake-cheat-lures-gamers-into-spreading-infostealer-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8485016 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain FBI: Akira Ransomware a récolté 42 millions de dollars de plus de 250 victimes<br>FBI: Akira ransomware raked in $42 million from 250+ victims According to a joint advisory from the FBI, CISA, Europol\'s European Cybercrime Centre (EC3), and the Netherlands\' National Cyber Security Centre (NCSC-NL), the Akira ransomware operation has breached the networks of over 250 organizations and raked in roughly $42 million in ransom payments. [...]]]> 2024-04-18T14:11:29+00:00 https://www.bleepingcomputer.com/news/security/fbi-akira-ransomware-raked-in-42-million-from-250-plus-victims/ www.secnews.physaphae.fr/article.php?IdArticle=8484883 False Ransomware None 4.0000000000000000 Bleeping Computer - Magazine Américain Google AD imite le marché des baleines pour pousser les logiciels malveillants de drainage du portefeuille<br>Google ad impersonates Whales Market to push wallet drainer malware A legitimate-looking Google Search advertisement for the crypto trading platform \'Whales Market\' redirects visitors to a wallet-draining phishing site that steals all of your assets. [...]]]> 2024-04-18T13:55:56+00:00 https://www.bleepingcomputer.com/news/security/google-ad-impersonates-whales-market-to-push-wallet-drainer-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8484858 False Malware None 2.0000000000000000 Bleeping Computer - Magazine Américain Les cybercriminels se présentent en tant que personnel de LastPass pour pirater les voûtes de mot de passe<br>Cybercriminals pose as LastPass staff to hack password vaults LastPass is warning of a malicious campaign targeting its users with the CryptoChameleon phishing kit that is associated with cryptocurrency theft. [...]]]> 2024-04-18T10:56:41+00:00 https://www.bleepingcomputer.com/news/security/cybercriminals-pose-as-lastpass-staff-to-hack-password-vaults/ www.secnews.physaphae.fr/article.php?IdArticle=8484776 False Hack LastPass 2.0000000000000000 Bleeping Computer - Magazine Américain Service de phishing Labhost avec 40 000 domaines perturbés, 37 arrêtés<br>LabHost phishing service with 40,000 domains disrupted, 37 arrested The LabHost phishing-as-a-service (PhaaS) platform has been disrupted in a year-long global law enforcement operation that compromised the infrastructure and arrested 37 suspects, among them the original developer. [...]]]> 2024-04-18T05:52:04+00:00 https://www.bleepingcomputer.com/news/security/labhost-phishing-service-with-40-000-domains-disrupted-37-arrested/ www.secnews.physaphae.fr/article.php?IdArticle=8484633 False Legislation None 2.0000000000000000 Bleeping Computer - Magazine Américain Soumnibot Malware exploite les bogues Android pour échapper à la détection<br>SoumniBot malware exploits Android bugs to evade detection A new Android banking malware named \'SoumniBot\' is using a less common obfuscation approach by exploiting weaknesses in the Android manifest extraction and parsing procedure. [...]]]> 2024-04-17T17:38:28+00:00 https://www.bleepingcomputer.com/news/security/soumnibot-malware-exploits-android-bugs-to-evade-detection/ www.secnews.physaphae.fr/article.php?IdArticle=8484367 False Malware,Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain Plusieurs botnets exploitant une faille TP-Link d'un an pour pirater des routeurs<br>Multiple botnets exploiting one-year-old TP-Link flaw to hack routers At least six distinct botnet malware operations are hunting for TP-Link Archer AX21 (AX1800) routers vulnerable to a command injection security issue reported and addressed last year. [...]]]> 2024-04-17T09:03:09+00:00 https://www.bleepingcomputer.com/news/security/multiple-botnets-exploiting-one-year-old-tp-link-flaw-to-hack-routers/ www.secnews.physaphae.fr/article.php?IdArticle=8484115 False Malware,Hack None 2.0000000000000000 Bleeping Computer - Magazine Américain Cerebral pour payer 7 millions de dollars de règlement dans Facebook Pixel Data Faking Case<br>Cerebral to pay $7 million settlement in Facebook pixel data leak case The U.S. Federal Trade Commission has reached a settlement with telehealth firm Cerebral in which the company will pay $7,000,000 over allegations of mishandling people\'s sensitive health data. [...]]]> 2024-04-16T17:37:20+00:00 https://www.bleepingcomputer.com/news/security/cerebral-to-pay-7-million-settlement-in-facebook-pixel-data-leak-case/ www.secnews.physaphae.fr/article.php?IdArticle=8483705 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Ivanti met en garde contre les défauts critiques dans sa solution Avalanche MDM<br>Ivanti warns of critical flaws in its Avalanche MDM solution Ivanti has released security updates to fix 27 vulnerabilities in its Avalanche mobile device management (MDM) solution, two of them critical heap overflows that can be exploited for remote command execution. [...]]]> 2024-04-16T15:52:14+00:00 https://www.bleepingcomputer.com/news/security/ivanti-warns-of-critical-flaws-in-its-avalanche-mdm-solution/ www.secnews.physaphae.fr/article.php?IdArticle=8483648 False Vulnerability,Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain UnitedHealth: Change Healthcare Cyberattack a provoqué une perte de 872 millions de dollars<br>UnitedHealth: Change Healthcare cyberattack caused $872 million loss UnitedHealth Group reported an $872 million impact on its Q1 earnings due to the ransomware attack disrupting the U.S. healthcare system since February. [...]]]> 2024-04-16T10:24:54+00:00 https://www.bleepingcomputer.com/news/security/unitedhealth-change-healthcare-cyberattack-caused-872-million-loss/ www.secnews.physaphae.fr/article.php?IdArticle=8483497 False Ransomware,Medical None 3.0000000000000000 Bleeping Computer - Magazine Américain Les nouvelles attaques de Steganoamor utilisent la stéganographie pour cibler 320 organisations dans le monde entier<br>New SteganoAmor attacks use steganography to target 320 orgs globally A new campaign conducted by the TA558 hacking group is concealing malicious code inside images using steganography to deliver various malware tools onto targeted systems. [...]]]> 2024-04-15T16:31:28+00:00 https://www.bleepingcomputer.com/news/security/new-steganoamor-attacks-use-steganography-to-target-320-orgs-globally/ www.secnews.physaphae.fr/article.php?IdArticle=8482960 False Malware,Tool None 2.0000000000000000 Bleeping Computer - Magazine Américain Chipmaker Nexperia confirme la violation après la fuite de gangs de ransomware qui divulgue<br>Chipmaker Nexperia confirms breach after ransomware gang leaks data Dutch chipmaker Nexperia confirmed late last week that hackers breached its network in March 2024 after a ransomware gang leaked samples of allegedly stolen data. [...]]]> 2024-04-15T12:00:01+00:00 https://www.bleepingcomputer.com/news/security/chipmaker-nexperia-confirms-breach-after-ransomware-gang-leaks-data/ www.secnews.physaphae.fr/article.php?IdArticle=8482813 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain Daixin Ransomware Gang affirme une attaque sur les hôtels Omni<br>Daixin ransomware gang claims attack on Omni Hotels The Daixin Team ransomware gang claimed a recent cyberattack on Omni Hotels & Resorts and is now threatening to publish customers\' sensitive information if a ransom is not paid. [...]]]> 2024-04-15T11:01:54+00:00 https://www.bleepingcomputer.com/news/security/daixin-ransomware-gang-claims-attack-on-omni-hotels/ www.secnews.physaphae.fr/article.php?IdArticle=8482781 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain Cisco Duo avertit la violation de données tierce des journaux SMS exposés<br>Cisco Duo warns third-party data breach exposed SMS MFA logs Cisco Duo\'s security team warns that hackers stole some customers\' VoIP and SMS logs for multi-factor authentication (MFA) messages in a cyberattack on their telephony provider. [...]]]> 2024-04-15T10:52:39+00:00 https://www.bleepingcomputer.com/news/security/cisco-duo-warns-third-party-data-breach-exposed-sms-mfa-logs/ www.secnews.physaphae.fr/article.php?IdArticle=8482782 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain OpenTable a gagné \\ 'n ajouter des prénoms, des photos à de vieilles critiques après le contrecoup<br>OpenTable won\\'t add first names, photos to old reviews after backlash OpenTable has reversed its decision to show members\' first names and profile pictures in past anonymous reviews after receiving backlash from members who felt it was a breach of privacy. [...]]]> 2024-04-14T18:28:01+00:00 https://www.bleepingcomputer.com/news/security/opentable-wont-add-first-names-photos-to-old-reviews-after-backlash/ www.secnews.physaphae.fr/article.php?IdArticle=8482308 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Hacker affirme que la violation des données géantes du tigre, fuit 2,8 m de dossiers en ligne<br>Hacker claims Giant Tiger data breach, leaks 2.8M records online Canadian retail chain Giant Tiger disclosed a data breach in March 2024. A threat actor has now publicly claimed responsibility for the data breach and leaked 2.8 million records on a hacker forum that they claim are of Giant Tiger customers. [...]]]> 2024-04-13T10:00:16+00:00 https://www.bleepingcomputer.com/news/security/hacker-claims-giant-tiger-data-breach-leaks-28m-records-online/ www.secnews.physaphae.fr/article.php?IdArticle=8481422 False Data Breach,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain PALO Alto Networks Zero-Day exploité depuis mars dans des pare-feu de porte dérobée<br>Palo Alto Networks zero-day exploited since March to backdoor firewalls Suspected state-sponsored hackers have been exploiting a zero-day vulnerability in Palo Alto Networks firewalls tracked as CVE-2024-3400 since March 26, using the compromised devices to breach internal networks, steal data and credentials. [...]]]> 2024-04-13T08:35:15+00:00 https://www.bleepingcomputer.com/news/security/palo-alto-networks-zero-day-exploited-since-march-to-backdoor-firewalls/ www.secnews.physaphae.fr/article.php?IdArticle=8481394 False Vulnerability,Threat None 3.0000000000000000