πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.1K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ Researchers Uncover Active Exploitation of WordPress Plugin Vulnerabilities πŸ–‹οΈ

Cybersecurity researchers have warned that multiple highseverity security vulnerabilities in WordPress plugins are being actively exploited by threat actors to create rogue administrator accounts for followon exploitation. "These vulnerabilities are found in various WordPress plugins and are prone to unauthenticated stored crosssite scripting XSS attacks due to inadequate input sanitization.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  Falco 0.38.0 πŸ› 

Sysdig Falco is a behavioral activity monitoring agent that is open source and comes with native support for containers. Falco lets you define highly granular rules to check for activities involving file and network activity, process execution, IPC, and much more, using a flexible syntax. Falco will notify you when these rules are violated. You can think about Falco as a mix between snort, ossec and strace.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 What Is ShrinkLocker? New Ransomware Targets Microsoft BitLocker Encryption Feature 🦿

The malware exploits Windows BitLocker to encrypt corporate files.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
β™ŸοΈ β€˜Operation Endgame’ Hits Malware Delivery Platforms β™ŸοΈ

Law enforcement agencies in the United States and Europe today announced Operation Endgame, a coordinated action against some of the most popular cybercrime platforms for delivering ransomware and datastealing malware. Dubbed "the largest ever operation against botnets," the international effort is being billed as the opening salvo in an ongoing campaign targeting advanced malware "droppers" or "loaders" like IcedID, Smokeloader and Trickbot.

πŸ“– Read more.

πŸ”— Via "Krebs on Security"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ RedTail Crypto-Mining Malware Exploiting Palo Alto Networks Firewall Vulnerability πŸ–‹οΈ

The threat actors behind the RedTail cryptocurrency mining malware have added a recently disclosed security flaw impacting Palo Alto Networks firewalls to its exploit arsenal. The addition of the PANOS vulnerability to its toolkit has been complemented by updates to the malware, which now incorporates new antianalysis techniques, according to findings from web infrastructure and security.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” First American Reveals Data Breach Impacting 44,000 Individuals πŸ“”

The cyberattack, which occurred in December 2023, forced First American to shut down some systems.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Okta Warns Once Again of Credential-Stuffing Attacks πŸ•΅οΈβ€β™‚οΈ

This time it's the identity management service provider's crossorigin authentication feature that's being targeted by adversaries.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🧠 Important details about CIRCIA ransomware reporting 🧠

In March 2022, the Biden Administration signed into law the Cyber Incident Reporting for Critical Infrastructure Act of 2022 CIRCIA. This landmark legislation tasks the Cybersecurity and Infrastructure Security Agency CISA to develop and implement regulations requiring covered entities to report covered cyber incidents and ransomware payments. The CIRCIA incident reports are meant to enable The post Important details about CIRCIA ransomware reporting appeared first on Security Intelligence.

πŸ“– Read more.

πŸ”— Via "Security Intelligence"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Cyber Espionage Alert: LilacSquid Targets IT, Energy, and Pharma Sectors πŸ–‹οΈ

A previously undocumented cyber espionagefocused threat actor named LilacSquid has been linked to targeted attacks spanning various sectors in the United States U.S., Europe, and Asia as part of a data theft campaign since at least 2021. "The campaign is geared toward establishing longterm access to compromised victim organizations to enable LilacSquid to siphon data of interest to.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Europol-Led Operation Endgame Hits Botnet, Ransomware Networks πŸ“”

The operation targeted several significant malware droppers, including IcedID, SystemBC, Pikabot, Smokeloader and Bumblebee.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ FlyingYeti Exploits WinRAR Vulnerability to Deliver COOKBOX Malware in Ukraine πŸ–‹οΈ

Cloudflare on Thursday said it took steps to disrupt a monthlong phishing campaign orchestrated by a Russiaaligned threat actor called FlyingYeti targeting Ukraine. "The FlyingYeti campaign capitalized on anxiety over the potential loss of access to housing and utilities by enticing targets to open malicious files via debtthemed lures," Cloudflare's threat intelligence team Cloudforce One.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ CISA Alerts Federal Agencies to Patch Actively Exploited Linux Kernel Flaw πŸ–‹οΈ

The U.S. Cybersecurity and Infrastructure Security Agency CISA on Thursday added a security flaw impacting the Linux kernel to the Known Exploited Vulnerabilities KEV catalog, citing evidence of active exploitation. Tracked as CVE20241086 CVSS score 7.8, the highseverity issue relates to a useafterfree bug in the netfilter component that permits a local attacker to elevate privileges.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Cops Swarm Global Cybercrime Botnet Infrastructure in 2 Massive Ops πŸ•΅οΈβ€β™‚οΈ

Europol undertook dropper malware botnet takedown while US law enforcement dismantled a sprawling cybercrime botnet for hire.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Flawed AI Tools Create Worries for Private LLMs, Chatbots πŸ•΅οΈβ€β™‚οΈ

Companies are looking to large language models to help their employees glean information from unstructured data, but vulnerabilities could lead to disinformation and, potentially, data leaks.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Proofpoint’s CISO 2024 Report: Top Challenges Include Human Error & Risk 🦿

This new report also indicates an increasing attack surface as putting pressure on CISOs. One positive note is CISOs' improving relationships with board members.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🧨 What You Need to Know About Election Security 🧨

As election season approaches, the importance of safeguarding our democratic processes has never been more critical. Ensuring election security is... The post What You Need to Know About Election Security appeared first on McAfee Blog.

πŸ“– Read more.

πŸ”— Via "McAfee"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸš€ AI in HR: Is artificial intelligence changing how we hire employees forever? πŸš€

Much digital ink has been spilled on artificial intelligence taking over jobs, but what about AI shaking up the hiring process in the meantime?.

πŸ“– Read more.

πŸ”— Via "ESET - WeLiveSecurity"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ OpenAI, Meta, TikTok Disrupt Multiple AI-Powered Disinformation Campaigns πŸ–‹οΈ

OpenAI on Thursday disclosed that it took steps to cut off five covert influence operations IO originating from China, Iran, Israel, and Russia that sought to abuse its artificial intelligence AI tools to manipulate public discourse or political outcomes online while obscuring their true identity. These activities, which were detected over the past three months, used its AI models to.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ“” #Infosec2024: Why Cybersecurity is Critical for the 2024 Paris Olympics πŸ“”

The large volume of attendees mixed with interconnected infrastructure provides opportunities for threat actors to wreak havoc during the Paris Olympics.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” BBC Pension Scheme Breached, Exposing Employee Data πŸ“”

The BBC said that personally identifiable information of current and former employees has been breached following an incident affecting its pension scheme.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Mass exploitation of edge services could become the defacto attack vector for hackers in 2024 - research πŸ“’

The start of 2024 saw a relative decline in phishing attacks as security hygiene and endpoint defenses broadly improve.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity