πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
🦿 Proofpoint’s New Agentic AI Cybersecurity Solutions Address 4 Key Challenges 🦿

Proofpoint expands humancentric security to protect AI agents, safeguarding collaboration points and shared data in the agentic workspace. The post Proofpoints New Agentic AI Cybersecurity Solutions Address 4 Key Challenges appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
β™ŸοΈ Feds Tie β€˜Scattered Spider’ Duo to $115M in Ransoms β™ŸοΈ

U.S. prosecutors last week levied criminal hacking charges against 19yearold U.K. national Thalha Jubair for allegedly being a core member of Scattered Spider, a prolific cybercrime group blamed for extorting at least 115 million in ransom payments from victims. The charges came as Jubair and an alleged coconspirator appeared in a London court to face accusations of hacking into and extorting several large U.K. retailers, the London transit system, and healthcare providers in the United States.

πŸ“– Read more.

πŸ”— Via "Krebs on Security"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Cisco Warns of Actively Exploited SNMP Vulnerability Allowing RCE or DoS in IOS Software πŸ–‹οΈ

Cisco has warned of a highseverity security flaw in IOS Software and IOS XE Software that could allow a remote attacker to execute arbitrary code or trigger a denialofservice DoS condition under specific circumstances. The company said the vulnerability, CVE202520352 CVSS score 7.7, has been exploited in the wild, adding it became aware of it "after local Administrator credentials were.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
β™ŸοΈ Feds Tie β€˜Scattered Spider’ Duo to $115M in Ransoms β™ŸοΈ

U.S. prosecutors last week levied criminal hacking charges against 19yearold U.K. national Thalha Jubair for allegedly being a core member of Scattered Spider, a prolific cybercrime group blamed for extorting at least 115 million in ransom payments from victims. The charges came as Jubair and an alleged coconspirator appeared in a London court to face accusations of hacking into and extorting several large U.K. retailers, the London transit system, and healthcare providers in the United States.

πŸ“– Read more.

πŸ”— Via "Krebs on Security"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
🦿 Proofpoint’s New Agentic AI Cybersecurity Solutions Address 4 Key Challenges 🦿

Proofpoint expands humancentric security to protect AI agents, safeguarding collaboration points and shared data in the agentic workspace. The post Proofpoints New Agentic AI Cybersecurity Solutions Address 4 Key Challenges appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” npm Package Uses QR Code Steganography to Steal Credentials πŸ“”

Malicious npm package Fezbox uses QR codes to steal credentials from browser cookies.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” npm Package Uses QR Code Steganography to Steal Credentials πŸ“”

Malicious npm package Fezbox uses QR codes to steal credentials from browser cookies.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Chinese Hackers RedNovember Target Global Governments Using Pantegana and Cobalt Strike πŸ–‹οΈ

A suspected cyber espionage activity cluster that was previously found targeting global government and private sector organizations spanning Africa, Asia, North America, South America, and Oceania has been assessed to be a Chinese statesponsored threat actor. Recorded Future, which was tracking the activity under the moniker TAG100, has now graduated it to a hacking group dubbed RedNovember.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” npm Package Uses QR Code Steganography to Steal Credentials πŸ“”

Malicious npm package Fezbox uses QR codes to steal credentials from browser cookies.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ UNC5221 Uses BRICKSTORM Backdoor to Infiltrate U.S. Legal and Technology Sectors πŸ–‹οΈ

Companies in the legal services, softwareasaservice SaaS providers, Business Process Outsourcers BPOs, and technology sectors in the U.S. have been targeted by a suspected Chinanexus cyber espionage group to deliver a known backdoor referred to as BRICKSTORM. The activity, attributed to UNC5221 and closely related, suspected Chinanexus threat clusters, is designed to facilitate.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” ShadowV2 Botnet Exposes Rise of DDoS-as-a-service Platforms πŸ“”

New campaign merges traditional malware with DevOps tools, using GitHub CodeSpaces for DDoS attacks.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” ShadowV2 Botnet Exposes Rise of DDoS-as-a-service Platforms πŸ“”

New campaign merges traditional malware with DevOps tools, using GitHub CodeSpaces for DDoS attacks.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Cisco Warns of Actively Exploited SNMP Vulnerability Allowing RCE or DoS in IOS Software πŸ–‹οΈ

Cisco has warned of a highseverity security flaw in IOS Software and IOS XE Software that could allow a remote attacker to execute arbitrary code or trigger a denialofservice DoS condition under specific circumstances. The company said the vulnerability, CVE202520352 CVSS score 7.7, has been exploited in the wild, adding it became aware of it "after local Administrator credentials were.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Cisco Warns of Actively Exploited SNMP Vulnerability Allowing RCE or DoS in IOS Software πŸ–‹οΈ

Cisco has warned of a highseverity security flaw in IOS Software and IOS XE Software that could allow a remote attacker to execute arbitrary code or trigger a denialofservice DoS condition under specific circumstances. The company said the vulnerability, CVE202520352 CVSS score 7.7, has been exploited in the wild, adding it became aware of it "after local Administrator credentials were.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Cisco Warns of Actively Exploited SNMP Vulnerability Allowing RCE or DoS in IOS Software πŸ–‹οΈ

Cisco has warned of a highseverity security flaw in IOS Software and IOS XE Software that could allow a remote attacker to execute arbitrary code or trigger a denialofservice DoS condition under specific circumstances. The company said the vulnerability, CVE202520352 CVSS score 7.7, has been exploited in the wild, adding it became aware of it "after local Administrator credentials were.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Vegas Gambling Giant Hit by Cyber Incident, Employee Data Exposed πŸ“”

Boyd Gaming Corporation has disclosed that an unauthorized actor removed data from its systems, including information about employees and other individuals.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” ShadowV2 Botnet Exposes Rise of DDoS-as-a-service Platforms πŸ“”

New campaign merges traditional malware with DevOps tools, using GitHub CodeSpaces for DDoS attacks.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Two Critical Flaws Uncovered in Wondershare RepairIt Exposing User Data and AI Models πŸ–‹οΈ

Cybersecurity researchers have disclosed two security flaws in Wondershare RepairIt that exposed private user data and potentially exposed the system to artificial intelligence AI model tampering and supply chain risks. The criticalrated vulnerabilities in question, discovered by Trend Micro, are listed below CVE202510643 CVSS score 9.1 An authentication bypass vulnerability that.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Chinese Hackers RedNovember Target Global Governments Using Pantegana and Cobalt Strike πŸ–‹οΈ

A suspected cyber espionage activity cluster that was previously found targeting global government and private sector organizations spanning Africa, Asia, North America, South America, and Oceania has been assessed to be a Chinese statesponsored threat actor. Recorded Future, which was tracking the activity under the moniker TAG100, has now graduated it to a hacking group dubbed RedNovember.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Vegas Gambling Giant Hit by Cyber Incident, Employee Data Exposed πŸ“”

Boyd Gaming Corporation has disclosed that an unauthorized actor removed data from its systems, including information about employees and other individuals.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Chinese Hackers RedNovember Target Global Governments Using Pantegana and Cobalt Strike πŸ–‹οΈ

A suspected cyber espionage activity cluster that was previously found targeting global government and private sector organizations spanning Africa, Asia, North America, South America, and Oceania has been assessed to be a Chinese statesponsored threat actor. Recorded Future, which was tracking the activity under the moniker TAG100, has now graduated it to a hacking group dubbed RedNovember.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity