Menu

Link

Coursera Flunks API Security Test in Researchers’ Exam
How Fake Accounts and Sneaker-Bots Took Over the Internet
Lazarus gang targets engineers with job offers using poisoned emails
Smashing Security podcast #235: REvil returns, TikTok grows, and Gettr defaced
Critical Sage X3 RCE Bug Allows Full System Takeovers
MacOS Targeted in WildPressure APT Malware Campaign
Suspected ‘Dr HeX’ Hacker Busted for 9 Years of Phishing
Fake Kaseya VSA Security Update Drops Cobalt Strike
Why I Love (Breaking Into) Your Security Appliances
Join over 45,000 others, and get FREE threat intelligence on hackers and exploits with the Recorded Future Cyber Daily
Cloud Cryptomining Swindle in Google Play Rakes in Cash
Microsoft Releases Emergency Patch for PrintNightmare Bugs
Malware campaign targets companies waiting for Kaseya security patch
Pro-Trump ‘Gettr’ Social Platform Hacked On Day One
Android Apps in Google Play Harvest Facebook Credentials
Western Digital Users Face Another RCE
Kaseya Patches Imminent After Zero-Day Exploits, 1,500 Impacted
Kaseya Attack Fallout: CISA, FBI Offer Guidance
REvil ransomware rampages following Kaseya supply-chain attack
Ransomware Defense: Top 5 Things to Do Right Now
Aled Jones says he was hacked, after rude picture posted on Twitter
TrickBot Spruces Up Its Banking Trojan Module
Widespread Brute-Force Attacks Tied to Russia’s APT28
Why Healthcare Keeps Falling Prey to Ransomware and Other Cyberattacks
CISA Offers New Mitigation for PrintNightmare Bug
Linux Variant of REvil Ransomware Targets VMware’s ESXi, NAS Devices
Defeating Ransomware-as-a-Service? Think Intel-Sharing
Hacked Data for 69K LimeVPN Users Up for Sale on Dark Web
Babuk Ransomware Builder Mysteriously Appears in VirusTotal
PrintNightmare zero day exploit for Windows is in the wild – what you need to know
Data Exfiltration: What You Should Know to Prevent It
LinkedIn’s 1.2B Data-Scrape Victims Already Being Targeted by Attackers
Netgear Authentication Bypass Allows Router Takeover
Smashing Security podcast #234: Cozy Bear, dildo scams, and robo hires and fires
Dropbox Used to Mask Malware Movement in Cyberespionage Campaign
Get serious about enterprise password management – download 1Password’s white paper now
Indexsinas SMB Worm Campaign Infests Whole Enterprises
Why MTTR is Bad for SecOps
Received a WhatsApp verification code without requesting it? Beware – you might be about to have your account stolen
Zero-Day Used to Wipe My Book Live Devices
PoC Exploit Circulating for Critical Windows Print Spooler Bug
Feds Told to Better Manage Facial Recognition, Amid Privacy Concerns
Users Clueless About Cybersecurity Risks: Study
Microsoft Translation Bugs Open Edge Browser to Trivial UXSS Attacks
Details of RCE Bug in Adobe Experience Manager Revealed
Cobalt Strike Usage Explodes Among Cybercrooks
Data for 700M LinkedIn Users Posted for Sale in Cyber-Underground
5G Security Vulnerabilities Fluster Mobile Operators
NVIDIA Patches High-Severity GeForce Spoof-Attack Bug
Attackers Breach Microsoft Customer Service Accounts
Microsoft Signs Malware That Spreads Through Gaming
Critical CISO Initiatives for the Second Half of 2021
One billion dollars lost by over-60s through online fraud in 2020, says FBI
Mercedes-Benz Customer Data Flies Out the Window
PS3 Players Ban: Latest Victims of Surging Attacks on Gaming Industry  
FIN7 ‘Pen Tester’ Headed to Jail Amid $1B in Payment-Card Losses
Cisco ASA Bug Now Actively Exploited as PoC Drops
My Book Live Users Wake Up to Wiped Devices, Active RCE Attacks
Hackers Crack Pirated Games with Cryptojacking Malware
FIN7 hacking gang’s “pen tester” jailed for seven years by US court
Disconnect your WD My Book Live from the internet or face data deletion, says Western Digital
Spam Downpour Drips New IcedID Banking Trojan Variant
Oh FCUK! Fashion Label, Medical Diagnostics Firm Latest REvil Victims
Musk-Themed ‘$SpaceX’ Cryptoscam Invades YouTube Advertising
Critical VMware Carbon Black Bug Allows Authentication Bypass
Smashing Security podcast #233: Peloton problems, romance regret, and Weiner woes
Tulsa’s Police-Citation Data Leaked by Conti Gang
Atlassian Bugs Could Have Led to 1-Click Takeover
30M Dell Devices at Risk for Remote BIOS Attacks, RCE
Iran Media Websites Seized by U.S. in Disinformation Campaign
Pandemic-Bored Attackers Pummeled Gaming Industry
Critical Palo Alto Cyber-Defense Bug Allows Remote ‘War Room’ Access
REvil Ransomware Code Ripped Off by Rivals
Unpatched Linux Marketplace Bugs Allow Wormable Attacks, Drive-By RCE
Get serious about enterprise password management – download this 1Password white paper now
SonicWall ‘Botches’ October Patch for Critical VPN Bug
BEC Losses Top $1.8B as Tactics Evolve
Cryptominers Slither into Python Projects in Supply-Chain Campaign
Email Bug Allows Message Snooping, Credential Theft
Kids’ Apps on Google Play Rife with Privacy Violations
Lexmark Printers Open to Arbitrary Code-Execution Zero-Day
Six Flags to Pay $36M Over Collection of Fingerprints
Smart thermostats cranked up remotely by Texas energy firms, as consumers swelter in heat wave
Don’t name your Wi-Fi hotspot this, unless you want to crash your iPhone
Wegmans Exposes Customer Data in Misconfigured Databases
Bugs in NVIDIA’s Jetson Chipset Opens Door to DoS Attacks, Data Theft
Embryology Data Breach Follows Fertility Clinic Ransomware Hit
Agent Tesla RAT Returns in COVID-19 Vax Phish
iPhone Wi-Fi Crushed by Weird Network
No, you’re not talking to Jason Statham
North Korean hackers exploit VPN bug to gain access to South Korean Atomic Energy Research Institute
What’s Making Your Company a Ransomware Sitting Duck
Repairmen suspected of installing ransomware on customers’ PCs. Arrests in South Korea
Carnival Cruise Cyber-Torpedoed by Cyberattack
Insider Versus Outsider: Navigating Top Data Loss Threats
‘Oddball’ Malware Blocks Access to Pirated Software
Faux ‘DarkSide’ Gang Takes Aim at Global Energy, Food Sectors
Clop Raid: A Big Win in the War on Ransomware?
Cisco Smart Switches Riddled with Severe Security Holes
Geek Squad Vishing Attack Bypasses Email Security to Hit 25K Mailboxes