FreshRSS

🔒
❌ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
☐ ☆ ✇ Dark Reading:

Google Delivers Record-Breaking $12M in Bug Bounties

By: Tara Seals, Managing Editor, News, Dark Reading — February 22nd 2023 at 17:50
Google's Android and Chrome Vulnerability Reward Programs (VRPs) in particular saw hundreds of valid reports and payouts for security vulnerabilities discovered by ethical hackers.

☐ ☆ ✇ Dark Reading:

Trickbot Members Sanctioned for Pandemic-Era Ransomware Hits

By: Tara Seals, Managing Editor, News, Dark Reading — February 10th 2023 at 19:25
The US Treasury Department linked the notorious cybercrime gang to Russian Intelligence Services because cyberattacks that disrupted hospitals and other critical infrastructure align with Russian state interests.

☐ ☆ ✇ Dark Reading:

Critical VMware RCE Vulnerabilities Targeted by Public Exploit Code

Security vulnerabilities in VMware's vRealize Log Insight platform can be chained together to offer a cybercriminals a gaping hole to access corporate crown jewels.

☐ ☆ ✇ Dark Reading:

Hive Ransomware Gang Loses Its Honeycomb, Thanks to DoJ

The US Department of Justice hacked into Hive's infrastructure, made off with hundreds of decryptors, and seized the gang's operations.

☐ ☆ ✇ Dark Reading:

Microsoft Addresses Zero-Days, but Exchange Server Exploit Chain Remains Unpatched

The computing giant didn't fix ProxyNotLogon in October's Patch Tuesday, but it disclosed a rare 10-out-of-10 bug and patched two other zero-days, including one being exploited.

☐ ☆ ✇ Dark Reading:

Hackers Have It Out for Microsoft Email Defenses

Cybercriminals are focusing more and more on crafting special email attacks that evade Microsoft Defender and Office security.

☐ ☆ ✇ Dark Reading:

Relentless Russian Cyberattacks on Ukraine Raise Important Policy Questions

Microsoft cybersecurity executive John Hewie explained cyberwar developments and what they mean for Western democratic policy going forward.

☐ ☆ ✇ Dark Reading:

Microsoft Confirms Pair of Blindsiding Exchange Zero-Days, No Patch Yet

By: Tara Seals, Managing Editor, News, Dark Reading — September 30th 2022 at 16:24
The "ProxyNotShell" security vulnerabilities can be chained for remote code execution and total takeover of corporate email platforms.

☐ ☆ ✇ Dark Reading:

The Country Where You Live Impacts Password Choices

By: Tara Seals, Managing Editor, News, Dark Reading — September 29th 2022 at 20:32
Literacy, levels of personal freedom, and other macro-social factors help determine how strong average passwords are in a given locale, researchers have found.

☐ ☆ ✇ Dark Reading:

Fast Company CMS Hack Raises Security Questions

By: Tara Seals, Managing Editor, News, Dark Reading — September 28th 2022 at 20:12
The company's website remains offline after hackers used its compromised CMS to send out racist messages.

☐ ☆ ✇ Dark Reading:

Amid Sweeping Change, Cyber Defenders Face Escalating Visibility — and Pressure

By: Tara Seals, Managing Editor, News, Dark Reading — September 27th 2022 at 21:27
Why cyber teams are now front and center for business enablement within organizations, and the significant challenges they face.

☐ ☆ ✇ Dark Reading:

Wintermute DeFi Platform Offers Hacker a Cut in $160M Crypto-Heist

By: Tara Seals, Managing Editor, News, Dark Reading — September 21st 2022 at 22:12
The decentralized finance (DeFi) platform was the victim of an exploit for a partner's vulnerable code — highlighting a challenging cybersecurity environment in the sector.

☐ ☆ ✇ Dark Reading:

Sophisticated Hermit Mobile Spyware Heralds Wave of Government Surveillance

By: Tara Seals, Managing Editor, News, Dark Reading — September 21st 2022 at 18:36
At the SecTor 2022 conference in Toronto next month, researchers from Lookout will take a deep dive into Hermit and the shadowy world of mobile surveillance tools used by repressive regimes.

☐ ☆ ✇ Dark Reading:

Beware of Phish: American Airlines, Revolut Data Breaches Expose Customer Info

By: Tara Seals, Managing Editor, News, Dark Reading — September 20th 2022 at 19:00
The airline and the fintech giant both fell to successful phishing attacks against employees.

☐ ☆ ✇ Dark Reading:

Real Estate Phish Swallows 1,000s of Microsoft 365 Credentials

By: Tara Seals, Managing Editor, News, Dark Reading — September 16th 2022 at 18:30
The attacks showcase broader security concerns as phishing grows in volume and sophistication, especially given that Windows Defender's Safe Links feature for identifying malicious links in emails completely failed in the campaign.

☐ ☆ ✇ Dark Reading:

Hacker Pwns Uber Via Compromised VPN Account

By: Tara Seals, Managing Editor, News, Dark Reading — September 16th 2022 at 14:21
A teen hacker reportedly social-engineered an Uber employee to hand over an MFA code to unlock the corporate VPN, before burrowing deep into Uber's cloud and code repositories.

☐ ☆ ✇ Dark Reading:

Microsoft Quashes Actively Exploited Zero-Day, Wormable Critical Bugs

By: Tara Seals, Managing Editor, News, Dark Reading — September 13th 2022 at 21:17
In Microsoft's lightest Patch Tuesday update of the year so far, several security vulnerabilities stand out as must-patch, researchers warn.

☐ ☆ ✇ Dark Reading:

US Sanctions Iran Over APT Cyberattack Activity

By: Tara Seals, Managing Editor, News, Dark Reading — September 9th 2022 at 16:48
The Treasury Department links the MuddyWater APT and APT39 to Iran's intelligence apparatus, which is now blocked from doing business with US entities.

☐ ☆ ✇ Dark Reading:

Next-Gen Linux Malware Takes Over Devices With Unique Tool Set

By: Tara Seals, Managing Editor, News, Dark Reading — September 7th 2022 at 15:53
The Shikitega malware takes over IoT and endpoint devices, exploits vulnerabilities, uses advanced encoding, abuses cloud services for C2, installs a cryptominer, and allows full remote control.

☐ ☆ ✇ Dark Reading:

AWS Tokens Lurking in Android, iOS Apps Crack Open Corporate Cloud Data

By: Tara Seals, Managing Editor, News, Dark Reading — September 2nd 2022 at 15:16
Thousands of corporate mobile apps developed by businesses for use by their customers contain hardcoded AWS tokens that can be easily extracted and used to access the full run of corporate data stored in cloud buckets.

☐ ☆ ✇ Dark Reading:

Crypto-Crooks Spread Trojanized Google Translate App in Watering-Hole Attack

The ongoing campaign is spreading worldwide, using the lure of a fully functional Google Translate application for desktops that has helped the threat stay undetected for months.

☐ ☆ ✇ Dark Reading:

LastPass Suffers Data Breach, Source Code Stolen

Researchers warned that cyberattackers will be probing the code for weaknesses to exploit later.

☐ ☆ ✇ Dark Reading:

Twilio Hackers Scarf 10K Okta Credentials in Sprawling Supply Chain Attack

The "0ktapus" cyberattackers set up a well-planned spear-phishing effort that affected at least 130 orgs beyond Twilio and Cloudflare, including Digital Ocean, DoorDash and Mailchimp.

☐ ☆ ✇ Dark Reading:

CISA: Just-Disclosed Palo Alto Networks Firewall Bug Under Active Exploit

The bug tracked as CVE-2022-0028 allows attackers to hijack firewalls without authentication, in order to mount DDoS hits on their targets of choice.

☐ ☆ ✇ Dark Reading:

VMware LPE Bug Allows Cyberattackers to Feast on Virtual Machine Data

An insider threat or remote attacker with initial access could exploit CVE-2022-31676 to steal sensitive data and scoop up user credentials for follow-on attacks.

☐ ☆ ✇ Dark Reading:

Mudge Blows Whistle on Alleged Twitter Security Nightmare

Lawmakers and cybersecurity insiders are reacting to a bombshell report from former Twitter security head Mudge Zatko, alleging reckless security lapses that could be exploited by foreign adversaries.

☐ ☆ ✇ Dark Reading:

China-Backed RedAlpha APT Builds Sprawling Cyber-Espionage Infrastructure

The state-sponsored group particularly targets organizations working on behalf of the Uyghurs, Tibet, and Taiwan, looking to gather intel that could lead to human-rights abuses, researchers say.

☐ ☆ ✇ Dark Reading:

Patch Madness: Vendor Bug Advisories Are Broken, So Broken

Dustin Childs and Brian Gorenc of ZDI take the opportunity at Black Hat USA to break down the many vulnerability disclosure issues making patch prioritization a nightmare scenario for many orgs.

☐ ☆ ✇ Dark Reading:

Krebs: Taiwan, Geopolitical Headwinds Loom Large

During a keynote at Black Hat 2022, former CISA director Chris Krebs outlined the biggest risk areas for the public and private sectors for the next few years.

☐ ☆ ✇ Dark Reading:

Software Development Pipelines Offer Cybercriminals 'Free-Range' Access to Cloud, On-Prem

A Q&A with NCC Group's Viktor Gazdag ahead of a Black Hat USA session on CI/CD pipeline risks reveals a scary, and expanding, campaign vector for software supply chain attacks and RCE.

☐ ☆ ✇ Dark Reading:

Cyberattackers Increasingly Target Cloud IAM as a Weak Link

At Black Hat USA, Igal Gofman plans to address how machine identities in the cloud and the explosion of SaaS apps are creating risks for IAM, amid escalating attention from attackers.

☐ ☆ ✇ Dark Reading:

Bug in Kaspersky VPN Client Allows Privilege Escalation

The CVE-2022-27535 local privilege-escalation security vulnerability in the security software threatens remote and work-from-home users.

☐ ☆ ✇ Dark Reading:

How IT Teams Can Use 'Harm Reduction' for Better Cybersecurity Outcomes

Copado's Kyle Tobener will discuss a three-pronged plan at Black Hat USA for addressing human weaknesses in cybersecurity with this medical concept — from phishing to shadow IT.

☐ ☆ ✇ Dark Reading:

Critical RCE Bug in DrayTek Routers Opens SMBs to Zero-Click Attacks

SMBs should patch CVE-2022-32548 now to avoid a host of horrors, including complete network compromise, ransomware, state-sponsored attacks, and more.

☐ ☆ ✇ Dark Reading:

ICYMI: Dark Web Happenings Edition With Evil Corp., MSP Targeting & More

Dark Reading's digest of other "don't-miss" stories of the week — including a Microsoft alert connecting disparate cybercrime activity together, and an explosion of Luca Stealer variants after an unusual Dark Web move.

☐ ☆ ✇ Dark Reading:

Patch Now: Atlassian Confluence Bug Under Active Exploit

Attackers almost immediately leapt on a just-disclosed bug, CVE-2022-26138, affecting Atlassian Confluence, which allows remote, unauthenticated actors unfettered access to Confluence data.

☐ ☆ ✇ Dark Reading:

Multiple Windows, Adobe Zero-Days Anchor Knotweed Commercial Spyware

Microsoft flagged the company's Subzero tool set as on offer to unscrupulous governments and shady business interests.

☐ ☆ ✇ Dark Reading:

Rare 'CosmicStrand' UEFI Rootkit Swings into Cybercrime Orbit

The firmware threat offers ultimate stealth and persistence — and may be distributed via tainted firmware components in a supply chain play, researchers theorize.

☐ ☆ ✇ Dark Reading:

ICYMI: Neopets & the Gaming Problem; SolarWinds Hackers Are Back; Google Ads Abused

Dark Reading's weekly roundup of all the OTHER important stories of the week.

☐ ☆ ✇ Dark Reading:

Mysterious, Cloud-Enabled macOS Spyware Blows Onto the Scene

The CloudMensis spyware, which can lift reams of sensitive information from Apple machines, is the first Mac malware observed to exclusively rely on cloud storage for C2 activities.

☐ ☆ ✇ Dark Reading:

ICYMI: Critical Cisco RCE Bug, Microsoft Breaks Down Hive, SHI Cyberattack

Dark Reading's digest of the other don't-miss stories of the week, including a new ransomware targeting QNAP gear, and a destructive attack against the College of the Desert that lingers on.

☐ ☆ ✇ Dark Reading:

Roundtable: Amid Cyberattack Frenzy, How Can QNAP Customers Protect the Business?

Our roundtable of cybersecurity experts weighs in on what makes QNAP network-attached storage catnip for attackers, and what organizations can do about it.

☐ ☆ ✇ Dark Reading:

Google Chrome WebRTC Zero-Day Faces Active Exploitation

The heap buffer-overflow issue in Chrome for Android could be used for DoS, code execution, and more.

☐ ☆ ✇ Dark Reading:

ICYMI: A Microsoft Warning, Follina, Atlassian, and More

Dark Reading's digest of the other don't-miss stories of the week, including YouTube account takeovers and a sad commentary on cyber-pro hopelessness.

☐ ☆ ✇ Dark Reading:

18 Zero-Days Exploited So Far in 2022

It didn't have to be this way: So far 2022's tranche of zero-days shows too many variants of previously patched security bugs, according Google Project Zero.

☐ ☆ ✇ Dark Reading:

Facebook Business Pages Targeted via Chatbot in Data-Harvesting Campaign

The clever, interactive phishing campaign is a sign of increasingly complex social-engineering attacks, researchers warn.

☐ ☆ ✇ Dark Reading:

China-Backed APT Pwns Building-Automation Systems With ProxyLogon

The previously unknown state-sponsored group is compromising industrial targets with the ShadowPad malware before burrowing deeper into networks.

☐ ☆ ✇ Dark Reading:

Cyberattackers Abuse QuickBooks Cloud Service in 'Double-Spear' Campaign

Malicious invoices coming from the accounting software's legitimate domain are used to harvest phone numbers and carry out fraudulent credit-card transactions.

☐ ☆ ✇ Dark Reading:

Microsoft 365 Users in US Face Raging Spate of Attacks

A voicemail-themed phishing campaign is hitting specific industry verticals across the country, bent on scavenging credentials that can be used for a range of nefarious purposes.

☐ ☆ ✇ Dark Reading:

Capital One Attacker Exploited Misconfigured AWS Databases

After bragging in underground forums, the woman who stole 100 million credit applications from Capital One has been found guilty.

☐ ☆ ✇ Dark Reading:

'Hertzbleed' Side-Channel Attack Threatens Cryptographic Keys for Servers

A novel timing attack allows remote attackers with low privileges to infer sensitive information by observing power-throttling changes in the CPU.

☐ ☆ ✇ Dark Reading:

In a Quickly Evolving Landscape, CISOs Shift Their 2022 Priorities

Cloud migration, DevSecOps, cyber insurance, and more have emerged as important motivators for cybersecurity investment and focus.

☐ ☆ ✇ Dark Reading:

An Emerging Threat: Attacking 5G Via Network Slices

A successful attack against 5G networks could disrupt critical infrastructure, manipulate sensor data, or even cause physical harm to humans.

☐ ☆ ✇ Dark Reading:

Actively Exploited Atlassian Zero-Day Bug Allows Full System Takeover

A remote code execution (RCE) vulnerability in all versions of the popular Confluence collaboration platform can be abused in credential harvesting, cyber espionage, and network backdoor attacks.

☐ ☆ ✇ Dark Reading:

12K Misconfigured Elasticsearch Buckets Ravaged by Extortionists

The cloud instances were left open to the public Internet with no authentication, allowing attackers to wipe the data.

☐ ☆ ✇ Dark Reading:

EnemyBot Puts Enterprises in the Crosshairs With Raft of '1-Day' Bugs

EnemyBot DDoS botnet is rapidly weaponizing security bugs disclosed in CMS systems like WordPress plug-ins, Android devices, commercial Web servers, and other enterprise applications.

☐ ☆ ✇ Dark Reading:

New Chaos Malware Variant Ditches Wiper for Encryption

The Chaos ransomware-builder was known for creating destructor malware that overwrote files and made them unrecoverable -- but the new Yashma version finally generates binaries that can encrypt files of all sizes.

☐ ☆ ✇ Dark Reading:

Big Cyber Hits on GM, Chicago Public Schools, & Zola Showcase the Password Problem

Credential-stuffing attacks against online accounts are still popular, and they work thanks to continuing password reuse.

☐ ☆ ✇ Dark Reading:

Zero-Click Zoom Bug Allows Code Execution Just by Sending a Message

Google has disclosed a nasty set of six bugs affecting Zoom chat that can be chained together for MitM and RCE attacks, no user interaction required.

☐ ☆ ✇ Dark Reading:

'There's No Ceiling': Ransomware's Alarming Growth Signals a New Era, Verizon DBIR Finds

Ransomware has become so efficient, and the underground economy so professional, that traditional monetization of stolen data may be on its way out.

❌