DATE | NAME | CATEGORY | WEB |
30.6.23 | YouTube tests restricting ad blocker users to 3 video views | Security | BleepingComputer |
30.6.23 | New EarlyRAT malware linked to North Korean Andariel hacking group | Virus | BleepingComputer |
30.6.23 | Microsoft rolls out early Windows Copilot preview to Insiders | OS | BleepingComputer |
30.6.23 | MITRE releases new list of top 25 most dangerous software bugs | BigBrothers | BleepingComputer |
30.6.23 | Pro-Russia DDoSia hacktivist project sees 2,400% membership increase | BigBrothers | BleepingComputer |
30.6.23 | Proton launches open-source password manager with some limitations | Security | BleepingComputer |
30.6.23 | Microsoft fixes bug that breaks Windows Start Menu, UWP apps | Vulnerebility | BleepingComputer |
30.6.23 | Trellix fixes bug breaking Office apps after June Windows updates | Vulnerebility | BleepingComputer |
30.6.23 | Microsoft Sysmon now detects when executables files are created | OS | BleepingComputer |
30.6.23 | Exploit released for new Arcserve UDP auth bypass vulnerability | Exploit | BleepingComputer |
30.6.23 | Linux version of Akira ransomware targets VMware ESXi servers | Ransom | BleepingComputer |
30.6.23 | Microsoft fixes Windows bug causing File Explorer freezes | OS | BleepingComputer |
30.6.23 | Brave Browser boosts privacy with new local resources restrictions | Security | BleepingComputer |
30.6.23 | NPM ecosystem at risk from “Manifest Confusion” attacks | Virus | BleepingComputer |
30.6.23 | WhatsApp Upgrades Proxy Feature Against Internet Shutdowns | Social | The Hacker News |
30.6.23 | Cybercriminals Hijacking Vulnerable SSH Servers in New Proxyjacking Campaign | CyberCrime | The Hacker News |
30.6.23 | MITRE Unveils Top 25 Most Dangerous Software Weaknesses of 2023: Are You at Risk? | BigBrothers | The Hacker News |
30.6.23 | From MuddyC3 to PhonyC2: Iran's MuddyWater Evolves with a New Cyber Weapon | BigBrothers | The Hacker News |
29.6.23 | Fluhorse: Flutter-Based Android Malware Targets Credit Cards and 2FA Codes | Android | The Hacker News |
29.6.23 | North Korean Hacker Group Andariel Strikes with New EarlyRat Malware | Virus | The Hacker News |
29.6.23 | Android Spy App LetMeSpy Suffers Major Data Breach, Exposing Users' Personal Data | Android | The Hacker News |
29.6.23 | Critical Security Flaw in Social Login Plugin for WordPress Exposes Users' Accounts | Vulnerebility | The Hacker News |
29.6.23 | Newly Uncovered ThirdEye Windows-Based Malware Steals Sensitive Data | Virus | The Hacker News |
29.6.23 | Alert: New Electromagnetic Attacks on Drones Could Let Attackers Take Control | Hacking | The Hacker News |
29.6.23 | CryptosLabs Scam Ring Targets French-Speaking Investors, Rakes in €480 Million | Spam | The Hacker News |
28.6.23 | Microsoft Teams outage blocks access to web and desktop clients | OS | BleepingComputer |
28.6.23 | 8Base ransomware gang escalates double extortion attacks in June | Ransom | BleepingComputer |
28.6.23 | Windows 10 KB5027293 update released with 3 new features, 14 changes | OS | BleepingComputer |
28.6.23 | Windows 11 KB5027303 preview update enables new Moment 3 features | OS | BleepingComputer |
28.6.23 | Siemens Energy confirms data breach after MOVEit data-theft attack | Incindent | BleepingComputer |
28.6.23 | Hundreds of devices found violating new CISA federal agency directive | BigBrothers | BleepingComputer |
28.6.23 | EncroChat takedown led to 6,500 arrests and $979 million seized | Crime | BleepingComputer |
28.6.23 | Outlook for the web outage impacts users across America | Security | BleepingComputer |
28.6.23 | New Mockingjay process injection technique evades EDR detection | Hacking | BleepingComputer |
28.6.23 | 8Base Ransomware Spikes in Activity, Threatens U.S. and Brazilian Businesses | Ransom | The Hacker News |
28.6.23 | Critical SQL Injection Flaws Expose Gentoo Soko to Remote Code Execution | Vulnerebility | The Hacker News |
28.6.23 | New Mockingjay Process Injection Technique Could Let Malware Evade Detection | Hacking | The Hacker News |
28.6.23 | New Ongoing Campaign Targets npm Ecosystem with Unique Execution Chain | CyberCrime | The Hacker News |
28.6.23 | EncroChat Bust Leads to 6,558 Criminals' Arrests and €900 Million Seizure | Crime | The Hacker News |
27.6.23 | Schneider Electric and Siemens Energy are two more victims of a MOVEit attack | Attack | Securityaffairs |
27.6.23 | JOKERSPY used to target a cryptocurrency exchange in Japan | Cryptocurrency | Securityaffairs |
27.6.23 | Citizen of Croatia charged with running the Monopoly Market drug marketplace | Cyber | Securityaffairs |
27.6.23 | Energy company Suncor suffered a cyber attack and its company Petro-Canada gas reported problems at its gas stations in Canada | Cyber | Securityaffairs |
27.6.23 | Internet Systems Consortium (ISC) fixed three DoS flaw in BIND | Vulnerebility | Securityaffairs |
27.6.23 | China-linked APT group VANGUARD PANDA uses a new tradecraft in recent attacks | APT | Securityaffairs |
27.6.23 | How cybercrime is impacting SMBs in 2023 | CyberCrime | Securelist |
27.6.23 | Windows 11 is getting a built-in passkey manager for Windows Hello | OS | BleepingComputer |
27.6.23 | Anatsa Android trojan now steals banking info from users in US, UK | Virus | BleepingComputer |
27.6.23 | New PindOS JavaScript dropper deploys Bumblebee, IcedID malware | Virus | BleepingComputer |
27.6.23 | Hackers steal data of 45,000 New York City students in MOVEit breach | Incindent | BleepingComputer |
27.6.23 | Man charged in US for running 'Monopoly' darknet drug market | BigBrothers | BleepingComputer |
27.6.23 | Suncor Energy cyberattack impacts Petro-Canada gas stations | Hacking | BleepingComputer |
27.6.23 | Anatsa Banking Trojan Targeting Users in US, UK, Germany, Austria, and Switzerland | Virus | The Hacker News |
27.6.23 | New Fortinet's FortiNAC Vulnerability Exposes Networks to Code Execution Attacks | Vulnerebility | The Hacker News |
27.6.23 | Researchers Find Way to Recover Cryptographic Keys by Analyzing LED Flickers | Hacking | The Hacker News |
26.6.23 | Japanese Cryptocurrency Exchange Falls Victim to JokerSpy macOS Backdoor Attack | Cryptocurrency | The Hacker News |
26.6.23 | Microsoft Warns of Widescale Credential Stealing Attacks by Russian Hackers | BigBrothers | The Hacker News |
26.6.23 | Trojanized Super Mario Bros game spreads malware | Virus | Securityaffairs |
26.6.23 | Twitter hacker sentenced to five years in prison for cybercrime offenses | Social | Securityaffairs |
26.6.23 | Someone is sending mysterious smartwatches to the US Military personnel | BigBrothers | Securityaffairs |
26.6.23 | Trojanized Super Mario game used to install Windows malware | Virus | BleepingComputer |
26.6.23 | Grafana warns of critical auth bypass due to Azure AD integration | Vulnerebility | BleepingComputer |
26.6.23 | Chinese Hackers Using Never-Before-Seen Tactics for Critical Infrastructure Attacks | BigBrothers | The Hacker News |
24.6.23 | CISA orders govt agencies to fix recently disclosed flaws in Apple devices | Vulnerebility | Securityaffairs |
24.6.23 | VMware fixed five memory corruption issues in vCenter Server | Vulnerebility | Securityaffairs |
24.6.23 | Fortinet fixes critical FortiNAC RCE, install updates asap | Vulnerebility | Securityaffairs |
24.6.23 | More than a million GitHub repositories potentially vulnerable to RepoJacking | Vulnerebility | Securityaffairs |
24.6.23 | NSA Issues Guidance on Mitigating BlackLotus Bootkit Infections | BigBrothers | Securityweek |
24.6.23 | In Other News: Microsoft Win32 App Isolation,Tsunami Hits Linux Servers, ChatGPT Credentials Exposed on Dark Web | CyberCrime | Securityweek |
24.6.23 | CISA Tells US Agencies to Patch Exploited Roundcube, VMware Flaws | Vulnerebility | Securityweek |
24.6.23 | VMware Patches Code Execution Vulnerabilities in vCenter Server | Vulnerebility | Securityweek |
24.6.23 | 2.5M Genworth Policyholders and 769K Retired California Workers and Beneficiaries Affected by Hack | Incindent | Securityweek |
24.6.23 | LastPass users furious after being locked out due to MFA resets | Security | BleepingComputer |
24.6.23 | American Airlines, Southwest Airlines disclose data breaches affecting pilots | Incindent | BleepingComputer |
24.6.23 | University of Manchester confirms data theft in recent cyberattack | Incindent | BleepingComputer |
24.6.23 | CISA orders agencies to patch iPhone bugs abused in spyware attacks | BigBrothers | BleepingComputer |
24.6.23 | FBI seizes BreachForums after arresting its owner Pompompurin in March | BigBrothers | BleepingComputer |
24.6.23 | MOVEIt breach impacts Genworth, CalPERS as data for 3.2 million exposed | Incindent | BleepingComputer |
24.6.23 | Fortinet fixes critical FortiNAC remote command execution flaw | Vulnerebility | BleepingComputer |
24.6.23 | Cybercrime Group 'Muddled Libra' Targets BPO Sector with Advanced Social Engineering | CyberCrime | The Hacker News |
24.6.23 | The Power of Browser Fingerprinting: Personalized UX, Fraud Detection, and Secure Logins | Security | The Hacker News |
24.6.23 | Powerful JavaScript Dropper PindOS Distributes Bumblebee and IcedID Malware | Virus | The Hacker News |
24.6.23 | NSA Releases Guide to Combat Powerful BlackLotus Bootkit Targeting Windows Systems | BigBrothers | The Hacker News |
24.6.23 | New Cryptocurrency Mining Campaign Targets Linux Systems and IoT Devices | Cryptocurrency | The Hacker News |
23.6.23 | Google Backs Creation of Cybersecurity Clinics With $20 Million Donation | Cyber | Securityweek |
23.6.23 | US Military Personnel Receiving Unsolicited, Suspicious Smartwatches | BigBrothers | Securityweek |
23.6.23 | China-Linked APT15 Targets Foreign Ministries With ‘Graphican’ Backdoor | APT | Securityweek |
23.6.23 | North Korean Hackers Caught Using Malware With Microphone Wiretapping Capabilities | BigBrothers | Securityweek |
23.6.23 | PoC Exploit Published for Cisco AnyConnect Secure Vulnerability | Exploit | Securityweek |
23.6.23 | The Benefits of Red Zone Threat Intelligence | Security | Securityweek |
23.6.23 | New Mirai botnet targets tens of flaws in popular IoT devices | IoT | Securityaffairs |
23.6.23 | Researchers released a PoC exploit for CVE-2023-20178 flaw in Cisco AnyConnect Secure | Vulnerebility | Securityaffairs |
23.6.23 | Norton parent firm Gen Digital, was victim of a MOVEit ransomware attack too | Ransom | Securityaffairs |
23.6.23 | Apple addressed actively exploited zero-day flaws in iOS, macOS, and Safari | Apple | Securityaffairs |
23.6.23 | Microsoft 365 users report Outlook, Teams won't start or freezes | Security | BleepingComputer |
23.6.23 | Microsoft Teams bug allows malware delivery from external accounts | Virus | BleepingComputer |
23.6.23 | NSA shares tips on blocking BlackLotus UEFI malware attacks | BigBrothers | BleepingComputer |
23.6.23 | CISA orders govt agencies to patch bugs exploited by Russian hackers | BigBrothers | BleepingComputer |
23.6.23 | Mirai botnet targets 22 flaws in D-Link, Zyxel, Netgear devices | BotNet | BleepingComputer |
23.6.23 | Microsoft: Hackers hijack Linux systems using trojanized OpenSSH version | Virus | BleepingComputer |
23.6.23 | VMware fixes vCenter Server bugs allowing code execution, auth bypass | Vulnerebility | BleepingComputer |
23.6.23 | Millions of GitHub repos likely vulnerable to RepoJacking, researchers say | Attack | BleepingComputer |
23.6.23 | DuckDuckGo browser for Windows available for everyone as public beta | Security | BleepingComputer |
23.6.23 | MULTI#STORM Campaign Targets India and U.S. with Remote Access Trojans | Virus | The Hacker News |
23.6.23 | Generative-AI apps & ChatGPT: Potential risks and mitigation strategies | Cyber | The Hacker News |
23.6.23 | Alert: Million of GitHub Repositories Likely Vulnerable to RepoJacking Attack | Attack | The Hacker News |
23.6.23 | Camaro Dragon Hackers Strike with USB-Driven Self-Propagating Malware | Virus | The Hacker News |
23.6.23 | Critical Flaw Found in WordPress Plugin for WooCommerce Used by 30,000 Websites | Vulnerebility | The Hacker News |
22.6.23 | Bipartisan Bill Proposes Cybersecurity Funds for Rural Water Systems | Cyber | Securityweek |
22.6.23 | Apple Patches iOS Flaws Used in Kaspersky ‘Operation Triangulation’ | Apple | Securityweek |
22.6.23 | Cooperation or Competition? China’s Security Industry Sees the US, Not AI, as the Bigger Threat | BigBrothers | Securityweek |
22.6.23 | Critical WordPress Plugin Vulnerabilities Impact Thousands of Sites | Vulnerebility | Securityweek |
22.6.23 | Kaspersky Dissects Spyware Used in iOS Zero-Click Attacks | Apple | Securityweek |
22.6.23 | Enphase Ignores CISA Request to Fix Remotely Exploitable Flaws | Vulnerebility | Securityweek |
22.6.23 | CISO Conversations: Three Leading CISOs From the Payment Industry | BigBrothers | Securityweek |
22.6.23 | DOJ Launches Cyber Unit to Prosecute Nation-State Threat Actors | BigBrothers | Securityweek |
22.6.23 | Chrome and Its Vulnerabilities – Is the Web Browser Safe to Use? | Vulnerebility | Securityweek |
22.6.23 | Biden Discusses Risks and Promises of Artificial Intelligence With Tech Leaders in San Francisco | BigBrothers | Securityweek |
22.6.23 | VMware Confirms Live Exploits Hitting Just-Patched Security Flaw | Vulnerebility | Securityweek |
22.6.23 | Researchers Flag Account Takeover Flaw in Microsoft Azure AD OAuth Apps | Vulnerebility | Securityweek |
22.6.23 | LockBit Green and phishing that targets organizations | Virus | Securelist |
22.6.23 | Analyzing the TriangleDB implant used in Operation Triangulation | Cyber | Securityaffairs |
22.6.23 | Russia-linked APT28 hacked Roundcube email servers of Ukrainian entities | APT | Securityaffairs |
22.6.23 | New Condi DDoS botnet targets TP-Link Wi-Fi routers | Attack | Securityaffairs |
22.6.23 | Critical RCE flaw CVE-2023-20887 in VMware vRealize exploited in the wild | Vulnerebility | Securityaffairs |
22.6.23 | 3CX data exposed, third-party to blame | Incindent | Securityaffairs |
22.6.23 | New Tsunami botnet targets Linux SSH servers | Virus | Securityaffairs |
22.6.23 | Zyxel addressed critical flaw CVE-2023-27992 in NAS Devices | Vulnerebility | Securityaffairs |
22.6.23 | ASUS addressed critical flaws in some router models | Vulnerebility | Securityaffairs |
22.6.23 | iOttie discloses data breach after site hacked to steal credit cards | Incindent | BleepingComputer |
22.6.23 | Exploit released for Cisco AnyConnect bug giving SYSTEM privileges | Exploit | BleepingComputer |
22.6.23 | APT37 hackers deploy new FadeStealer eavesdropping malware | APT | BleepingComputer |
22.6.23 | Apple fixes zero-days used to deploy Triangulation spyware via iMessage | Apple | BleepingComputer |
22.6.23 | UPS discloses data breach after exposed customer info used in SMS phishing | Incindent | BleepingComputer |
22.6.23 | FTC: Amazon trapped millions into hard-to-cancel Prime memberships | BigBrothers | BleepingComputer |
22.6.23 | Chinese APT15 hackers resurface with new Graphican malware | APT | BleepingComputer |
22.6.23 | New Condi malware builds DDoS botnet out of TP-Link AX21 routers | Virus | BleepingComputer |
22.6.23 | Hackers warn University of Manchester students of imminent data leak | Incindent | BleepingComputer |
22.6.23 | VMware warns of critical vRealize flaw exploited in attacks | Vulnerebility | BleepingComputer |
22.6.23 | Microsoft shares workaround for Outlook freezes, slow starts | OS | BleepingComputer |
22.6.23 | Hackers infect Linux SSH servers with Tsunami botnet malware | Virus | BleepingComputer |
22.6.23 | Microsoft fixes Azure AD auth flaw enabling account takeover | Vulnerebility | BleepingComputer |
22.6.23 | Zyxel warns of critical command injection flaw in NAS devices | Vulnerebility | BleepingComputer |
22.6.23 | Russian APT28 hackers breach Ukrainian govt email servers | APT | BleepingComputer |
22.6.23 | New RDStealer malware steals from drives shared over Remote Desktop | Virus | BleepingComputer |
22.6.23 | Over 100,000 ChatGPT accounts stolen via info-stealing malware | Virus | BleepingComputer |
22.6.23 | Dissecting TriangleDB, a Triangulation spyware implant | Virus | Securelist |
22.6.23 | Zero-Day Alert: Apple Releases Patches for Actively Exploited Flaws in iOS, macOS, and Safari | Apple | The Hacker News |
22.6.23 | ScarCruft Hackers Exploit Ably Service for Stealthy Wiretapping Attacks | Exploit | The Hacker News |
22.6.23 | New Report Exposes Operation Triangulation's Spyware Implant Targeting iOS Devices | Apple | The Hacker News |
22.6.23 | Critical 'nOAuth' Flaw in Microsoft Azure AD Enabled Complete Account Takeover | Vulnerebility | The Hacker News |
22.6.23 | Chinese Hacker Group 'Flea' Targets American Ministries with Graphican Backdoor | BigBrothers | The Hacker News |
21.6.23 | New Condi Malware Hijacking TP-Link Wi-Fi Routers for DDoS Botnet Attacks | Attack | The Hacker News |
21.6.23 | Alert! Hackers Exploiting Critical Vulnerability in VMware's Aria Operations Networks | Vulnerebility | The Hacker News |
21.6.23 | Zyxel Releases Urgent Security Updates for Critical Vulnerability in NAS Devices | Vulnerebility | The Hacker News |
21.6.23 | Researchers Expose New Severe Flaws in Wago and Schneider Electric OT Products | Vulnerebility | The Hacker News |
21.6.23 | Experts Uncover Year-Long Cyber Attack on IT Firm Utilizing Custom Malware RDStealer | Virus | The Hacker News |
21.6.23 | ASUS Releases Patches to Fix Critical Security Bugs Impacting Multiple Router Models | Vulnerebility | The Hacker News |
21.6.23 | Over 100,000 Stolen ChatGPT Account Credentials Sold on Dark Web Marketplaces | CyberCrime | The Hacker News |
20.6.23 | Asus Patches Highly Critical WiFi Router Flaws | Vulnerebility | Securityweek |
20.6.23 | Experts found components of a complex toolkit employed in macOS attacks | Apple | Securityaffairs |
20.6.23 | Iowa’s largest school district confirms ransomware attack, data theft | Ransom | BleepingComputer |
20.6.23 | Malwarebytes issues fix for Chrome broken by Windows 11 KB5027231 | Vulnerebility | BleepingComputer |
20.6.23 | ASUS urges customers to patch critical router vulnerabilities | Vulnerebility | BleepingComputer |
20.6.23 | Hackers use fake OnlyFans pics to drop info-stealing malware | Virus | BleepingComputer |
20.6.23 | Rogue Android Apps Target Pakistani Individuals in Sophisticated Espionage Campaign | Android | The Hacker News |
19.6.23 | New Information Stealer ‘Mystic Stealer’ Rising to Fame | Virus | Securityweek |
19.6.23 | Western Digital Blocks Unpatched Devices From Cloud Services | Vulnerebility | Securityweek |
19.6.23 | Akeyless Launches SaaS-based External Secrets Manager | Security | Securityweek |
19.6.23 | Ransomware Gang Takes Credit for February Reddit Hack | Ransom | Securityweek |
19.6.23 | MOVEit Customers Urged to Patch Third Critical Vulnerability | Vulnerebility | Securityweek |
19.6.23 | Microsoft Says Early June Disruptions to Outlook, Cloud Platform, Were Cyberattacks | Attack | Securityweek |
19.6.23 | A Russian Ransomware Gang Breaches the Energy Department and Other Federal Agencies | BigBrothers | Securityweek |
19.6.23 | EU member states are urged to restrict without delay 5G equipment from risky suppliers | Mobil | Securityaffairs |
19.6.23 | Diicot cybercrime gang expands its attack capabilities | CyberCrime | Securityaffairs |
19.6.23 | Microsoft: June Outlook and cloud platform outages were caused by DDoS | Attack | Securityaffairs |
19.6.23 | Reddit Files: BlackCat/ALPHV ransomware gang claims to have stolen 80GB of data from Reddit | Ransom | Securityaffairs |
19.6.23 | US govt offers $10 million bounty for info linking Clop ransomware gang to a foreign government. | BigBrothers | Securityaffairs |
19.6.23 | Android spyware camouflaged as VPN, chat apps on Google Play | Android | BleepingComputer |
19.6.23 | Reddit hackers threaten to leak data stolen in February breach | Incindent | BleepingComputer |
19.6.23 | New Mystic Stealer malware increasingly used in attacks | Virus | BleepingComputer |
19.6.23 | Microsoft confirms Azure, Outlook outages caused by DDoS attacks | Attack | BleepingComputer |
19.6.23 | US govt offers $10 million bounty for info on Clop ransomware | Ransom | BleepingComputer |
19.6.23 | New Mystic Stealer Malware Targets 40 Web Browsers and 70 Browser Extensions | Virus | The Hacker News |
19.6.23 | Researchers Discover New Sophisticated Toolkit Targeting Apple macOS Systems | Apple | The Hacker News |
19.6.23 | State-Backed Hackers Employ Advanced Methods to Target Middle Eastern and African Governments | BigBrothers | The Hacker News |
19.6.23 | Microsoft Blames Massive DDoS Attack for Azure, Outlook, and OneDrive Disruptions | Attack | The Hacker News |
17.6.23 | From Cryptojacking to DDoS Attacks: Diicot Expands Tactics with Cayosin Botnet | Cryptocurrency | The Hacker News |
17.6.23 | ChamelDoH: New Linux Backdoor Utilizing DNS-over-HTTPS Tunneling for Covert CnC | Virus | The Hacker News |
17.6.23 | 20-Year-Old Russian LockBit Ransomware Affiliate Arrested in Arizona | Ransom | The Hacker News |
17.6.23 | Third Flaw Uncovered in MOVEit Transfer App Amidst Cl0p Ransomware Mass Attack | Ransom | The Hacker News |
17.6.23 | Windows 11 'Win32 app isolation' security feature now in preview | OS | BleepingComputer |
17.6.23 | SMS delivery reports can be used to infer recipient's location | Mobil | BleepingComputer |
17.6.23 | Law enforcement shutdown a long-standing DDoS-for-hire service | Attack | Securityaffairs |
17.6.23 | A Russian national charged for committing LockBit Ransomware attacks | BigBrothers | Securityaffairs |
17.6.23 | In Other News: Linux Kernel Exploits, Update on BEC Losses, Cybersecurity Awareness Act | Exploit | Securityweek |
17.6.23 | Russian National Arrested, Charged in US Over Role in LockBit Ransomware Attacks | Crime | Securityweek |
17.6.23 | Understanding Malware-as-a-Service | Virus | Securelist |