H  January(103)  February(113)  March(175)  APRIL(74)  MAY(28)  JUNE(198)  July(423)  August(462)  September(389)  October(48)  November()  December()

DATE

NAME

CATEGORY

WEB

30.6.23YouTube tests restricting ad blocker users to 3 video viewsSecurityBleepingComputer
30.6.23New EarlyRAT malware linked to North Korean Andariel hacking groupVirusBleepingComputer
30.6.23Microsoft rolls out early Windows Copilot preview to InsidersOSBleepingComputer
30.6.23MITRE releases new list of top 25 most dangerous software bugsBigBrothersBleepingComputer
30.6.23Pro-Russia DDoSia hacktivist project sees 2,400% membership increaseBigBrothersBleepingComputer
30.6.23Proton launches open-source password manager with some limitationsSecurityBleepingComputer
30.6.23Microsoft fixes bug that breaks Windows Start Menu, UWP appsVulnerebilityBleepingComputer
30.6.23Trellix fixes bug breaking Office apps after June Windows updatesVulnerebilityBleepingComputer
30.6.23Microsoft Sysmon now detects when executables files are createdOSBleepingComputer
30.6.23Exploit released for new Arcserve UDP auth bypass vulnerabilityExploitBleepingComputer
30.6.23Linux version of Akira ransomware targets VMware ESXi serversRansomBleepingComputer
30.6.23Microsoft fixes Windows bug causing File Explorer freezesOSBleepingComputer
30.6.23Brave Browser boosts privacy with new local resources restrictionsSecurityBleepingComputer
30.6.23NPM ecosystem at risk from “Manifest Confusion” attacksVirusBleepingComputer
30.6.23WhatsApp Upgrades Proxy Feature Against Internet ShutdownsSocialThe Hacker News
30.6.23Cybercriminals Hijacking Vulnerable SSH Servers in New Proxyjacking CampaignCyberCrimeThe Hacker News
30.6.23MITRE Unveils Top 25 Most Dangerous Software Weaknesses of 2023: Are You at Risk?BigBrothersThe Hacker News
30.6.23From MuddyC3 to PhonyC2: Iran's MuddyWater Evolves with a New Cyber WeaponBigBrothersThe Hacker News
29.6.23Fluhorse: Flutter-Based Android Malware Targets Credit Cards and 2FA CodesAndroidThe Hacker News
29.6.23North Korean Hacker Group Andariel Strikes with New EarlyRat MalwareVirusThe Hacker News
29.6.23Android Spy App LetMeSpy Suffers Major Data Breach, Exposing Users' Personal DataAndroidThe Hacker News
29.6.23Critical Security Flaw in Social Login Plugin for WordPress Exposes Users' AccountsVulnerebilityThe Hacker News
29.6.23Newly Uncovered ThirdEye Windows-Based Malware Steals Sensitive DataVirusThe Hacker News
29.6.23Alert: New Electromagnetic Attacks on Drones Could Let Attackers Take ControlHackingThe Hacker News
29.6.23CryptosLabs Scam Ring Targets French-Speaking Investors, Rakes in €480 MillionSpamThe Hacker News
28.6.23Microsoft Teams outage blocks access to web and desktop clientsOSBleepingComputer
28.6.238Base ransomware gang escalates double extortion attacks in JuneRansomBleepingComputer
28.6.23Windows 10 KB5027293 update released with 3 new features, 14 changesOSBleepingComputer
28.6.23Windows 11 KB5027303 preview update enables new Moment 3 featuresOSBleepingComputer
28.6.23Siemens Energy confirms data breach after MOVEit data-theft attackIncindentBleepingComputer
28.6.23Hundreds of devices found violating new CISA federal agency directiveBigBrothersBleepingComputer
28.6.23EncroChat takedown led to 6,500 arrests and $979 million seizedCrimeBleepingComputer
28.6.23Outlook for the web outage impacts users across AmericaSecurityBleepingComputer
28.6.23New Mockingjay process injection technique evades EDR detectionHackingBleepingComputer
28.6.238Base Ransomware Spikes in Activity, Threatens U.S. and Brazilian BusinessesRansomThe Hacker News
28.6.23Critical SQL Injection Flaws Expose Gentoo Soko to Remote Code ExecutionVulnerebilityThe Hacker News
28.6.23New Mockingjay Process Injection Technique Could Let Malware Evade DetectionHackingThe Hacker News
28.6.23New Ongoing Campaign Targets npm Ecosystem with Unique Execution ChainCyberCrimeThe Hacker News
28.6.23EncroChat Bust Leads to 6,558 Criminals' Arrests and €900 Million SeizureCrimeThe Hacker News
27.6.23Schneider Electric and Siemens Energy are two more victims of a MOVEit attackAttackSecurityaffairs
27.6.23JOKERSPY used to target a cryptocurrency exchange in JapanCryptocurrencySecurityaffairs
27.6.23Citizen of Croatia charged with running the Monopoly Market drug marketplaceCyberSecurityaffairs
27.6.23Energy company Suncor suffered a cyber attack and its company Petro-Canada gas reported problems at its gas stations in CanadaCyberSecurityaffairs
27.6.23Internet Systems Consortium (ISC) fixed three DoS flaw in BINDVulnerebilitySecurityaffairs
27.6.23China-linked APT group VANGUARD PANDA uses a new tradecraft in recent attacksAPTSecurityaffairs
27.6.23How cybercrime is impacting SMBs in 2023CyberCrimeSecurelist
27.6.23Windows 11 is getting a built-in passkey manager for Windows HelloOSBleepingComputer
27.6.23Anatsa Android trojan now steals banking info from users in US, UKVirusBleepingComputer
27.6.23New PindOS JavaScript dropper deploys Bumblebee, IcedID malwareVirusBleepingComputer
27.6.23Hackers steal data of 45,000 New York City students in MOVEit breachIncindentBleepingComputer
27.6.23Man charged in US for running 'Monopoly' darknet drug marketBigBrothersBleepingComputer
27.6.23Suncor Energy cyberattack impacts Petro-Canada gas stationsHackingBleepingComputer
27.6.23Anatsa Banking Trojan Targeting Users in US, UK, Germany, Austria, and SwitzerlandVirusThe Hacker News
27.6.23New Fortinet's FortiNAC Vulnerability Exposes Networks to Code Execution AttacksVulnerebilityThe Hacker News
27.6.23Researchers Find Way to Recover Cryptographic Keys by Analyzing LED FlickersHackingThe Hacker News
26.6.23Japanese Cryptocurrency Exchange Falls Victim to JokerSpy macOS Backdoor AttackCryptocurrencyThe Hacker News
26.6.23Microsoft Warns of Widescale Credential Stealing Attacks by Russian HackersBigBrothersThe Hacker News
26.6.23Trojanized Super Mario Bros game spreads malwareVirusSecurityaffairs
26.6.23Twitter hacker sentenced to five years in prison for cybercrime offensesSocialSecurityaffairs
26.6.23Someone is sending mysterious smartwatches to the US Military personnelBigBrothersSecurityaffairs
26.6.23Trojanized Super Mario game used to install Windows malwareVirusBleepingComputer
26.6.23Grafana warns of critical auth bypass due to Azure AD integrationVulnerebilityBleepingComputer
26.6.23Chinese Hackers Using Never-Before-Seen Tactics for Critical Infrastructure AttacksBigBrothersThe Hacker News
24.6.23CISA orders govt agencies to fix recently disclosed flaws in Apple devicesVulnerebilitySecurityaffairs
24.6.23VMware fixed five memory corruption issues in vCenter ServerVulnerebilitySecurityaffairs
24.6.23Fortinet fixes critical FortiNAC RCE, install updates asapVulnerebilitySecurityaffairs
24.6.23More than a million GitHub repositories potentially vulnerable to RepoJackingVulnerebilitySecurityaffairs
24.6.23NSA Issues Guidance on Mitigating BlackLotus Bootkit InfectionsBigBrothers

Securityweek

24.6.23In Other News: Microsoft Win32 App Isolation,Tsunami Hits Linux Servers, ChatGPT Credentials Exposed on Dark WebCyberCrime

Securityweek

24.6.23CISA Tells US Agencies to Patch Exploited Roundcube, VMware FlawsVulnerebility

Securityweek

24.6.23VMware Patches Code Execution Vulnerabilities in vCenter ServerVulnerebility

Securityweek

24.6.232.5M Genworth Policyholders and 769K Retired California Workers and Beneficiaries Affected by HackIncindentSecurityweek
24.6.23LastPass users furious after being locked out due to MFA resetsSecurityBleepingComputer
24.6.23American Airlines, Southwest Airlines disclose data breaches affecting pilotsIncindentBleepingComputer
24.6.23University of Manchester confirms data theft in recent cyberattackIncindentBleepingComputer
24.6.23CISA orders agencies to patch iPhone bugs abused in spyware attacksBigBrothersBleepingComputer
24.6.23FBI seizes BreachForums after arresting its owner Pompompurin in MarchBigBrothersBleepingComputer
24.6.23MOVEIt breach impacts Genworth, CalPERS as data for 3.2 million exposedIncindentBleepingComputer
24.6.23Fortinet fixes critical FortiNAC remote command execution flawVulnerebilityBleepingComputer
24.6.23Cybercrime Group 'Muddled Libra' Targets BPO Sector with Advanced Social EngineeringCyberCrimeThe Hacker News
24.6.23The Power of Browser Fingerprinting: Personalized UX, Fraud Detection, and Secure LoginsSecurityThe Hacker News
24.6.23Powerful JavaScript Dropper PindOS Distributes Bumblebee and IcedID MalwareVirusThe Hacker News
24.6.23NSA Releases Guide to Combat Powerful BlackLotus Bootkit Targeting Windows SystemsBigBrothersThe Hacker News
24.6.23New Cryptocurrency Mining Campaign Targets Linux Systems and IoT DevicesCryptocurrencyThe Hacker News
23.6.23Google Backs Creation of Cybersecurity Clinics With $20 Million DonationCyber

Securityweek

23.6.23US Military Personnel Receiving Unsolicited, Suspicious SmartwatchesBigBrothers

Securityweek

23.6.23China-Linked APT15 Targets Foreign Ministries With ‘Graphican’ BackdoorAPT

Securityweek

23.6.23North Korean Hackers Caught Using Malware With Microphone Wiretapping CapabilitiesBigBrothers

Securityweek

23.6.23PoC Exploit Published for Cisco AnyConnect Secure VulnerabilityExploit

Securityweek

23.6.23The Benefits of Red Zone Threat IntelligenceSecurity

Securityweek

23.6.23New Mirai botnet targets tens of flaws in popular IoT devicesIoTSecurityaffairs
23.6.23Researchers released a PoC exploit for CVE-2023-20178 flaw in Cisco AnyConnect SecureVulnerebilitySecurityaffairs
23.6.23Norton parent firm Gen Digital, was victim of a MOVEit ransomware attack tooRansomSecurityaffairs
23.6.23Apple addressed actively exploited zero-day flaws in iOS, macOS, and SafariAppleSecurityaffairs
23.6.23Microsoft 365 users report Outlook, Teams won't start or freezesSecurityBleepingComputer
23.6.23Microsoft Teams bug allows malware delivery from external accountsVirusBleepingComputer
23.6.23NSA shares tips on blocking BlackLotus UEFI malware attacksBigBrothersBleepingComputer
23.6.23CISA orders govt agencies to patch bugs exploited by Russian hackersBigBrothersBleepingComputer
23.6.23Mirai botnet targets 22 flaws in D-Link, Zyxel, Netgear devicesBotNetBleepingComputer
23.6.23Microsoft: Hackers hijack Linux systems using trojanized OpenSSH versionVirusBleepingComputer
23.6.23VMware fixes vCenter Server bugs allowing code execution, auth bypassVulnerebilityBleepingComputer
23.6.23Millions of GitHub repos likely vulnerable to RepoJacking, researchers sayAttackBleepingComputer
23.6.23DuckDuckGo browser for Windows available for everyone as public betaSecurityBleepingComputer
23.6.23MULTI#STORM Campaign Targets India and U.S. with Remote Access TrojansVirusThe Hacker News
23.6.23Generative-AI apps & ChatGPT: Potential risks and mitigation strategiesCyberThe Hacker News
23.6.23Alert: Million of GitHub Repositories Likely Vulnerable to RepoJacking AttackAttackThe Hacker News
23.6.23Camaro Dragon Hackers Strike with USB-Driven Self-Propagating MalwareVirusThe Hacker News
23.6.23Critical Flaw Found in WordPress Plugin for WooCommerce Used by 30,000 WebsitesVulnerebilityThe Hacker News
22.6.23Bipartisan Bill Proposes Cybersecurity Funds for Rural Water SystemsCyber

Securityweek

22.6.23Apple Patches iOS Flaws Used in Kaspersky ‘Operation Triangulation’ Apple

Securityweek

22.6.23Cooperation or Competition? China’s Security Industry Sees the US, Not AI, as the Bigger ThreatBigBrothers

Securityweek

22.6.23Critical WordPress Plugin Vulnerabilities Impact Thousands of SitesVulnerebility

Securityweek

22.6.23Kaspersky Dissects Spyware Used in iOS Zero-Click AttacksApple

Securityweek

22.6.23Enphase Ignores CISA Request to Fix Remotely Exploitable FlawsVulnerebility

Securityweek

22.6.23CISO Conversations: Three Leading CISOs From the Payment IndustryBigBrothers

Securityweek

22.6.23DOJ Launches Cyber Unit to Prosecute Nation-State Threat ActorsBigBrothers

Securityweek

22.6.23Chrome and Its Vulnerabilities – Is the Web Browser Safe to Use?Vulnerebility

Securityweek

22.6.23Biden Discusses Risks and Promises of Artificial Intelligence With Tech Leaders in San FranciscoBigBrothers

Securityweek

22.6.23VMware Confirms Live Exploits Hitting Just-Patched Security FlawVulnerebility

Securityweek

22.6.23Researchers Flag Account Takeover Flaw in Microsoft Azure AD OAuth AppsVulnerebility

Securityweek

22.6.23LockBit Green and phishing that targets organizationsVirusSecurelist
22.6.23Analyzing the TriangleDB implant used in Operation TriangulationCyberSecurityaffairs
22.6.23Russia-linked APT28 hacked Roundcube email servers of Ukrainian entitiesAPTSecurityaffairs
22.6.23New Condi DDoS botnet targets TP-Link Wi-Fi routersAttackSecurityaffairs
22.6.23Critical RCE flaw CVE-2023-20887 in VMware vRealize exploited in the wildVulnerebilitySecurityaffairs
22.6.233CX data exposed, third-party to blameIncindentSecurityaffairs
22.6.23New Tsunami botnet targets Linux SSH serversVirusSecurityaffairs
22.6.23Zyxel addressed critical flaw CVE-2023-27992 in NAS DevicesVulnerebilitySecurityaffairs
22.6.23ASUS addressed critical flaws in some router modelsVulnerebilitySecurityaffairs
22.6.23iOttie discloses data breach after site hacked to steal credit cardsIncindentBleepingComputer
22.6.23Exploit released for Cisco AnyConnect bug giving SYSTEM privilegesExploitBleepingComputer
22.6.23APT37 hackers deploy new FadeStealer eavesdropping malwareAPTBleepingComputer
22.6.23Apple fixes zero-days used to deploy Triangulation spyware via iMessageAppleBleepingComputer
22.6.23UPS discloses data breach after exposed customer info used in SMS phishingIncindentBleepingComputer
22.6.23FTC: Amazon trapped millions into hard-to-cancel Prime membershipsBigBrothersBleepingComputer
22.6.23Chinese APT15 hackers resurface with new Graphican malwareAPTBleepingComputer
22.6.23New Condi malware builds DDoS botnet out of TP-Link AX21 routersVirusBleepingComputer
22.6.23Hackers warn University of Manchester students of imminent data leakIncindentBleepingComputer
22.6.23VMware warns of critical vRealize flaw exploited in attacksVulnerebilityBleepingComputer
22.6.23Microsoft shares workaround for Outlook freezes, slow startsOSBleepingComputer
22.6.23Hackers infect Linux SSH servers with Tsunami botnet malwareVirusBleepingComputer
22.6.23Microsoft fixes Azure AD auth flaw enabling account takeoverVulnerebilityBleepingComputer
22.6.23Zyxel warns of critical command injection flaw in NAS devicesVulnerebilityBleepingComputer
22.6.23Russian APT28 hackers breach Ukrainian govt email serversAPTBleepingComputer
22.6.23New RDStealer malware steals from drives shared over Remote DesktopVirusBleepingComputer
22.6.23Over 100,000 ChatGPT accounts stolen via info-stealing malwareVirusBleepingComputer
22.6.23Dissecting TriangleDB, a Triangulation spyware implantVirusSecurelist
22.6.23Zero-Day Alert: Apple Releases Patches for Actively Exploited Flaws in iOS, macOS, and SafariAppleThe Hacker News
22.6.23ScarCruft Hackers Exploit Ably Service for Stealthy Wiretapping AttacksExploitThe Hacker News
22.6.23New Report Exposes Operation Triangulation's Spyware Implant Targeting iOS DevicesAppleThe Hacker News
22.6.23Critical 'nOAuth' Flaw in Microsoft Azure AD Enabled Complete Account TakeoverVulnerebilityThe Hacker News
22.6.23Chinese Hacker Group 'Flea' Targets American Ministries with Graphican BackdoorBigBrothersThe Hacker News
21.6.23New Condi Malware Hijacking TP-Link Wi-Fi Routers for DDoS Botnet AttacksAttackThe Hacker News
21.6.23Alert! Hackers Exploiting Critical Vulnerability in VMware's Aria Operations NetworksVulnerebilityThe Hacker News
21.6.23Zyxel Releases Urgent Security Updates for Critical Vulnerability in NAS DevicesVulnerebilityThe Hacker News
21.6.23Researchers Expose New Severe Flaws in Wago and Schneider Electric OT ProductsVulnerebilityThe Hacker News
21.6.23Experts Uncover Year-Long Cyber Attack on IT Firm Utilizing Custom Malware RDStealerVirusThe Hacker News
21.6.23ASUS Releases Patches to Fix Critical Security Bugs Impacting Multiple Router ModelsVulnerebilityThe Hacker News
21.6.23Over 100,000 Stolen ChatGPT Account Credentials Sold on Dark Web MarketplacesCyberCrimeThe Hacker News
20.6.23Asus Patches Highly Critical WiFi Router FlawsVulnerebilitySecurityweek
20.6.23Experts found components of a complex toolkit employed in macOS attacksAppleSecurityaffairs
20.6.23Iowa’s largest school district confirms ransomware attack, data theftRansomBleepingComputer
20.6.23Malwarebytes issues fix for Chrome broken by Windows 11 KB5027231VulnerebilityBleepingComputer
20.6.23ASUS urges customers to patch critical router vulnerabilitiesVulnerebilityBleepingComputer
20.6.23Hackers use fake OnlyFans pics to drop info-stealing malwareVirusBleepingComputer
20.6.23Rogue Android Apps Target Pakistani Individuals in Sophisticated Espionage CampaignAndroidThe Hacker News

19.6.23

New Information Stealer ‘Mystic Stealer’ Rising to FameVirus

Securityweek

19.6.23

Western Digital Blocks Unpatched Devices From Cloud ServicesVulnerebility

Securityweek

19.6.23

Akeyless Launches SaaS-based External Secrets ManagerSecurity

Securityweek

19.6.23

Ransomware Gang Takes Credit for February Reddit HackRansom

Securityweek

19.6.23

MOVEit Customers Urged to Patch Third Critical VulnerabilityVulnerebility

Securityweek

19.6.23

Microsoft Says Early June Disruptions to Outlook, Cloud Platform, Were CyberattacksAttack

Securityweek

19.6.23

A Russian Ransomware Gang Breaches the Energy Department and Other Federal AgenciesBigBrothersSecurityweek

19.6.23

EU member states are urged to restrict without delay 5G equipment from risky suppliersMobil

Securityaffairs

19.6.23

Diicot cybercrime gang expands its attack capabilitiesCyberCrime

Securityaffairs

19.6.23

Microsoft: June Outlook and cloud platform outages were caused by DDoSAttack

Securityaffairs

19.6.23

Reddit Files: BlackCat/ALPHV ransomware gang claims to have stolen 80GB of data from RedditRansom

Securityaffairs

19.6.23

US govt offers $10 million bounty for info linking Clop ransomware gang to a foreign government.BigBrothers

Securityaffairs

19.6.23

Android spyware camouflaged as VPN, chat apps on Google PlayAndroid

BleepingComputer

19.6.23

Reddit hackers threaten to leak data stolen in February breachIncindent

BleepingComputer

19.6.23

New Mystic Stealer malware increasingly used in attacksVirus

BleepingComputer

19.6.23

Microsoft confirms Azure, Outlook outages caused by DDoS attacksAttack

BleepingComputer

19.6.23

US govt offers $10 million bounty for info on Clop ransomwareRansom

BleepingComputer

19.6.23

New Mystic Stealer Malware Targets 40 Web Browsers and 70 Browser ExtensionsVirusThe Hacker News

19.6.23

Researchers Discover New Sophisticated Toolkit Targeting Apple macOS SystemsApple

The Hacker News

19.6.23

State-Backed Hackers Employ Advanced Methods to Target Middle Eastern and African GovernmentsBigBrothers

The Hacker News

19.6.23

Microsoft Blames Massive DDoS Attack for Azure, Outlook, and OneDrive DisruptionsAttack

The Hacker News

17.6.23

From Cryptojacking to DDoS Attacks: Diicot Expands Tactics with Cayosin Botnet

Cryptocurrency

The Hacker News

17.6.23

ChamelDoH: New Linux Backdoor Utilizing DNS-over-HTTPS Tunneling for Covert CnC

Virus

The Hacker News

17.6.23

20-Year-Old Russian LockBit Ransomware Affiliate Arrested in Arizona

Ransom

The Hacker News

17.6.23

Third Flaw Uncovered in MOVEit Transfer App Amidst Cl0p Ransomware Mass Attack

Ransom

The Hacker News

17.6.23

Windows 11 'Win32 app isolation' security feature now in preview

OS

BleepingComputer

17.6.23

SMS delivery reports can be used to infer recipient's location

Mobil

BleepingComputer

17.6.23

Law enforcement shutdown a long-standing DDoS-for-hire service

Attack

Securityaffairs

17.6.23

A Russian national charged for committing LockBit Ransomware attacks

BigBrothers

Securityaffairs

17.6.23

In Other News: Linux Kernel Exploits, Update on BEC Losses, Cybersecurity Awareness Act

Exploit

Securityweek

17.6.23

Russian National Arrested, Charged in US Over Role in LockBit Ransomware Attacks

Crime

Securityweek

17.6.23

Understanding Malware-as-a-Service

Virus

Securelist