Calendar 2020 December - Home  2020  2019  2018  2017  2016  1  2  3  4  5  6  7

Home  Analysis  Android  Apple  APT  Attack  BigBrothers  BotNet  Congress  Crime  Crypto  Cryptocurrency  Cyber  CyberCrime  CyberSpy  CyberWar  Exploit  Forensics  Hacking  ICS  Incindent  iOS  IT  IoT  Mobil  OS  Phishing  Privacy  Ransomware  Safety  Security  Social  Spam  Vulnerebility  Virus


2020 - January February March April May June July August September October November December


Date

Name

Category

Web

31.12.20

Roanoke College delays spring semester after cyberattack

Attack

Bleepingcomputer

31.12.20

Safe-Inet, Insorg VPN services shut down by law enforcement

Security

Bleepingcomputer

31.12.20

SolarWinds hackers breached US Treasury officials’ email accountsBigBrothers

Bleepingcomputer

31.12.20

Microsoft: Don't delete Windows 10 root certificate expiring this monthOSBleepingcomputer

31.12.20

FBI warns of ongoing COVID-19 vaccine related fraud schemesBigBrothers

Bleepingcomputer

31.12.20

SolarWinds victims revealed after cracking the Sunburst malware DGAVirus

Bleepingcomputer

31.12.20

Trucking giant Forward Air hit by new Hades ransomware gangRansomware

Bleepingcomputer

31.12.20

EXMO cryptocurrency exchange hacked, loses 5% of total assetsCryptocurrency

Bleepingcomputer

31.12.20

Critical bugs in Dell Wyse ThinOS allow thin client take overVulnerebility

Bleepingcomputer

31.12.20

US seizes domains used for COVID-19 vaccine phishing attacksPhishing

Bleepingcomputer

31.12.20

VMware latest to confirm breach in SolarWinds hacking campaignHacking

Bleepingcomputer

31.12.20

Google is bringing Discover to other Chromium browsersIT

Bleepingcomputer

31.12.20

New SUPERNOVA backdoor found in SolarWinds cyberattack analysisVirus

Bleepingcomputer

31.12.20

Microsoft fixes Windows 10 chkdsk bug causing boot failuresOS

Bleepingcomputer

31.12.20

Physical addresses of 270K Ledger owners leaked on hacker forumIncindent

Bleepingcomputer

31.12.20

Flavors designer Symrise halts production after Clop ransomware attackRansomware

Bleepingcomputer

31.12.20

Windows Hello is now being used by 84% of Windows 10 usersOS

Bleepingcomputer

31.12.20

New Windows 10 tool lets you group your taskbar shortcutsOS

Bleepingcomputer

31.12.20

Gitpaste-12 worm botnet returns with 30+ vulnerability exploitsBotNet  Exploit

Bleepingcomputer

31.12.20

Google explains the cause of the recent YouTube, Gmail outageIT

Bleepingcomputer

31.12.20

The SolarWinds cyberattack: The hack, the victims, and what we knowAttack

Bleepingcomputer

31.12.20

Stealthy Magecart malware mistakenly leaks list of hacked storesVirus

Bleepingcomputer

31.12.20

Europol launches new decryption platform for law enforcementBigBrothers

Bleepingcomputer

31.12.20

Windows 10 updates cause CorsairVBusDriver BSOD crash loopOS

Bleepingcomputer

31.12.20

NSA warns of hackers forging cloud authentication informationBigBrothers

Bleepingcomputer

31.12.20

Google Chrome disables insecure form warnings after complaintsSecurity

Bleepingcomputer

31.12.20

Microsoft identifies 40+ victims of SolarWinds hack, 80% from USBigBrothers

Bleepingcomputer

31.12.20

Microsoft confirms breach in SolarWinds hack, denies infecting othersIncindent

Bleepingcomputer

31.12.20

SolarWinds hackers breach US nuclear weapons agencyBigBrothers

Bleepingcomputer

31.12.20

Bouncy Castle crypto authentication bypass vulnerability revealedCryptoBleepingcomputer

31.12.20

The 5 Most-Wanted Threatpost Stories of 2020

Cyber

Threatpost

31.12.20

Taking a Neighborhood Watch Approach to Retail Cybersecurity

Cyber

Threatpost

31.12.20

FBI Warn Hackers are Using Hijacked Home Security Devices for ‘Swatting’

BigBrothers

Threatpost

31.12.20

T-Mobile data breach: CPNI (Customer Proprietary Network Information) exposed

Incindent

Securityaffairs

31.12.20

CISA demands US govt agencies to update SolarWinds Orion software

BigBrothers

Securityaffairs

31.12.20

Google Docs bug could have allowed hackers to hijack screenshots

Hacking

Securityaffairs

31.12.20

FBI: Home Surveillance Devices Hacked to Record Swatting Attacks

BigBrothers

Securityweek

31.12.20

U.S. Treasury Warns Financial Institutions of COVID-19 Vaccine-Related Cyberattacks, Scams

BigBrothers

Securityweek

30.12.20

2020 Work-for-Home Shift: What We Learned

Security

Threatpost

30.12.20

Japanese Aerospace Firm Kawasaki Warns of Data Breach

Incindent

Threatpost

30.12.20

Lawsuit Claims Flawed Facial Recognition Led to Man’s Wrongful Arrest

Privacy

Threatpost

30.12.20

US Treasury warns of ransomware attacks on COVID-19 vaccine research

Cyber

Securityaffairs

30.12.20

SolarWinds hackers aimed at access to victims’ cloud assets

Attack

Securityaffairs

30.12.20

Japanese Kawasaki Heavy Industries discloses security breach

Incindent

Securityaffairs

30.12.20

CISA releases a PowerShell-based tool to detect malicious activity in Azure, Microsoft 365

Virus

Securityaffairs

30.12.20

Apple Loses Copyright Suit Against Security Startup

Apple

Securityweek

30.12.20

Kawasaki Says Data Possibly Stolen in Security Breach

Incindent

Securityweek

30.12.20

A Google Docs Bug Could Have Allowed Hackers See Your Private Documents

Vulnerebility

Thehackernews

30.12.20

AutoHotkey-Based Password Stealer Targeting US, Canadian Banking Users

Virus

Thehackernews

29.12.20

Hackers Amp Up COVID-19 IP Theft Attacks

Cyber

Threatpost

29.12.20

Ransomware in 2020: A Banner Year for Extortion

Ransomware

Threatpost

29.12.20

Threat actor is selling a dump allegedly including 2,5M customers of service provider Ho Mobile

Incindent

Securityaffairs

29.12.20

Finland confirms that hackers breached MPs’ emails accounts

Incindent

Securityaffairs

29.12.20

Nefilim ransomware operators leak data stolen from Whirlpool

Ransomware

Securityaffairs

29.12.20

Multi-platform card skimmer targets Shopify, BigCommerce, Zencart, and Woocommerce stores

CyberCrime

Securityaffairs

29.12.20

E-commerce app 21 Buttons exposes millions of users’ data

Incindent

Securityaffairs

29.12.20

Goldman Sachs Buys Anti-Bot Startup White Ops

IT

Securityweek

29.12.20

Privacy Management Firm OneTrust Secures $300M at $5.1B Valuation

IT

Securityweek

29.12.20

Google: Microsoft Improperly Patched Exploited Windows Vulnerability

Exploit

Securityweek

29.12.20

New Zero-Day, Malware Indicate Second Group May Have Targeted SolarWinds

Virus

Securityweek

28.12.20

Vermont Hospital confirmed the ransomware attackRansomwareSecurityaffairs

28.12.20

HackerOne announces first bug hunter to earn more than $2M in bug bountiesSecuritySecurityaffairs

28.12.20

SolarWinds releases updated advisory for SUPERNOVA backdoorVirusSecurityaffairs

27.12.20

GoDaddy apologized for insensitive phishing email sent to its employees offering a fake bonusPhishingSecurityaffairs

27.12.20

The Emotet botnet is back and hits 100K recipients per dayBotNet  VirusSecurityaffairs

27.12.20

REvil gang threatens to release intimate pictures of celebs who are customers of The Hospital GroupRansomwareSecurityaffairs

27.12.20

A New SolarWinds Flaw Likely Had Let Hackers Install SUPERNOVA MalwareVirusThehackernews

26.12.20

A Timeline Perspective of the SolarStorm Supply-Chain Attack

Attack blog

Palo Alto Unity42

26.12.20

Protecting Against an Unfixed Kubernetes Man-in-the-Middle Vulnerability (CVE-2020-8554)

Vulnerebility blog

Palo Alto Unity42

26.12.20

SUPERNOVA: A Novel .NET Webshell

Malware blog

Palo Alto Unity42

26.12.20

Amazon Gift Card Offer Serves Up Dridex Banking Trojan

Malware blog

Cybereason

26.12.20

Cybereason vs. Clop Ransomware

Ransomware blog

Cybereason

26.12.20

Cybereason vs. SolarWinds Supply Chain Attack

Attack blog

Cybereason

26.12.20

2021 Security Crystal Ball: Trends and Predictions for the Year Ahead

Cyber blog

Cybereason

26.12.20

How A Device to Cloud Architecture Defends Against the SolarWinds Supply Chain Compromise

Incident blog

Mcafee blog

26.12.20

Recent Cyberattacks: 2020 Application Protection Report, Volume 3

Cyber blog

F5 Labs

26.12.20

What Is the Principle of Least Privilege and Why is it Important?

Security blog

F5 Labs

26.12.20

SUNBURST Additional Technical Details

Malware blog

FireEye

26.12.20

SUNBURST, TEARDROP and the NetSec New Normal

Malware blog

Checkpoint

26.12.20

An iOS hacker tries Android

OS Blog

Project Zero

26.12.20

2020: The year in malware

Malware blog

Cisco Talos

26.12.20

Talos Vulnerability Discovery Year in Review — 2020

Vulnerebility blog

Cisco Talos

26.12.20

Smart tech gifts: How to keep your kids and family safe

Cyber blog

Eset

26.12.20

7 ways malware can get into your device

Cyber blog

Eset

26.12.20

Cybersecurity Advent calendar: Stay aware, stay safe!

Security blog

Eset

26.12.20

CrowdStrike releases free Azure tool to review assigned privilegesSecuritySecurityaffairs

26.12.20

North Korea-linked Lazarus APT targets the COVID-19 researchAPTSecurityaffairs

26.12.20

The Russian cryptocurrency exchange Livecoin hacked on Christmas EveCryptocurrencySecurityaffairs

26.12.20

Police Arrest 21 WeLeakInfo Customers Who Bought Breached Personal DataCrimeThehackernews

26.12.20

Microsoft Warns CrowdStrike of Hackers Targeting Azure Cloud CustomersHackingThehackernews

25.12.20

DDoS amplify attack targets Citrix Application Delivery Controllers (ADC)AttackSecurityaffairs

25.12.20

Millions of devices could be hacked exploiting flaws targeted by tools stolen from FireEyeExploitSecurityaffairs

25.12.20

Google reported that Microsoft failed to fix a Windows zero-day flawOSSecurityaffairs

25.12.20

HelpSystems Acquires Data Protection Firm VeraITSecurityweek

25.12.20

Vermont Hospital Says Cyberattack Was RansomwareRansomwareSecurityweek

25.12.20

Attackers Abusing Citrix NetScaler Devices to Launch Amplified DDoS AttacksAttackThehackernews

25.12.20

Google Discloses Poorly-Patched, Now Unpatched, Windows 0-Day BugOSThehackernews

24.12.20

US think tank breached three times in a row by SolarWinds hackersIncindent

Bleepingcomputer

24.12.20

Ransomware masquerades as mobile version of Cyberpunk 2077Ransomware

Bleepingcomputer

24.12.20

CISA: Hackers breached US govt using more than SolarWinds backdoorBigBrothers

Bleepingcomputer

24.12.20

Iranian nation-state hackers linked to Pay2Key ransomwareBigBrothers  Ransomware

Bleepingcomputer

24.12.20

WordPress plugin with 5 million installs has a critical vulnerabilityVulnerebility

Bleepingcomputer

24.12.20

FBI, CISA officially confirm US govt hacks after SolarWinds breachBigBrothers

Bleepingcomputer

24.12.20

Malicious Chrome, Edge extensions with 3M installs still in storesVirus

Bleepingcomputer

24.12.20

FireEye, Microsoft create kill switch for SolarWinds backdoorVirus

Bleepingcomputer

24.12.20

Emulated mobile devices used to steal millions from US, EU banksCyberCrime

Bleepingcomputer

24.12.20

Malicious RubyGems packages used in cryptocurrency supply chain attackCryptocurrency

Bleepingcomputer

24.12.20

HPE discloses critical zero-day in server management softwareVulnerebility

Bleepingcomputer

24.12.20

Ransomware gangs automate payload delivery with SystemBC malwareRansomware

Bleepingcomputer

24.12.20

Microsoft Authenticator brings password autofill to mobile devicesSafety

Bleepingcomputer

24.12.20

Gmail hit by a second outage within a single dayIT

Bleepingcomputer

24.12.20

Microsoft to quarantine compromised SolarWinds binaries tomorrowIncindent

Bleepingcomputer

24.12.20

New Windows malware may soon target Linux, macOS devicesVirus

Bleepingcomputer

24.12.20

Microsoft 365 gets native app support on Apple Silicon MacsApple

Bleepingcomputer

24.12.20

Google outage caused by critical system running out of storageVulnerebility

Bleepingcomputer

24.12.20

Pandemic year increases bug bounties and report submissionsSecurity

Bleepingcomputer

24.12.20

Ransomware attack causing billing delays for Missouri cityRansomware

Bleepingcomputer

24.12.20

Firefox 84 dramatically boosts performance on Apple Silicon MacsSecurity

Bleepingcomputer

24.12.20

Twitter fined by EU data protection watchdog for GDPR breachSocial

Bleepingcomputer

24.12.20

Critical Golang XML parser bugs can cause SAML authentication bypassVulnerebility

Bleepingcomputer

24.12.20

Mozilla shares fix for Netflix, Hulu errors on Apple Silicon MacsSecurity

Bleepingcomputer

24.12.20

Windows 10 to get a built-in command-line disk space analyzerOS

Bleepingcomputer

24.12.20

Microsoft removes update block for Windows 10 NVMe SSD devicesOS

Bleepingcomputer

24.12.20

US govt, FireEye breached after SolarWinds supply-chain attackBigBrothers

Bleepingcomputer

24.12.20

Microsoft partially fixes Windows 10 Conexant audio driver issuesOS

Bleepingcomputer

24.12.20

Google outage affecting YouTube, Gmail and moreIT

Bleepingcomputer

24.12.20

Hacking group’s new malware abuses Google and Facebook servicesVirus

Bleepingcomputer

24.12.20

Google Chrome's high-resource ad blocking spotted in the wildSecurity

Bleepingcomputer

24.12.20

Intel's Habana Labs hacked by Pay2Key ransomware, data stolenRansomware

Bleepingcomputer

24.12.20

Hands on with Windows 10's built-in Pktmon network monitorOS

Bleepingcomputer

24.12.20

Windows 10X is arriving next year: What we know so farOS

Bleepingcomputer

24.12.20

Subway marketing system hacked to send TrickBot malware emailsBotNet

Bleepingcomputer

24.12.20

Adobe releases final Flash Player update, warns of 2021 kill switchVulnerebility

Bleepingcomputer

24.12.20

MountLocker ransomware gets slimmer, now encrypts fewer filesRansomware

Bleepingcomputer

24.12.20

Samsung fixes critical Android bugs in December 2020 updatesAndroid

Bleepingcomputer

24.12.20

Microsoft Office security updates fix critical SharePoint RCE bugsVulnerebility

Bleepingcomputer

24.12.20

Ex-Cisco engineer who nuked 16k WebEx accounts goes to prisonCrime

Bleepingcomputer

24.12.20

North Korean Hackers Trying to Steal COVID-19 Vaccine ResearchBigBrothersThehackernews

23.12.20

Holiday Puppy Swindle Has Consumers Howling

Cyber

Threatpost

23.12.20

Emotet Returns to Hit 100K Mailboxes Per Day

Virus

Threatpost

23.12.20

Hey Alexa, Who Am I Messaging?

CyberThreatpost

23.12.20

Lazarus Group Hits COVID-19 Vaccine-Maker in Espionage Attack

APT

Threatpost

23.12.20

Tech Giants Lend WhatsApp Support in Spyware Case Against NSO Group

Social

Threatpost

23.12.20

Joker’s Stash Carding Site Taken Down

CyberCrime

Threatpost

23.12.20

Patrick Wardle on Hackers Leveraging ‘Powerful’ iOS Bugs in High-Level Attacks

Apple

Threatpost

23.12.20

Nosy Ex-Partners Armed with Instagram Passwords Pose a Serious Threat

Social

Threatpost

23.12.20

Zero-Click Apple Zero-Day Uncovered in Pegasus Spy Attack

Apple

Threatpost

23.12.20

Lazarus covets COVID-19-related intelligence

APT

Securelist

23.12.20

Cellebrite claims to be able to access Signal messagesMobil

Securityaffairs

23.12.20

Research: nearly all of your messaging apps are secureMobilSecurityaffairs

23.12.20

Researchers shared the lists of victims of SolarWinds hackIncindentSecurityaffairs

23.12.20

Bulletproof VPN services took down in a global police operationCyberCrimeSecurityaffairs

23.12.20

VMware and Cisco also impacted by the SolarWinds hackVulnerebility

Securityaffairs

23.12.20

Dell Wyse ThinOS flaws allow hacking think clientsVulnerebilitySecurityaffairs

23.12.20

SUPERNOVA, a backdoor found while investigating SolarWinds hackVirusSecurityaffairs

23.12.20

Zero-day exploit used to hack iPhones of Al Jazeera employeesAppleSecurityaffairs

23.12.20

North Korean Hackers Target COVID-19 ResearchBigBrothersSecurityweek

23.12.20

Critical Flaws in Kepware Products Can Facilitate Attacks on Industrial FirmsICSSecurityweek

23.12.20

ACLU Sues FBI to Learn How It Obtains Data From Encrypted DevicesBigBrothersSecurityweek

23.12.20

Biden Says Huge Cyberattack Cannot Go UnansweredBigBrothersSecurityweek

23.12.20

DHS Details Risks of Using Chinese Data Services, EquipmentBigBrothersSecurityweek

23.12.20

Millions of Devices Affected by Vulnerabilities Used in Stolen FireEye ToolsBigBrothersSecurityweek

23.12.20

U.S. Government Warns of Phishing, Fraud Schemes Using COVID-19 Vaccine LuresBigBrothersSecurityweek

23.12.20

UN Rights Expert Urges Trump to Pardon AssangeBigBrothersSecurityweek

23.12.20

Tech Giants Show Support for WhatsApp in Lawsuit Against Spyware FirmSocialSecurityweek

23.12.20

VPN Service Used by Cybercriminals Disrupted in Global Law Enforcement OperationCyberCrimeSecurityweek

23.12.20

Crypto Exchange EXMO Says Funds Stolen in Security IncidentIncindentSecurityweek

23.12.20

CISA Issues ICS Advisory for New Vulnerabilities in Treck TCP/IP StackBigBrothersSecurityweek

23.12.20

SolarWinds Claims Execs Unaware of Breach When They Sold StockBigBrothersSecurityweek

23.12.20

Cyberattack Hit Key US Treasury Systems: SenatorBigBrothersSecurityweek

23.12.20

Servers of Carding Site "Joker's Stash" Seized by Law EnforcementCyberCrimeSecurityweek

23.12.20

Threat Actors Increasingly Using VBA Purging in AttacksVirusSecurityweek

23.12.20

Critical Vulnerabilities Expose Dell Wyse Thin Client Devices to AttacksVulnerebilitySecurityweek

23.12.20

Email Address of Instagram Users Exposed via Facebook Business SuiteSocialSecurityweek

23.12.20

Google Issues Post Mortem on Gmail, YouTube OutageITSecurityweek

23.12.20

Journalists' Phones Hacked via iMessage Zero-Day ExploitExploitSecurityweek

23.12.20

VMware, Cisco Reveal Impact of SolarWinds IncidentIncindentSecurityweek

23.12.20

Law Enforcement Seizes Joker's Stash — Stolen Credit Card MarketplaceCyberCrimeThehackernews

23.12.20

New Critical Flaws in Treck TCP/IP Stack Affect Millions of IoT DevicesVulnerebilityThehackernews

23.12.20

Cybercriminals' Favorite Bulletproof VPN Service Shuts Down In Global ActionCyberCrimeThehackernews

23.12.20

A Second Hacker Group May Have Also Breached SolarWinds, Microsoft SaysIncindentThehackernews

23.12.20

Two Critical Flaws — CVSS Score 10 — Affect Dell Wyse Thin Client DevicesVulnerebilityThehackernews

21.12.20

Clop ransomware gang paralyzed flavor and fragrance producer SymriseRansomware

Securityaffairs

21.12.20

A massive fraud operation used mobile device emulators to steal millions from online bank accountsVirusSecurityaffairs

21.12.20

SolarWinds hackers also breached the US NNSA nuclear agencyBigBrothersSecurityaffairs

21.12.20

Iranian Hackers Target Israeli Companies With Pay2Key RansomwareRansomwareSecurityweek

21.12.20

Pentagon Plan on Cyber Split Draws Strong Hill CriticismBigBrothersSecurityweek

21.12.20

iPhones of 36 Journalists Hacked Using iMessage Zero-Click ExploitAppleThehackernews

20.12.20

NATO is checking its systems to determine the impact of SolarWinds hackBigBrothersSecurityaffairs

20.12.20

NSA warns of cloud attacks on authentication mechanismsBigBrothersSecurityaffairs

20.12.20

FBI and Interpol shut down some servers of Joker’s Stash carding marketplaceBigBrothersSecurityaffairs

20.12.20

Trump Downplays Russia in First Comments on CyberattackBigBrothersSecurityweek

20.12.20

NATO Checking Systems After US CyberattackBigBrothersSecurityweek

20.12.20

Continuous Updates: Everything You Need to Know About the SolarWinds AttackBigBrothersSecurityweek

20.12.20

Hacked Networks Will Need to be Burned 'Down to the Ground'BigBrothersSecurityweek

20.12.20

Pompeo Blames Russia for Massive US CyberattackBigBrothersSecurityweek

19.12.20

Microsoft Caught Up in SolarWinds Spy Effort, Joining Federal Agencies

BigBrothers

Threatpost

19.12.20

Cyberpunk 2077 Headaches Grow: New Spyware Found in Fake Android Download

Android

Threatpost

19.12.20

Cloud is King: 9 Software Security Trends to Watch in 2021

Cyber

Threatpost

19.12.20

Sunburst’s C2 Secrets Reveal Second-Stage SolarWinds Victims

BigBrothers

Threatpost

19.12.20

Hackers target COVID-19 vaccine supply chain and sell the vaccine in Darkweb

CyberCrime

Securityaffairs

19.12.20

All-source intelligence: reshaping an old tool for future challenges

Cyber

Securityaffairs

19.12.20

Microsoft confirms breach in SolarWinds hack, but denies its clients were affected

Incindent

Securityaffairs

19.12.20

Fake mobile version of Cyberpunk 2077 spreads ransomware

Android

Securityaffairs

19.12.20

Authentication Bypass Vulnerability Patched in Bouncy Castle Library

Vulnerebility

Securityweek

19.12.20

SolarWinds Likely Hacked at Least One Year Before Breach Discovery

Incindent

Securityweek

19.12.20

Industrial Control Systems Ripe Targets for Ransomware

ICS

Securityweek

19.12.20

US Blacklists Chinese Companies Including Chip Giant SMIC

BigBrothers

Securityweek

19.12.20

UK Energy Startup 'People's Energy' Discloses Data Breach

Incindent

Securityweek

19.12.20

With Trump Silent, Reprisals for Hacks May Fall to Biden

BigBrothers

Securityweek

19.12.20

Ransomware Gangs Use 'SystemBC' Tor Backdoor in Attacks

Ransomware

Securityweek

19.12.20

Microsoft, Energy Department and Others Named as Victims of SolarWinds Attack

Attack

Securityweek

19.12.20

Google Extends Support Period for Android Devices

Android

Securityweek

18.12.20

Facebook unmasks Vietnam’s APT32 hacking group

APT

Bleepingcomputer

18.12.20

Microsoft: New malware can infect over 30K Windows PCs a day

Virus

Bleepingcomputer

18.12.20

Massive Subway UK phishing attack is pushing TrickBot malware

Phishing

Bleepingcomputer

18.12.20

Microsoft adds 64-bit application support to Windows 10 on ARM

OS

Bleepingcomputer

18.12.20

U.S. warns of increased cyberattacks against K-12 distance learning

BigBrothers

Bleepingcomputer

18.12.20

Fake data breach alerts used to steal Ledger cryptocurrency wallets

Cryptocurrency

Bleepingcomputer

18.12.20

Sophos fixes SQL injection vulnerability in their Cyberoam OS

Vulnerebility

Bleepingcomputer

18.12.20

250,000 stolen MySQL databases for sale on dark web auction site

Incindent

Bleepingcomputer

18.12.20

Windows Kerberos Bronze Bit attack gets public exploit, patch now

OS

Bleepingcomputer

18.12.20

Cisco fixes new critical code execution bug in Jabber for Windows

Vulnerebility

Bleepingcomputer

18.12.20

Hackers can use WinZip insecure server connection to drop malware

Virus

Bleepingcomputer

18.12.20

Teen who shook the Internet in 2016 pleads guilty to DDoS attacks

Attack

Bleepingcomputer

18.12.20

Microsoft Edge gets a performance boost with sleeping tabs

OS

Bleepingcomputer

18.12.20

Qbot malware switched to stealthy new Windows autostart method

Virus

Bleepingcomputer

18.12.20

Pfizer COVID-19 vaccine documents accessed in EMA cyberattack

BigBrothers

Bleepingcomputer

18.12.20

DHS-CISA urges admins to patch OpenSSL DoS vulnerability

BigBrothers

Bleepingcomputer

18.12.20

Credit card stealer hides in CSS files of hacked online stores

CyberCrime

Bleepingcomputer

18.12.20

Russian hackers hide Zebrocy malware in virtual disk images

Virus

Bleepingcomputer

18.12.20

Adobe fixes critical security vulnerabilities in Lightroom, Prelude

Vulnerebility

Bleepingcomputer

18.12.20

Microsoft fixes new Windows Kerberos security bug in staged rollout

OS

Bleepingcomputer

18.12.20

Ransomware forces hosting provider Netgain to take down data centers

Ransomware

Bleepingcomputer

18.12.20

FireEye reveals that it was hacked by a nation state APT group

APT

Bleepingcomputer

18.12.20

A slightly optimistic tale of how patching went for CVE-2019-19781

Vulnerebility

SANS

18.12.20

Cryptologists Crack Zodiac Killer’s 340 Cipher

Crypto

Threatpost

18.12.20

Nuclear Weapons Agency Hacked in Widening Cyberattack – Report

BigBrothers

Threatpost

18.12.20

5M WordPress Sites Running ‘Contact Form 7’ Plugin Open to Attack

Attack

Threatpost

18.12.20

Police Vouch for Hacker Who Guessed Trump’s Twitter Password

Social

Threatpost

18.12.20

Air-Gap Attack Turns Memory Modules into Wi-Fi Radios

Hacking

Threatpost

18.12.20

RubyGems Packages Laced with Bitcoin-Stealing Malware

Cryptocurrency  Ransomware

Threatpost

18.12.20

3M Users Targeted by Malicious Facebook, Insta Browser Add-Ons

Social

Threatpost

18.12.20

5 million WordPress sites potentially impacted by a Contact Form 7 flaw

Vulnerebility

Securityaffairs

18.12.20

DoppelPaymer ransomware gang now cold-calling victims, FBI warns

Ransomware

Securityaffairs

18.12.20

Experts spotted browser malicious extensions for Instagram, Facebook and others

Social

Securityaffairs

18.12.20

Launched OSSISNa, the Observatory for the Protection of the National Strategic Industrial System

BigBrothers

Securityaffairs

18.12.20

Digging the recently leaked Chinese Communist Party database

Incindent

Securityaffairs

18.12.20

Millions of Users Downloaded 28 Malicious Chrome and Edge Extensions

Virus

Securityweek

18.12.20

Supply Chain Attack: CISA Warns of New Initial Attack Vectors Posing 'Grave Risk'

BigBrothers

Securityweek

18.12.20

FBI, CISA, ODNI Describe Response to SolarWinds Attack

BigBrothers

Securityweek

18.12.20

FBI Warns of DoppelPaymer Ransomware Targeting Critical Infrastructure

Ransomware

Securityweek

18.12.20

Little-Known SolarWinds Gets Scrutiny Over Hack, Stock Sales

Incindent

Securityweek

18.12.20

Trend Micro Patches Serious Flaws in Product Used by Companies, Governments

Vulnerebility

Securityweek

18.12.20

Two Malware-Laced Gems Found in RubyGems Repository

Cryptocurrency  Ransomware

Securityweek

18.12.20

Killswitch Found for Malware Used in SolarWinds Hack

Virus

Securityweek

18.12.20

EU Unveils Revamp of Cybersecurity Rules Days After Hack

BigBrothers

Securityweek

18.12.20

Facebook Criticizes Apple Privacy Policy in Newspaper Ads

Social

Securityweek

18.12.20

Microsoft Says Its Systems Were Also Breached in Massive SolarWinds Hack

BigBrothers

Thehackernews

18.12.20

Software Supply-Chain Attack Hits Vietnam Government Certification Authority

BigBrothers

Thehackernews

17.12.20

Ryuk, Egregor Ransomware Attacks Leverage SystemBC Backdoor

Ransomware

Threatpost

17.12.20

The SolarWinds Perfect Storm: Default Password, Access Sales and More

Safety

Threatpost

17.12.20

Sextortionist Campaign Targets iOS, Android Users with New Spyware

Apple

Threatpost

17.12.20

FireEye, GoDaddy, and Microsoft created a kill switch for SolarWinds backdoor

Virus

Securityaffairs

17.12.20

HPE discloses critical zero-day in Systems Insight Manager

Vulnerebility

Securityaffairs

17.12.20

EU Digital Services and Digital Markets Acts aim at setting new rules for tech giants

BigBrothers

Securityaffairs

17.12.20

Sextortion campaign uses Goontact spyware to target Android and iOS users

Apple

Securityaffairs

17.12.20

Microsoft partnered with security firms to sinkhole the C2 used in SolarWinds hack

Hacking

Securityaffairs

17.12.20

Vulnerabilities in Standalone 5G Networks Expose Users to Attacks

Mobil

Securityweek

17.12.20

German Government Backs Bill Requiring 5G Security Pledge

BigBrothers

Securityweek

17.12.20

Data Protection Firm BigID Raises $70 Million at $1 Billion Valuation

IT

Securityweek

17.12.20

Trump Twitter Account Hacked, No Charges: Dutch Prosecutors

BigBrothers

Securityweek

17.12.20

Cyberattack on Independence Systems Causes Bill-Paying Delay

Attack

Securityweek

17.12.20

iOS Spyware Emerges in Longstanding Extortion Campaign

Apple

Securityweek

17.12.20

Australia Watchdog Sues Facebook Over 'Misleading' VPN App

BigBrothers

Securityweek

17.12.20

Cybercriminals Steal Millions by Spoofing Thousands of Mobile Devices

CyberCrime

Securityweek

17.12.20

SolarWinds Removes Customer List From Site as It Releases Second Hotfix

Incindent

Securityweek

17.12.20

Hack May Have Exposed Deep US Secrets; Damage Yet Unknown

BigBrothers

Securityweek

17.12.20

RAM-Generated Wi-Fi Signals Allow Data Exfiltration From Air-Gapped Systems

Hacking

Securityweek

17.12.20

EU, Britain to Toughen Rules, Fines for Tech Giants

BigBrothers

Securityweek

17.12.20

Apple Patches Tens of Code Execution Vulnerabilities in macOS

Apple

Securityweek

17.12.20

New Evidence Suggests SolarWinds' Codebase Was Hacked to Inject Backdoor

Virus

Thehackernews

17.12.20

Ransomware Attackers Using SystemBC Malware With RAT and Tor Proxy

Ransomware

Thehackernews

17.12.20

New 5G Network Flaws Let Attackers Track Users' Locations and Steal Data

Mobil

Thehackernews

17.12.20

DNS Logs in Public Clouds

Safety

SANS

16.12.20

Millions of Unpatched IoT, OT Devices Threaten Critical Infrastructure

ICS

Threatpost

16.12.20

45 Million Medical Images Left Exposed Online

Incindent

Threatpost

16.12.20

Agent Tesla Keylogger Gets Data Theft and Targeting Update

Virus

Threatpost

16.12.20

Subway Sandwich Loyalty-Card Users Suffer Ham-Handed Phishing Scam

Phishing

Threatpost

16.12.20

Easy WP SMTP Security Bug Can Reveal Admin Credentials

Vulnerebility

Threatpost

16.12.20

Gitpaste-12 Worm Widens Set of Exploits in New Attacks

Exploit

Threatpost

16.12.20

Firefox Patches Critical Mystery Bug, Also Impacting Google Chrome

Vulnerebility

Threatpost

16.12.20

PyMICROPSIA Windows malware includes checks for Linux and macOS

Virus

Securityaffairs

16.12.20

Flaws in Medtronic MyCareLink can allow attackers to take over implanted cardiac devices

ICS

Securityaffairs

16.12.20

Norwegian cruise company Hurtigruten was hit by a ransomware

Ransomware

Securityaffairs

16.12.20

Tufin Adds Support for Google Cloud

IT

Securityweek

16.12.20

Facebook Closes Disinformation Accounts Linked to French Military

BigBrothers

Securityweek

16.12.20

Group Behind SolarWinds Hack Bypassed MFA to Access Emails at US Think Tank

Hacking

Securityweek

16.12.20

Vulnerabilities in Medtronic Product Can Allow Hackers to Control Cardiac Devices

ICS

Securityweek

16.12.20

Vendors Respond to Method for Disabling Their Antivirus Products via Safe Mode

Safety

Securityweek

16.12.20

Cybersecurity Assessment Firm Outpost24 Raises €19 Million

IT

Securityweek

16.12.20

Vast Majority of OT Devices Affected by Urgent/11 Vulnerabilities Still Unpatched

Vulnerebility

Securityweek

16.12.20

'PGMiner' Crypto-Mining Botnet Abuses PostgreSQL for Distribution

Cryptocurrency

Securityweek

16.12.20

SolarWinds Issues Second Hotfix for Orion Platform Supply Chain Attack

Attack

Thehackernews

16.12.20

Wormable Gitpaste-12 Botnet Returns to Target Linux Servers, IoT Devices

BotNet  Virus

Thehackernews

16.12.20

Nearly 18,000 SolarWinds Customers Installed Backdoored Software

Virus

Thehackernews

15.12.20

Analyzing FireEye Maldocs

Virus

SANS

15.12.20

New Windows Trojan Steals Browser Credentials, Outlook Files

Virus

Threatpost

15.12.20

DHS Among Those Hit in Sophisticated Cyberattack by Foreign Adversaries – Report

BigBrothers

Threatpost

15.12.20

Ex-Cisco Employee Convicted for Deleting 16K Webex Accounts

Crime

Threatpost

15.12.20

Microsoft Office 365 Credentials Under Attack By Fax ‘Alert’ Emails

Phishing

Threatpost

15.12.20

Spotify Changes Passwords After Another Data Breach

Incindent

Threatpost

15.12.20

SoReL-20M Sophos & ReversingLabs release 10 million disarmed samples for malware study

Safety

Securityaffairs

15.12.20

Apple addressed multiple code execution flaws in iOS and iPadOS

Apple

Securityaffairs

15.12.20

SolarWinds confirmes 18,000 customers may have been impacted

Incindent

Securityaffairs

15.12.20

Details for 1.9M members of Chinese Communist Party Members leaked

Incindent

Securityaffairs

15.12.20

US Agencies and FireEye were hacked with a supply chain attack on SolarWinds Software

BigBrothers

Securityaffairs

15.12.20

Robotic Process Automation vendor UiPath discloses data breach

ICS

Securityaffairs

15.12.20

Apple’s App Stores Open New Privacy Window for Customers

Apple

Securityweek

15.12.20

SolarWinds Says 18,000 Customers May Have Used Compromised Orion Product

Incindent

Securityweek

15.12.20

Apple Patches Code Execution Flaws iOS and iPadOS

Apple

Securityweek

15.12.20

Sophos, ReversingLabs Release 20 Million Sample Dataset for Malware Research

Safety

Securityweek

15.12.20

Norwegian Cruise Company Hurtigruten Hit by Cyberattack

BigBrothers

Securityweek

15.12.20

Proportion of Exploited Vulnerabilities Continues to Drop

Exploit

Securityweek

15.12.20

Former Cisco Employee Sentenced to Prison for Webex Hack

Crime

Securityweek

15.12.20

Global Espionage Campaign Used Software Supply Chain Hack To Compromise Targets, Including US Gov

BigBrothers

Securityweek

15.12.20

Exfiltrating Data from Air-Gapped Computers via Wi-Fi Signals (Without Wi-Fi Hardware)

Hacking

Thehackernews

15.12.20

SoReL-20M: A Huge Dataset of 20 Million Malware Samples Released Online

Safety

Thehackernews

14.12.20

Pay2Key hackers stole data from Intel’s Habana Labs

Incindent

Securityaffairs

14.12.20

Hacked Subway UK marketing system used in TrickBot phishing campaign

BotNet  Phishing

Securityaffairs

14.12.20

PgMiner botnet exploits disputed CVE to hack unsecured PostgreSQL DBs

Cryptocurrency

Securityaffairs

14.12.20

US Government Confirms Cyberattack

BigBrothers

Securityweek

14.12.20

US Investigating Computer Hacks of Government Agencies

BigBrothers

Securityweek

14.12.20

US Agencies and FireEye Were Hacked Using SolarWinds Software Backdoor

BigBrothers

Thehackernews

14.12.20

SolarWinds Breach Used to Infiltrate Customer Networks (Solarigate)

Incindent

SANS

14.12.20

How to make DevSecOps stick with developers

Security

Net-security

14.12.20

Three signs your SOC is ready for XDR

Security

Net-security

14.12.20

Third-party online assets a growing security risk for retailers

Security

Net-security

14.12.20

How COVID-19 has impacted the security threat landscape

Security

Net-security

14.12.20

Remote and cloud-based systems to be ruthlessly targeted next year

Security

Net-security

13.12.20

Severe MDHexRay bug affects 100+ GE Healthcare imaging systemsVulnerebility

Bleepingcomputer

13.12.20Credit card stealing malware bundles backdoor for easy reinstallCyberCrime

Bleepingcomputer

13.12.20PlayStation Now bugs let sites run malicious code on Windows PCsVirus

Bleepingcomputer

13.12.20Qbot malware switched to stealthy new Windows autostart methodVirus

Bleepingcomputer

13.12.20

Pfizer COVID-19 vaccine documents accessed in EMA cyberattackBigBrothers

Bleepingcomputer

13.12.20DHS-CISA urges admins to patch OpenSSL DoS vulnerabilityBigBrothers

Bleepingcomputer

13.12.20Credit card stealer hides in CSS files of hacked online storesHacking

Bleepingcomputer

13.12.20Russian hackers hide Zebrocy malware in virtual disk imagesAPT

Bleepingcomputer

13.12.20

Adobe fixes critical security vulnerabilities in Lightroom, PreludeVulnerebility

Bleepingcomputer

13.12.20Microsoft fixes new Windows Kerberos security bug in staged rolloutOS

Bleepingcomputer

13.12.20Ransomware forces hosting provider Netgain to take down data centersRansomware

Bleepingcomputer

13.12.20FireEye reveals that it was hacked by a nation state APT groupAPT

Bleepingcomputer

13.12.20

Microsoft issues guidance for DNS cache poisoning vulnerabilityOS

Bleepingcomputer

13.12.20Microsoft December 2020 Patch Tuesday fixes 58 vulnerabilitiesOS

Bleepingcomputer

13.12.20Windows 10 Cumulative Updates KB4592449 & KB4592438 releasedOS

Bleepingcomputer

13.12.20Norway: Russian APT28 state hackers likely behind Parliament attackAPT

Bleepingcomputer

13.12.20

Severe MDHexRay bug affects 100+ GE Healthcare imaging systemsVulnerebility

Bleepingcomputer

13.12.20Credit card stealing malware bundles backdoor for easy reinstallVirus

Bleepingcomputer

13.12.20Scammers spoof Target's gift card balance checking pageSpam

Bleepingcomputer

13.12.20All Kubernetes versions affected by unpatched MiTM vulnerabilityVulnerebility

Bleepingcomputer

13.12.20

D-Link VPN routers get patch for remote command injection bugsVulnerebility

Bleepingcomputer

13.12.20Monster Azure VM used to play Tetris in Windows Task ManagerIT

Bleepingcomputer

13.12.20PlayStation Now bugs let sites run malicious code on Windows PCsVirus

Bleepingcomputer

13.12.20Metro Vancouver's transit system hit by Egregor ransomwareRansomware

Bleepingcomputer

13.12.20

Credit card stealing malware hides in social media sharing iconsVirus

Bleepingcomputer

13.12.20Kmart nationwide retailer suffers a ransomware attackRansomware

Bleepingcomputer

13.12.20Hacker-for-hire group develops new stealthy Windows backdoorVirus

Bleepingcomputer

13.12.20Hackers target EU Commission, COVID-19 cold chain supply orgsBigBrothers

Bleepingcomputer

13.12.20

Intel driver updates fix Windows 10 BSODs, Bluetooth issuesVulnerebility

Bleepingcomputer

13.12.20TrickBot's new module aims to infect your UEFI firmwareBotNet

Bleepingcomputer

13.12.20Android apps with 200 million installs vulnerable to security bugAndroid

Bleepingcomputer

13.12.20Ransomware gang says they stole 2 million credit cards from E-LandRansomwareBleepingcomputer

13.12.20

Office 95 Excel 4 Macros

Virus

SANS

13.12.20NI CompactRIO controller flaw could allow disrupting productionICSSecurityaffairs
13.12.20WordPress Easy WP SMTP zero-day potentially exposes hundreds of thousands of sites to hackExploitSecurityaffairs
13.12.20Oracle Says it Will Move HQ From Silicon Valley to TexasITSecurityweek
12.12.202021 predictions: Covid-19 vaccination scams and deepfake disinformation campaignsCyber blog

Avast blog

12.12.20Supreme Court hears case based on 1986 hacking lawSecurity blog

Avast blog

12.12.20Japan invests in AI matchmakingCyber blogAvast blog
12.12.20Threat Brief: FireEye Red Team Tool BreachIncident blogPalo Alto Unity42
12.12.20PGMiner: New Cryptocurrency Mining Botnet Delivered via PostgreSQLCryptocurrency blogPalo Alto Unity42
12.12.20Threat Brief: VMware Command Injection Vulnerability (CVE-2020-4006)Vulnerebility blogPalo Alto Unity42
12.12.20njRAT Spreading Through Active Pastebin Command and Control TunnelMalware blogPalo Alto Unity42
12.12.20Threat Assessment: Egregor RansomwareRansomware blogPalo Alto Unity42
12.12.20Exploitation of Windows RDP Vulnerability CVE-2019-0708 (BlueKeep): Get RCE with System Privilege Using Refresh Rect PDU and RDPDR Client Name Request PDUVulnerebility blogPalo Alto Unity42
12.12.20Android Apps Leaking Sensitive Data Found on Google Play With 6 Million U.S. DownloadsOS BlogPalo Alto Unity42
12.12.20New Malware Arsenal Abusing Cloud Platforms in Middle East Espionage CampaignMalware blogPalo Alto Unity42
12.12.20Cybereason vs. Ryuk RansomwareRansomware blogCybereason
12.12.20The Three Main Cybersecurity Career PathsCyber blogF5 Labs
12.12.20Unauthorized Access of FireEye Red Team ToolsIncident blogFireEye
12.12.20Game On – Finding vulnerabilities in Valve’s “Steam Sockets”Vulnerebility blogCheckpoint
12.12.20FireEye Breach Detection GuidanceIncident blog

Cisco Talos

12.12.20Vulnerability Spotlight: Multiple vulnerabilities in Foxit PDF Reader JavaScript engineVulnerebility blog

Cisco Talos

12.12.20Quarterly Report: Incident Response trends from Fall 2020Incident blog

Cisco Talos

12.12.20Vulnerability Spotlight: Remote code execution vulnerabilities in Schneider Electric EcoStruxureVulnerebility blog

Cisco Talos

12.12.20Vulnerability Spotlight: Code execution vulnerability in Microsoft ExcelVulnerebility blog

Cisco Talos

12.12.20Microsoft Patch Tuesday (Dec. 2020) — Snort rules and notable vulnerabilitiesVulnerebility blog

Cisco Talos

12.12.20Is your trading app putting your money at risk?Security blog

Eset

12.12.20Cybersecurity Advent calendar: Tips for buying gifts and not receiving coalCyber blog

Eset

12.12.20Operation StealthyTrident: corporate software under attackAttack blog

Eset

12.12.20Microsoft Patch Tuesday fixes 58 flawsVulnerebility blog

Eset

12.12.20The Internal Revenue Service expands identity protection to all tax‑payersSafety blog

Eset

12.12.20Google patches four high‑severity flaws in ChromeVulnerebility blog

Eset

12.12.20

PGMiner, Innovative Monero-Mining Botnet, Surprises Researchers

Cryptocurrency

Threatpost
12.12.20

Facebook Shutters Accounts Used in APT32 Cyberattacks

APT

Threatpost

12.12.20

Adrozek Malware Delivers Fake Ads to 30K Devices a Day

Virus

Threatpost
12.12.20

Feds: K-12 Cyberattacks Dramatically on the Rise

Attack

Threatpost
12.12.20

Security Issues in PoS Terminals Open Consumers to Fraud

Virus

Threatpost
12.12.20

Spotify reset user passwords after accidentally personal information exposure

Social

Securityaffairs
12.12.20

Facebook links cyberespionage group APT32 to Vietnamese IT firm

APT

Securityaffairs
12.12.20

Threat actors target K-12 distance learning education, CISA and FBI warn

BigBrothers

Securityaffairs
12.12.20

Interview with Massimiliano Brolli, Head of TIM Red Team Research

BigBrothers

Securityaffairs
12.12.20

Adrozek malware silently inject ads into search results in multiple browsers

Virus

Securityaffairs
12.12.20

FBI, CISA and MS-ISAC Warn of Cyberattacks Targeting K-12 Schools

BigBrothers

Securityweek
12.12.20

Vulnerability in NI Controller Can Allow Hackers to Remotely Disrupt Production

ICS

Securityweek
12.12.20

Google Cloud Hires First CISO

IT

Securityweek
12.12.20

Operations of Hacker Groups in Vietnam, Bangladesh Disrupted by Facebook

APT

Securityweek
12.12.20

Spotify Informs Users of Personal Information Exposure

Incindent

Securityweek
12.12.20

Industry Reactions to FireEye Breach: Feedback Friday

Incindent

Securityweek
12.12.20

Cisco Patches Wormable, Zero-Click Vulnerability in Jabber

Vulnerebility

Securityweek
12.12.20

France Fines Google, Amazon 135 Mn Euros

BigBrothers

Securityweek
12.12.20

PoC Released for Unpatched Windows Vulnerability Present Since 2006

Exploit

Securityweek
12.12.20

Cyberattack 'Won't Affect Vaccine Delivery Timeline': EMA

Attack

Securityweek
12.12.20

Mount Locker Ransomware Offering Double Extortion Scheme to Other Hackers

Ransomware

Thehackernews
12.12.20

Watch Out! Adrozek Malware Hijacking Chrome, Firefox, Edge, Yandex Browsers

Virus

Thehackernews
12.12.20

Facebook Tracks APT32 OceanLotus Hackers to IT Company in Vietnam

APT

Thehackernews
12.12.20

Writing Yara Rules for Fun and Profit: Notes from the FireEye Breach Countermeasures

Safety

SANS
12.12.20

Ad-injecting malware hijacks Chrome, Edge, Firefox

Hacking

Net-security

11.12.20

PLEASE_READ_ME Ransomware Attacks 85K MySQL Servers

Ransomware

Threatpost
11.12.20

Misery of Ransomware Hits Hospitals the Hardest

Ransomware

Threatpost

11.12.20

Pfizer COVID-19 Vaccine Targeted in EU Cyberattack

BigBrothers

Threatpost
11.12.20

Critical Steam Flaws Could Let Gamers Crash Opponents’ Computers

Vulnerebility

Threatpost
11.12.20

MoleRats APT Returns with Espionage Play Using Facebook, Dropbox

APT

Threatpost
11.12.20

Zero-Click Wormable RCE Vulnerability in Cisco Jabber Gets Fixed, Again

Vulnerebility

Threatpost
11.12.20

Cisco addresses critical RCE vulnerability in Jabber

Vulnerebility

Securityaffairs
11.12.20

Expert published PoC exploit code for Kerberos Bronze Bit attack

Attack  Exploit

Securityaffairs
11.12.20

njRAT RAT operators leverage Pastebin C2 tunnels to avoid detection

Virus

Securityaffairs
11.12.20

Russia-linked APT28 uses COVID-19 lures to deliver Zebrocy malware

APT

Securityaffairs
11.12.20

Attack on Vermont Medical Center is costing the hospital $1.5M a day

Attack

Securityaffairs
11.12.20

Ransomware Gang Hits Exposed MySQL Databases

Ransomware

Securityweek
11.12.20

Venafi Becomes Unicorn After Investment From Thoma Bravo

IT

Securityweek
11.12.20

Data Management Provider Skyflow Raises $17.5M

IT

Securityweek
11.12.20

New Injection Technique Exposes Data in PDFs

Hacking

Securityweek
11.12.20

New Backdoors Used by Hamas-Linked Hackers Abuse Facebook, Dropbox

APT

Securityweek
11.12.20

Application Intelligence Firm Bionic Emerges From Stealth With $17M in Funding

IT

Securityweek
11.12.20

Microsoft Details Plans to Improve Security of Internet Routing

Security

Securityweek
11.12.20

Russian Cyberspies Use COVID-19 Vaccine Lures to Deliver Malware

BigBrothers

Securityweek
11.12.20

Vaccine Documents Hacked as West Grapples With Virus Surge

Hacking

Securityweek
11.12.20

Cybersecurity Agencies Warn of High-Severity OpenSSL Vulnerability

Vulnerebility

Securityweek
11.12.20

Cisco Reissues Patches for Critical Bugs in Jabber Video Conferencing Software

Vulnerebility

Thehackernews
11.12.20

Valve's Steam Server Bugs Could've Let Hackers Hijack Online Games

Hacking

Thehackernews
11.12.20

48 U.S. States and FTC are suing Facebook for illegal monopolization

BigBrothers

Thehackernews
10.12.20Google is closing 3D model site Poly to focus on AR experiencesIT

Bleepingcomputer

10.12.20HMRC phishing scam abuses mail service to bypass spam filtersPhishing

Bleepingcomputer

10.12.20K12 online schooling giant pays Ryuk ransomware to stop data leakRansomware

Bleepingcomputer

10.12.20Google Chrome will soon warn you when using weak passwordsSecurity

Bleepingcomputer

10.12.20Phishing targets US brokerage firms using FINRA lookalike domainPhishing

Bleepingcomputer

10.12.20Microsoft Office November 2020 updates fix Outlook, Skype issuesVulnerebility

Bleepingcomputer

10.12.20FBI and Homeland Security warn of APT attacks on US think tanksAPT

Bleepingcomputer

10.12.20Russian hacking group uses Dropbox to store malware-stolen dataVirus

Bleepingcomputer

10.12.20Cyberespionage APT group hides behind cryptomining campaignsAPT

Bleepingcomputer

10.12.20Alabama school district shut down by ransomware attackRansomware

Bleepingcomputer

10.12.20Malicious NPM packages used to install njRAT remote access trojanVirus

Bleepingcomputer

10.12.20Microsoft Teams Calling gets CarPlay support, SPAM id service, moreSpam

Bleepingcomputer

10.12.20Critical Oracle WebLogic flaw actively exploited by DarkIRC malwareVirus

Bleepingcomputer

10.12.20Microsoft fixes Windows 10 BSOD crashes caused by NVMe SSDsOS

Bleepingcomputer

10.12.20FBI warns of BEC scammers using email auto-forwarding in attacksBigBrothers

Bleepingcomputer

10.12.20Android app still exposing messages of 100M users despite bug fixAndroid

Bleepingcomputer

10.12.20Windows 10 20H2 update fixes broken in-place upgrade featureOS

Bleepingcomputer

10.12.20Windows 10 Cumulative Update Preview KB4586853 ReleasedOS

Bleepingcomputer

10.12.20Windows 10 ARM runs faster on M1 Macs than on a Surface Pro XOSBleepingcomputer
10.12.20

Python Backdoor Talking to a C2 Through Ngrok

Virus

SANS
10.12.20

How do I select cyber insurance for my business?

Cyber

Net-security

10.12.20

Phishers bypass Microsoft 365 security controls by spoofing Microsoft.com

Phishing

Net-security

10.12.20

2020 to reach vulnerability disclosure levels similar to those in 2019

Vulnerebility

Net-security

10.12.20

Researchers expose the stress levels of workers at different job positions

Security

Net-security

10.12.20

Unsophisticated fraud attacks increase, first-time fraudsters more prevalent

Attack

Net-security

10.12.20

FireEye breach: State-sponsored attackers stole hacking tools

Incindent

Net-security
10.12.20

COVID-19 Vaccine Cyberattacks Steal Credentials, Spread Zebrocy Malware

APT

Threatpost
10.12.20

D-Link Routers at Risk for Remote Takeover from Zero-Day Flaws

Vulnerebility

Threatpost

10.12.20

Record Levels of Software Bugs Plague Short-Staffed IT Teams in 2020

Security

Threatpost
10.12.20

SideWinder APT Targets Nepal, Afghanistan in Wide-Ranging Spy Campaig

APT

Threatpost
10.12.20

European Medicines Agency targeted by cyber attack

BigBrothers

Securityaffairs
10.12.20

Crooks hide software skimmer inside CSS files

Hacking

Securityaffairs
10.12.20

Microsoft December 2020 Patch Tuesday fixes 58 bugs, 9 are critical

Vulnerebility

Securityaffairs
10.12.20

The importance of computer identity in network communications: how to protect it and prevent its theft

Security

Securityaffairs
10.12.20

Pompeo Unloads on US Universities for China Ties

BigBrothers

Securityweek
10.12.20

Data Broker X-Mode Being Booted From Mobile Apps

Mobil

Securityweek
10.12.20

Denmark Charges Russian Citizen With Spying for Russia

BigBrothers

Securityweek
10.12.20

OpenSSF Launches Open Source Tool for Evaluating SAST Products

Safety

Securityweek
10.12.20

Vermont Hospital Cyberattack Cost Estimated at $1.5M a Day

Attack

Securityweek
10.12.20

EU Agency Assessing Covid-19 Vaccines Hit by Cyberattack

BigBrothers

Securityweek
10.12.20

Cloud Security Firm Wiz Emerges From Stealth With $100M in Funding

IT

Securityweek
10.12.20

December 2020 Android Updates Patch 46 Vulnerabilities

Vulnerebility

Securityweek
10.12.20

SAP Releases Four 'Hot News' Notes on December 2020 Patch Day

Vulnerebility

Securityweek
10.12.20

Webcast Today: APT Year in Review and Predictions for 2021

APT

Securityweek
10.12.20

Siemens, Schneider Electric Address Serious Vulnerabilities in ICS Products

ICS

Securityweek
10.12.20

'AMNESIA:33' Vulnerabilities in TCP/IP Stacks Expose Millions of Devices to Attacks

Vulnerebility

Securityweek
10.12.20

Russian APT28 Hackers Using COVID-19 as Bait to Deliver Zebrocy Malware

APT

Thehackernews
10.12.20

Amnesia:33 — Critical TCP/IP Flaws Affect Millions of IoT Devices

Vulnerebility

Thehackernews
10.12.20

Cybersecurity Firm FireEye Got Hacked; Red-Team Pentest Tools Stolen

Incindent

Thehackernews

9.12.20

Microsoft Wraps Up a Lighter Patch Tuesday for the Holidays

Vulnerebility

Threatpost

9.12.20

FireEye Cyberattack Compromises Red-Team Security Tools

Incindent

Threatpost

9.12.20

‘Amnesia:33’ TCP/IP Flaws Affect Millions of IoT Devices

Vulnerebility

Threatpost

9.12.20

Spearphishing Attack Spoofs Microsoft.com to Target 200M Office 365 Users

Phishing

Threatpost

9.12.20

Google Patches Critical Wi-Fi and Audio Bugs in Android Handsets

Android

Threatpost

9.12.20

Divers Pull Rare Surviving WWII Enigma Cipher Machine from Bottom of the Baltic

IT

Threatpost

9.12.20

Apple Manufacturer Foxconn Confirms Cyberattack

Apple

Threatpost

9.12.20

Critical, Unpatched Bugs Open GE Radiological Devices to Remote Code Execution

Vulnerebility

Threatpost

9.12.20

Adobe Warns Windows, macOS Users of Critical-Severity Flaws

Vulnerebility

Threatpost

9.12.20

Apache Software Foundation fixes code execution flaw in Apache Struts 2

Vulnerebility

Securityaffairs

9.12.20

Top cybersecurity firm FireEye hacked by a nation-state actor

Incindent

Securityaffairs

9.12.20

OpenSSL is affected by a ‘High Severity’ security flaw, update it now

Vulnerebility

Securityaffairs

9.12.20

Unauthenticated Command Injection bug opens D-Link VPN routers to hack

Vulnerebility

Securityaffairs

9.12.20

Russian Alexander Vinnik sentenced in Paris to five years in prison for money laundering

Crime

Securityaffairs

9.12.20

Cybersecurity Firm FireEye Says Was Hacked by Nation State

Incindent

Securityweek

9.12.20

FireEye Says 'Sophisticated' Hacker Stole Red Team Tools

Incindent

Securityweek

9.12.20

Possible Code Execution Flaw in Apache Struts

Vulnerebility

Securityweek

9.12.20

Apple to Tighten App Privacy, Remove Apps That Don't Comply

Apple

Securityweek

9.12.20

Microsoft Patches Critical SharePoint, Exchange Security Holes

Vulnerebility

Securityweek

9.12.20

API Security Firm Salt Security Raises $30 Million in Series B Funding

IT

Securityweek

9.12.20

Over 100 GE Healthcare Devices Affected by Critical Vulnerability

Vulnerebility

Securityweek

9.12.20

Adobe Patches Code Execution Flaws in Prelude, Experience Manager, Lightroom

Vulnerebility

Securityweek

9.12.20

OpenSSL Ships ‘High Severity’ Security Patch

Vulnerebility

Securityweek

9.12.20

Industrial Cybersecurity Firm Dragos Raises $110 Million

IT

Securityweek

9.12.20

Norway Accuses Russian Hackers of Parliament Attack

Attack

Securityweek

9.12.20

Unauthenticated Command Injection Flaw Exposes D-Link VPN Routers to Attacks

Vulnerebility

Securityweek

9.12.20

Microsoft Releases Windows Update (Dec 2020) to Fix 58 Security Flaws

Vulnerebility

Thehackernews

9.12.20

Recent Qakbot (Qbot) activity

BotNet

SANS

9.12.20

How Kali Linux creators plan to handle the future of penetration testing

Security

Net-security

9.12.20

Vulnerable TCP/IP stacks open millions of IoT and OT devices to attack

Attack

Net-security

9.12.20

Open source contributors spending no time on security

Security

Net-security

9.12.20

Industrial pros looking for a more focused approach to digital transformation

Security

Net-security

9.12.20

Rising physical threats putting leaders under pressure

Security

Net-security

9.12.20

A light December 2020 Patch Tuesday for a no-stress end of the year

Vulnerebility

Net-security

9.12.20

D-Link routers vulnerable to remotely exploitable root command injection flaw

Vulnerebility

Net-security

8.12.20

Expert discloses zero-click, wormable flaw in Microsoft TeamsVulnerebilitySecurityaffairs

8.12.20

Critical remote code execution fixed in PlayStation NowVulnerebilitySecurityaffairs

8.12.20

QNAP fixed eight flaws that could allow NAS devices takeoverVulnerebilitySecurityaffairs

8.12.20

Cloud Visibility Firm Orca Security Raises $55 MillionITSecurityweek

8.12.20

IoT Cybersecurity Improvement Act Signed Into LawIoTSecurityweek

8.12.20

Beyond Identity Raises $75 Million to Expand Passwordless Identity PlatformITSecurityweek

8.12.20

Researcher Awarded $15,000 for Code Execution Flaw in PlayStation Now AppVulnerebilitySecurityweek

8.12.20

Foxconn Says Systems in U.S. Targeted in CyberattackAttackSecurityweek

8.12.20

WARNING — Critical Remote Hacking Flaws Affect D-Link VPN RoutersVulnerebilityThehackernews

8.12.20

RansomExx Ransomware Gang Dumps Stolen Embraer Data: Report

Ransomware

Threatpost

8.12.20

Healthcare in Crisis: Diagnosing Cybersecurity Shortcomings in Unprecedented Times

Cyber

Threatpost

8.12.20

Chinese Breakthrough in Quantum Computing a Warning for Security Teams

BigBrothers

Threatpost

8.12.20

‘Free’ Cyberpunk 2077 Downloads Lead to Data Harvesting

Security

Threatpost

8.12.20

NSA Warns: Patched VMware Bug Under Active Attack

BigBrothers

Threatpost

8.12.20

Rana Android Malware Updates Allow WhatsApp, Telegram IM Snooping

Android

Threatpost

8.12.20

Europol Warns COVID-19 Vaccine Rollout Vulnerable to Fraud, Theft

BigBrothers

Threatpost

8.12.20

Insider Report: Healthcare Security Woes Balloon in COVID-Era

Cyber

Threatpost

8.12.20

QNAP High-Severity Flaws Plague NAS Systems

Vulnerebility

Threatpost

8.12.20

DoppelPaymer ransomware gang hit Foxconn electronics giant

Ransomware

Securityaffairs

8.12.20

Cisco fixes exploitable RCEs in Cisco Security Manager

Vulnerebility

Securityaffairs

8.12.20

A ransomware attack hit the Greater Baltimore Medical Center

Ransomware

Securityaffairs

8.12.20

Wormable, Zero-Click Vulnerability in Microsoft Teams

Vulnerebility

Securityweek

8.12.20

Russian Hackers Exploiting Recently Patched VMware Flaw, NSA Warns

BigBrothers

Securityweek

8.12.20

Russian Sentenced to French Prison for Bitcoin Laundering

Cryptocurrency

Securityweek

8.12.20

Zero-Click Wormable RCE Vulnerability Reported in Microsoft Teams

Vulnerebility

Thehackernews

8.12.20

NSA Warns Russian Hacker Exploiting VMware Bug to Breach Corporate Networks

BigBrothers

Thehackernews

8.12.20

Corrupt BASE64 Strings: Detection and Decoding

Security

SANS

8.12.20

Achieving digital transformation by overcoming identity fatigue

Cyber

Net-security

8.12.20

Combating the virtual and physical threats banks face

Cyber

Net-security

8.12.20

Remote security concerns drive communications in the future

Cyber

Net-security

8.12.20

Key cybersecurity problems expected to mark 2021

Cyber

Net-security

8.12.20

Most pros are concerned about cybersecurity risks related to 5G adoption

Mobil

Net-security

7.12.20

Researchers call for a determined path to cybersecurity

Cyber

Securelist

7.12.20

Russia-linked hackers actively exploit CVE-2020-4006 VMware flaw, NSA warns

BigBrothers

Securityaffairs

7.12.20

NortonLifeLock Shells Out $360M to Acquire Avira

IT

Securityweek

7.12.20

Google Launches XS-Leaks Vulnerability Knowledge Base

Vulnerebility

Securityweek

7.12.20

Chrome, Edge and Firefox May Leak Information on Installed Apps

Security

Securityweek

7.12.20

U.S., Australia Partner on Virtual Cyber Training Range Development

BigBrothers

Securityweek

7.12.20

Greater Baltimore Medical Center Hit by Ransomware Attack

Ransomware

Securityweek

7.12.20

HR Giant Randstad Hit by Egregor Ransomware

Ransomware

Securityweek

7.12.20

Iranian RANA Android Malware Also Spies On Instant Messengers

Android  BigBrothers

Thehackernews

7.12.20

Payment Card Skimmer Group Using Raccoon Info-Stealer to Siphon Off Data

CyberCrime

Thehackernews

7.12.20

US Cyber Command and Australian IWD to develop shared cyber training range

BigBrothers

Securityaffairs

7.12.20

LockBit Ransomware operators hit Swiss helicopter maker Kopter

Ransomware

Securityaffairs

7.12.20

Drug dealers are selling Pfizer COVID vaccines on the darkweb

CyberCrime

Securityaffairs

7.12.20

COVID-19 themed attacks October 1 – December 5, 2020

Cyber

Securityaffairs

7.12.20

Police arrest two people over stealing sensitive data from defense giant

Crime

Securityaffairs

7.12.20

oledump's Indicators (video)

Security

SANS

7.12.20

Cybercrime costs the world more than $1 trillion, a 50% increase from 2018

CyberCrime

Net-security

7.12.20

How can companies secure a hybrid workforce in 2021?

Cyber

Net-security

7.12.20

Techno-nationalism isn’t going to solve our cyber vulnerability problem

Vulnerebility

Net-security

7.12.20

Six cryptographic trends we’ll see next year

Crypto

Net-security

7.12.20

Digital thought clones manipulate real-time online behavior

Security

Net-security

7.12.20

Trends every IT leader needs to know to empower the enterprise

Security

Net-security

6.12.20

Windows 10 ARM runs faster on M1 Macs than on a Surface Pro X

OS

Net-security

6.12.20

Microsoft Defender for Identity now detects Zerologon attacks

Attack

Bleepingcomputer

6.12.20

Gootkit malware returns to life alongside REvil ransomware

Ransomware

Bleepingcomputer

6.12.20

Healthcare provider AspenPointe data breach affects 295K patients

Incindent

Bleepingcomputer

6.12.20

The Best Cyber Monday 2020 Security, IT, VPN, & Antivirus Deals

Security

Bleepingcomputer

6.12.20

Baltimore students told to ditch Windows PCs after ransomware attack

Ransomware

Bleepingcomputer

6.12.20

Vermont hospitals still recovering from October ransomware attack

Ransomware

Bleepingcomputer

6.12.20

Microsoft really wants you to stop using Internet Explorer

OS

Bleepingcomputer

6.12.20

Credit card skimmer fills fake PayPal forms with stolen order info

CyberCrime

Bleepingcomputer

6.12.20

IoT chip maker Advantech confirms ransomware attack, data theft

Ransomware

Bleepingcomputer

6.12.20

Pennsylvania county pays 500K ransom to DoppelPaymer ransomware

Ransomware

Bleepingcomputer

6.12.20

How to get more time to uninstall Windows 10 feature updates

OS

Bleepingcomputer

6.12.20

Improve your Windows 10 PC with these Microsoft Store apps

OS

Bleepingcomputer

6.12.20

Customize your Windows 10 appearance with these tools

OS

Bleepingcomputer

6.12.20

Microsoft is working on an Android subsystem for Windows 10

OS

Bleepingcomputer

6.12.20

Office 365 phishing abuses Oracle and Amazon cloud services

Phishing

Bleepingcomputer

6.12.20

Drupal issues emergency fix for critical bug with known exploits

Exploit

Bleepingcomputer

6.12.20

MasterChef, Big Brother producer hit by DoppelPaymer ransomware

Ransomware

Bleepingcomputer

6.12.20

Phishing lures employees with fake 'back to work' internal memos

Phishing

Bleepingcomputer

6.12.20

CBS Last.fm fixes admin password leakage via Symfony profiler

Vulnerebility

Bleepingcomputer

6.12.20

Is IP 91.199.118.137 testing Access to aahwwx.52host.xyz

Security

SANS

6.12.20

COVID-19 – Johnson & Johnson saw a 30% uptick in cyber-attacksAttackSecurityaffairs

6.12.20

Human resource consulting giant Randstad hit by Egregor ransomwareRansomwareSecurityaffairs

6.12.20

Cyber mercenaries group DeathStalker uses a new backdoorAPTSecurityaffairs

6.12.20

Italy Says Two Arrested for Defense Data TheftBigBrothersSecurityweek

5.12.20

The rise of the OGUsers hacking group

Hacking blog

Avast blog

5.12.20

The year of fake news, Covid-19 scams and ransomware

Ransomware blog

Avast blog

5.12.20

The return of the Mirai botnet

BotNet blog

Avast blog

5.12.20

Supreme Court hears case based on 1986 hacking law

Security blog

Avast blog

5.12.20

Cybereason vs. Egregor Ransomware

Ransomware blog

Cybereason

5.12.20

Securing APIs in Banking with OAuth and PKCE

Security blog

F5 Labs

5.12.20

Pursuit for Frictionless BFSI App Experience At The Cost Of Security

Security blog

F5 Labs

5.12.20

Using Speakeasy Emulation Framework Programmatically to Unpack Malware

Malware blog

FireEye

5.12.20

Election Cyber Threats in the Asia-Pacific Region

Cyber blog

FireEye

5.12.20

Vulnerability in Google Play Core Library Remains Unpatched in Google Play Applications

Vulnerebility blog

Checkpoint

5.12.20

An iOS zero-click radio proximity exploit odyssey

Vulnerebility blog

Project Zero

5.12.20

Vulnerability Spotlight: DoS, code execution vulnerabilities in EIP Stack Group OpENer

Vulnerebility blog

Cisco Talos

5.12.20

Xanthe - Docker aware miner

Cryptocurrency blog

Cisco Talos

5.12.20

Vulnerability Spotlight: Multiple vulnerabilities in WebKit

Vulnerebility blog

Cisco Talos

5.12.20

Cybersecurity Advent Calendar: Let Santa in, keep hackers out!

Cyber blog

Eset

5.12.20

iPhone hack allowed device takeover via Wi‑Fi

OS Blog

Eset

5.12.20

Cybersecurity Trends 2021: Staying secure in uncertain times

Cyber blog

Eset

5.12.20

Turla Crutch: Keeping the “back door” open

APT blog

Eset

5.12.20

Cyberattackers could trick scientists into producing dangerous substances

Attack blog

Eset

5.12.20

Mobile payment apps: How to stay safe when paying with your phone

Security blog

Eset

5.12.20

VMware Rolls a Fix for Formerly Critical Zero-Day Bug

Vulnerebility

Threatpost

5.12.20

High-Severity Chrome Bugs Allow Browser Hacks

Vulnerebility

Threatpost
5.12.20

Novel Online Shopping Malware Hides in Social-Media Buttons

Virus

Threatpost
5.12.20

Vancouver Metro Disrupted by Egregor Ransomware

Ransomware

Threatpost
5.12.20

Iranian hackers access unsecured HMI at Israeli Water Facility

BigBrothers

Securityaffairs
5.12.20

Recently disclosed CVE-2020-4006 VMware zero-day was reported by NSA

BigBrothers  Vulnerebility

Securityaffairs
5.12.20

As Hospitals Cope With a COVID-19 Surge, Cyber Threats Loom

Cyber

Securityweek
5.12.20

VMware Patches Workspace ONE Access Vulnerability Reported by NSA

BigBrothers  Vulnerebility

Securityweek
5.12.20

Hack-for-Hire Group 'DeathStalker' Uses New Backdoor in Recent Attacks

APT

Securityweek
5.12.20

Iranian Hackers Access Unprotected ICS at Israeli Water Facility

BigBrothers

Securityweek
4.12.20

The chronicles of Emotet

Virus

Securelist
4.12.20

Islamic imprisoned hacker Ardit Ferizi ordered to be deported

CyberCrime

Securityaffairs
4.12.20

Hundreds of millions of Android users exposed to hack due to CVE-2020-8913

Android

Securityaffairs
4.12.20

Egregor ransomware attack paralyzed for 3 days payment systems at Metro Vancouver’s transportation agency TransLink

Ransomware

Securityaffairs
4.12.20

Man Pleads Guilty to Role in Malware Protection Scam

Spam

Securityweek
4.12.20

Many Android Apps Expose Users to Attacks Due to Failure to Patch Google Library

Android

Securityweek
4.12.20

Imprisoned Hacker Ordered to Be Released, Promptly Deported

Security

Securityweek
4.12.20

Metro Vancouver Transportation Agency TransLink Hit by Ransomware

Ransomware

Securityweek
4.12.20

US Intelligence Director Says China is Top Threat to America

BigBrothers

Securityweek
4.12.20

Hackers Targeting Companies Involved in Covid-19 Vaccine Distribution

BigBrothers

Thehackernews
4.12.20

Cyberattacks Target COVID-19 Vaccine ‘Cold-Chain’ Orgs

BigBrothers

Threatpost

4.12.20

Kmart, Latest Victim of Egregor Ransomware – Report

Ransomware

Threatpost
4.12.20

TrickBot Returns with a Vengeance, Sporting Rare Bootkit Functions

BotNet

Threatpost
4.12.20

Google Play Apps Remain Vulnerable to High-Severity Flaw

Android

Threatpost
4.12.20

DeathStalker APT Spices Things Up with PowerPepper Malware

APT

Threatpost
4.12.20

Clop Gang Gallops Off with 2M Credit Cards from E-Land

Ransomware

Threatpost
4.12.20

Hackers hide software skimmer in social media sharing icons

Social

Securityaffairs
4.12.20

Hackers are targeting COVID-19 vaccine cold chain

BigBrothers

Securityaffairs
4.12.20

GitHub Says Vulnerabilities in Some Ecosystems Take Years to Fix

Vulnerebility

Securityweek
4.12.20

Dell Announces New Supply Chain Security Offerings

Security

Securityweek
4.12.20

TrickBot Malware Can Scan Systems for Firmware Vulnerabilities

BotNet

Securityweek
4.12.20

US, Estonia Partnered to Search Out Cyber Threat From Russia

BigBrothers

Securityweek
4.12.20

Detecting Actors Activity with Threat Intel

Security

SANS

4.12.20

December 2020 Patch Tuesday forecast: Always consider the risk

Vulnerebility

Net-security

4.12.20

ControlFlag: Machine programming research tool detects bugs in code

Vulnerebility

Net-security

4.12.20

How to take SASE from a buzzword to a plan

Security

Net-security

4.12.20

Who are the worst password offenders of 2020?

Security

Net-security

4.12.20

Holiday shopping season fraud stats revealed

Security

Net-security

4.12.20

Growth of cloud-native apps and containerization to define 2021

Security

Net-security

4.12.20

Consumers would like to view internet connectivity as a trusted utility

Security

Net-security

4.12.20

Hackers are targeting the COVID-19 vaccine supply chain

BigBrothers

Net-security

4.12.20

Open source vulnerabilities go undetected for over four years

Vulnerebility

Net-security

3.12.20What did DeathStalker hide between two ferns?APTSecurelist
3.12.20APT annual review: What the world’s threat actors got up to in 2020APTSecurelist
3.12.20TrickBoot feature allows TrickBot bot to run UEFI attacksBotNetSecurityaffairs
3.12.20Clop Ransomware gang claims to have stolen 2 million credit cards from E-LandRansomwareSecurityaffairs
3.12.20A scan of 4 Million Docker images reveals 51% have critical flawsVulnerebilitySecurityaffairs
3.12.20State-Sponsored Hackers Likely Behind Attacks on COVID-19 Vaccine Cold ChainBigBrothersSecurityweek
3.12.20Hacker Who Stole Information From Nintendo SentencedIncindentSecurityweek
3.12.20FINRA Warns Brokerage Firms of Phishing CampaignPhishingSecurityweek
3.12.20FBI Warns of Auto-Forwarding Email Rules Abused for BEC ScamsBigBrothersSecurityweek
3.12.20Open Source Tool Helps Secure Siemens PCS 7 Control SystemsICSSecurityweek
3.12.20TrickBot Malware Gets UEFI/BIOS Bootkit Feature to Remain UndetectedVirusThehackernews
3.12.20Several Unpatched Popular Android Apps Put Millions of Users at Risk of HackingAndroidThehackernews
3.12.20Canon publicly confirms August ransomware attack, data theftRansomware

Bleepingcomputer

3.12.20Truck routing provider Rand McNally hit by cyberattackAttack

Bleepingcomputer

3.12.20Warning: Massive Zoom phishing targets Thanksgiving meetingsPhishing

Bleepingcomputer

3.12.20Ransomware hits largest US fertility network, patient data stolenRansomware

Bleepingcomputer

3.12.20Google Chrome will let you search through your open tabsSecurity

Bleepingcomputer

3.12.20cPanel 2FA bypassed in minutes via brute-force attacksAttack

Bleepingcomputer

3.12.20Sophos alerts customers of info exposure after security breachIncindent

Bleepingcomputer

3.12.20Sopra Steria expects €50 million loss after Ryuk ransomware attackRansomware

Bleepingcomputer

3.12.20TMT BEC scammers arrested after compromising 50,000 companiesSpam

Bleepingcomputer

3.12.20Danish news agency Ritzau refuses to pay after ransomware attackRansomware

Bleepingcomputer

3.12.20Windows 7 and Server 2008 zero-day bug gets a free patchOS

Bleepingcomputer

3.12.20Baltimore County Public Schools hit by ransomware attackRansomware

Bleepingcomputer

3.12.20Belden networking giant's company data stolen in cyberattackIncindent

Bleepingcomputer

3.12.20Google Chrome now lets you execute commands via the address barSecurity

Bleepingcomputer

3.12.20Passwords exposed for almost 50,000 vulnerable Fortinet VPNsIncindent

Bleepingcomputer

3.12.20How to disable Microsoft's new 'Meet Now' feature in Windows 10OS

Bleepingcomputer

3.12.20Crooks impersonate US govt agencies offering financial aidBigBrothers

Bleepingcomputer

3.12.20Zoom lifts 40-minute time limit for Thanksgiving meetingsIT

Bleepingcomputer

3.12.20UK urges orgs to patch critical MobileIron CVE-2020-15505 RCE bugVulnerebility

Bleepingcomputer

3.12.20Hands on with Microsoft Edge's Smart Copy feature for tabular dataSecurity

Bleepingcomputer

3.12.20

iPhone Bug Allowed for Complete Device Takeover Over the Air

Apple

Threatpost

3.12.20

Spotify Wrapped 2020 Rollout Marred by Pop Star Hacks

Social

Threatpost
3.12.20

Xerox DocuShare Bugs Allows Data Leaks

Incindent

Threatpost
3.12.20

Think-Tanks Under Attack by Foreign APTs, CISA Warns

BigBrothers

Threatpost
3.12.20

Turla’s ‘Crutch’ Backdoor Leverages Dropbox in Espionage Attacks

APT

Threatpost
3.12.20

Healthcare 2021: Cyberattacks to Center on COVID-19 Spying, Patient Data

Cyber

Threatpost
3.12.20

Microsoft Revamps ‘Invasive’ M365 Feature After Privacy Backlash

Privacy

Threatpost
3.12.20

K12 education giant paid the ransom to the Ryuk gang

Ransomware

Securityaffairs
3.12.20

Russia-linked APT Turla used a new malware toolset named Crutch

APT

Securityaffairs
3.12.20

APT groups targets US Think Tanks, CISA, FBI warn

APT

Securityaffairs
3.12.20

MDR Provider GoSecure Raises $35 Million

IT

Securityweek
3.12.20

Newly Discovered Turla Backdoor Used in Government Attacks

APT

Securityweek
3.12.20

Recent Oracle WebLogic Vulnerability Exploited to Deliver DarkIRC Malware

Exploit  Virus

Securityweek
3.12.20

UK Cybersecurity Firm Glasswall Raises £18 Million

IT

Securityweek
3.12.20

Traffic Analysis Quiz: Mr Natural

Security

SANS

3.12.20

Raising defenses against ransomware in healthcare

Ransomware

Net-security

3.12.20

How to reduce the risk of third-party SaaS apps

Mobil

Net-security

3.12.20

The challenges of keeping a strong cloud security posture

Security

Net-security

3.12.20

Face recognition software making progress at recognizing masked faces

Security

Net-security

3.12.20

Cloud-native benefits stifled by critical security and networking issues

Security

Net-security
3.12.20

Network slicing market to reach $1,284 million by 2025

IT

Net-security

3.12.20

Which security practices lead to best security outcomes?

Security

Net-security
2.12.20

Education predictions 2021

Cyber

Securelist
2.12.20

ICS threat predictions for 2021

ICS

Securelist
2.12.20

Healthcare security in 2021

Cyber

Securelist
2.12.20

Google discloses a zero-click Wi-Fi exploit to hack iPhone devices

Apple

Securityaffairs
2.12.20

Multi-Vector Miner+Tsunami Botnet with SSH Lateral Movement

BotNet

Securityaffairs
2.12.20

Analysis of 4 Million Docker Images Shows Half Have Critical Vulnerabilities

Vulnerebility

Securityweek
2.12.20

iOS Exploit Allows 'Unfettered Access' to iPhone User Data Over Wi-Fi

iOS

Securityweek
2.12.20

CISA, FBI Warn of Attacks Targeting U.S. Think Tanks

BigBrothers

Securityweek
2.12.20

Experts Uncover 'Crutch' Russian Malware Used in APT Attacks for 5 Years

APT

Thehackernews
2.12.20

Multiple Botnets Exploiting Critical Oracle WebLogic Bug — PATCH NOW

Exploit

Thehackernews
2.12.20

Cayman Islands Bank Records Exposed in Open Azure Blob

Incindent

Threatpost
2.12.20

Magecart Attack Convincingly Hijacks PayPal Transactions at Checkout

CyberCrime

Threatpost
2.12.20

Zoom Impersonation Attacks Aim to Steal Credentials

Attack

Threatpost
2.12.20

Electronic Medical Records Cracked Open by OpenClinic Bugs

Vulnerebility

Threatpost
2.12.20

Misconfigured Docker Servers Under Attack by Xanthe Malware

Virus

Threatpost
2.12.20

Android Messenger App Still Leaking Photos, Videos

Android

Threatpost
2.12.20

French pharmaceuticals distribution platform Apodis Pharma leaking 1.7+ TB of confidential data

Incindent

Securityaffairs
2.12.20

Malicious npm packages spotted delivering njRAT Trojan

Virus

Securityaffairs
2.12.20

DarkIRC botnet is targeting the critical Oracle WebLogic CVE-2020-14882

BotNet

Securityaffairs
2.12.20

EclecticIQ Closes $24 Million Series C Funding Round

IT

Securityweek
2.12.20

Flaws in Rockwell Automation Product Expose Engineering Workstations to Attacks

ICS

Securityweek
2.12.20

Google Hacker Details Zero-Click 'Wormable' Wi-Fi Exploit to Hack iPhones

Apple

Thehackernews
2.12.20

The three stages of security risk reprioritization

Security

Net-security

2.12.20

Cloud native security: A maturing and expanding arena

Security

Net-security

2.12.20

IT leaders on 2021 opportunities, challenges and key technology trends

IT

Net-security

2.12.20

Consumers vastly misjudge the vulnerability of their home networks

Vulnerebility

Net-security

2.12.20

Demand for private network deployments will be driven by heavy industry verticals

Security

Net-security
2.12.20

How prevalent is DNS spoofing? Could a repeat of the Dyn/Mirai DDoS attack have the same results?

Security

Net-security
1.12.20Dox, steal, reveal. Where does your personal data end up?SecuritySecurelist
1.12.20Baltimore County Schools close after a ransomware attackRansomwareSecurityaffairs
1.12.20Vietnam-linked Bismuth APT leverages coin miners to stay under the radarAPTSecurityaffairs
1.12.20UK gov bans new Huawei equipment installs after Sept 2021BigBrothersSecurityaffairs
1.12.20Talos reported WebKit flaws in WebKit that allow Remote Code ExecutionVulnerebilitySecurityaffairs
1.12.20Cybercriminals Already Targeting, Selling Leaked GO SMS Pro DataCyberCrime  MobilSecurityweek
1.12.20Baltimore County Schools Still Closed Following Cyber AttackAttackSecurityweek
1.12.20Brazilian Plane Maker Embraer Targeted in CyberattackAttackSecurityweek
1.12.20Nation-State Cyberspy Group Drops Coin Miners as Distraction TechniqueCryptocurrencySecurityweek
1.12.20Hacker Gets 8 Years in Prison for Threats to Schools, AirlinesCrimeSecurityweek

1.12.20

Online Learning Company K12 Paying Ransom Following Ransomware AttackRansomwareSecurityweek
1.12.20Incomplete 'Go SMS Pro' Patch Left Millions of Users' Data Still Exposed OnlineMobilThehackernews
1.12.20Nation-State Hackers Caught Hiding Espionage Activities Behind Crypto MinersCryptocurrencyThehackernews
1.12.20Indian National Gets 20-Year Jail in United States for Running Scam Call CentersCrimeThehackernews
1.12.20

MacOS Users Targeted By OceanLotus Backdoor

Apple

Threatpost
1.12.20

Pandemic, A Driving Force in 2021 Financial Crime

CyberCrime

Threatpost
1.12.20

Digitally Signed Bandook Trojan Reemerges in Global Spy Campaign

Virus

Threatpost
1.12.20

Post-Cyberattack, UVM Health Network Still Picking Up Pieces

Attack

Threatpost
1.12.20

Conti Gang Hits IoT Chipmaker Advantech with $14M Ransom Demand

Ransomware

Threatpost

1.12.20

Exclusive: Experts from TIM’s Red Team Research (RTR) found 6 zero-days

Vulnerebility

Securityaffairs
1.12.20

Exploring malware to bypass DNA screening and lead to ‘biohacking’ attacks

Virus

Securityaffairs
1.12.20

Theoretical Attack on Synthetic DNA Orders Highlights Need for Better Cyber-Biosecurity

Attack

Securityweek
1.12.20

UK to Ban New Huawei Gear Installations After Sept

BigBrothers

Securityweek
1.12.20

WebKit Vulnerabilities Allow Remote Code Execution via Malicious Websites

Vulnerebility

Securityweek
1.12.20

Dozens of Dormant North American Networks Suspiciously Resurrected at Once

Security

Securityweek

1.12.20

Decrypting PowerShell Payloads (video)

Security

SANS

1.12.20

Why microlearning is the key to cybersecurity education

Cyber

Net-security

1.12.20

Foiling RaaS attacks via active threat hunting

Ransomware

Net-security

1.12.20

Malware may trick biologists into generating dangerous toxins in their labs

Virus

Net-security

1.12.20

Worldwide SD-WAN market to reach $43 billion by 2030

IT

Net-security

1.12.20

The CISO’s guide to rapid vendor due diligence

Security

Net-security