Calendar 2020 November- Home  2020  2019  2018  2017  2016  1  2  3  4  5  6  7

Home  Analysis  Android  Apple  APT  Attack  BigBrothers  BotNet  Congress  Crime  Crypto  Cryptocurrency  Cyber  CyberCrime  CyberSpy  CyberWar  Exploit  Forensics  Hacking  ICS  Incindent  iOS  IT  IoT  Mobil  OS  Phishing  Privacy  Ransomware  Safety  Security  Social  Spam  Vulnerebility  Virus


2020 - January February March April May June July August September October November December


Date

Name

Category

Web

30.11.20

Advanced Threat predictions for 2021

Cyber

Securelist

30.11.20

Cyberthreats to financial organizations in 2021

Cyber

Securelist

30.11.20

University of Vermont Medical Center has yet to fully recover from October cyber attack

Attack

Securityaffairs

30.11.20

Tens of Dormant North American Networks Suspiciously Resurrected at Once

Security

Securityweek

30.11.20

SD-WAN Product Vulnerabilities Allow Hackers to Steer Traffic, Shut Down Networks

Vulnerebility

Securityweek

30.11.20

Report Claims CIA Controlled Second Swiss Encryption Firm

BigBrothers

Securityweek

30.11.20

Vietnam-Linked Cyberspies Use New macOS Backdoor in Attacks

BigBrothers

Securityweek

30.11.20

Media Production Giant Banijay Hit by Ransomware

Ransomware

Securityweek

30.11.20

Delaware County, Pennsylvania, opted to pay 500K ransom to DoppelPaymer gang

Ransomware

Securityaffairs

30.11.20

Crooks stole 800,000€ from ATMs in Italy with Black Box attack

CyberCrime

Securityaffairs

30.11.20

A critical flaw in industrial automation systems opens to remote hack

ICS

Securityaffairs

30.11.20

Sopra Steria estimates financial Impact of ransomware attack could reach €50 Million

Ransomware

Securityaffairs

30.11.20

Operators behind Dark Caracal are still alive and operational

CyberCrime

Securityaffairs

30.11.20

Quick Tip: Using JARM With a SOCKS Proxy

Security

SANS

30.11.20

How do I select a pentesting solution for my business?

Security

Net-security

30.11.20

Review: The Perfect Weapon

Security

Net-security

30.11.20

Pandemic thinking: What if there were a vaccine for OT ransomware?

Ransomware

Net-security

30.11.20

New wave of affordable silicon leading to greater IoT project success

IoT

Net-security

30.11.20

84% of global decision makers accelerating digital transformation plans

Security

Net-security

29.11.20

TrickBot malware uses obfuscated Windows batch script to evade detection

Virus

Bleepingcomputer

29.11.20

New WAPDropper malware stealthily subscribes you to premium services

Virus

Bleepingcomputer

29.11.20

TikTok fixes bugs allowing account takeover with one click

Vulnerebility

Bleepingcomputer

29.11.20

Over 300K Spotify accounts hacked in credential stuffing attack

Social

Bleepingcomputer

29.11.20

VMware discloses critical zero-day vulnerability in Workspace One

Vulnerebility

Bleepingcomputer

29.11.20

Tesla Model X key fobs could be hacked to steal cars, fix released

Hacking

Bleepingcomputer

29.11.20

Ransomware forces E-Land South Korean retail giant to close stores

Ransomware

Bleepingcomputer

29.11.20

Fake Minecraft mods swamp over 1M Android devices with ads

Android

Bleepingcomputer

29.11.20

Here's how to enable Google Chrome's new modern PDF reader

Security

Bleepingcomputer

29.11.20

FBI warns of recently registered domains spoofing its sites

BigBrothers

Bleepingcomputer

29.11.20

How to boost your Windows 10 experience with PowerToys

OS

Bleepingcomputer

29.11.20

Hands on with Windows Terminal 1.5's upcoming features

OS

Bleepingcomputer

29.11.20

Hacker posts exploits for over 49,000 vulnerable Fortinet VPNs

Vulnerebility

Bleepingcomputer

29.11.20

Best Microsoft tools created for Windows 10 power users

OS

Bleepingcomputer

29.11.20

Windows 10 Defrag TRIM bug still not fixed after six months

OS

Bleepingcomputer

29.11.20

TrickBot turns 100: Latest malware released with new features

BotNet

Bleepingcomputer

29.11.20

LightBot: TrickBot’s new reconnaissance malware for high-value targets

BotNet

Bleepingcomputer

29.11.20

VMWare releases fix for critical ESXi, Workstation vulnerability

Vulnerebility

Bleepingcomputer

29.11.20

Chip maker Advantech hit by Conti ransomware gangRansomwareSecurityaffairs

29.11.20

Office 365 phishing campaign leverages Oracle and Amazon cloud servicesPhishingSecurityaffairs

29.11.20

Hundreds of C-level executives credentials available for $100 to $1500 per accountSecuritySecurityaffairs

28.11.20

Facebook adds more mainstream news post-electionSocial blogAvast blog

28.11.20

Eliminating violence against womenSecurity blogAvast blog

28.11.20

The history of cybersecurityCyber blogAvast blog

28.11.20

The return of the Mirai botnetBotNet blogAvast blog

28.11.20

Android Apps Leaking Sensitive Data Found on Google Play With 6 Million U.S. DownloadsOS BlogPalo Alto Unity42

28.11.20

Purgalicious VBA: Macro Obfuscation With VBA PurgingMalware blogFireEye

28.11.20

Election Cyber Threats in the Asia-Pacific RegionBigBrother blogFireEye

28.11.20

Bandook: Signed & DeliveredMalware blogCheckpoint

28.11.20

Enter WAPDropper – An Android Malware Subscribing Victims To Premium Services By Telecom CompaniesOS BlogCheckpoint

28.11.20

Europol and partners thwart massive credit card fraud schemeBigBrother blog

Eset

28.11.20

FBI warns of threat actors spoofing Bureau domains, email accountsBigBrother blog

Eset

28.11.20

SIM swap scam: What it is and how to protect yourselfSpam blog

Eset

28.11.20

Up to 350,000 Spotify accounts hacked in credential stuffing attacksSocial blog

Eset

28.11.20

Security flaws in smart doorbells may open the door to hackersVulnerebility blog

Eset

28.11.20

5 takeaways from the 2020 (ISC)2 Cybersecurity Workforce StudyCyber blog

Eset

28.11.20

Threat Hunting with JARM

Security

SANS

28.11.20

ThreatList: Cyber Monday Looms – But Shoppers Oblivious to Top Retail Threats

Cyber

Threatpost

28.11.20

TurkeyBombing Puts New Twist on Zoom Abuse

BigBrothers

Threatpost

28.11.20

Cybersecurity Predictions for 2021: Robot Overlords No, Connected Car Hacks Yes

Cyber

Threatpost

28.11.20

Drupal emergency updates fix critical arbitrary PHP code execution

Vulnerebility

Securityaffairs

28.11.20

North Korean hackers allegedly behind cyberattacks on AstraZeneca

BigBrothers

Securityaffairs

27.11.20

A week later, Manchester United has yet to recover after a cyberattack

Attack

Securityaffairs

27.11.20

The global impact of the Fortinet 50.000 VPN leak posted online

Incindent

Securityaffairs

27.11.20

Details of 16 million Brazilian COVID-19 patients exposed online

Incindent

Securityaffairs

27.11.20

Canon publicly confirms August ransomware attack and data breach

Ransomware

Securityaffairs

27.11.20

Financial Impact of Ransomware Attack on Sopra Steria Could Reach €50 Million

Ransomware

Securityweek

27.11.20

U of Vermont Medical Center Continuing Cyber-Attack Recovery

Attack

Securityweek

27.11.20

Three Nigerians Arrested for Cybercrime Operation Targeting 150 Countries

CyberCrime

Securityweek

27.11.20

Canon Says Data Stolen in August 2020 Ransomware Attack

Ransomware

Securityweek

27.11.20

US Extends TikTok Sale Deadline to December 4

BigBrothers

Securityweek

27.11.20

Drupal Releases Out-of-Band Security Updates Due to Availability of Exploits

Exploit

Securityweek

27.11.20

Unofficial Patch Released for Windows 7 Zero-Day Vulnerability

Vulnerebility

Securityweek

27.11.20

Man United Unable to Fully Restore Systems After Cyberattack

Attack

Securityweek

27.11.20

Digitally Signed Bandook Malware Once Again Targets Multiple Sectors

Virus

Thehackernews

27.11.20

Microsoft releases patching guidance for Kerberos security bugOS

Bleepingcomputer

27.11.20

Windows 10 KB4586819 update fixes gaming and USB 3.0 issuesOS

Bleepingcomputer

27.11.20

QBot partners with Egregor ransomware in bot-fueled attacksBotNet

Bleepingcomputer

27.11.20

Kali Linux 2020.4 switches the default shell from Bash to ZSHOS

Bleepingcomputer

27.11.20

Mount Locker ransomware now targets your TurboTax tax returnsRansomware

Bleepingcomputer

27.11.20

Facebook Messenger bug allowed Android users to spy on each otherSocial

Bleepingcomputer

27.11.20

How to uninstall and downgrade Windows 10 20H2 to previous versionsOS

Bleepingcomputer

27.11.20

Scammer sentenced for stealing $9M from adoption, automotive firmsSpam

Bleepingcomputer

27.11.20

Microsoft rolls out protection for critical accounts in Office 365Safety

Bleepingcomputer

27.11.20

Android chat app with 100 million installs exposes private messagesAndroid

Bleepingcomputer

27.11.20

Google’s free services are now phishing campaign’s best friendsPhishing

Bleepingcomputer

27.11.20

Egregor ransomware print bombs printers with ransom notesRansomware

Bleepingcomputer

27.11.20

Cisco fixes WebEx bugs allowing 'ghost' attackers in meetingsVulnerebility

Bleepingcomputer

27.11.20

GitHub reinstates YouTube-dl, promises to overhaul DMCA reviewsSecurity

Bleepingcomputer

27.11.20

Windows Kerberos authentication breaks due to security updatesOS

Bleepingcomputer

27.11.20

Capcom confirms data breach after gamers' data stolen in cyberattackIncindent

Bleepingcomputer

27.11.20

Microsoft pauses Windows cumulative update previews for DecemberOS

Bleepingcomputer

27.11.20

How to autostart PWAs after logging into WindowsOS

Bleepingcomputer

27.11.20

DarkSide ransomware's Iranian hosting raises U.S. sanction concernsRansomware

Bleepingcomputer

27.11.20

Retail giant Cencosud hit by Egregor Ransomware attack, stores impactedRansomwareBleepingcomputer

27.11.20

Federated Learning: A Therapeutic for what Ails Digital Health

BigBrothers

Threatpost

27.11.20

Changing Employee Security Behavior Takes More Than Simple Awareness

Security

Threatpost

27.11.20

Ransomware hits US Fertility the largest US fertility network

Ransomware

Securityaffairs

27.11.20

Danish news agency Ritzau hit by ransomware, but did not pay the ransom

Ransomware

Securityaffairs

27.11.20

Carding Action 2020: Group-IB supports Europol-backed operation saving €40 million

CyberCrime

Securityaffairs

27.11.20

Sophos notifies data leak after a misconfiguration

Incindent

Securityaffairs

27.11.20

A zero-day in Windows 7 and Windows Server 2008 has yet to be fixed

Vulnerebility

Securityaffairs

27.11.20

SSH-backdoor Botnet With ‘Research’ Infection Technique

BotNet

Securityaffairs

27.11.20

EU Plans New Rules Giving Europeans More Control of Data

BigBrothers

Securityweek

27.11.20

Attacks are rising in all vectors and types

Attack

Net-security

27.11.20

The current state of third-party risk management

Security

Net-security

27.11.20

Top digital security worries when it comes to remote employees

Security

Net-security

27.11.20

Cyber insurance claims on the rise

Cyber

Net-security

27.11.20

The AI in cybersecurity market to generate $101.8 billion in 2030

Cyber

Net-security

26.11.20

Laser-Based Hacking from Afar Goes Beyond Amazon Alexa

Hacking

Threatpost

26.11.20

Critical MobileIron RCE Flaw Under Active Attack

Vulnerebility

Threatpost

26.11.20

Major BEC Phishing Ring Cracked Open with 3 Arrests

Phishing

Threatpost

26.11.20

Belden discloses data breach as a result of a cyber attack

Incindent

Securityaffairs

26.11.20

Operation Falcon: Group-IB helps INTERPOL identify Nigerian BEC ring members

BigBrothers

Securityaffairs

26.11.20

Danish News Agency Rejects Ransom Demand After Hacker Attack

BigBrothers  Ransomware

Securityweek

26.11.20

Interpol Arrests 3 Nigerian BEC Scammers For Targeting Over 500,000 Entities

Spam

Thehackernews

26.11.20

Live Patching Windows API Calls Using PowerShell

Security

SANS

26.11.20

How to mitigate risks in an interconnected intelligent enterprise

Security

Net-security

26.11.20

Automation to shape cybersecurity activities in 2021

Cyber

Net-security

26.11.20

Worldwide cloud security market to reach $20.9 billion by 2027

IT

Net-security

26.11.20

How consumers feel about retail data breaches

Incindent

Net-security

26.11.20

Enterprises addressing data security and e-waste issues generated by remote work

Security

Net-security

26.11.20

The ransomware plague cost the world over $1 billion

Ransomware

Net-security

26.11.20

cPanel 2FA bypass vulnerability can be exploited through brute force

Exploit

Net-security

25.11.20

Retail giant Home Depot agrees to a $17.5 million settlement over 2014 data breach

Incindent

Securityaffairs

25.11.20

Watch out, WAPDropper malware could subscribe you to premium services

Virus

Securityaffairs

25.11.20

Group-IB Hi-Tech Crime Trends 2020/2021 report

CyberCrime

Securityaffairs

25.11.20

UK NCSC’s alert urges orgs to fix MobileIron CVE-2020-15505 RCE

BigBrothers

Securityaffairs

25.11.20

Banking Cybersecurity Provider DefenseStorm Raises $19 Million

IT

Securityweek

25.11.20

Belden Discloses Data Breach Affecting Employee, Business Information

Incindent

Securityweek

25.11.20

2FA Bypass Vulnerability Patched in cPanel & WebHost Manager

Vulnerebility

Securityweek

25.11.20

Cloud Security Company Lightspin Emerges From Stealth Mode

Security

Securityweek

25.11.20

Secure Access Service Edge Provider Cato Networks Raises $130 Million

IT

Securityweek

25.11.20

Stantinko Proxy Trojan Masquerades as Apache Servers

Virus

Securityweek

25.11.20

‘Minecraft Mods’ Attack More Than 1 Million Android Devices

Android

Threatpost

25.11.20

Baidu Apps in Google Play Leak Sensitive Data

Android

Threatpost

25.11.20

Post-Breach, Peatix Data Reportedly Found on Instagram, Telegram

Social

Threatpost

25.11.20

Blackrota Golang Backdoor Packs Heavy Obfuscation Punch

Virus

Threatpost

25.11.20

Tesla Hacked and Stolen Again Using Key Fob

Hacking

Threatpost

25.11.20

Lookalike domains and how to outfox them

Security

Securelist

25.11.20

2FA bypass in cPanel potentially exposes tens of millions of websites to hack

Hacking

Securityaffairs

25.11.20

Baidu Android apps removed from Play Store because caught collecting user details

Android

Securityaffairs

25.11.20

A new Stantinko Bot masqueraded as httpd targeting Linux servers

BotNet

Securityaffairs

25.11.20

TrickBot operators continue to update their malware to increase resilience to takedown

BotNet

Securityaffairs

25.11.20

Microsoft fixes Kerberos Authentication issues with an out-of-band Update

Safety

Securityaffairs

25.11.20

Crooks social-engineered GoDaddy staff to take over crypto-biz domains

Cryptocurrency

Securityaffairs

25.11.20

Credential stuffing attack targeted 300K+ Spotify users

Attack

Securityaffairs

25.11.20

Home Depot Agrees to $17.5 Million Settlement With States Over 2014 Data Breach

Incindent

Securityweek

25.11.20

Apple Security Chief Allegedly Tried to Bribe Police With iPads

Apple

Securityweek

25.11.20

Hackers Trick GoDaddy Employees in Operation Targeting Cryptocurrency Services

Cryptocurrency

Securityweek

25.11.20

Chinese Threat Actor 'Mustang Panda' Updates Tools in Attacks on Vatican

BigBrothers

Securityweek

25.11.20

Canonical Publishes Secure Container Application Images on Docker Hub

Security

Securityweek

25.11.20

UK Telecom Companies Face Big Fines Under New Security Law

BigBrothers

Securityweek

25.11.20

FBI Warns of Spoofed FBI-Related Domains

BigBrothers

Securityweek

25.11.20

VMware Working on Patches for Critical Workspace ONE Access Vulnerability

Vulnerebility

Securityweek

25.11.20

TrickBot Gets Updated to Survive Takedown Attempts

BotNet

Securityweek

25.11.20

Google Faces UK Scrutiny Over New Advertising Data Revamp

Security

Securityweek

25.11.20

2-Factor Authentication Bypass Flaw Reported in cPanel and WHM Software

Vulnerebility

Thehackernews

25.11.20

Baidu's Android Apps Caught Collecting and Leaking Sensitive User Data

Android

Thehackernews

25.11.20

Stantinko Botnet Now Targeting Linux Servers to Hide Behind Proxies

BotNet

Thehackernews

25.11.20

The special case of TCP RST

Security

SANS

25.11.20

Challenges organizations face in combating third-party cyber risk

Cyber

Net-security

25.11.20

Using drones to improve 5G network security

Mobil

Net-security

25.11.20

SMBs eagerly adopting IaaS, 60% prefer resellers over providers

Security

Net-security

25.11.20

Around 18,000 fraudulent sites are created daily

CyberCrime

Net-security

25.11.20

VMware releases workarounds for another critical flaw (CVE-2020-4006)

Vulnerebility

Net-security

25.11.20

XDR: Unifying incident detection, response and remediation

Security

Net-security

25.11.20

Complex cyber attacks target online retailers

Attack

Net-security

25.11.20

How the pandemic has accelerated existing risk trends

Security

Net-security

25.11.20

IT and data management challenges for 2021

Security

Net-security

25.11.20

Researchers bring deep learning to IoT devices

IoT

Net-security

25.11.20

Drupal-based sites open to attack via double extension files (CVE-2020-13671)

Vulnerebility

Net-security

25.11.20

Four easy steps for organizations to hand over data control

Security

Net-security

24.11.20

Manchester United: IT Systems Disrupted in Cyberattack

Attack

Threatpost

24.11.20

Joe Biden Campaign Subdomain Down After Hacktivist Defacement

BigBrothers

Threatpost

24.11.20

Spotify Users Hit with Rash of Account Takeovers

Incindent

Threatpost

24.11.20

Critical VMware Zero-Day Bug Allows Command Injection; Patch Pending

Vulnerebility

Threatpost

24.11.20

GoDaddy Employees Tricked into Compromising Cryptocurrency Sites

Cryptocurrency

Threatpost

24.11.20

TA416 APT Rebounds With New PlugX Malware Variant

Virus

Threatpost

24.11.20

VMware discloses critical zero-day CVE-2020-4006 in Workspace One

Vulnerebility

Securityaffairs

24.11.20

Computer Security and Data Privacy, the perfect alliance

Privacy

Securityaffairs

24.11.20

Researchers show how to steal a Tesla Model X in a few minutes

Hacking

Securityaffairs

24.11.20

Microsoft Releases Out-of-Band Update for Kerberos Authentication Issues

Safety

Securityweek

24.11.20

TikTok Awards Nearly $4,000 for Account Takeover Vulnerabilities

Social

Securityweek

24.11.20

Two Romanians Arrested for Running Malware Encryption Services

Crime

Securityweek

24.11.20

Critical Unpatched VMware Flaw Affects Multiple Corporates Products

Vulnerebility

Thehackernews

23.11.20

TikTok fixed security issues that could have led one-click account takeover

Social

Securityaffairs

23.11.20

VMware fixed SD-WAN flaws that could allow hackers to target enterprise networks

Vulnerebility

Securityaffairs

23.11.20

FBI issued an alert on Ragnar Locker ransomware activity

Ransomware

Securityaffairs

23.11.20

Massive threat campaign strikes open-source repos, Sonatype spots new CursedGrabber malware

Virus

Securityaffairs

23.11.20

Attack on Vendor Affects Website of Arizona Court System

Attack

Securityweek

23.11.20

New 'LidarPhone' Attack Uses Robot Vacuum Cleaners for Eavesdropping

Attack

Securityweek

23.11.20

Researchers Show Tesla Model X Can Be Stolen in Minutes

Hacking

Securityweek

23.11.20

Canada PM Refuses to Commit to Huawei 5G Decision Timetable

BigBrothers

Securityweek

23.11.20

Subdomain of Official Joe Biden Campaign Website Defaced by Turkish Hacker

BigBrothers

Securityweek

23.11.20

Hackers Target Manchester United: Club

Attack

Securityweek

23.11.20

Threat actor shared a list of 49,577 IPs vulnerable Fortinet VPNs

Incindent

Securityaffairs

23.11.20

Hundreds of female sports stars and celebrities have their naked photos and videos leaked online

Incindent

Securityaffairs

23.11.20

Quick Tip: Extracting all VBA Code from a Maldoc - JSON Format

Virus

SANS

23.11.20

Companies rely on crowdsourced security to boost security efforts

Security

Net-security

23.11.20

Even the world’s freest countries aren’t safe from internet censorship

Security

Net-security

23.11.20

Organizations plan to use AI and ML to tackle unknown attacks faster

Attack

Net-security

23.11.20

What is the future of working professional education?

Security

Net-security

23.11.20

eBook: Secure Software Development

SecurityNet-security

22.11.20

Romanians arrested for running underground malware servicesVirusSecurityaffairs

22.11.20

A cyberattack crippled the IT infrastructure of the City of Saint JohnAttackSecurityaffairs

22.11.20

Closer look at Windows 10's new modern disk management toolOS

Bleepingcomputer

22.11.20

Malwarebytes is kicking Windows printers offlineSecurity

Bleepingcomputer

22.11.20

Hacker shares 3.2 million Pluto TV accounts for free on forumIncindent

Bleepingcomputer

22.11.20

Apple iOS Safari feature can be used to share "fake news" headlinesApple

Bleepingcomputer

22.11.20

IRS announces move to protect businesses from identity theftSpam

Bleepingcomputer

22.11.20

Biotech research firm Miltenyi Biotec hit by ransomware, data leakedRansomware

Bleepingcomputer

22.11.20

New TroubleGrabber Discord malware steals passwords, system infoVirus

Bleepingcomputer

22.11.20

New stealthy hacker-for-hire group mimics state-backed attackersAttack

Bleepingcomputer

22.11.20

New Jupyter malware steals browser data, opens backdoorVirus

Bleepingcomputer

22.11.20

DarkSide ransomware is creating a secure data leak service in IranRansomware

Bleepingcomputer

22.11.20

The North Face resets passwords after credential stuffing attackAttack

Bleepingcomputer

22.11.20

Luxottica data breach exposes 820K EyeMed, LensCrafters patientsIncindent

Bleepingcomputer

22.11.20

DNS cache poisoning attacks return due to Linux weaknessAttack

Bleepingcomputer

22.11.20

Google fixes more Chrome zero-days exploited in the wildExploit

Bleepingcomputer

22.11.20

New tool lets attackers easily create reply-chain phishing emailsPhishing

Bleepingcomputer

22.11.20

Popular stock photo service hit by data breach, 8.3M records for saleIncindent

Bleepingcomputer

22.11.20

Steelcase furniture giant down for 2 weeks after ransomware attackRansomware

Bleepingcomputer

22.11.20

Rakuten sends cashback emails to customers in errorPhishing

Bleepingcomputer

22.11.20

ModPipe malware decrypts Oracle point-of-sale database passwordsVirus

Bleepingcomputer

22.11.20

Animal Jam kids' virtual world hit by data breach, impacts 46M accountsIncindentBleepingcomputer

21.11.20

Dutch tech reporter gatecrashes EU defence secret video conferenceBigBrothersSecurityaffairs

21.11.20

Experts warn of mass-scanning for ENV files left unsecured onlineSecuritySecurityaffairs

21.11.20

Manchester United hit by ‘sophisticated’ cyber attackAttackSecurityaffairs

21.11.20

UK reveals new National Cyber Force to improve offensive cyber capabilitiesBigBrothersSecurityaffairs

21.11.20

Good Heavens! 10M Impacted in Pray.com Data Exposure

Incindent

Threatpost

21.11.20

Google Services Weaponized to Bypass Security in Phishing, BEC Campaigns

Phishing

Threatpost

21.11.20

New Grelos Skimmer Variants Siphon Credit Card Data

CyberCrime

Threatpost

21.11.20

VMware Fixes Critical Flaw in ESXi Hypervisor

Vulnerebility

Threatpost

21.11.20

Facebook Messenger Bug Allows Spying on Android Users

Social

Threatpost

21.11.20

VMware addresses flaws exploited at recent Tianfu Cup

Exploit

Securityaffairs

21.11.20

October Mumbai power outage may have been caused by a cyber attack

Attack

Securityaffairs

21.11.20

Mitsubishi Electric Corp. was hit by a new cyberattack

Attack

Securityaffairs

21.11.20

QakBot Big Game Hunting continues: the operators drop ProLock ransomware for Egregor

BotNet

Securityaffairs

21.11.20

A flaw in Facebook Messenger could have allowed spying on users

Social

Securityaffairs

21.11.20

Trend Micro Releases Free Tool to Tackle Misinformation

Security

Securityweek

21.11.20

Facebook Paid Out $11.7 Million in Bug Bounties Since 2011

Social

Securityweek

21.11.20

Major Power Outage in India Possibly Caused by Hackers: Reports

BigBrothers

Securityweek

21.11.20

Industry Reactions to Trump Firing CISA Director Chris Krebs: Feedback Friday

BigBrothers

Securityweek

20.11.20

IT threat evolution Q3 2020 Mobile statisticsAnalysisSecurelist

20.11.20

IT threat evolution Q3 2020AnalysisSecurelist

20.11.20

IT threat evolution Q3 2020. Non-mobile statisticsAnalysisSecurelist

20.11.20

Hacker Closing Out Prison Sentence in Chicago Halfway HouseHackingSecurityweek

20.11.20

GO SMS Pro Exposes Messages of Millions of UsersMobilSecurityweek

20.11.20

VMware Patches Vulnerabilities Exploited at Chinese Hacking ContestExploitSecurityweek

20.11.20

Facebook Pays $60,000 for Vulnerability in Messenger for AndroidSocialSecurityweek

20.11.20

Apple to Press Ahead on Mobile Privacy, Despite Facebook ProtestsAppleSecurityweek

20.11.20

Facebook Messenger Bug Lets Hackers Listen to You Before You Pick Up the CallSocialThehackernews

20.11.20

Intel fixes 95 vulnerabilities in November 2020 Platform UpdateVulnerebility

Bleepingcomputer

20.11.20

Alleged source code of Cobalt Strike toolkit shared onlineAPT

Bleepingcomputer

20.11.20

Microsoft now lets you run multiple Android apps in Windows 10Android

Bleepingcomputer

20.11.20

Office November security updates fix remote code execution bugsVulnerebility

Bleepingcomputer

20.11.20

NVIDIA fixes severe flaw in GeForce NOW cloud gaming serviceVulnerebility

Bleepingcomputer

20.11.20

Chinese-linked Muhstik botnet targets Oracle WebLogic, DrupalBotNet

Bleepingcomputer

20.11.20

Samsung fixes critical Android flaws with November 2020 updatesAndroid

Bleepingcomputer

20.11.20

Ransomware gang hacks Facebook account to run extortion adsRansomware

Bleepingcomputer

20.11.20

Microsoft is investigating undeletable Outlook.com emailsOS

Bleepingcomputer

20.11.20

Windows 10 Intel microcode released to fix new CPU security bugsOS

Bleepingcomputer

20.11.20

Microsoft fixes Windows zero-day disclosed by Google last monthOS

Bleepingcomputer

20.11.20

Microsoft November 2020 Patch Tuesday fixes 112 vulnerabilitiesOS

Bleepingcomputer

20.11.20

Microsoft Store, Outlook, and Xbox Live are down worldwideOS

Bleepingcomputer

20.11.20

Windows 10 Cumulative Updates KB4586786 & KB4586781 ReleasedOS

Bleepingcomputer

20.11.20

Microsoft engineer stole $10M, used colleagues as scapegoatsIncindent

Bleepingcomputer

20.11.20

Adobe releases security update for Adobe Reader for AndroidVulnerebility

Bleepingcomputer

20.11.20

Ubuntu's Gnome desktop could be tricked into giving root accessHacking

Bleepingcomputer

20.11.20

Scammers impersonating the IRS threaten victims with legal actionSpam

Bleepingcomputer

20.11.20

5.8 million RedDoorz user records for sale on hacking forumHacking

Bleepingcomputer

20.11.20

WordPress plugin bugs can let attackers hijack up to 100K sitesHackingBleepingcomputer

20.11.20

IoT Cybersecurity Improvement Act Passed, Heads to President’s Desk

IoT

Threatpost

20.11.20

Robot Vacuums Suck Up Sensitive Audio in ‘LidarPhone’ Hack

Hacking

Threatpost

20.11.20

Food-Supply Giant Americold Admits Cyberattack

Attack

Threatpost

20.11.20

German COVID-19 Contact-Tracing Vulnerability Allowed RCE

Vulnerebility

Threatpost

20.11.20

GO SMS Pro Android App Exposes Private Photos, Videos and Messages

Mobil

Threatpost

20.11.20

Tis’ the Season for Online Holiday Shopping; and Phishing

Phishing

Threatpost

20.11.20

Code42 Incydr Series: Protect IP with Code42 Incydr

Virus

Threatpost

20.11.20

APT Exploits Microsoft Zerologon Bug: Targets Japanese Companies

APT

Threatpost

20.11.20

A flaw in GO SMS Pro App allows accessing media messages

Mobil

Securityaffairs

20.11.20

Nation-state actors from Russia, China, Iran, and North Korea target Canada

BigBrothers

Securityaffairs

20.11.20

Drupal addressed CVE-2020-13671 Remote Code Execution flaw

Vulnerebility

Securityaffairs

20.11.20

We infiltrated an IRC botnet. Here’s what we found

BotNet

Securityaffairs

20.11.20

Microsoft Boosts Security of 365 Priority Accounts

Security

Securityweek

20.11.20

VMware SD-WAN Vulnerabilities Expose Enterprise Networks to Attacks

Attack

Securityweek

20.11.20

FireEye Acquires Respond Software, Gets $400 Million Investment Led by Blackstone

IT

Securityweek

20.11.20

Chinese Hackers Target Japanese Organizations in Large-Scale Campaign

BigBrothers

Securityweek

20.11.20

E-Commerce Fraud Prevention Firm Forter Raises $125M at $1.3B Valuation

IT

Securityweek

20.11.20

Cybersecurity Workforce Study Needs to be Taken with a Pinch of Salt

Cyber

Securityweek

20.11.20

Google Launches Strong Encryption for Android Messages

Android

Securityweek

20.11.20

Workshop Today: Threat Hunting With VirusTotal - Black Belt Edition

Virus

Securityweek

20.11.20

Google Asks Chrome Extensions to Post Privacy Policies

Privacy

Securityweek

20.11.20

Malicious Python Code and LittleSnitch Detection

Virus

SANS

20.11.20

56% of organizations faced a ransomware attack, many paid the ransom

Ransomware

Net-security

20.11.20

Attacks on biotech and pharmaceutical industry escalate

BigBrothers

Net-security

20.11.20

Consumer behaviors and cyber risks of holiday shopping in 2020

Cyber

Net-security

20.11.20

Financial services lead when it comes to fixing open source flaws

Vulnerebility

Net-security

20.11.20

Cisco Webex vulnerabilities may enable attackers to covertly join meetings

Vulnerebility

Net-security

20.11.20

Google forces devs to reveal Chrome extensions’ data use, privacy practices

Privacy

Net-security

19.11.20

Malicious NPM project steals Discord accounts, browser infoVirus

Bleepingcomputer

19.11.20

New Slipstream NAT bypass attacks to be blocked by browsersAttack

Bleepingcomputer

19.11.20

Google Chrome to block JavaScript redirects on web page URL clicksSecurity

Bleepingcomputer

19.11.20

Fake Microsoft Teams updates lead to Cobalt Strike deploymentBigBrothers

Bleepingcomputer

19.11.20

Laptop maker Compal hit by ransomware, $17 million demandedRansomware

Bleepingcomputer

19.11.20

Microsoft working on fix for Windows apps forgetting passwordsOS

Bleepingcomputer

19.11.20

Microsoft force upgrading Windows 10 1903 devices to 1909OS

Bleepingcomputer

19.11.20

How to beautify the Windows 10 Search featureOS

Bleepingcomputer

19.11.20

HMRC smishing tax scam targets UK banking customersSpam

Bleepingcomputer

19.11.20

Trump lawsuit site to report 'rejected votes' leaked voter dataBigBrothers

Bleepingcomputer

19.11.20

Download ISOs for any version of Windows 10 with this scriptOS

Bleepingcomputer

19.11.20

Office 365 will let admins review Microsoft Forms phishing attemptsPhishing

Bleepingcomputer

19.11.20

Managing Windows 10 apps with the Chocolatey package managerOS

Bleepingcomputer

19.11.20

How Ryuk Ransomware operators made $34 million from one victimRansomware

Bleepingcomputer

19.11.20

New Windows 10 policy lets you disable cloud customized taskbarsOS

Bleepingcomputer

19.11.20

New Pay2Key ransomware encrypts networks within one hourRansomware

Bleepingcomputer

19.11.20

RansomExx ransomware also encrypts Linux systemsRansomware

Bleepingcomputer

19.11.20

Windows 10 20H2 LSASS crash issue causes forced rebootsOS

Bleepingcomputer

19.11.20

Microsoft investigating Windows 10 crashes casued by NVMe SSDsOS

Bleepingcomputer

19.11.20

Reverse shell botnet Gitpaste-12 spreads via GitHub and PastebinBotNetBleepingcomputer

19.11.20

Advanced Threat predictions for 2021CyberSecurelist

19.11.20

New Grelos skimmer variant reveals murkiness in tracking Magecart operationsCyberCrimeSecurityaffairs

19.11.20

REvil ransomware demands 500K ransom to Managed.com hosting providerRansomwareSecurityaffairs

19.11.20

Remote Code Execution Vulnerability Patched in DrupalVulnerebilitySecurityweek

19.11.20

Russia, China 'Cyber Threats' Target Canada: ReportBigBrothersSecurityweek

19.11.20

Cisco Webex Vulnerability Allows Ghost Access to MeetingsVulnerebilitySecurityweek

19.11.20

WARNING: Unpatched Bug in GO SMS Pro App Exposes Millions of Media MessagesMobilThehackernews

19.11.20

Evolution of Emotet: From Banking Trojan to Malware DistributorVirusThehackernews

19.11.20

Google Chrome 87 Closes High-Severity ‘NAT Slipstreaming’ Hole

Hacking

Threatpost

19.11.20

Firing of CISA Chief Christopher Krebs Widely Condemned

BigBrothers

Threatpost

19.11.20

LAPD Bans Facial Recognition, Citing Privacy Concerns

Privacy

Threatpost

19.11.20

Cisco Webex ‘Ghost’ Flaw Opens Meetings to Snooping

Vulnerebility

Threatpost

19.11.20

Widespread Scans Underway for RCE Bugs in WordPress Websites

Vulnerebility

Threatpost

19.11.20

Cisco fixed flaws in WebEx that allow ghost participants in meetings

Vulnerebility

Securityaffairs

19.11.20

China-linked APT10 leverages ZeroLogon exploits in recent attacks

APT

Securityaffairs

19.11.20

Mozilla Boosts Security in Firefox With HTTPS-Only Mode

Security

Securityweek

19.11.20

Study Finds New Employees Immediately Given Access to Millions of Files

Security

Securityweek

19.11.20

Researchers Find Tens of AWS APIs Leaking Sensitive Data

Incindent

Securityweek

19.11.20

Boom in Demand for Friendly Hackers as 5G Approaches

Mobil

Securityweek

19.11.20

Microsoft Releases EDR for Linux in Public Preview

Security

Securityweek

19.11.20

Researchers Warn of Critical Flaws Affecting Industrial Automation Systems

ICS

Thehackernews

19.11.20

PowerShell Dropper Delivering Formbook

Virus

SANS

19.11.20

The effectiveness of vulnerability disclosure and exploit development

Vulnerebility

Net-security

19.11.20

A perspective on security threats and trends, from inception to impact

Security

Net-security

19.11.20

Manufacturing industry overwhelmed by innovative threat actors

Security

Net-security

19.11.20

93% of businesses are worried about public cloud security

Security

Net-security

19.11.20

Hybrid environments driving positive business impact amid pandemic

Security

Net-security

19.11.20

Kali Linux 2020.4 released: New default shell, fresh tools, and more!

OS

Net-security

19.11.20

Review: Group-IB Fraud Hunting Platform

CyberCrime

Net-security

18.11.20

Phishing campaign targets LATAM e-commerce users with Chaes Malware

Phishing  Virus

Securityaffairs

18.11.20

Office 365 phishing campaign uses redirector URLs and detects sandboxes to evade detection

Phishing

Securityaffairs

18.11.20

The Defeated President Trump fired CISA chief Chris Krebs

BigBrothers

Securityaffairs

18.11.20

Email Security Company Abnormal Security Raises $50 Million

IT

Securityweek

18.11.20

AWS Network Firewall Now Generally Available

Safety

Securityweek

18.11.20

build.security Emerges From Stealth With Authorization Policy Management Platform

Safety

Securityweek

18.11.20

New 'Chaes' Malware Targets Latin American E-Commerce Users

Virus

Securityweek

18.11.20

IoT Cybersecurity Improvement Act Passes Senate

IoT

Securityweek

18.11.20

Apple Lets Some of its Big Sur macOS Apps Bypass Firewall and VPNs

Apple

Thehackernews

18.11.20

Zoom Takes on Zoom-Bombers Following FTC SettlementBigBrothersThreatpost

18.11.20

Some Apple Apps on macOS Big Sur Bypass Content Filters, VPNsAppleThreatpost

18.11.20

Cisco Patches Critical Flaw After PoC Exploit Code ReleaseVulnerebilityThreatpost

18.11.20

Multiple Industrial Control System Vendors Warn of Critical BugsVulnerebilityThreatpost

18.11.20

Defining Security Policies to Manage Remote Insider ThreatsSecurityThreatpost

18.11.20

ThreatList: Pharma Mobile Phishing Attacks Turn to MalwareVirusThreatpost

18.11.20

COVID-19 Antigen Firm Hit by Malware AttackVirusThreatpost

18.11.20

Large-scale campaign targets vulnerable Epsilon Framework WordPress themesVulnerebilitySecurityaffairs

18.11.20

Expert publicly discloses PoC code for critical RCE issues in Cisco Security ManagerVulnerebilitySecurityaffairs

18.11.20

Chinese APT FunnyDream targets a South East Asian governmentAPTSecurityaffairs

18.11.20

Sophisticated Chinese APT Group Targets Southeast Asian GovernmentsAPTSecurityweek

18.11.20

Trump Fires Head of DHS Election Security AgencyBigBrothersSecurityweek

18.11.20

Canada Proposes Major Fines on Firms That Violate Privacy LawsPrivacySecurityweek

18.11.20

New Zoom Features Tackle Meeting DisruptionsSecuritySecurityweek

18.11.20

Russia Denies Microsoft Claims of Healthcare Cyber AttacksBigBrothersSecurityweek

18.11.20

Hundreds of Tesla Powerwall Gateways Potentially Exposed to Hacker AttacksAttackSecurityweek

18.11.20

Microsoft Unveils 'Pluton' Security Processor for PCsSafetySecurityweek

18.11.20

FireEye Predicts Ransomware Will Evolve and Expand in 2021RansomwareSecurityweek

18.11.20

Cisco Patches Publicly Disclosed Vulnerabilities in Security ManagerVulnerebilitySecurityweek

18.11.20

When Security Controls Lead to Security Issues

Security

SANS

18.11.20

How do I select a security assessment solution for my business?

Security

Net-security

18.11.20

CISOs say a distributed workforce has critically increased security concerns

Security

Net-security

18.11.20

Multi-cloud environments leaving businesses at risk

Security

Net-security

18.11.20

Network traffic and consumption trends in 2020

Security

Net-security

18.11.20

Ransomware still the most common cyber threat to SMBs

Ransomware

Net-security

18.11.20

Critical vulnerabilities in Cisco Security Manager fixed, researcher discloses PoCs

Vulnerebility

Net-security

18.11.20

How to speed up malware analysis

Virus

Net-security

17.11.20

Unixfreaxjp at #R2CON2020 presented shellcode basics for radare2

Security

Securityaffairs

17.11.20

246869 Windows systems are still vulnerable to the BlueKeep flaw

Attack

Securityaffairs

17.11.20

VoltPillager: Hardware-based fault injection attacks against Intel SGX enclaves

Attack

Securityaffairs

17.11.20

“At-Risk Meeting Notifier Zoom” feature alerts meeting organizers of Zoombombing risk

Security

Securityaffairs

17.11.20

Cisco Patches Publicly Disclosed Vulnerabilities in Security Manager

Vulnerebility

Securityaffairs

17.11.20

Peiter 'Mudge' Zatko Named Head of Security at Twitter

Social

Securityweek

17.11.20

Capcom Confirms Hackers Stole Data in Recent Attack

Attack

Securityweek

17.11.20

Chinese APT Hackers Target Southeast Asian Government Institutions

APT

Thehackernews

17.11.20

Citrix SD-WAN Bugs Allow Remote Code ExecutionVulnerebilityThreatpost

17.11.20

Dating Site Bumble Leaves Swipes Unsecured for 100M UsersIncindentThreatpost

17.11.20

Attackers Target Porn Site Goers in ‘Malsmoke’ Zloader AttackVirusThreatpost

17.11.20

Hacked Security Software Used in Novel South Korean Supply-Chain AttackAttackThreatpost

17.11.20

Exposed Database Reveals 100K+ Compromised Facebook AccountsSocialThreatpost

17.11.20

Cybercrime Moves to the Cloud to Accelerate Attacks Amid Data GlutAttackThreatpost

17.11.20

Unprotected database exposed a scam targeting 100K+ Facebook accountsSocialSecurityaffairs

17.11.20

Crooks use software skimmer that pretends to be a security firmSecuritySecurityaffairs

17.11.20

COVID-19-Related Data Breach Affects Thousands in DelawareIncindentSecurityweek

17.11.20

Austria Privacy NGO Takes on Apple Over 'Tracking Code'PrivacySecurityweek

17.11.20

VoltPillager: New Hardware-Based Voltage Manipulation Attack Against Intel SGXAttackSecurityweek

17.11.20

Lazarus Group Targets South Korea via Supply Chain AttackAPTSecurityweek

17.11.20

Researcher Discloses Critical RCE Flaws In Cisco Security ManagerVulnerebilityThehackernews

16.11.20

Lazarus malware delivered to South Korean users via supply chain attacksAPTSecurityaffairs

16.11.20

Mozilla Says Intermediate CA Preloading Reduces Connection Errors in FirefoxSecuritySecurityweek

16.11.20

Hacked Websites, Hate Speech Hit Suburban Chicago SchoolsHackingSecurityweek

16.11.20

Biotech Company Miltenyi Biotec Discloses Malware AttackVirusSecurityweek

16.11.20

macOS Big Sur 11.0.1 Patches 60 VulnerabilitiesAppleSecurityweek

16.11.20

Privacy Activists in EU File Complaints Over iPhone Tracking

Privacy

Securityweek

16.11.20

Trojanized Security Software Hits South Korea Users in Supply-Chain Attack

BigBrothers  Virus

Thehackernews

16.11.20

Why biometrics will not fix all your authentication woes

Security

Net-security

16.11.20

2021 predictions for the Everywhere Enterprise

Security

Net-security

16.11.20

Accept your IT security limits and call in the experts

Security

Net-security

16.11.20

Explosion in digital commerce pushed fraud incentive levels sky-high

Security

Net-security

16.11.20

Risk professionals expect a dynamic risk environment in 2021

Security

Net-security

16.11.20

New skimmer attack uses WebSockets to evade detectionAttackSecurityaffairs

16.11.20

New Jupyter information stealer appeared in the threat landscapeVirusSecurityaffairs

16.11.20

The North Face website suffered a credential stuffing attackAttackSecurityaffairs

16.11.20

Chilean-based retail giant Cencosud hit by Egregor RansomwareRansomwareSecurityaffairs

16.11.20

ShinyHunters hacked Pluto TV service, 3.2M accounts exposedHackingSecurityaffairs

16.11.20

Apple Unveils Security Features in New M1 ChipSecuritySecurityweek

16.11.20

Heartbleed, BlueKeep and other vulnerabilities that didn't disappear just because we don't talk about them anymore

Vulnerebility

SANS

16.11.20

How a move to the cloud can improve disaster recovery plans

Security

Net-security

16.11.20

Healthcare organizations are sitting ducks for attacks and breaches

Attack

Net-security

16.11.20

Researchers break Intel SGX by creating $30 device to control CPU voltage

Hacking

Net-security

16.11.20

Managing risk remains a significant challenge

Security

Net-security

16.11.20

Security teams need visibility into the threats targeting remote workers

Security

Net-security

16.11.20

eBook: The security certification healthcare relies on

Security

Net-security

15.11.20

Feds investigate Zoom-bombings attack against Gonzaga University Black Student Union

Attack

Securityaffairs

15.11.20

Schneider Electric published a security advisory on Drovorub Linux Malware

ICS

Securityaffairs

15.11.20

CISA Chief Chris Krebs expects to be fired by the White House

BigBrothers

Securityaffairs

15.11.20

Biotech research firm Miltenyi Biotec hit by Mount Locker ransomware

Ransomware

Securityaffairs

15.11.20

Schneider Electric Warns Customers of Drovorub Linux MalwareICSSecurityweek

14.11.20

Nation-State Attackers Actively Target COVID-19 Vaccine-Makers

BigBrothers

Threatpost

14.11.20

Report: CISA Chief Expects White House to Fire Him

BigBrothers

Threatpost

14.11.20

Ticketmaster Scores Hefty Fine Over 2018 Data Breach

Incindent

Threatpost

14.11.20

Amazon Sues Instagram, TikTok Influencers Over Knockoff Scam

Social  Spam

Threatpost

14.11.20

Botnet Attackers Turn to Vulnerable IoT Devices

BotNet  IoT

Threatpost

14.11.20

2020 Reader Survey: Share Your Feedback to Help Us Improve

Privacy

Threatpost

14.11.20

Credential-Stuffing Attack Hits The North Face

Attack

Threatpost

14.11.20

New TroubleGrabber malware targets Discord users

Virus

Securityaffairs

14.11.20

Hacker stole $2 million worth of Dai cryptocurrency from Akropolis

Cryptocurrency

Securityaffairs

14.11.20

Three APT groups have targeted at least seven COVID-19 vaccine makers

APT

Securityaffairs

14.11.20

Barracuda Acquires Zero Trust Solution Provider Fyde

IT

Securityweek

13.11.20

Vertafore data breach exposed data of 27.7 million Texas driversIncindentSecurityaffairs

13.11.20

Security flaws in Schneider Electric PLCs allow full take overICSSecurityaffairs

13.11.20

Microsoft: Russian, North Korean Hackers Target Vaccine WorkBigBrothers

Securityweek

13.11.20

FBI Investigating Hack Involving Black Students at GonzagaBigBrothersSecurityweek

13.11.20

Manufacturing Sector Targeted by Five ICS-Focused Threat Groups: ReportICS

Securityweek

13.11.20

DHS Says Voting Systems Not Compromised, Amid Departures at CISABigBrothersSecurityweek

13.11.20

Animal Jam Hacked, 46M Records Roam the Dark Web

Incindent

Threatpost

13.11.20

2 More Google Chrome Zero-Days Under Active Exploitation

Exploit

Threatpost

13.11.20

Cyberattackers Serve Up Custom Backdoor for Oracle Restaurant Software

Attack

Threatpost

13.11.20

Digging into the Dark Web: How Security Researchers Learn to Think Like the Bad Guys

Cyber

Threatpost

13.11.20

Bugs in Critical Infrastructure Gear Allow Sophisticated Cyberattacks

ICS

Threatpost

13.11.20

Swedish court suspended the ban on Huawei equipment

BigBrothers

Securityaffairs

13.11.20

46M accounts were impacted in the data breach of children’s online playground Animal Jam

Incindent

Securityaffairs

13.11.20

Costaricto APT: Cyber mercenaries use previously undocumented malware

APT

Securityaffairs

13.11.20

Swiss Spies Benefitted From Secret CIA Encryption Firm: Probe

BigBrothers

Securityweek

13.11.20

Finland Fast-Tracks ID Code Law Change After Hacking Case

BigBrothers

Securityweek

13.11.20

Trump Administration Says Still Searching for TikTok Resolution

BigBrothers

Securityweek

13.11.20

Encryption Vulnerabilities Allow Hackers to Take Control of Schneider Electric PLCs

ICS

Securityweek

13.11.20

Menlo Security Raises $100 Million at $800 Million Valuation

IT

Securityweek

13.11.20

Huawei Wins Stay Against Exclusion From Sweden 5G

Mobil

Securityweek

13.11.20

SAD DNS — New Flaws Re-Enable DNS Cache Poisoning Attacks

Attack

Thehackernews

13.11.20

Uncovered: APT 'Hackers For Hire' Target Financial, Entertainment Firms

APT

Thehackernews

13.11.20

Old Worm But New Obfuscation Technique

Hacking

SANS

13.11.20

Enterprises embrace Kubernetes, but lack security tools to mitigate risk

Security

Net-security

13.11.20

How IoT insecurity impacts global organizations

IoT

Net-security

13.11.20

Malware activity spikes 128%, Office document phishing skyrockets

Phishing  Virus

Net-security

13.11.20

ML tool identifies domains created to promote fake news

Security

Net-security

13.11.20

Microsoft advises users to stop using SMS- and voice-based MFA

Safety

Net-security

12.11.20

Minecraft Apps on Google Play Fleece Players Out of Big MoneyAndroid

Threatpost

12.11.20

Nvidia Warns Windows Gamers of GeForce NOW FlawVulnerebility

Threatpost

12.11.20

Ragnar Locker Ransomware Gang Takes Out Facebook Ads in Key New TacticRansomware

Threatpost

12.11.20

Silver Peak SD-WAN Bugs Allow for Network TakeoverVulnerebility

Threatpost

12.11.20

High-Severity Cisco DoS Flaw Can Immobilize ASR RoutersVulnerebilityThreatpost

12.11.20

COVID-19 Data-Sharing App Leaked Healthcare Worker InfoIncindentThreatpost

12.11.20

Spam and phishing in Q3 2020Phishing  SpamSecurelist

12.11.20

New modular ModPipe POS Malware targets restaurants and hospitality sectorsVirusSecurityaffairs

12.11.20

Google addresses two new Chrome zero-day flawsVulnerebilitySecurityaffairs

12.11.20

The alleged decompiled source code of Cobalt Strike toolkit leaked onlineAttackSecurityaffairs

12.11.20

Former Microsoft worker sentenced to nine years in prison for stealing $10+ millionCrimeSecurityaffairs

12.11.20

Google and Mozilla fixed issues exploited at 2020 Tianfu Cup hacking contestCongressSecurityaffairs

12.11.20

Muhstik botnet adds Oracle WebLogic and Drupal exploitsBotNet  ExploitSecurityaffairs

12.11.20

Ragnar Locker ransomware gang advertises Campari hack on FacebookRansomwareSecurityaffairs

12.11.20

Google Patches Two More Chrome Zero-Days Exploited in AttacksAttack

Securityweek

12.11.20

Webinar Today: Strengthening Industrial Cybersecurity With Internal SegmentationICSSecurityweek

12.11.20

Palo Alto Networks to Acquire Attack Surface Management Firm Expanse in $800 Million DealITSecurityweek

12.11.20

SAP Patches Several Critical Vulnerabilities With November 2020 Security UpdatesVulnerebility

Securityweek

12.11.20

TikTok Files Last-Minute Petition Against Trump OrderBigBrothersSecurityweek

12.11.20

SentinelOne Raises $267 Million at Valuation Exceeding $3 BillionITSecurityweek

12.11.20

New ModPipe Point of Sale (POS) Malware Targeting Restaurants, HotelsVirusThehackernews

12.11.20

Two New Chrome 0-Days Under Active Attacks – Update Your BrowserAttackThehackernews

12.11.20

Preventing Exposed Azure Blob Storage

Security

SANS

12.11.20

Researchers discover POS backdoor targeting the hospitality industry

ICS  Virus

Net-security

12.11.20

(IN)SECURE Magazine issue 67 released

Cyber

Net-security

12.11.20

Cybersecurity workforce gap decreases, job satisfaction rates increase

Cyber

Net-security

12.11.20

The security consequences of massive change in how we work

Security

Net-security

12.11.20

Holiday gifts getting smarter, but creepier when it comes to privacy and security

Privacy

Net-security

12.11.20

Fraudsters increasingly creative with names and addresses for phishing sites

Phishing

Net-security

12.11.20

Q&A session: Examples of what it takes to achieve DevSecOps maturity

Security

Net-security

11.11.20

Targeted ransomware: it’s not just about encrypting your data!RansomwareSecurelist

11.11.20

EU bodies agree on new EU export rules for dual-use technologyBigBrothersSecurityaffairs

11.11.20

Microsoft Patch Tuesday fixes CVE-2020-17087 currently under active exploitationVulnerebilitySecurityaffairs

11.11.20

Vulnerabilities Exploited at Chinese Hacking Contest Patched in Firefox, ChromeVulnerebility

Securityweek

11.11.20

Western Digital Finds Replay Attack Protection Flaw Affecting Multiple VendorsAttackSecurityweek

11.11.20

Czech Intel Report Targets Russian, Chinese SpiesBigBrothersSecurityweek

11.11.20

Over 2800 e-Shops Running Outdated Magento Software Hit by Credit Card HackersCyberCrimeThehackernews

11.11.20

Microsoft Releases Windows Security Updates For Critical FlawsVulnerebilityThehackernews

11.11.20

Scalper-Bots Shake Down Desperate PS5, Xbox Series X Shoppers

BotNet

Threatpost

11.11.20

Microsoft Patch Tuesday Update Fixes 17 Critical Bugs

Vulnerebility

Threatpost

11.11.20

Apple to Deliver ‘Privacy Labels’ for Apps, Revealing Data-Sharing Details

Apple

Threatpost

11.11.20

Colossal Intel Update Anchored by Critical Privilege-Escalation Bugs

Vulnerebility

Threatpost

11.11.20

Ghimob Android Banking Trojan Targets 153 Mobile Apps

Android

Threatpost

11.11.20

Microsoft Teams Users Under Attack in ‘FakeUpdates’ Malware Campaign

Virus

Threatpost

11.11.20

Adobe fixes flaws in Connect and Reader Mobile

Vulnerebility

Securityaffairs

11.11.20

Flaws in WordPress Ultimate Member plugin expose 25K sites to hack

Vulnerebility

Securityaffairs

11.11.20

Malicious NPM project steals browser info and Discord accounts

Virus

Securityaffairs

11.11.20

Ransomware operators use fake Microsoft Teams updates to deploy Cobalt Strike

Ransomware

Securityaffairs

11.11.20

Tetrade hackers target 112 financial apps with Ghimob banking Trojan

Virus

Securityaffairs

11.11.20

Prestige reservation platform exposes millions of hotel guests

Incindent

Securityaffairs

11.11.20

Microsoft Patches Windows Vulnerability Chained in Attacks With Chrome Bug

Vulnerebility

Securityweek

11.11.20

Adobe Patches Vulnerabilities in Connect, Reader Mobile

Vulnerebility

Securityweek

11.11.20

PLATYPUS: Hackers Can Obtain Crypto Keys by Monitoring CPU Power Consumption

Hacking

Securityweek

11.11.20

Big Tech Welcomes Biden Presidency, But Battles Loom

BigBrothers

Securityweek

11.11.20

EU Agrees on Tighter Rules for Surveillance Tech Exports

BigBrothers

Securityweek

11.11.20

Traffic Analysis Quiz: DESKTOP-FX23IK5

Security

SANS

11.11.20

Stop thinking of cybersecurity as a problem: Think of it as a game

Cyber

Net-security

11.11.20

Finding 365 bugs in Microsoft Office 365

Vulnerebility

Net-security

11.11.20

Encryption-based threats grow by 260% in 2020

Safety

Net-security

11.11.20

November 2020 Patch Tuesday: Microsoft fixes actively exploited Windows Kernel flaw

Vulnerebility

Net-security

11.11.20

New side-channel attacks allow access to sensitive data on Intel CPUs

Attack

Net-security

11.11.20

FTC orders Zoom to enhance security practices

BigBrothers

Net-security

10.11.20

Microsoft Exchange Attack Exposes New xHunt Backdoors

Virus

Threatpost

10.11.20

Millions of Hotel Guests Worldwide Caught Up in Mass Data Leak

Incindent

Threatpost

10.11.20

Ultimate Member Plugin for WordPress Allows Site Takeover

Security

Threatpost

10.11.20

Cyberattack on UVM Health Network Impedes Chemotherapy Appointments

Attack

Threatpost

10.11.20

Trump Site Alleging AZ Election Fraud Exposes Voter Data

BigBrothers  Incindent

Threatpost

10.11.20

xHunt hackers hit Microsoft Exchange with two news backdoors

Virus

Securityaffairs

10.11.20

Compal, the Taiwanese giant laptop manufacturer hit by ransomware

Ransomware

Securityaffairs

10.11.20

E-commerce platform X-Cart hit by a ransomware attack

Ransomware

Securityaffairs

10.11.20

FBI warns of attacks on unsecured SonarQube used by US govt agencies and businesses

BigBrothers

Securityaffairs

10.11.20

Tianfu Cup 2020 – 5 minutes to hack Windows 10, Ubuntu iOS, VMWare EXSi, and others

Congress

Securityaffairs

10.11.20

Flaws in PcVue SCADA Product Can Facilitate Attacks on Industrial Organizations

ICS

Securityweek

10.11.20

Former Microsoft Worker Gets 9 Years in $10M Fraud Scheme

CyberCrime

Securityweek

10.11.20

FTC Says Zoom Misled Users on Its Security for Meetings

BigBrothers

Securityweek

10.11.20

Rights Activists Slam EU Plan for Access to Encrypted Chats

BigBrothers

Securityweek

10.11.20

Let’s Encrypt Warns Some Android Users of Compatibility Issues

Android

Securityweek

10.11.20

Watch Out! New Android Banking Trojan Steals From 112 Financial Apps

Android

Thehackernews

10.11.20

The evolving role of the CTO

Security

Net-security

10.11.20

Product showcase: Specops Password Auditor

Security

Net-security

10.11.20

Guide: Security measures for IoT product development

IoT

Net-security

10.11.20

Most UK businesses using Oracle E-Business Suite are running old systems

Security

Net-security

10.11.20

What’s stopping job seekers from considering a career in cybersecurity?

Cyber

Net-security

9.11.20

Ghimob: a Tétrade threat actor moves to infect mobile devicesVirusSecurelist

9.11.20

E-commerce platform X-Cart hit by a ransomware attackRansomwareSecurityaffairs

9.11.20

FBI warns of attacks on unsecured SonarQube used by US govt agencies and businessesBigBrothersSecurityaffairs

9.11.20

Tianfu Cup 2020 – 5 minutes to hack Windows 10, Ubuntu iOS, VMWare EXSi, and othersCongress

Securityaffairs

9.11.20

Bug Bounty Hunters Earn $1.2 Million at Chinese Hacking CompetitionCongress

Securityweek

9.11.20

Routers, NAS Devices, TVs Hacked at Pwn2Own Tokyo 2020CongressSecurityweek

9.11.20

Windows 10, iOS, Chrome, Firefox and Others Hacked at Tianfu Cup CompetitionCongressThehackernews

9.11.20

Pwn2Own Tokyo Day 3: Team Flashback crowned Master of PwnCongressSecurityaffairs

9.11.20

Luxottica data breach exposes info of LensCrafters and EyeMed patientsIncindentSecurityaffairs

9.11.20

Creative Office 365 phishing inverts images to avoid detection botsPhishing

Securityaffairs

9.11.20

How Attackers Brush Up Their Malicious Scripts

Virus

SANS

9.11.20

End-to-end encrypted communication mitigates enterprise security risk and ensures compliance

Safety

Net-security

9.11.20

Every employee has a cybersecurity blind spot

Cyber

Net-security

9.11.20

Exploring the progress organizations are making in their investments towards digital resiliency

Security

Net-security

9.11.20

Developing a quantum network that exchanges information across long distances by using photons

IT

Net-security

8.11.20

Campari hit by Ragnar Locker Ransomware, $15 million demandedRansomware

Bleepingcomputer

8.11.20

Brazil's court system under massive RansomExx ransomware attackRansomware

Bleepingcomputer

8.11.20

Apple patches three actively exploited iOS zero-daysApple

Bleepingcomputer

8.11.20

US govt behind $1 billion Bitcoin transfer of Silk Road fundsCryptocurrency

Bleepingcomputer

8.11.20

Critical bug actively used to deploy Cobalt Strike on Oracle serversVulnerebility

Bleepingcomputer

8.11.20

Capcom hit by Ragnar Locker ransomware, 1TB allegedly stolenRansomware

Bleepingcomputer

8.11.20

QBot phishing lures victims using US election interference emailsPhishing

Bleepingcomputer

8.11.20

Scam PSA: Ransomware gangs don't always delete stolen data when paidRansomware

Bleepingcomputer

8.11.20

Microsoft fixes Windows 10 issue behind displays going blackOS

Bleepingcomputer

8.11.20

Apple search bot leaked internal IPs via proxy configurationApple

Bleepingcomputer

8.11.20

Cisco discloses AnyConnect VPN zero-day, exploit code availableExploit

Bleepingcomputer

8.11.20

Microsoft outage breaks sites, Windows Store, Xbox, and other servicesSecurity

Bleepingcomputer

8.11.20

Sneaky Office 365 phishing inverts images to evade detectionPhishing

Bleepingcomputer

8.11.20

Someone just emptied out a $1 billion Bitcoin walletCryptocurrency

Bleepingcomputer

8.11.20

Leading toy maker Mattel hit by ransomwareRansomware

Bleepingcomputer

8.11.20

New RegretLocker ransomware targets Windows virtual machinesRansomware

Bleepingcomputer

8.11.20

Folksam data breach leaks info of 1M Swedes to Google, Facebook, moreIncindent

Bleepingcomputer

8.11.20

SaltStack reveals new critical vulnerabilities, patch nowVulnerebility

Bleepingcomputer

8.11.20

Windows 7 won't die, still second most popular operating systemOS

Bleepingcomputer

8.11.20

Adobe fixes critical security vulnerabilities in Acrobat, ReaderVulnerebilityBleepingcomputer

8.11.20

Cryptojacking Targeting WebLogic TCP/7001

Cryptocurrency

SANS

8.11.20

20 million Bigbasket user records available on the dark webIncindentSecurityaffairs

8.11.20

Pwn2Own Tokyo Day two: TP-Link router and Synology NAS hackedCongressSecurityaffairs

8.11.20

Ransomware operators target CVE-2020-14882 WebLogic flawRansomware

Securityaffairs

7.11.20

Blackbaud sued in 23 class action lawsuits after ransomware attackRansomware

Bleepingcomputer

7.11.20

Privacy-focused Brave browser grew over 130% in the past yearPrivacy

Bleepingcomputer

7.11.20

Microsoft Tips app leaks Windows 10's upcoming rounded cornersOS

Bleepingcomputer

7.11.20

GitHub breaks site layout after forgetting to renew certificateSecurity

Bleepingcomputer

7.11.20

Google patches one more actively exploited Chrome zero-dayExploit

Bleepingcomputer

7.11.20

Oracle issues emergency patch for critical WebLogic Server flawVulnerebility

Bleepingcomputer

7.11.20

Microsoft: Windows 10 1809 reaches end of service next weekOS

Bleepingcomputer

7.11.20

GitHub threatens to ban users who bypass YouTube-dl takedownVulnerebility

Bleepingcomputer

7.11.20

Microsoft is investigating lost Windows 10 certificates issueOS

Bleepingcomputer

7.11.20

Maze ransomware shuts down operations, denies creating cartelRansomware

Bleepingcomputer

7.11.20

NetMarketShare ends browser war reports due to Google Chrome changesIT

Bleepingcomputer

7.11.20

Gold seller JM Bullion hacked to steal customers' credit cardsIncindent

Bleepingcomputer

7.11.20

Open Shell brings back the glory days of the Windows Start MenuOS

Bleepingcomputer

7.11.20

Hacker is selling 34 million user records stolen from 17 companiesIncindent

Bleepingcomputer

7.11.20

Emotet malware wants to invite you to a Halloween partyVirus

Bleepingcomputer

7.11.20

FBI: How Iranian hackers stole voter info from state election sitesBigBrothers

Bleepingcomputer

7.11.20

FBI shares technical details on Iran's fake Proud Boys emailsBigBrothers

Bleepingcomputer

7.11.20

Windows 10's new resource monitor for gamers is now availableOS

Bleepingcomputer

7.11.20

Windows kernel zero-day vulnerability used in targeted attacksOS

Bleepingcomputer

7.11.20

Over 1M Lazada RedMart accounts sold online after data breachIncindentBleepingcomputer

7.11.20

Apple fixes numerous zero-day iOS flaws

OS Blog

Avast blog

7.11.20

Understanding and preventing cross-site scripting attacks

Attack blog

Avast blog

7.11.20

Zoom begins offering end-to-end encryption

Safety blog

Avast blog

7.11.20

Text scam lies about U.S. stimulus check

Spam blog

Avast blog

7.11.20

When Threat Actors Fly Under the Radar: Vatet, PyXie and Defray777

Hacking blog

Palo Alto Unity42

7.11.20

Windows XP, Server 2003 Source Code Leak Leaves IoT, OT Devices Vulnerable

Vulnerebility blog

Palo Alto Unity42

7.11.20

Ever Evolving: Tanya Janca on Application Security ChallengesCyber blogCybereason

7.11.20

Back to the Future: Inside the Kimsuky KGH Spyware SuiteRansomware blogCybereason

7.11.20

Law Enforcement Warns of Imminent Ransomware Threat to U.S. HospitalsRansomware blogCybereason

7.11.20

Operation North Star: Behind The ScenesCyber blogMcafee blog

7.11.20

Operation North Star: Summary Of Our Latest Analysis

Cyber blog

Mcafee blog

7.11.20

McAfee Labs Report Reveals Continuing Surge of COVID-19 Threats and Malware

Malware blog

Mcafee blog

7.11.20

OCC and HIPAA Cybersecurity Regulator Fines Now in Hundreds of Millions

BigBrother blog

F5 Labs

7.11.20

How AI Will Automate Cybersecurity in the Post-COVID World

Cyber blog

F5 Labs

7.11.20

Live off the Land? How About Bringing Your Own Island? An Overview of UNC1945

Cyber blog

FireEye

7.11.20

Unhappy Hour Special: KEGTAP and SINGLEMALT With a Ransomware Chaser

Ransomware blog

FireEye

7.11.20

Welcome to ThreatPursuit VM: A Threat Intelligence and Hunting Virtual Machine

Security blog

FireEye

7.11.20

In Wild Critical Buffer Overflow Vulnerability in Solaris Can Allow Remote Takeover — CVE-2020-14871

Vulnerebility blog

FireEye

7.11.20

Ransomware Alert: Pay2Key

Ransomware blog

Checkpoint

7.11.20

INJ3CTOR3 Operation – Leveraging Asterisk Servers for Monetization

Hacking blog

Checkpoint

7.11.20

Vulnerability Spotlight: Multiple JavaScript vulnerabilities in Adobe Acrobat Reader

Vulnerebility blog

Cisco Talos

7.11.20

Cisco Talos Advisory on Adversaries Targeting the Healthcare and Public Health Sector

BigBrother blog

Cisco Talos

7.11.20

DoNot’s Firestarter abuses Google Firebase Cloud Messaging to spread

Cyber blog

Cisco Talos

7.11.20

Apple patches three actively exploited zero‑day flaws in iOS

OS Blog

Eset

7.11.20

Gaming company Capcom hit by cyberattack

Attack blog

Eset

7.11.20

Google squashes two more Chrome bugs under active attacks

Attack blog

Eset

7.11.20

A career in cybersecurity: Is it for you?

Cyber blog

Eset

7.11.20

Google discloses Windows zero‑day bug exploited in the wild

Exploit blog

Eset

7.11.20

Election (in)security: What you may have missed

BigBrother blog

Eset

7.11.20

Feds Seize $1B in Bitcoin from Silk Road

CyberCrime

Threatpost

7.11.20

Gitpaste-12 Worm Targets Linux Servers, IoT Devices

IoT  Virus

Threatpost

7.11.20

WordPress Sites Open to Code Injection Attacks via Welcart e-Commerce Bug

Attack

Threatpost

7.11.20

Campari Site Suffers Ransomware Hangover

Ransomware

Threatpost

7.11.20

Apple Patches Bugs Tied to Previously Identified Zero-Days

Apple

Threatpost

7.11.20

RansomEXX Trojan attacks Linux systems

Ransomware

Securelist

7.11.20

RansomExx ransomware now targets also Linux systems

Ransomware

Securityaffairs

7.11.20

Pwn2Own Tokyo Day one: NETGEAR Router, WD NAS Device hacked

Congress

Securityaffairs

7.11.20

US authorities behind $1 billion Bitcoin transaction of Silk Road funds

BigBrothers

Securityaffairs

7.11.20

Recent WebLogic Vulnerability Likely Exploited by Ransomware Operators

Ransomware

Securityweek

7.11.20

Huawei Appeals Swedish 5G Ban

BigBrothers

Securityweek

7.11.20

NETGEAR Router, WD NAS Device Hacked on First Day of Pwn2Own Tokyo 2020

Congress

Securityweek

7.11.20

U.S. Seizes $1 Billion Worth of Bitcoin Connected to Silk Road

CyberCrime

Securityweek

7.11.20

Rediscovering Limitations of Stateful Firewalls: "NAT Slipstreaming" ? Implications, Detections and Mitigations

Attack

SANS

6.11.20

Threat Report Portugal: Q3 2020

Security

Securityaffairs

6.11.20

Brazil’s court system shut down after a massive ransomware attack

Ransomware

Securityaffairs

6.11.20

Prominent Italian firms under attack, Campari is the last one

Attack

Securityaffairs

6.11.20

Hackers Demand $11 Million From Capcom After Ransomware Attack

Ransomware

Securityweek

6.11.20

Apple Patches Three Actively Exploited Vulnerabilities

Apple

Securityweek

6.11.20

Russian Hacker Group Continues Stealing Money From Industrial Enterprises

CyberCrime

Securityweek

6.11.20

Update Your iOS Devices Now — 3 Actively Exploited 0-Days Discovered

Apple

Thehackernews

6.11.20

Malspam Campaign Milks Election Uncertainty

Spam

Threatpost

6.11.20

Gaming Giant Capcom Hit By Ragnar Locker Ransomware: Report

Ransomware

Threatpost

6.11.20

Zoom Snooping: How Body Language Can Spill Your Password

Safety

Threatpost

6.11.20

Cisco Zero-Day in AnyConnect Secure Mobility Client Remains Unpatched

Vulnerebility

Threatpost

6.11.20

Apple addresses three actively exploited iOS zero-days

Apple

Securityaffairs

6.11.20

Chinese APT Uses DLL Side-Loading in Attacks on Myanmar

APT

Securityweek

6.11.20

Private Prison Operator GEO Group Discloses Data Breach

Incindent

Securityweek

6.11.20

North Korean Hackers Used 'Torisma' Spyware in Job Offers-based Attacks

BigBrothers

Thehackernews

6.11.20

Quantum computers: How to prepare for this great threat to information security

Security

Net-security

6.11.20

What is ad fraud and how can advertisers fight against it?

Incindent

Net-security

6.11.20

How fake news detectors can be manipulated

Security

Net-security

6.11.20

In Q2 2020, there was an average of 419 new threats per minute

Hacking

Net-security

6.11.20

Paying a ransom to prevent leaking of stolen data is a risky gamble

Ransomware

Net-security

6.11.20

Git LFS vulnerability allows attackers to compromise targets’ Windows systems (CVE-2020-27955)

Vulnerebility

Net-security

5.11.20

Attacks on industrial enterprises using RMS and TeamViewer: new dataICSSecurelist

5.11.20

TELEGRAM LATENCY IN BELARUS: HOW THE NATIONAL PROVIDER CONTROLS THE TRAFFICSocialSecurityaffairs

5.11.20

New KilllSomeOne APT group leverages DLL side-loadingAPTSecurityaffairs

5.11.20

VMware finally fixed the critical CVE-2020-3992 flaw in ESXiVulnerebilitySecurityaffairs

5.11.20

Japanese video game firm Capcom hit by a cyberattackAttackSecurityaffairs

5.11.20

U.S. Seizes More Domains Used by Iran for DisinformationBigBrothers

Securityweek

5.11.20

Mandiant Details Recently Patched Oracle Solaris Zero-DayVulnerebilitySecurityweek

5.11.20

Guard Cyber Team to Help Respond to Hospitals CyberattackCyber

Securityweek

5.11.20

BEC Scammers Exploit Flaw to Spoof Domains of Rackspace CustomersExploitSecurityweek

5.11.20

Cisco Working on Patch for Code Execution Vulnerability in VPN ProductVulnerebility

Securityweek

5.11.20

Premium-Rate Phone Fraudsters Hack VoIP Servers of 1200 CompaniesHackingThehackernews

5.11.20

Toymaker Mattel Hit by Ransomware Attack

Ransomware

Threatpost

5.11.20

Police to Livestream Ring Camera Footage of Mississippi Residents

CyberCrime

Threatpost

5.11.20

Mysterious APT Leaves Curious ‘KilllSomeOne’ Clue

APT

Threatpost

5.11.20

GrowDiaries Exposes Emails, Passwords of 1.4M Cannabis Growers

Incindent

Threatpost

5.11.20

Google Forms Abused to Phish AT&T Credentials

Phishing

Threatpost

5.11.20

VMware Issues Updated Fix For Critical ESXi Flaw

Vulnerebility

Threatpost

5.11.20

Zero-day in Cisco AnyConnect Secure Mobility Client yet to be fixed

Vulnerebility

Securityaffairs

5.11.20

REvil Ransomware member win the auction for KPot stealer source code

Ransomware

Securityaffairs

5.11.20

Someone emptied a $1 billion BitCoin wallet ahead of Presidential Election

Cryptocurrency

Securityaffairs

5.11.20

Toymaker giant Mattel disclosed a ransomware attack

Ransomware

Securityaffairs

5.11.20

Google Discloses Details of GitHub Actions Vulnerability

Vulnerebility

Securityweek

5.11.20

Trend Micro Patches Vulnerabilities in InterScan Messaging Security Product

Vulnerebility

Securityweek

5.11.20

California Voters Expand Data Privacy Law

Privacy

Securityweek

5.11.20

June Retrial Date Set for Ex-CIA Engineer in Leak Case

Incindent

Securityweek

5.11.20

Toy Manufacturer Mattel Discloses Ransomware Attack

Ransomware

Securityweek

5.11.20

OT Management and Security Firm PAS Global to be Acquired by Hexagon AB

Security

Securityweek

5.11.20

Patch for Critical VMware ESXi Vulnerability Incomplete

Vulnerebility

Securityweek

5.11.20

Swedish Insurer Folksam Exposes Data on 1 Million Customers

Incindent

Securityweek

5.11.20

Games in Microsoft Store Can Be Abused for Privilege Escalation on Windows

Vulnerebility

Securityweek

5.11.20

REvil Ransomware Operator Bids for KPot Stealer Source Code

Ransomware

Securityweek

5.11.20

Did You Spot "Invoke-Expression"?

Security

SANS

5.11.20

The power of trusted endpoints

Cyber

Net-security

5.11.20

Cybersecurity training: Learn how to secure containerized environments

Cyber

Net-security

5.11.20

Global number of industrial IoT connections to reach 36.8 billion by 2025

IoT

Net-security

5.11.20

Video series: Get into the phisher’s mind

Phishing

Net-security

5.11.20

Google fixes two actively exploited Chrome zero-days (CVE-2020-16009, CVE-2020-16010)

Vulnerebility

Net-security

4.11.20

Adobe Warns Windows, MacOS Users of Critical Acrobat and Reader FlawsVulnerebility

Threatpost

4.11.20

Oracle Rushes Emergency Fix for Critical WebLogic Server FlawVulnerebility

Threatpost

4.11.20

Media Comms Giant Says Ransomware Hit Will Cost MillionsRansomware

Threatpost

4.11.20

Oracle Solaris Zero-Day Attack RevealedAttack

Threatpost

4.11.20

APT Groups Finding Success with Mix of Old and New ToolsAPT

Threatpost

4.11.20

34M Records from 17 Companies Up for Sale in Cybercrime ForumCyberCrime

Threatpost

4.11.20

Two Chrome Browser Updates Plug Holes Actively Targeted by ExploitsExploit

Threatpost

4.11.20

UNC1945, a sophisticated threat actor used Oracle Solaris Zero-Day exploitExploitSecurityaffairs

4.11.20

Adobe addressed 4 critical vulnerabilities in Acrobat productsVulnerebilitySecurityaffairs

4.11.20

Russian cybercriminal Aleksandr Brovko sentenced to 8 years in jailCrimeSecurityaffairs

4.11.20

Google Patches 30 Vulnerabilities With November 2020 Android UpdatesAndroid

Securityweek

4.11.20

Social Media Firms on Alert for Election Day MisinformationSocialSecurityweek

4.11.20

Sophisticated Threat Actor Exploited Oracle Solaris Zero-DayExploit

Securityweek

4.11.20

CERT/CC Seeks to Remove Fear Element From Named VulnerabilitiesBigBrothersSecurityweek

4.11.20

Californians Consider Expanding Landmark Data Privacy LawPrivacy

Securityweek

4.11.20

Adobe Patches 14 Vulnerabilities in Acrobat ProductsVulnerebilitySecurityweek

4.11.20

Google Patches Actively Exploited Chrome VulnerabilitiesVulnerebility

Securityweek

4.11.20

CISO Conversations: UW Medicine and Sentara Healthcare CISOs Talk Healthcare SecurityCyberSecurityweek

4.11.20

Russian Sentenced to Prison in U.S. for Role in Cybercrime SchemeCyberCrimeSecurityweek

4.11.20

Attackers Exploiting WebLogic Servers via CVE-2020-14882 to install Cobalt Strike

Exploit

SANS

4.11.20

How to deal with the escalating phishing threat

Phishing

Net-security

4.11.20

How do I select a compliance solution for my business?

Security

Net-security

4.11.20

How smartphones became IoT’s best friend and worst enemy

IoT

Net-security

4.11.20

Direct digital transformation investment to approach $6.8 trillion by 2023

IT

Net-security

3.11.20

APT trends report Q3 2020

APT

Securelist

3.11.20

Malicious npm library removed from the repository due to backdoor capabilitiesVirusSecurityaffairs

3.11.20

Over 12% of ICS Security Incidents Attributed to Nation-State Hackers: SurveyICS

Securityweek

3.11.20

NAT Slipstreaming: Visiting Malicious Site Can Expose Local Network Services to Remote AttacksAttackSecurityweek

3.11.20

New Kimsuky Module Makes North Korean Spyware More PowerfulBigBrothersThehackernews

3.11.20

New Chrome Zero-Day Under Active Attacks – Update Your BrowserAttackThehackernews

3.11.20

Unpatched Windows Zero-Day Exploited in the Wild for Sandbox Escape

Exploit

Threatpost

3.11.20

Scammers Abuse Google Drive to Send Malicious Links

Spam

Threatpost

3.11.20

WordPress Pushes Out Multiple Flawed Security Updates

Vulnerebility

Threatpost

3.11.20

$100M Botnet Scheme Lands Cybercriminal 8 Years in Jail

Crime

Threatpost

3.11.20

Survey: Cybersecurity Skills Shortage is ‘Bad,’ But There’s Hope

Cyber

Threatpost

3.11.20

Texas Gold-Dealer Mined for Payment Details in Months-Long Data Breach

Incindent

Threatpost

3.11.20

Google fixes the second zero-day in Chrome in 2 weeks actively exploited

Exploit

Securityaffairs

3.11.20

Oracle issues emergency patch for CVE-2020-14750 WebLogic Server flaw

Vulnerebility

Securityaffairs

3.11.20

Maze ransomware gang shuts down operations, states their press release

Ransomware

Securityaffairs

3.11.20

North Korea-Linked APT Group Kimsuky spotted using new malware

APT

Securityaffairs

3.11.20

Oracle Issues Out-of-Band Update for Critical Vulnerability Exploited in Attacks

Attack

Securityweek

3.11.20

Mark Adams Named Chief Security Officer of Adobe

IT

Securityweek

3.11.20

Researcher Warns 100,000 Devices Still Vulnerable to SMBGhost Attacks

Attack

Securityweek

3.11.20

Pioneers of "Double Extortion" Say Maze Ransomware Project is Over

Ransomware

Securityweek

3.11.20

Emotet -> Qakbot -> more Emotet

Virus

SANS

3.11.20

Ryuk ransomware behind one third of all ransomware attacks in 2020

Ransomware

Net-security

3.11.20

BEC attacks increase in most industries, invoice and payment fraud rise by 155%

Attack

Net-security

3.11.20

How businesses rate their own security and compliance risks

Security

Net-security

3.11.20

What CIOs must do to create resilient and adaptive future enterprises

Security

Net-security

3.11.20

Disinformation campaigns can spread like wildfire on social media

Social

Net-security

3.11.20

Report: Intelligent cyber threat response

Cyber

Net-security

2.11.20

North Korean Group Kimsuky Targets Government Agencies With New MalwareBigBrothers

Securityweek

2.11.20

Russian Election Threat Potent, But Interference So Far SlimBigBrothersSecurityweek

2.11.20

U.S. Says Iranian Hackers Accessed Voter InformationBigBrothersSecurityweek

2.11.20

Gold Dealer JM Bullion Discloses Months-Long Payment Card BreachIncindentSecurityweek

2.11.20

New NAT/Firewall Bypass Attack Lets Hackers Access Any TCP/UDP ServiceAttackThehackernews

2.11.20

Hackers stole credit card data from JM Bullion online bullion dealerIncindent

Securityaffairs

2.11.20

UK ICO fines hotel chain giant Marriott over data breachIncindentSecurityaffairs

2.11.20

Nuclear Regulation Authority shut down email systems after a cyber attackBigBrothers

Securityaffairs

2.11.20

Maze ransomware is going out of the businessRansomwareSecurityaffairs

2.11.20

All Bark No Byte? Unease Over Irish Performance as EU's Lead Data WatchdogBigBrothersSecurityweek

2.11.20

US Judge Sets Up Fresh Roadblock in Trump Bid to Ban TikTokBigBrothersSecurityweek

2.11.20

WARNING: Google Discloses Windows Zero-Day Bug Exploited in the WildExploitThehackernews

2.11.20

Google discloses actively exploited Windows zero-day (CVE-2020-17087)

Exploit

Net-security

2.11.20

Technology solutions providers must empower end users to improve cybersecurity standards

Cyber

Net-security

2.11.20

Moving past the madness of manually updated X.509 certificates

Safety

Net-security

2.11.20

Enterprise IT security teams continue to struggle

Security

Net-security

2.11.20

60% of organizations have accelerated their zero trust projects

Security

Net-security

2.11.20

Top tasks IT professionals are spending more time on

Security

Net-security

2.11.20

Most businesses are rethinking how they work

Security

Net-security

2.11.20

Guide: 10 critical issues to cover in your vendor security questionnaires

Vulnerebility

Net-security

1.11.20UHS restores hospital systems after Ryuk ransomware attackRansomware

Bleepingcomputer

1.11.20Brooklyn & Vermont hospitals are latest Ryuk ransomware victimsRansomware

Bleepingcomputer

1.11.20

Microsoft driver update change may break Windows 10 plug-and-playOS

Bleepingcomputer

1.11.20Microsoft warns of ongoing attacks using Windows Zerologon flawAttack

Bleepingcomputer

1.11.20US shares info on Russian malware used to target parliaments, embassiesBigBrothers

Bleepingcomputer

1.11.20

Microsoft releases KB4580364 update to fix Windows 10 freezesOS

Bleepingcomputer

1.11.20Georgia county voter information leaked by ransomware gangRansomware

Bleepingcomputer

1.11.20Emotet campaign used parked domains to deliver malware payloadsVirus

Bleepingcomputer

1.11.20

Critical Oracle WebLogic flaw actively targeted in attacksAttack

Bleepingcomputer

1.11.20Hacking group is targeting US hospitals with Ryuk ransomwareRansomware

Bleepingcomputer

1.11.20Microsoft Defender ATP adds vulnerable Windows device trackingSafety

Bleepingcomputer

1.11.20

Russian Turla hackers breach European government organizationBigBrothers

Bleepingcomputer

1.11.20Microsoft shares list of URLs required by Microsoft Defender ATPSafety

Bleepingcomputer

1.11.20Microsoft: Iranian attackers hacked security conference attendeesBigBrothers

Bleepingcomputer

1.11.20

Microsoft Defender ATP scars admins with false Cobalt Strike alertsSafety

Bleepingcomputer

1.11.20QNAP warns of new QTS bugs that allow take over of devicesVulnerebility

Bleepingcomputer

1.11.20FTC receives almost 2 million robocall complaints in nine monthsBigBrothers

Bleepingcomputer

1.11.20

Microsoft: Disposable emails now available in Exchange OnlineOS

Bleepingcomputer

1.11.20Mac users unable to print after Apple revoked HP certificateApple

Bleepingcomputer

1.11.20

Microsoft Edge gets Vertical Tabs feature you won't find in ChromeOS

Bleepingcomputer

1.11.20A data breach broker is selling account databases of 17 companiesIncindent

Securityaffairs

1.11.20103,000 machines are still vulnerable to SMBGhost attacksAttackSecurityaffairs

1.11.20

Ransomware Surge Imperils Hospitals as Pandemic IntensifiesRansomwareSecurityweek
1.11.20REvil ransomware gang hacked gaming firm Gaming Partners InternationalRansomware

Securityaffairs

1.11.20Companies paid $4.2M bug bounties for XSS flaws in 2020VulnerebilitySecurityaffairs

1.11.20

Emotet operators are running Halloween-themed campaignsVirus

Securityaffairs