Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

30274 bookmarks
Custom sorting
Minnesota governor activates National Guard after cyberattack on state capital
Minnesota governor activates National Guard after cyberattack on state capital
Mayor Melvin Carter said during a press conference on Tuesday that the city is most concerned about the data it holds on government employees, arguing that the city does not carry much information on city residents.
·therecord.media·
Minnesota governor activates National Guard after cyberattack on state capital
Minnesota activates National Guard after St. Paul cyberattack
Minnesota activates National Guard after St. Paul cyberattack
Minnesota Governor Tim Walz has activated the National Guard in response to a crippling cyberattack that struck the City of Saint Paul, the state's capital, on Friday.
·bleepingcomputer.com·
Minnesota activates National Guard after St. Paul cyberattack
Scattered Spider is targeting victims' Snowflake data storage for quick exfiltration
Scattered Spider is targeting victims' Snowflake data storage for quick exfiltration
The latest guidance on Scattered Spider from the FBI and agencies in the U.K., Canada and Australia says the cybercrime group is often looking for Snowflake data storage credentials when it picks a company to attack.
·therecord.media·
Scattered Spider is targeting victims' Snowflake data storage for quick exfiltration
News Alert: SquareX exposes DevTools blind spot allowing widespread browser extension attacks
News Alert: SquareX exposes DevTools blind spot allowing widespread browser extension attacks
Palo Alto, Calif., July 29, 2025, CyberNewswire — Despite the expanding use of browser extensions, the majority of enterprises and individuals still rely on labels such as “Verified” and “Chrome Featured” provided by extension stores as a security indicator. The recent Geco Colorpick case exemplifies how these certifications provide nothing more than a false sense
·lastwatchdog.com·
News Alert: SquareX exposes DevTools blind spot allowing widespread browser extension attacks
Pourquoi « Archange » est l’avion d’espionnage dont la France avait besoin
Pourquoi « Archange » est l’avion d’espionnage dont la France avait besoin
Le 25 juillet 2025, sur le tarmac d’une base aérienne française tenue confidentielle, le nouvel avion de renseignement Archange a quitté le sol pour la première fois. Un vol inaugural qui concrétise la volonté de la France d'amplifier sa capacité à écouter, surveiller et anticiper. Avion de Renseignement à Charge
·numerama.com·
Pourquoi « Archange » est l’avion d’espionnage dont la France avait besoin
Hackers exploit SAP NetWeaver bug to deploy Linux Auto-Color malware
Hackers exploit SAP NetWeaver bug to deploy Linux Auto-Color malware
Hackers were spotted exploiting a critical SAP NetWeaver vulnerability tracked as CVE-2025-31324 to deploy the Auto-Color Linux malware in a cyberattack on a U.S.-based chemicals company.
·bleepingcomputer.com·
Hackers exploit SAP NetWeaver bug to deploy Linux Auto-Color malware
French Telco Orange Hit by Cyber-Attack
French Telco Orange Hit by Cyber-Attack
Some of Orange’s professional and consumer services may be disrupted for a few days because of the cyber incident
·infosecurity-magazine.com·
French Telco Orange Hit by Cyber-Attack
FBI, CISA warn about Scattered Spider’s evolving tactics
FBI, CISA warn about Scattered Spider’s evolving tactics
International authorities are pursuing the group following the arrests of four suspects in a series of attacks targeting British retailers.
·cybersecuritydive.com·
FBI, CISA warn about Scattered Spider’s evolving tactics
Microsoft Edge now an 'AI-powered browser' with Copilot Mode
Microsoft Edge now an 'AI-powered browser' with Copilot Mode
Microsoft has introduced Copilot Mode, an experimental feature designed to transform Microsoft Edge into a web browser powered by artificial intelligence (AI).
·bleepingcomputer.com·
Microsoft Edge now an 'AI-powered browser' with Copilot Mode
French telecommunications giant Orange discloses cyberattack
French telecommunications giant Orange discloses cyberattack
Orange, a French telecommunications company and one of the world's largest telecom operators, revealed that it detected a breached system on its network on Friday.
·bleepingcomputer.com·
French telecommunications giant Orange discloses cyberattack
How attackers are still phishing "phishing-resistant" authentication
How attackers are still phishing "phishing-resistant" authentication
Think passkeys make you phishing-proof? Think again. Attackers are using downgrade attacks, device-code phishing, and OAuth tricks to sneak past modern MFA. See how Push Security shuts them down.
·bleepingcomputer.com·
How attackers are still phishing "phishing-resistant" authentication
FBI seizes $2.4M in Bitcoin from new Chaos ransomware operation
FBI seizes $2.4M in Bitcoin from new Chaos ransomware operation
FBI Dallas has seized almost 23 Bitcoins from a cryptocurrency address belonging to a Chaos ransomware member that is linked to cyberattacks and extortion payments from Texas companies.
·bleepingcomputer.com·
FBI seizes $2.4M in Bitcoin from new Chaos ransomware operation
Homoglyph Attacks & Domain Squatting | CSA
Homoglyph Attacks & Domain Squatting | CSA
Learn how homoglyph attacks work, why they’re a growing concern for major brands, and how DNS Posture Management defends against these invisible threats.
·cloudsecurityalliance.org·
Homoglyph Attacks & Domain Squatting | CSA
Insights from Talos IR: Navigating NIS2 technical implementation
Insights from Talos IR: Navigating NIS2 technical implementation
ENISA’s 2025 NIS2 guidance makes compliance more complex, but Talos IR's services directly align with new requirements for reporting, logging and incident response.
·blog.talosintelligence.com·
Insights from Talos IR: Navigating NIS2 technical implementation