Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

29800 bookmarks
Custom sorting
Louis Vuitton says regional data breaches tied to same cyberattack
Louis Vuitton says regional data breaches tied to same cyberattack
Luxury fashion giant Louis Vuitton confirmed that breaches impacting customers in the UK, South Korea, and Turkey stem from the same security incident, which is believed to be linked to the ShinyHunters extortion group.
·bleepingcomputer.com·
Louis Vuitton says regional data breaches tied to same cyberattack
Hacking Trains - Schneier on Security
Hacking Trains - Schneier on Security
Seems like an old system system that predates any care about security: The flaw has to do with the protocol used in a train system known as the End-of-Train and Head-of-Train. A Flashing Rear End Device (FRED), also known as an End-of-Train (EOT) device, is attached to the back of a train and sends data via radio signals to a corresponding device in the locomotive called the Head-of-Train (HOT). Commands can also be sent to the FRED to apply the brakes at the rear of the train. These devices were first installed in the 1980s as a replacement for caboose cars, and unfortunately, they lack encryption and authentication protocols. Instead, the current system uses data packets sent between the front and back of a train that include a simple BCH checksum to detect errors or interference. But now, the CISA is warning that someone using a software-defined radio could potentially send fake data packets and interfere with train operations...
·schneier.com·
Hacking Trains - Schneier on Security
Cloudflare says 1.1.1.1 outage not caused by attack or BGP hijack
Cloudflare says 1.1.1.1 outage not caused by attack or BGP hijack
To quash speculation of a cyberattack or BGP hijack incident causing the recent 1.1.1.1 Resolver service outage, Cloudflare explains in a post mortem that the incident was caused by an internal misconfiguration.
·bleepingcomputer.com·
Cloudflare says 1.1.1.1 outage not caused by attack or BGP hijack
« Des milliers de drones n'arriveront pas au front » : des hackers ukrainiens auraient volé les plans d'un fabricant russe - Numerama
« Des milliers de drones n'arriveront pas au front » : des hackers ukrainiens auraient volé les plans d'un fabricant russe - Numerama
Les services de renseignement ukrainiens et des groupes de hackers alliés déclarent avoir mené une cyberattaque d'envergure contre l’un des principaux fabricants russes de drones militaires. Près de 50 téraoctets de données auraient été dérobés, notamment les plans de modèles de drones militaires en cours de
·numerama.com·
« Des milliers de drones n'arriveront pas au front » : des hackers ukrainiens auraient volé les plans d'un fabricant russe - Numerama
International operation disrupts pro-Russian hacker group NoName057(16)
International operation disrupts pro-Russian hacker group NoName057(16)
European and U.S. law enforcement have disrupted the operations of a pro-Russian hacker group known for launching distributed denial-of-service attacks against Ukraine and its allies.
·therecord.media·
International operation disrupts pro-Russian hacker group NoName057(16)
Scattered Spider expands its roster of tactics in recent hacks
Scattered Spider expands its roster of tactics in recent hacks
Microsoft researchers warn they are seeing changing patterns as the cybercrime group has started trying to hack airlines and other industries after targeting retailers and insurers.
·cybersecuritydive.com·
Scattered Spider expands its roster of tactics in recent hacks
SonicWall SMA devices hacked with OVERSTEP rootkit tied to ransomware
SonicWall SMA devices hacked with OVERSTEP rootkit tied to ransomware
A threat actor has been deploying a previously unseen malware called OVERSTEP that modifies the boot process of fully-patched but no longer supported SonicWall Secure Mobile Access appliances.
·bleepingcomputer.com·
SonicWall SMA devices hacked with OVERSTEP rootkit tied to ransomware
New Fortinet FortiWeb hacks likely linked to public RCE exploits
New Fortinet FortiWeb hacks likely linked to public RCE exploits
Multiple Fortinet FortiWeb instances recently infected with web shells are believed to have been compromised using public exploits for a recently patched remote code execution (RCE) flaw tracked as CVE-2025-25257.
·bleepingcomputer.com·
New Fortinet FortiWeb hacks likely linked to public RCE exploits
Pro-Russian Cybercrime Network Demolished in Operation Eastwood
Pro-Russian Cybercrime Network Demolished in Operation Eastwood
A Europol coordinated operation has taken down key infrastructure used by pro-Russian hacktivist group NoName057(16), as well as a number of arrests
·infosecurity-magazine.com·
Pro-Russian Cybercrime Network Demolished in Operation Eastwood
Italian police dismantle Romanian ransomware gang targeting nonprofits, film companies
Italian police dismantle Romanian ransomware gang targeting nonprofits, film companies
The group, known as “Diskstation,” is accused of encrypting victims’ systems and demanding large cryptocurrency ransoms to restore access to their data, Italy’s Postal and Cybersecurity Police said in a statement.
·therecord.media·
Italian police dismantle Romanian ransomware gang targeting nonprofits, film companies
Europol disrupts pro-Russian NoName057(16) DDoS hacktivist group
Europol disrupts pro-Russian NoName057(16) DDoS hacktivist group
An international law enforcement operation dubbed "Operation Eastwood" has targeted the infrastructure of the pro-Russian hacktivist group NoName057(16), responsible for distributed denial-of-service (DDoS) attacks across Europe and the US.
·bleepingcomputer.com·
Europol disrupts pro-Russian NoName057(16) DDoS hacktivist group
Dating app scammer cons former US army colonel into leaking national secrets
Dating app scammer cons former US army colonel into leaking national secrets
Even hard-headed military types can fall victim to romance scams, it seems. A former US army colonel faces up to ten years in prison after revealing national secrets on a foreign dating app.
·malwarebytes.com·
Dating app scammer cons former US army colonel into leaking national secrets
Senate panel passes Intelligence Authorization Act that takes aim at telecom hacks
Senate panel passes Intelligence Authorization Act that takes aim at telecom hacks
The measure aims to prevent compromise of U.S. telecommunications through strengthening network security by establishing “baseline cybersecurity requirements for vendors of telecommunications services” to the country’s 18 intelligence agencies, according to a summary of the bill released by the panel.
·therecord.media·
Senate panel passes Intelligence Authorization Act that takes aim at telecom hacks
Copilot Studio: AIjacking Leads to Data Exfiltration | CSA
Copilot Studio: AIjacking Leads to Data Exfiltration | CSA
AI agents are prone to data exfiltration. See how one attack led to discovery of the knowledge sources, then to data exfiltration of entire customer records.
·cloudsecurityalliance.org·
Copilot Studio: AIjacking Leads to Data Exfiltration | CSA
Retail Ransomware Attacks Jump 58% Globally in Q2 2025
Retail Ransomware Attacks Jump 58% Globally in Q2 2025
BlackFog found that publicly disclosed ransomware attacks on retail grew significantly in Q2 compared to Q1, with UK firms heavily targeted
·infosecurity-magazine.com·
Retail Ransomware Attacks Jump 58% Globally in Q2 2025