Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

29766 bookmarks
Custom sorting
Spain arrests hackers who targeted politicians and journalists
Spain arrests hackers who targeted politicians and journalists
The Spanish police have arrested two individuals in the province of Las Palmas for their alleged involvement in cybercriminal activity, including data theft from the country's government.
·bleepingcomputer.com·
Spain arrests hackers who targeted politicians and journalists
Cisco warns that Unified CM has hardcoded root SSH credentials
Cisco warns that Unified CM has hardcoded root SSH credentials
Cisco has removed a backdoor account from its Unified Communications Manager (Unified CM), which would have allowed remote attackers to log in to unpatched devices with root privileges.
·bleepingcomputer.com·
Cisco warns that Unified CM has hardcoded root SSH credentials
Strategic Synergy: CSA STAR, CCM, and FedRAMP 20x | CSA
Strategic Synergy: CSA STAR, CCM, and FedRAMP 20x | CSA
By strategically integrating CSA’s STAR program, FedRAMP 20x can deliver improved clarity, consistency, and trust in cloud security.
·cloudsecurityalliance.org·
Strategic Synergy: CSA STAR, CCM, and FedRAMP 20x | CSA
Citrix warns of login issues after NetScaler auth bypass patch
Citrix warns of login issues after NetScaler auth bypass patch
Citrix warns that patching recently disclosed vulnerabilities that can be exploited to bypass authentication and launch denial-of-service attacks may also break login pages on NetScaler ADC and Gateway appliances.
·bleepingcomputer.com·
Citrix warns of login issues after NetScaler auth bypass patch
Bluff ou futur scandale ? L’entourage de Trump victime d’un chantage de hackers pro-iraniens
Bluff ou futur scandale ? L’entourage de Trump victime d’un chantage de hackers pro-iraniens
Un groupe de hackers pro-iranien a revendiquĂ©, le 30 juin 2025, le vol de prĂšs de 100 gigaoctets d’emails appartenant Ă  des membres de l’entourage de Donald Trump. Cette annonce intervient dans un contexte de tensions accrues entre Washington et TĂ©hĂ©ran, aprĂšs les frappes amĂ©ricaines contre les sites nuclĂ©aires en
·numerama.com·
Bluff ou futur scandale ? L’entourage de Trump victime d’un chantage de hackers pro-iraniens
Android SMS Stealer Infects 100,000 Devices in Uzbekistan
Android SMS Stealer Infects 100,000 Devices in Uzbekistan
New Android malware Qwizzserial has infected 100,000 devices, primarily in Uzbekistan, stealing SMS data via Telegram distribution
·infosecurity-magazine.com·
Android SMS Stealer Infects 100,000 Devices in Uzbekistan
AI Models Mislead Users on Login URLs
AI Models Mislead Users on Login URLs
A third of AI-generated login URLs lead to incorrect or dangerous domains, according to Netcraft
·infosecurity-magazine.com·
AI Models Mislead Users on Login URLs
Suspendu par son employeur, il sabote le réseau informatique de la boßte
Suspendu par son employeur, il sabote le réseau informatique de la boßte
L’ex-employĂ© d’une entreprise basĂ©e dans le Yorkshire a Ă©tĂ© condamnĂ© Ă  7 mois de prison ferme, le 30 juin 2025, pour avoir volontairement sabotĂ© l’infrastructure informatique de son ancien employeur. L’homme a agi par vengeance, aprĂšs avoir Ă©tĂ© suspendu de ses fonctions. Mohammed Umar Taj, 31 ans, travaillait comme
·numerama.com·
Suspendu par son employeur, il sabote le réseau informatique de la boßte
The Traditional Technology Adoption Curve vs. AI | CSA
The Traditional Technology Adoption Curve vs. AI | CSA
Explore how AI adoption dramatically compresses technology development cycles and how humans are resisting this shift. Learn how to help employees embrace AI.
·cloudsecurityalliance.org·
The Traditional Technology Adoption Curve vs. AI | CSA
Spain arrests two over data leaks targeting state officials, journalists
Spain arrests two over data leaks targeting state officials, journalists
Spain’s Interior Ministry said the suspects were responsible for stealing and leaking personal data belonging to high-ranking political figures, including Prime Minister Pedro Sánchez, President of the Congress of Deputies Francina Armengol and Catalonia’s President Salvador Illa.
·therecord.media·
Spain arrests two over data leaks targeting state officials, journalists
Dozens of fake wallet add-ons flood Firefox store to drain crypto
Dozens of fake wallet add-ons flood Firefox store to drain crypto
More than 40 fake extensions in Firefox's official add-ons store are impersonating popular cryptocurrency wallets from trusted providers to steal wallet credentials and sensitive data.
·bleepingcomputer.com·
Dozens of fake wallet add-ons flood Firefox store to drain crypto
PDFs: Portable documents, or perfect deliveries for phish?
PDFs: Portable documents, or perfect deliveries for phish?
A popular social engineering technique returns: callback phishing, or TOAD attacks, which leverage PDFs, VoIP anonymity and even QR code tricks.
·blog.talosintelligence.com·
PDFs: Portable documents, or perfect deliveries for phish?
MFA Made Easy: 8 Best Practices for Authentication | CSA
MFA Made Easy: 8 Best Practices for Authentication | CSA
Multi-Factor Authentication (MFA) is a core part of Zero Trust strategies. Yet, MFA adoption lags due to the poor user experience, leaving companies vulnerable.
·cloudsecurityalliance.org·
MFA Made Easy: 8 Best Practices for Authentication | CSA
Ubuntu Disables Spectre/Meltdown Protections - Schneier on Security
Ubuntu Disables Spectre/Meltdown Protections - Schneier on Security
A whole class of speculative execution attacks against CPUs were published in 2018. They seemed pretty catastrophic at the time. But the fixes were as well. Speculative execution was a way to speed up CPUs, and removing those enhancements resulted in significant performance drops. Now, people are rethinking the trade-off. Ubuntu has disabled some protections, resulting in 20% performance boost. After discussion between Intel and Canonical’s security teams, we are in agreement that Spectre no longer needs to be mitigated for the GPU at the Compute Runtime level. At this point, Spectre has been mitigated in the kernel, and a clear warning from the Compute Runtime build serves as a notification for those running modified kernels without those patches. For these reasons, we feel that Spectre mitigations in Compute Runtime no longer offer enough security impact to justify the current performance tradeoff...
·schneier.com·
Ubuntu Disables Spectre/Meltdown Protections - Schneier on Security