Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

30533 bookmarks
Custom sorting
US nuclear weapons agency reportedly hacked in SharePoint attacks
US nuclear weapons agency reportedly hacked in SharePoint attacks
Unknown threat actors have reportedly breached the National Nuclear Security Administration's (NNSA) network in attacks exploiting a recently patched Microsoft SharePoint zero-day vulnerability chain.
·bleepingcomputer.com·
US nuclear weapons agency reportedly hacked in SharePoint attacks
How to harden your Active Directory against Kerberoasting
How to harden your Active Directory against Kerberoasting
Kerberoasting gives attackers offline paths to crack service account password, without triggering alerts. Learn from Specops Software how to protect your Active Directory with stronger SPN password policies and reduced attack surfaces.
·bleepingcomputer.com·
How to harden your Active Directory against Kerberoasting
CISA warns of hackers exploiting SysAid vulnerabilities in attacks
CISA warns of hackers exploiting SysAid vulnerabilities in attacks
CISA has warned that attackers are actively exploiting two security vulnerabilities in the SysAid IT service management (ITSM) software to hijack administrator accounts.
·bleepingcomputer.com·
CISA warns of hackers exploiting SysAid vulnerabilities in attacks
Ukraine arrests suspected admin of XSS Russian hacking forum
Ukraine arrests suspected admin of XSS Russian hacking forum
The suspected administrator of the Russian-speaking hacking forum XSS.is was arrested by the Ukrainian authorities yesterday at the request of the Paris public prosecutor's office.
·bleepingcomputer.com·
Ukraine arrests suspected admin of XSS Russian hacking forum
OpenAI prepares Sora 2 to take on Google's Veo 3
OpenAI prepares Sora 2 to take on Google's Veo 3
OpenAI has had enough of Google's Veo 3 dominating generative AI videos and is now working on Sora 2, the successor to Sora.
·bleepingcomputer.com·
OpenAI prepares Sora 2 to take on Google's Veo 3
What to Expect in the ISO 42001 Certification Process | CSA
What to Expect in the ISO 42001 Certification Process | CSA
Learn what ISO 42001 is, what to expect from the certification process, and practical insights to help you lay a strong foundation for compliance.
·cloudsecurityalliance.org·
What to Expect in the ISO 42001 Certification Process | CSA
« Les données de 340 000 demandeurs d’emploi ont été consultées », êtes-vous concerné par le nouveau piratage de France Travail ?
« Les données de 340 000 demandeurs d’emploi ont été consultées », êtes-vous concerné par le nouveau piratage de France Travail ?
Depuis quelques jours, de nombreux inscrits à France Travail ont reçu un courriel inquiétant : des personnes non autorisées ont accédé à leurs données personnelles hébergées sur la plateforme. Que s'est-il réellement passé ? Qui est concerné ? France Travail a déroulé la chronologie des faits pour Numerama. L’alerte
·numerama.com·
« Les données de 340 000 demandeurs d’emploi ont été consultées », êtes-vous concerné par le nouveau piratage de France Travail ?
Suspected XSS Forum Admin Arrested in Ukraine
Suspected XSS Forum Admin Arrested in Ukraine
The individual is accused of numerous illicit cybercrime and ransomware activities that have generated at least $7m in profit
·infosecurity-magazine.com·
Suspected XSS Forum Admin Arrested in Ukraine
STRATEGIC REEL: From guesswork to ground truth — stopping threats before they spread
STRATEGIC REEL: From guesswork to ground truth — stopping threats before they spread
In today’s post-signature world, attackers don’t just break in — they blend in. In this second installment of the Last Watchdog Strategic LinkedIn Reel (LW SLR) series, Corelight CEO Brian Dye delivers a clear-eyed take on how defenders can regain the upper hand with network-derived ground truth. This high-impact reel distills key insights from our
·lastwatchdog.com·
STRATEGIC REEL: From guesswork to ground truth — stopping threats before they spread
Le Escobar Phone était une arnaque : son créateur risque 120 ans de prison
Le Escobar Phone était une arnaque : son créateur risque 120 ans de prison
Dévoilé en 2020, le Escobar Fold 2 se présentait comme un concurrent du Samsung Galaxy Fold aux couleurs du trafiquant Pablo Escobar. Après plusieurs polémiques, une extraction et une enquête internationale, son créateur a finalement reconnu avoir conçu une vaste arnaque. Un téléphone pliant en hommage à un
·numerama.com·
Le Escobar Phone était une arnaque : son créateur risque 120 ans de prison
Meet Hazel Burton
Meet Hazel Burton
In the first Humans of Talos, Amy sits with Hazel Burton — storyteller, security advocate, and all-around Talos legend. Hazel shares her journey from small business entrepreneurship to leading content programs at Talos.
·blog.talosintelligence.com·
Meet Hazel Burton
Google Sues the Badbox Botnet Operators - Schneier on Security
Google Sues the Badbox Botnet Operators - Schneier on Security
It will be interesting to watch what will come of this private lawsuit: Google on Thursday announced filing a lawsuit against the operators of the Badbox 2.0 botnet, which has ensnared more than 10 million devices running Android open source software. These devices lack Google’s security protections, and the perpetrators pre-installed the Badbox 2.0 malware on them, to create a backdoor and abuse them for large-scale fraud and other illicit schemes. This reminds me of Meta’s lawauit against Pegasus over its hack-for-hire software (which I wrote about ...
·schneier.com·
Google Sues the Badbox Botnet Operators - Schneier on Security
Microsoft fixes bug behind incorrect Windows Firewall errors
Microsoft fixes bug behind incorrect Windows Firewall errors
Microsoft has resolved a known issue that triggers invalid Windows Firewall errors after rebooting Windows 11 24H2 systems with the June 2025 preview update installed.
·bleepingcomputer.com·
Microsoft fixes bug behind incorrect Windows Firewall errors