Printer maker Procolored offered malware-laced drivers for months
For at least half a year, the official software supplied with Procolored printers included malware in the form of a remote access trojan and a cryptocurrency stealer.
Vous regardez des matchs de foot sans payer avec un VPN ? Ça va changer
La justice commence à pousser les fournisseurs de VPN à agir pour empêcher l'accès des internautes à des sites bloqués en France. Avec comme objectif de contrer la possibilité de regarder du sport (comme des matchs de foot) sur des sites proposant du streaming pirate. C'est l'extension du domaine de la lutte, mais
Ransomware gangs increasingly use Skitnet post-exploitation malware
Ransomware gang members increasingly use a new malware called Skitnet ("Bossnet") to perform stealthy post-exploitation activities on breached networks.
The Human Resources domain of the CCM helps organizations manage risks associated with insider threats by defining policies for the employee lifecycle.
Japan enacts new Active Cyberdefense Law allowing for offensive cyber operations
The new law, which was first mooted in 2022, is intended to help Japan strengthen its cyber defense “to a level equal to major Western powers” and marks a break from the country’s traditional approach to cyber defense.
Communications Backdoor in Chinese Power Inverters - Schneier on Security
This is a weird story: U.S. energy officials are reassessing the risk posed by Chinese-made devices that play a critical role in renewable energy infrastructure after unexplained communication equipment was found inside some of them, two people familiar with the matter said. […] Over the past nine months, undocumented communication devices, including cellular radios, have also been found in some batteries from multiple Chinese suppliers, one of them said. Reuters was unable to determine how many solar power inverters and batteries they have looked at...
SHARED INTEL Q&A: AI in the SOC isn’t all about speed — it’s more so about smoothing process
The SOC has long been the enterprise’s first line of defense. But despite years of investment in threat feeds and automation platforms, the same question persists: why does intelligence still struggle to translate into timely action? Related: IBM makes the AI speed argument for SOCs The 2023 disclosure of Volt Typhoon was a case in
Vous utilisiez des VPN pour voir des matchs de foot sans payer ? Ça va changer
La justice commence à pousser les fournisseurs de VPN à agir pour empêcher l'accès des internautes à des sites bloqués en France. Avec comme objectif de contrer la possibilité de regarder du sport (comme des matchs de foot) sur des sites proposant du streaming pirate. C'est l'extension du domaine de la lutte, mais
An analysis by Robert Walters found there are around 17,000 cybersecurity vacancies in the UK currently, with organizations struggling to fill open positions
Russian Espionage Operation Targets Organizations Linked to Ukraine War
In Operation RoundPress, the compromise vector is a spearphishing email leveraging an XSS vulnerability to inject malicious JavaScript code into the victim's webmail page
Coinbase met 20 millions sur la tête des hackers qui tentent de le menacer
Coinbase, l’une des plus grandes plateformes de cryptomonnaies au monde, a été victime d’un piratage sophistiqué. Face à une demande de rançon de 20 millions de dollars et une fuite de données sensibles, l’entreprise a décidé de retourner la menace contre ses auteurs : elle propose la même somme à quiconque permettra
Piratage de Coinbase : Jusqu'à 400 millions de dollars de pertes
La plateforme d'échange de cryptomonnaies Coinbase a été victime d'une cyberattaque orchestrée par des agents de support corrompus, ayant...-Cybersécurité
US charges 12 more suspects linked to $230 million crypto theft
Twelve more suspects were charged in a RICO conspiracy for their alleged involvement in the theft of over $230 million in cryptocurrency and laundering the funds using crypto exchanges and mixing services.
CISA tags recently patched Chrome bug as actively exploited
On Thursday, CISA warned U.S. federal agencies to secure their systems against ongoing attacks exploiting a high-severity vulnerability in the Chrome web browser.