Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

31155 bookmarks
Custom sorting
OpenPanel 0.3.4 - OS Command Injection
OpenPanel 0.3.4 - OS Command Injection
OpenPanel 0.3.4 - OS Command Injection. CVE-2024-53584 . webapps exploit for Multiple platform
·exploit-db.com·
OpenPanel 0.3.4 - OS Command Injection
OpenPanel 0.3.4 - Directory Traversal
OpenPanel 0.3.4 - Directory Traversal
OpenPanel 0.3.4 - Directory Traversal. CVE-2024-53537 . webapps exploit for Multiple platform
·exploit-db.com·
OpenPanel 0.3.4 - Directory Traversal
OpenPanel 0.3.4 - Incorrect Access Control
OpenPanel 0.3.4 - Incorrect Access Control
OpenPanel 0.3.4 - Incorrect Access Control. CVE-2024-53582 . webapps exploit for Multiple platform
·exploit-db.com·
OpenPanel 0.3.4 - Incorrect Access Control
Over 14K Fortinet devices compromised via new attack method
Over 14K Fortinet devices compromised via new attack method
Fortinet last week warned that a threat actor was using a novel post-exploitation trick to maintain access to devices after they were patched.
·cybersecuritydive.com·
Over 14K Fortinet devices compromised via new attack method
No, it’s not OK to delete that new inetpub folder
No, it’s not OK to delete that new inetpub folder
A newly created inetpub folder turns out to be part of a Microsoft update against a vulnerability tracked as CVE-2025-21204
·malwarebytes.com·
No, it’s not OK to delete that new inetpub folder
Rep. Green on CISA cuts, China hacking and cyber as a bipartisan issue
Rep. Green on CISA cuts, China hacking and cyber as a bipartisan issue
The chair of the House Homeland Security Committee said his panel was prepared to take on pressing cyber policy challenges, like an estimated cyber workforce shortage of 50,000 professionals and burdensome digital compliance.
·therecord.media·
Rep. Green on CISA cuts, China hacking and cyber as a bipartisan issue
Malicious NPM packages target PayPal users
Malicious NPM packages target PayPal users
Threat actors deploy malicious NPM packages to steal PayPal credentials and hijack cryptocurrency transfers.
·securityaffairs.com·
Malicious NPM packages target PayPal users
Hackers using AI-produced audio to impersonate tax preparers, IRS
Hackers using AI-produced audio to impersonate tax preparers, IRS
Artificial Intelligence has supercharged an array of tax-season scams this year, with fraudsters using deepfake audio and other techniques to trick taxpayers into sending them money and financial documents.
·therecord.media·
Hackers using AI-produced audio to impersonate tax preparers, IRS
Enhancing your DevSecOps with Wazuh, the open source XDR platform
Enhancing your DevSecOps with Wazuh, the open source XDR platform
Security shouldn't wait until the end of development. Wazuh brings real-time threat detection, compliance, and vulnerability scanning into your DevOps pipeline—powering a stronger DevSecOps strategy from day one. Learn more about how Wazuh can help secure your development cycle.
·bleepingcomputer.com·
Enhancing your DevSecOps with Wazuh, the open source XDR platform
Kidney dialysis firm DaVita hit by weekend ransomware attack
Kidney dialysis firm DaVita hit by weekend ransomware attack
Kidney dialysis firm DaVita disclosed Monday it suffered a weekend ransomware attack that encrypted parts of its network and impacted some of its operations.
·bleepingcomputer.com·
Kidney dialysis firm DaVita hit by weekend ransomware attack
Secure smart devices with microsegmentation | CSA
Secure smart devices with microsegmentation | CSA
Learn how microsegmentation secures IoT/OT devices by isolating them to prevent breaches and reduce costs.
·cloudsecurityalliance.org·
Secure smart devices with microsegmentation | CSA
Microsoft tells Windows users to ignore 0x80070643 WinRE errors
Microsoft tells Windows users to ignore 0x80070643 WinRE errors
Microsoft says some users might see 0x80070643 installation failures when trying to deploy the April 2025 Windows Recovery Environment (WinRE) updates.
·bleepingcomputer.com·
Microsoft tells Windows users to ignore 0x80070643 WinRE errors
US Blocks Foreign Governments from Acquiring Citizen Data
US Blocks Foreign Governments from Acquiring Citizen Data
The US government has implemented a program that applies export controls on data transactions to certain countries of concern, including China and Russia
·infosecurity-magazine.com·
US Blocks Foreign Governments from Acquiring Citizen Data
OpenAI's GPT-4.1, 4.1 nano, and 4.1 mini models release imminent
OpenAI's GPT-4.1, 4.1 nano, and 4.1 mini models release imminent
According to references spotted on OpenAI's website, the Microsoft-backed AI startup is planning to launch five new models this week, including GPT-4.1, 4.1 nano, and 4.1 mini.
·bleepingcomputer.com·
OpenAI's GPT-4.1, 4.1 nano, and 4.1 mini models release imminent
SOC 2 & HIPAA: unified approach to data privacy | CSA
SOC 2 & HIPAA: unified approach to data privacy | CSA
Explore how combining SOC 2 and HIPAA compliance enhances data security, builds trust, and streamlines operations in the healthcare sector.
·cloudsecurityalliance.org·
SOC 2 & HIPAA: unified approach to data privacy | CSA