Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

31290 bookmarks
Custom sorting
News alert: Arsen introduces new AI-based phishing tests to improve social engineering resilience - The Last Watchdog
News alert: Arsen introduces new AI-based phishing tests to improve social engineering resilience - The Last Watchdog
Paris, France, Mar. 24, 2025, CyberNewswire -- Arsen, a leading cybersecurity company specializing in social engineering defense, today announced the full release of Conversational Phishing, a groundbreaking feature embedded in its phishing simulation platform. This AI-powered tool introduces dynamic, adaptive phishing conversations to train employees against evolving threats more effectively than ever before. Advanced phishing
·lastwatchdog.com·
News alert: Arsen introduces new AI-based phishing tests to improve social engineering resilience - The Last Watchdog
News alert: INE Security spotlights healthcare companies facing rising exposure to costly breaches - The Last Watchdog
News alert: INE Security spotlights healthcare companies facing rising exposure to costly breaches - The Last Watchdog
Cary, NC, Mar. 24, 2025, CyberNewswire -- INE Security, a global provider of cybersecurity training and certification, today announced its initiative to spotlight the increasing cyber threats targeting healthcare institutions. In recognition of National Physicians Week 2025, the company is drawing attention to new industry data showing a sharp rise in cyberattacks on hospitals and
·lastwatchdog.com·
News alert: INE Security spotlights healthcare companies facing rising exposure to costly breaches - The Last Watchdog
DrayTek routers worldwide go into reboot loops over weekend
DrayTek routers worldwide go into reboot loops over weekend
Many Internet service providers (ISPs) worldwide are alerting customers of an outage that started Saturday night and triggered DrayTek router connectivity problems.
·bleepingcomputer.com·
DrayTek routers worldwide go into reboot loops over weekend
Cyberattack takes down Ukrainian state railway’s online services
Cyberattack takes down Ukrainian state railway’s online services
Ukrzaliznytsia, Ukraine's national railway operator, has been hit by a massive cyberattack that disrupted online services for buying tickets both through mobile apps and the website.
·bleepingcomputer.com·
Cyberattack takes down Ukrainian state railway’s online services
Over 300 arrested in international crackdown on cyber scams
Over 300 arrested in international crackdown on cyber scams
Law enforcement agencies in seven African countries arrested over 300 suspected cybercriminals involved in mobile banking, investment and messaging app scams, according to a statement on Monday by Interpol.
·therecord.media·
Over 300 arrested in international crackdown on cyber scams
Chinese Weaver Ant hackers spied on telco network for 4 years
Chinese Weaver Ant hackers spied on telco network for 4 years
A China-linked advanced threat group named Weaver Ant spent more than four years in the network of a telecommunications services provider, hiding traffic and infrastructure with the help of compromised Zyxel CPE routers.
·bleepingcomputer.com·
Chinese Weaver Ant hackers spied on telco network for 4 years
VanHelsingRaaS Expands Rapidly in Cybercrime Market
VanHelsingRaaS Expands Rapidly in Cybercrime Market
VanHelsingRaaS, a new ransomware-as-a-service program, infected three victims within two weeks of release, demanding ransoms of $500,000
·infosecurity-magazine.com·
VanHelsingRaaS Expands Rapidly in Cybercrime Market
Ukraine Railway Systems Hit by Targeted Cyber-Attack
Ukraine Railway Systems Hit by Targeted Cyber-Attack
Ukraine’s national railway company has suffered a “large-scale” cyber-attack, disrupting online services and operations
·infosecurity-magazine.com·
Ukraine Railway Systems Hit by Targeted Cyber-Attack
DeepSeek: A New Player in the Global AI Race
DeepSeek: A New Player in the Global AI Race
CIS analysts break down the rise of DeepSeek, a GenAI model that collects data and introduces security risks for users.
·cisecurity.org·
DeepSeek: A New Player in the Global AI Race
Microsoft intègre des agents IA à son offre Security Copilot
Microsoft intègre des agents IA à son offre Security Copilot
Microsoft veut appliquer le potentiel des agents IA à la cybersécurité, domaine particulièrement touché par le manque de main d'œuvre....-Intelligence artificielle
·usine-digitale.fr·
Microsoft intègre des agents IA à son offre Security Copilot
Hidden Threats: How Microsoft 365 Backups Store Risks for Future Attacks
Hidden Threats: How Microsoft 365 Backups Store Risks for Future Attacks
Acronis Threat Research found 2M+ malicious URLs & 5,000+ malware instances in Microsoft 365 backup data—demonstrating how built-in security isn't always enough. Don't let threats persist in your cloud data. Strengthen your defenses.
·bleepingcomputer.com·
Hidden Threats: How Microsoft 365 Backups Store Risks for Future Attacks
Critical flaw in Next.js lets hackers bypass authorization
Critical flaw in Next.js lets hackers bypass authorization
A critical severity vulnerability has been discovered in the Next.js open-source web development framework, potentially allowing attackers to bypass authorization checks.
·bleepingcomputer.com·
Critical flaw in Next.js lets hackers bypass authorization
Police arrests 300 suspects linked to African cybercrime rings
Police arrests 300 suspects linked to African cybercrime rings
African law enforcement authorities have arrested 306 suspects as part of 'Operation Red Card,' an INTERPOL-led international crackdown targeting cross-border cybercriminal networks.
·bleepingcomputer.com·
Police arrests 300 suspects linked to African cybercrime rings
Le fournisseur de tests ADN 23andMe dépose le bilan, sa CEO démissionne
Le fournisseur de tests ADN 23andMe dépose le bilan, sa CEO démissionne
La société américaine spécialisée dans les tests ADN récréatifs a été affaiblie ces derniers temps par une baisse des commandes et...-Biotech
·usine-digitale.fr·
Le fournisseur de tests ADN 23andMe dépose le bilan, sa CEO démissionne
Threat Modeling OpenAI's Responses API with MAESTRO | CSA
Threat Modeling OpenAI's Responses API with MAESTRO | CSA
Traditional threat modeling falls short when it comes to AI agents. Enter the MAESTRO framework, a 7-layer threat modeling approach designed for agentic AI.
·cloudsecurityalliance.org·
Threat Modeling OpenAI's Responses API with MAESTRO | CSA
Critical Apache Tomcat RCE vulnerability exploited
Critical Apache Tomcat RCE vulnerability exploited
Attack attempts via CVE-2025-24813 are underway, but successful attacks require specific, non-default configurations.
·cybersecuritydive.com·
Critical Apache Tomcat RCE vulnerability exploited
What Is NIST 800-53? (Comprehensive Guide for 2025)
What Is NIST 800-53? (Comprehensive Guide for 2025)
Discover what is NIST 800-53 and get the full lowdown on this key information security standard, including a free NIST 800-53 checklist.
·stationx.net·
What Is NIST 800-53? (Comprehensive Guide for 2025)
How Can Organizations Secure Hybrid Work Environments? | CSA
How Can Organizations Secure Hybrid Work Environments? | CSA
Hybrid work expands cyber risks. Organizations must use Zero Trust, MFA, endpoint security, and secure collaboration tools to protect data and maintain productivity.
·cloudsecurityalliance.org·
How Can Organizations Secure Hybrid Work Environments? | CSA