Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

31439 bookmarks
Custom sorting
https://www.schneier.com/blog/archives/2025/03/upcoming-speaking-engagements-44.html
https://www.schneier.com/blog/archives/2025/03/upcoming-speaking-engagements-44.html
This is a current list of where and when I am scheduled to speak: I’m speaking at the Rossfest Symposium in Cambridge, UK, on March 25, 2025. I’m speaking at the University of Toronto’s Rotman School of Management in Toronto, Ontario, Canada, on April 3, 2025. The list is maintained on this page.
·schneier.com·
https://www.schneier.com/blog/archives/2025/03/upcoming-speaking-engagements-44.html
AI in Cybersecurity: Revolutionizing Threat Detection | CSA
AI in Cybersecurity: Revolutionizing Threat Detection | CSA
AI is revolutionizing how we detect and respond to threats, enhancing the capacity to protect sensitive data and systems from malicious actors.
·cloudsecurityalliance.org·
AI in Cybersecurity: Revolutionizing Threat Detection | CSA
Fraudsters Impersonate Clop Ransomware to Extort Businesses
Fraudsters Impersonate Clop Ransomware to Extort Businesses
Barracuda observed threat actors impersonating the Clop ransomware group via email to extort payments, claiming to have exfiltrated sensitive data
·infosecurity-magazine.com·
Fraudsters Impersonate Clop Ransomware to Extort Businesses
TP-Link Router Botnet - Schneier on Security
TP-Link Router Botnet - Schneier on Security
There is a new botnet that is infecting TP-Link routers: The botnet can lead to command injection which then makes remote code execution (RCE) possible so that the malware can spread itself across the internet automatically. This high severity security flaw (tracked as CVE-2023-1389) has also been used to spread other malware families as far back as April 2023 when it was used in the Mirai botnet malware attacks. The flaw also linked to the Condi and AndroxGh0st malware attacks. […] Of the thousands of infected devices, the majority of them are concentrated in Brazil, Poland, the United Kingdom, Bulgaria and Turkey; with the botnet targeting manufacturing, medical/healthcare, services and technology organizations in the United States, Australia, China and Mexico...
·schneier.com·
TP-Link Router Botnet - Schneier on Security
Ransomware attack takes down health system network in Micronesia
Ransomware attack takes down health system network in Micronesia
One of the four states that make up the Pacific nation of Micronesia is battling against ransomware hackers who have forced all of the computers used by its government health agency offline.
·therecord.media·
Ransomware attack takes down health system network in Micronesia
Microsoft apologizes for removing VSCode extensions used by millions
Microsoft apologizes for removing VSCode extensions used by millions
Microsoft has reinstated the 'Material Theme - Free' and 'Material Theme Icons - Free' extensions on the Visual Studio Marketplace after finding that the obfuscated code they contained wasn't actually malicious.
·bleepingcomputer.com·
Microsoft apologizes for removing VSCode extensions used by millions
New SuperBlack ransomware exploits Fortinet auth bypass flaws
New SuperBlack ransomware exploits Fortinet auth bypass flaws
A new ransomware operator named 'Mora_001' is exploiting two Fortinet vulnerabilities to gain unauthorized access to firewall appliances and deploy a custom ransomware strain dubbed SuperBlack.
·bleepingcomputer.com·
New SuperBlack ransomware exploits Fortinet auth bypass flaws
Windows Notepad to get AI text summarization in Windows 11
Windows Notepad to get AI text summarization in Windows 11
Microsoft is now testing an AI-powered text summarization feature in Notepad and a Snipping Tool "Draw & Hold" feature that helps draw perfect shapes.
·bleepingcomputer.com·
Windows Notepad to get AI text summarization in Windows 11
Patch it up: Old vulnerabilities are everyone’s problems
Patch it up: Old vulnerabilities are everyone’s problems
Thorsten picks apart some headlines, highlights Talos’ report on an unknown attacker predominantly targeting Japan, and asks, “Where is the victim, and does it matter?”
·blog.talosintelligence.com·
Patch it up: Old vulnerabilities are everyone’s problems
Miniaudio and Adobe Acrobat Reader vulnerabilities
Miniaudio and Adobe Acrobat Reader vulnerabilities
Cisco Talos’ Vulnerability Discovery & Research team recently disclosed a Miniaudio and three Adobe vulnerabilities.   The vulnerabilities mentioned in this blog post have been patched by their respective vendors, all in adherence to Cisco’s third-party vulnerability disclosure policy.     For Snort coverage that can detect the exploitation of these vulnerabilities, download the latest rule sets from Snort.org, and our latest Vulnerability Advisories are always posted on Talos Intelligence’s w
·blog.talosintelligence.com·
Miniaudio and Adobe Acrobat Reader vulnerabilities
Chiffrement : le gouvernement subit un revers cinglant sur les backdoors
Chiffrement : le gouvernement subit un revers cinglant sur les backdoors
Des sénateurs ont pris position contre l'avis du gouvernement en faisant voter un amendement anti-backdoor (porte dérobée) pour protéger le chiffrement. La mesure a été prise alors qu'un débat a eu lieu à l'Assemblée nationale. Il a concerné une proposition de loi, dont les contours ont fait craindre à un
·numerama.com·
Chiffrement : le gouvernement subit un revers cinglant sur les backdoors
Microsoft says button to restore classic Outlook is broken
Microsoft says button to restore classic Outlook is broken
​Microsoft is investigating a known issue that causes the new Outlook email client to crash when users click the "Go to classic Outlook" button, which should help them switch back to the classic Outlook.
·bleepingcomputer.com·
Microsoft says button to restore classic Outlook is broken
Volt Typhoon Accessed US OT Network for Nearly a Year
Volt Typhoon Accessed US OT Network for Nearly a Year
Volt Typhoon's ten-month intrusion of Littleton Electric Light and Water Departments exposes vulnerabilities in the US electric grid
·infosecurity-magazine.com·
Volt Typhoon Accessed US OT Network for Nearly a Year