Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

31718 bookmarks
Custom sorting
Ransomware attack takes down health system network in Micronesia
Ransomware attack takes down health system network in Micronesia
One of the four states that make up the Pacific nation of Micronesia is battling against ransomware hackers who have forced all of the computers used by its government health agency offline.
·therecord.media·
Ransomware attack takes down health system network in Micronesia
Microsoft apologizes for removing VSCode extensions used by millions
Microsoft apologizes for removing VSCode extensions used by millions
Microsoft has reinstated the 'Material Theme - Free' and 'Material Theme Icons - Free' extensions on the Visual Studio Marketplace after finding that the obfuscated code they contained wasn't actually malicious.
·bleepingcomputer.com·
Microsoft apologizes for removing VSCode extensions used by millions
New SuperBlack ransomware exploits Fortinet auth bypass flaws
New SuperBlack ransomware exploits Fortinet auth bypass flaws
A new ransomware operator named 'Mora_001' is exploiting two Fortinet vulnerabilities to gain unauthorized access to firewall appliances and deploy a custom ransomware strain dubbed SuperBlack.
·bleepingcomputer.com·
New SuperBlack ransomware exploits Fortinet auth bypass flaws
Windows Notepad to get AI text summarization in Windows 11
Windows Notepad to get AI text summarization in Windows 11
Microsoft is now testing an AI-powered text summarization feature in Notepad and a Snipping Tool "Draw & Hold" feature that helps draw perfect shapes.
·bleepingcomputer.com·
Windows Notepad to get AI text summarization in Windows 11
Patch it up: Old vulnerabilities are everyone’s problems
Patch it up: Old vulnerabilities are everyone’s problems
Thorsten picks apart some headlines, highlights Talos’ report on an unknown attacker predominantly targeting Japan, and asks, “Where is the victim, and does it matter?”
·blog.talosintelligence.com·
Patch it up: Old vulnerabilities are everyone’s problems
Miniaudio and Adobe Acrobat Reader vulnerabilities
Miniaudio and Adobe Acrobat Reader vulnerabilities
Cisco Talos’ Vulnerability Discovery & Research team recently disclosed a Miniaudio and three Adobe vulnerabilities.   The vulnerabilities mentioned in this blog post have been patched by their respective vendors, all in adherence to Cisco’s third-party vulnerability disclosure policy.     For Snort coverage that can detect the exploitation of these vulnerabilities, download the latest rule sets from Snort.org, and our latest Vulnerability Advisories are always posted on Talos Intelligence’s w
·blog.talosintelligence.com·
Miniaudio and Adobe Acrobat Reader vulnerabilities
Chiffrement : le gouvernement subit un revers cinglant sur les backdoors
Chiffrement : le gouvernement subit un revers cinglant sur les backdoors
Des sénateurs ont pris position contre l'avis du gouvernement en faisant voter un amendement anti-backdoor (porte dérobée) pour protéger le chiffrement. La mesure a été prise alors qu'un débat a eu lieu à l'Assemblée nationale. Il a concerné une proposition de loi, dont les contours ont fait craindre à un
·numerama.com·
Chiffrement : le gouvernement subit un revers cinglant sur les backdoors
Microsoft says button to restore classic Outlook is broken
Microsoft says button to restore classic Outlook is broken
​Microsoft is investigating a known issue that causes the new Outlook email client to crash when users click the "Go to classic Outlook" button, which should help them switch back to the classic Outlook.
·bleepingcomputer.com·
Microsoft says button to restore classic Outlook is broken
Volt Typhoon Accessed US OT Network for Nearly a Year
Volt Typhoon Accessed US OT Network for Nearly a Year
Volt Typhoon's ten-month intrusion of Littleton Electric Light and Water Departments exposes vulnerabilities in the US electric grid
·infosecurity-magazine.com·
Volt Typhoon Accessed US OT Network for Nearly a Year
Juniper patches bug that let Chinese cyberspies backdoor routers
Juniper patches bug that let Chinese cyberspies backdoor routers
​Juniper Networks has released emergency security updates to patch a Junos OS vulnerability exploited by Chinese hackers to backdoor routers for stealthy access.
·bleepingcomputer.com·
Juniper patches bug that let Chinese cyberspies backdoor routers
GitLab patches critical authentication bypass vulnerabilities
GitLab patches critical authentication bypass vulnerabilities
GitLab released security updates for Community Edition (CE) and Enterprise Edition (EE), fixing nine vulnerabilities, among which two critical severity ruby-saml library authentication bypass flaws.
·bleepingcomputer.com·
GitLab patches critical authentication bypass vulnerabilities
Phishing campaign impersonates Booking .com, delivers a suite of credential-stealing malware
Phishing campaign impersonates Booking .com, delivers a suite of credential-stealing malware
Starting in December 2024, leading up to some of the busiest travel days, Microsoft Threat Intelligence identified a phishing campaign that impersonates online travel agency Booking.com and targets organizations in the hospitality industry. The campaign uses a social engineering technique called ClickFix to deliver multiple credential-stealing malware in order to conduct financial fraud and theft. […]
·microsoft.com·
Phishing campaign impersonates Booking .com, delivers a suite of credential-stealing malware
Le gouvernement se prend un retour de manivelle sur les backdoors et le chiffrement
Le gouvernement se prend un retour de manivelle sur les backdoors et le chiffrement
Des sénateurs ont pris position contre l'avis du gouvernement en faisant voter un amendement anti-backdoor (porte dérobée) pour protéger le chiffrement. La mesure a été prise alors qu'un débat a eu lieu à l'Assemblée nationale. Il a concerné une proposition de loi, dont les contours ont fait craindre à un
·numerama.com·
Le gouvernement se prend un retour de manivelle sur les backdoors et le chiffrement