Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

29804 bookmarks
Custom sorting
Instagram 'BMO' ads use AI deepfakes to scam banking customers
Instagram 'BMO' ads use AI deepfakes to scam banking customers
Instagram ads impersonating financial institutions like Bank of Montreal (BMO) and EQ Bank (Equitable Bank) are being used to target Canadian consumers with phishing scams and investment fraud. Some ads use AI-powered deepfake videos in an attempt to collect your personal information, while others drive traffic to phishing pages.
·bleepingcomputer.com·
Instagram 'BMO' ads use AI deepfakes to scam banking customers
Des hackers pro-israéliens assurent avoir paralysé une des plus grandes banques d’Iran
Des hackers pro-israéliens assurent avoir paralysé une des plus grandes banques d’Iran
Un groupe de hackers, supposément lié à Israël, revendique une cyberattaque majeure contre la banque Sepah, institution clé du système financier iranien. Ils assurent avoir « détruit toutes les données » de la banque. Le groupe de hackers Gonjeshke Darande, également connu sous le nom de « Predatory Sparrow », a
·numerama.com·
Des hackers pro-israéliens assurent avoir paralysé une des plus grandes banques d’Iran
New Veeam RCE flaw lets domain users hack backup servers
New Veeam RCE flaw lets domain users hack backup servers
​Veeam has released security updates today to fix several Veeam Backup & Replication (VBR) flaws, including a critical remote code execution (RCE) vulnerability.
·bleepingcomputer.com·
New Veeam RCE flaw lets domain users hack backup servers
FTC reminds car dealers to protect customer data
FTC reminds car dealers to protect customer data
The commission described how recently updated federal regulations affect dealerships — and their vendors.
·cybersecuritydive.com·
FTC reminds car dealers to protect customer data
UK fines 23andMe for ‘profoundly damaging’ breach exposing genetics data
UK fines 23andMe for ‘profoundly damaging’ breach exposing genetics data
The UK Information Commissioner's Office (ICO) has fined genetic testing provider 23andMe £2.31 million ($3.12 million) over 'serious security failings' that led to a 'profoundly damaging' data breach in 2023.
·bleepingcomputer.com·
UK fines 23andMe for ‘profoundly damaging’ breach exposing genetics data
Sitecore CMS exploit chain starts with hardcoded 'b' password
Sitecore CMS exploit chain starts with hardcoded 'b' password
A chain of Sitecore Experience Platform (XP) vulnerabilities allows attackers to perform remote code execution (RCE) without authentication to breach and hijack servers.
·bleepingcomputer.com·
Sitecore CMS exploit chain starts with hardcoded 'b' password
Hacker steals 1 million Cock.li user records in webmail data breach
Hacker steals 1 million Cock.li user records in webmail data breach
Email hosting provider Cock.li has confirmed it suffered a data breach after threat actors exploited flaws in its now-retired Roundcube webmail platform to steal over a million user records.
·bleepingcomputer.com·
Hacker steals 1 million Cock.li user records in webmail data breach
Why Do I Have to Fill Out a CAIQ Before STAR Level 2? | CSA
Why Do I Have to Fill Out a CAIQ Before STAR Level 2? | CSA
Completing the CAIQ self-assessment is a prerequisite for pursuing CSA STAR Level 2. This requirement strengthens the overall assurance of cloud providers.
·cloudsecurityalliance.org·
Why Do I Have to Fill Out a CAIQ Before STAR Level 2? | CSA
How to automate IT ticket handling with AI and Tines
How to automate IT ticket handling with AI and Tines
Tired of drowning in IT tickets? This AI-powered workflow built on Tines auto-triages common issues like known bugs & password resets—saving time for your team and speeding up resolution. Learn more about Tines and get a free account now.
·bleepingcomputer.com·
How to automate IT ticket handling with AI and Tines
Federal cyber insurance backstop should be tied to expiring terrorism insurance law, report recommends | CyberScoop
Federal cyber insurance backstop should be tied to expiring terrorism insurance law, report recommends | CyberScoop
Congress should use renewal of an expiring terrorism insurance program to create a federal backstop for cybersecurity insurance, according to a report out Tuesday that tries to thread many difficult needles to bolster an industry that its author says isn’t developing fast enough. In an ideal world, cybersecurity insurance can be a valuable tool to […]
·cyberscoop.com·
Federal cyber insurance backstop should be tied to expiring terrorism insurance law, report recommends | CyberScoop
Taiwan Hit by Sophisticated Phishing Campaign
Taiwan Hit by Sophisticated Phishing Campaign
Phishing campaign targeting Taiwan has been identified, using tax-themed emails and malware like Winos and HoldingHands
·infosecurity-magazine.com·
Taiwan Hit by Sophisticated Phishing Campaign
Bourget : où en est le SCAF, le système de combat aérien du futur de l’Europe ? (photos)
Bourget : où en est le SCAF, le système de combat aérien du futur de l’Europe ? (photos)
La maquette impressionnante de l'UCAS est affichée en vedette lors du salon du Bourget 2025. Derrière ce drone de combat autonome se cache un projet militaire numérique européen à l'ambition inédite et parfois contrariée : le SCAF. Posté à l’entrée du hall 2C, le stand extérieur de Dassault Aviation est impossible à
·numerama.com·
Bourget : où en est le SCAF, le système de combat aérien du futur de l’Europe ? (photos)
Where AI Provides Value - Schneier on Security
Where AI Provides Value - Schneier on Security
If you’ve worried that AI might take your job, deprive you of your livelihood, or maybe even replace your role in society, it probably feels good to see the latest AI tools fail spectacularly. If AI recommends glue as a pizza topping, then you’re safe for another day. But the fact remains that AI already has definite advantages over even the most skilled humans, and knowing where these advantages arise—and where they don’t—will be key to adapting to the AI-infused workforce. AI will often not be as effective as a human doing the same job. It won’t always know more or be more accurate. And it definitely won’t always be fairer or more reliable. But it may still be used whenever it has an advantage over humans in one of four dimensions: speed, scale, scope and sophistication. Understanding these dimensions is the key to understanding AI-human replacement...
·schneier.com·
Where AI Provides Value - Schneier on Security