Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

29805 bookmarks
Custom sorting
News alert: At RSAC 2025, SecAI unveils platform that fuses agentic AI, contextual threat intelligence
News alert: At RSAC 2025, SecAI unveils platform that fuses agentic AI, contextual threat intelligence
San Francisco, Calif., Apr 29, 2025, CyberNewswire -- SecAI, an AI-enriched threat intelligence company, made its official debut today at RSA Conference 2025 in San Francisco, marking the company’s first public appearance on the global cybersecurity stage. At the event, the SecAI team is showcasing the latest version of its platform to security professionals from
·lastwatchdog.com·
News alert: At RSAC 2025, SecAI unveils platform that fuses agentic AI, contextual threat intelligence
Grinex exchange suspected rebrand of sanctioned Garantex crypto firm
Grinex exchange suspected rebrand of sanctioned Garantex crypto firm
A new cryptocurrency exchange named Grinex is believed to be a rebrand of Garantex, a Russian cryptocurrency exchange whose domains were seized by the U.S. authorities and an admin arrested.
·bleepingcomputer.com·
Grinex exchange suspected rebrand of sanctioned Garantex crypto firm
Microsoft: Windows Server hotpatching to require subscription
Microsoft: Windows Server hotpatching to require subscription
Microsoft has announced that it will soon introduce paid subscriptions for Windows Server 2025 hotpatching, a service that enables admins to install security updates without restarting.
·bleepingcomputer.com·
Microsoft: Windows Server hotpatching to require subscription
France ties Russian APT28 hackers to 12 cyberattacks on French orgs
France ties Russian APT28 hackers to 12 cyberattacks on French orgs
Today, the French foreign ministry blamed the APT28 hacking group linked to Russia's military intelligence service (GRU) for targeting or breaching a dozen French entities over the last four years.
·bleepingcomputer.com·
France ties Russian APT28 hackers to 12 cyberattacks on French orgs
Hackers ramp up scans for leaked Git tokens and secrets
Hackers ramp up scans for leaked Git tokens and secrets
Threat actors are intensifying internet-wide scanning for Git configuration files that can reveal sensitive secrets and authentication tokens used to compromise cloud services and source code repositories.
·bleepingcomputer.com·
Hackers ramp up scans for leaked Git tokens and secrets
Apple 'AirBorne' flaws can lead to zero-click AirPlay RCE attacks
Apple 'AirBorne' flaws can lead to zero-click AirPlay RCE attacks
​A set of security vulnerabilities in Apple's AirPlay Protocol and AirPlay Software Development Kit (SDK) exposed unpatched third-party and Apple devices to various attacks, including remote code execution.
·bleepingcomputer.com·
Apple 'AirBorne' flaws can lead to zero-click AirPlay RCE attacks
SK Telecom cyberattack: Free SIM replacements for 25 million customers
SK Telecom cyberattack: Free SIM replacements for 25 million customers
South Korean mobile provider SK Telecom has announced free SIM card replacements to its 25 million mobile customers following a recent USIM data breach, but only 6 million cards are available through May.
·bleepingcomputer.com·
SK Telecom cyberattack: Free SIM replacements for 25 million customers
House passes legislation to criminalize nonconsensual deepfakes | CyberScoop
House passes legislation to criminalize nonconsensual deepfakes | CyberScoop
The Take It Down Act received rare levels of bipartisan support in the House and Senate, but critics fear enforcement could threaten First Amendment protections and unduly burden smaller companies and encrypted applications.
·cyberscoop.com·
House passes legislation to criminalize nonconsensual deepfakes | CyberScoop
Microsoft fixes Outlook paste, blank calendar rendering issues
Microsoft fixes Outlook paste, blank calendar rendering issues
Microsoft has confirmed several issues affecting Microsoft 365 customers using the "paste special' option and the calendar feature in the classic Outlook email client.
·bleepingcomputer.com·
Microsoft fixes Outlook paste, blank calendar rendering issues
New WordPress Malware Masquerades as Plugin
New WordPress Malware Masquerades as Plugin
New WordPress malware disguised as a plugin gives attackers persistent access and injects malicious code enabling administrative control
·infosecurity-magazine.com·
New WordPress Malware Masquerades as Plugin
RSAC Fireside Chat: Shift left, think forward — why MDR is emerging as cyber’s silver bullet
RSAC Fireside Chat: Shift left, think forward — why MDR is emerging as cyber’s silver bullet
With RSAC kicking off next week, the conversation is shifting—literally. Cybersecurity pros are rethinking how “shift left” applies not just to code, but to enterprise risk. Related: Making sense of threat detection In this Fireside Chat, I spoke with John DiLullo, CEO of Deepwatch, who makes a compelling case for how Managed Detection and Response
·lastwatchdog.com·
RSAC Fireside Chat: Shift left, think forward — why MDR is emerging as cyber’s silver bullet
Google: 97 zero-days exploited in 2024, over 50% in spyware attacks
Google: 97 zero-days exploited in 2024, over 50% in spyware attacks
Google's Threat Intelligence Group (GTIG) says attackers exploited 75 zero-day vulnerabilities in the wild last year, over 50% of which were linked to spyware attacks.
·bleepingcomputer.com·
Google: 97 zero-days exploited in 2024, over 50% in spyware attacks
CISA tags Broadcom Fabric OS, CommVault flaws as exploited in attacks
CISA tags Broadcom Fabric OS, CommVault flaws as exploited in attacks
The U.S. Cybersecurity & Infrastructure Security Agency (CISA) is warning of Broadcom Brocade Fabric OS, Commvault web servers, and Qualitia Active! Mail clients vulnerabilities that are actively exploited in attacks.
·bleepingcomputer.com·
CISA tags Broadcom Fabric OS, CommVault flaws as exploited in attacks