Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

31742 bookmarks
Custom sorting
Unmasking the new XorDDoS controller and infrastructure
Unmasking the new XorDDoS controller and infrastructure
Cisco Talos observed the ongoing global spread of the XorDDoS malware, predominantly targeting the United States, with evidence suggesting Chinese-speaking operators are using sophisticated tools to orchestrate widespread attacks.
·blog.talosintelligence.com·
Unmasking the new XorDDoS controller and infrastructure
Identity Attacks Now Comprise a Third of Intrusions
Identity Attacks Now Comprise a Third of Intrusions
IBM warns of infostealer surge as attackers automate credential theft and adopt AI to generate highly convincing phishing emails en masse
·infosecurity-magazine.com·
Identity Attacks Now Comprise a Third of Intrusions
CISA tags SonicWall VPN flaw as actively exploited in attacks
CISA tags SonicWall VPN flaw as actively exploited in attacks
On Wednesday, CISA warned federal agencies to secure their SonicWall Secure Mobile Access (SMA) 100 series appliances against attacks exploiting a high-severity remote code execution vulnerability.
·bleepingcomputer.com·
CISA tags SonicWall VPN flaw as actively exploited in attacks
Hi, robot: Half of all internet traffic now automated
Hi, robot: Half of all internet traffic now automated
Bots now account for half of all internet traffic, according to a new study that shows how non-human activity has grown online.
·malwarebytes.com·
Hi, robot: Half of all internet traffic now automated
CISA warns of potential data breaches caused by legacy Oracle Cloud leak
CISA warns of potential data breaches caused by legacy Oracle Cloud leak
The Cybersecurity and Infrastructure Security Agency on Wednesday said that while the scope of the reported Oracle issue remains unconfirmed, it "presents potential risk to organizations and individuals."
·therecord.media·
CISA warns of potential data breaches caused by legacy Oracle Cloud leak
Over 16,000 Fortinet devices compromised with symlink backdoor
Over 16,000 Fortinet devices compromised with symlink backdoor
Over 16,000 internet-exposed Fortinet devices have been detected as compromised with a new symlink backdoor that allows read-only access to sensitive files on previously compromised devices.
·bleepingcomputer.com·
Over 16,000 Fortinet devices compromised with symlink backdoor
Apple fixes two zero-days exploited in targeted iPhone attacks
Apple fixes two zero-days exploited in targeted iPhone attacks
Apple released emergency security updates to patch two zero-day vulnerabilities that were used in an "extremely sophisticated attack" against specific targets' iPhones.
·bleepingcomputer.com·
Apple fixes two zero-days exploited in targeted iPhone attacks
More than 100,000 had information stolen from Hertz through Cleo file share tool
More than 100,000 had information stolen from Hertz through Cleo file share tool
Car rental giant Hertz has been notifying state regulators of a data breach that occurred through third-party file sharing software. Tens of thousands of people are affected, but the company hasn't specified a total number.
·therecord.media·
More than 100,000 had information stolen from Hertz through Cleo file share tool
CISA reverses course, extends MITRE CVE contract | CyberScoop
CISA reverses course, extends MITRE CVE contract | CyberScoop
While the last-minute extension averts an immediate lapse in support, rival organizations are being stood up to supplant the global vulnerability system.
·cyberscoop.com·
CISA reverses course, extends MITRE CVE contract | CyberScoop