Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

31742 bookmarks
Custom sorting
Malaysia PM says country rejected $10 million ransom demand after airport outages
Malaysia PM says country rejected $10 million ransom demand after airport outages
Computer outages at Malaysia’s Kuala Lumpur International Airport (KLIA) this weekend were attributed to a recent cyberattack, according to the country’s cybersecurity agency and aviation authority.
·therecord.media·
Malaysia PM says country rejected $10 million ransom demand after airport outages
New Windows zero-day leaks NTLM hashes, gets unofficial patch
New Windows zero-day leaks NTLM hashes, gets unofficial patch
Free unofficial patches are available for a new Windows zero-day vulnerability that can let remote attackers steal NTLM credentials by tricking targets into viewing malicious files in Windows Explorer.
·bleepingcomputer.com·
New Windows zero-day leaks NTLM hashes, gets unofficial patch
New Android Malware Uses .NET MAUI to Evade Detection
New Android Malware Uses .NET MAUI to Evade Detection
McAfee researchers have identified a new wave of Android malware campaigns leveraging .NET MAUI to steal sensitive user information through fake apps
·infosecurity-magazine.com·
New Android Malware Uses .NET MAUI to Evade Detection
Cybercriminals Use Atlantis AIO to Target 140+ Platforms
Cybercriminals Use Atlantis AIO to Target 140+ Platforms
Cybercriminals are increasingly leveraging Atlantis AIO, which automates credential stuffing attacks across more than 140 platforms
·infosecurity-magazine.com·
Cybercriminals Use Atlantis AIO to Target 140+ Platforms
EncryptHub linked to zero-day attacks targeting Windows systems
EncryptHub linked to zero-day attacks targeting Windows systems
A threat actor known as EncryptHub has been linked to Windows zero-day attacks exploiting a Microsoft Management Console vulnerability patched this month.
·bleepingcomputer.com·
EncryptHub linked to zero-day attacks targeting Windows systems
DeepSeek: Behind the Hype and Headlines | CSA
DeepSeek: Behind the Hype and Headlines | CSA
In Jan 2025, DeepSeek AI was an overnight sensation. But as with many overnight sensation stories, the reality is more complex. Learn the truth about DeepSeek.
·cloudsecurityalliance.org·
DeepSeek: Behind the Hype and Headlines | CSA
Browser-in-the-Browser attacks target CS2 players' Steam accounts
Browser-in-the-Browser attacks target CS2 players' Steam accounts
A new phishing campaign targets Counter-Strike 2 players utilizing Browser-in-the-Browser (BitB) attacks that display a realistic window that mimics Steam's login page.
·bleepingcomputer.com·
Browser-in-the-Browser attacks target CS2 players' Steam accounts
Zero Trust Makes Security Everyone's Responsibility | CSA
Zero Trust Makes Security Everyone's Responsibility | CSA
Zero Trust revolves around the idea that nothing can be trusted by default. You must acknowledge that everything in your organization plays a role in security.
·cloudsecurityalliance.org·
Zero Trust Makes Security Everyone's Responsibility | CSA
Abonnées de Disney+ : attention à ce faux mail de hacker imitant le service de streaming
Abonnées de Disney+ : attention à ce faux mail de hacker imitant le service de streaming
Des pirates tentent de dérober les données des clients de Disney+. Un faux mail du service de streaming ciblent les abonnées, les invitant à entrer leurs informations bancaires. Une nouvelle campagne de phishing cible les abonnés de la plateforme de streaming Disney+. Dans un courrier électronique reçu par la
·numerama.com·
Abonnées de Disney+ : attention à ce faux mail de hacker imitant le service de streaming
Forget the Corporate Ladder to Find Success | CSA
Forget the Corporate Ladder to Find Success | CSA
Today’s complex business landscape renders the “corporate ladder” metaphor useless. The modern journey is unpredictable, challenging, and deeply individual.
·cloudsecurityalliance.org·
Forget the Corporate Ladder to Find Success | CSA
Report on Paragon Spyware - Schneier on Security
Report on Paragon Spyware - Schneier on Security
Citizen Lab has a new report on Paragon’s spyware: Key Findings: Introducing Paragon Solutions. Paragon Solutions was founded in Israel in 2019 and sells spyware called Graphite. The company differentiates itself by claiming it has safeguards to prevent the kinds of spyware abuses that NSO Group and other vendors are notorious for. Infrastructure Analysis of Paragon Spyware. Based on a tip from a collaborator, we mapped out server infrastructure that we attribute to Paragon’s Graphite spyware tool. We identified a subset of suspected Paragon deployments, including in Australia, Canada, Cyprus, Denmark, Israel, and Singapore. ...
·schneier.com·
Report on Paragon Spyware - Schneier on Security