Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

29735 bookmarks
Custom sorting
New Secure Boot flaw lets attackers install bootkit malware, patch now
New Secure Boot flaw lets attackers install bootkit malware, patch now
Security researchers have disclosed a new Secure Boot bypass tracked as CVE-2025-3052 that can be used to turn off security on PCs and servers and install bootkit malware.
·bleepingcomputer.com·
New Secure Boot flaw lets attackers install bootkit malware, patch now
House committee sets CISA budget cut at $135M, not Trump’s $495M | CyberScoop
House committee sets CISA budget cut at $135M, not Trump’s $495M | CyberScoop
A House panel approved a fiscal 2026 funding bill Monday that would cut the Cybersecurity and Infrastructure Security Agency by $135 million from fiscal 2025, significantly less than the Trump administration’s proposed $495 million.
·cyberscoop.com·
House committee sets CISA budget cut at $135M, not Trump’s $495M | CyberScoop
Windows 10 KB5060533 cumulative update released with 7 changes, fixes
Windows 10 KB5060533 cumulative update released with 7 changes, fixes
Microsoft has released the KB5060533 cumulative update for Windows 10 22H2 and Windows 10 21H2, with seven fixes or changes, including bringing seconds back to the time shown in the Calendar flyout.
·bleepingcomputer.com·
Windows 10 KB5060533 cumulative update released with 7 changes, fixes
Windows 11 KB5060842 and KB5060999 cumulative updates released
Windows 11 KB5060842 and KB5060999 cumulative updates released
Microsoft has released Windows 11 KB5060842 and KB5060999 cumulative updates for versions 24H2 and 23H2 to fix security vulnerabilities and issues, including 66 flaws.
·bleepingcomputer.com·
Windows 11 KB5060842 and KB5060999 cumulative updates released
Microsoft June 2025 Patch Tuesday fixes exploited zero-day, 66 flaws
Microsoft June 2025 Patch Tuesday fixes exploited zero-day, 66 flaws
Today is Microsoft's June 2025 Patch Tuesday, which includes security updates for 66 flaws, including one actively exploited vulnerability and another that was publicly disclosed.
·bleepingcomputer.com·
Microsoft June 2025 Patch Tuesday fixes exploited zero-day, 66 flaws
Texas Dept. of Transportation breached, 300k crash records stolen
Texas Dept. of Transportation breached, 300k crash records stolen
The Texas Department of Transportation (TxDOT) is warning that it suffered a data breach after a threat actor downloaded 300,000 crash records from its database.
·bleepingcomputer.com·
Texas Dept. of Transportation breached, 300k crash records stolen
FIN6 hackers pose as job seekers to backdoor recruiters’ devices
FIN6 hackers pose as job seekers to backdoor recruiters’ devices
In a twist on typical hiring-related social engineering attacks, the FIN6 hacking group impersonates job seekers to target recruiters, using convincing resumes and phishing sites to deliver malware.
·bleepingcomputer.com·
FIN6 hackers pose as job seekers to backdoor recruiters’ devices
AI is a data-breach time bomb, reveals new report
AI is a data-breach time bomb, reveals new report
AI acts like Pac-Man—devouring sensitive data across clouds, apps, and copilots. Varonis analyzed 1,000 orgs and found 99% have exposed data AI can access, exposing them to data risks.
·bleepingcomputer.com·
AI is a data-breach time bomb, reveals new report
Massive Heroku outage impacts web platforms worldwide
Massive Heroku outage impacts web platforms worldwide
Heroku is suffering a widespread outage that has lasted over six hours, preventing developers from logging into the platform and breaking website functionality.
·bleepingcomputer.com·
Massive Heroku outage impacts web platforms worldwide
Hundreds of Russian devices hit by Rare Werewolf crypto-mining attacks
Hundreds of Russian devices hit by Rare Werewolf crypto-mining attacks
The campaign has affected hundreds of Russian users, particularly targeting industrial enterprises and engineering schools, with additional victims reported in Belarus and Kazakhstan.
·therecord.media·
Hundreds of Russian devices hit by Rare Werewolf crypto-mining attacks
Mastery Schools Notifies 37,031 of Major Data Breach
Mastery Schools Notifies 37,031 of Major Data Breach
A ransomware attack on Mastery Schools, Philadelphia, has compromised personal information of 37,031 individuals, exposing sensitive data
·infosecurity-magazine.com·
Mastery Schools Notifies 37,031 of Major Data Breach
Arnaques aux péages en flux libre : ces faux messages courent aprÚs vos données bancaires
Arnaques aux péages en flux libre : ces faux messages courent aprÚs vos données bancaires
La mise en service des pĂ©ages en flux libre a dĂ©clenchĂ© une vague d’arnaques ciblant les automobilistes français. De fausses campagnes de SMS et d’e-mails, imitant les messages officiels des sociĂ©tĂ©s d’autoroute, circulent actuellement et cherchent Ă  piĂ©ger les usagers. AprĂšs les fausses amendes Ă  rĂ©gler, c’est
·numerama.com·
Arnaques aux péages en flux libre : ces faux messages courent aprÚs vos données bancaires
Main distributor to Whole Foods hit by cyberattack
Main distributor to Whole Foods hit by cyberattack
UNFI, a grocery retailer and wholesaler, is working to resume full operations following “unauthorized activity” involving its IT systems.
·cybersecuritydive.com·
Main distributor to Whole Foods hit by cyberattack
OpenAI working to fix ChatGPT outage affecting users worldwide
OpenAI working to fix ChatGPT outage affecting users worldwide
OpenAI is working to fix an ongoing outage impacting ChatGPT users worldwide and preventing them from accessing the chatbot on the web or via mobile and desktop apps.
·bleepingcomputer.com·
OpenAI working to fix ChatGPT outage affecting users worldwide