Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

29707 bookmarks
Custom sorting
More than $40 million stolen from GMX crypto platform
More than $40 million stolen from GMX crypto platform
Decentralized exchange GMX disabled trading after it “experienced an exploit." The heist involved more than $40 million in user funds.
·therecord.media·
More than $40 million stolen from GMX crypto platform
Microsoft expands Zero Trust workshop to cover network, SecOps, and more
Microsoft expands Zero Trust workshop to cover network, SecOps, and more
The Microsoft Zero Trust workshop has been expanded to cover all six pillars of Microsoft's Zero Trust model, providing a comprehensive guide for organizations to modernize their security posture.
·microsoft.com·
Microsoft expands Zero Trust workshop to cover network, SecOps, and more
CompTIA Security+ Cheat Sheet (SY0-601)
CompTIA Security+ Cheat Sheet (SY0-601)
Taking your cyber security skills up a level? Use our comprehensive cheat sheet to ace your CompTIA Security+ exam and kickstart your cyber security career.
·stationx.net·
CompTIA Security+ Cheat Sheet (SY0-601)
Scattered Spider Behind Major ESXi Ransomware Attacks | CSA
Scattered Spider Behind Major ESXi Ransomware Attacks | CSA
Scattered Spider (aka UNC3944, 0ktapus, & Muddled Libra) is one of the most dangerous threat clusters in operation. Their most damaging operations target ESXi.
·cloudsecurityalliance.org·
Scattered Spider Behind Major ESXi Ransomware Attacks | CSA
Qantas says cyberattack affected 5.7 million customers
Qantas says cyberattack affected 5.7 million customers
The incident follows a notorious hacker gang’s pivot to targeting transportation companies with its trademark social-engineering attacks.
·cybersecuritydive.com·
Qantas says cyberattack affected 5.7 million customers
Ingram Micro starts restoring systems after ransomware attack
Ingram Micro starts restoring systems after ransomware attack
Ingram Micro has begun restoring systems and business services after suffering a massive SafePay ransomware attack right before the July 4th holiday.
·bleepingcomputer.com·
Ingram Micro starts restoring systems after ransomware attack
Treasury sanctions North Korean over IT worker malware scheme
Treasury sanctions North Korean over IT worker malware scheme
The U.S. Department of the Treasury sanctioned cyber actor Song Kum Hyok for his association with North Korea's hacking group Andariel and for facilitating IT worker schemes that generated revenue for the Pyongyang regime.
·bleepingcomputer.com·
Treasury sanctions North Korean over IT worker malware scheme
Fake CNN and BBC sites used to push investment scams
Fake CNN and BBC sites used to push investment scams
Thousands of web pages falsely branded as popular news sites are conduits for fake cryptocurrency investment scams, researchers said.
·therecord.media·
Fake CNN and BBC sites used to push investment scams
New ServiceNow flaw lets attackers enumerate restricted data
New ServiceNow flaw lets attackers enumerate restricted data
A new vulnerability in ServiceNow, dubbed Count(er) Strike, allows low-privileged users to extract sensitive data from tables to which they should not have access.
·bleepingcomputer.com·
New ServiceNow flaw lets attackers enumerate restricted data
The MFA You Trust Is Lying to You – and Here's How Attackers Exploit It
The MFA You Trust Is Lying to You – and Here's How Attackers Exploit It
MFA Authenticator apps aren't cutting it anymore. Attackers are bypassing legacy MFA with fake sites and real-time phishing. Token Ring and BioStick stop them cold—with fingerprint-bound hardware. Learn more from Token.
·bleepingcomputer.com·
The MFA You Trust Is Lying to You – and Here's How Attackers Exploit It
Ransomware Attack Stops Nova Scotia Power Meter Readings
Ransomware Attack Stops Nova Scotia Power Meter Readings
Nova Scotia Power revealed that a ransomware attack has prevented meters from sending energy usage data to its systems, impacting billing
·infosecurity-magazine.com·
Ransomware Attack Stops Nova Scotia Power Meter Readings
EU Cybersecurity Compliance is a Competitive Advantage | CSA
EU Cybersecurity Compliance is a Competitive Advantage | CSA
The EU has taken a bold, proactive stance with one of the world’s most comprehensive regulatory frameworks for cybersecurity and data protection.
·cloudsecurityalliance.org·
EU Cybersecurity Compliance is a Competitive Advantage | CSA
Yet Another Strava Privacy Leak - Schneier on Security
Yet Another Strava Privacy Leak - Schneier on Security
This time it’s the Swedish prime minister’s bodyguards. (Last year, it was the US Secret Service and Emmanuel Macron’s bodyguards. in 2018, it was secret US military bases.) This is ridiculous. Why do people continue to make their data public?
·schneier.com·
Yet Another Strava Privacy Leak - Schneier on Security
Understanding Security Risks in AI-Generated Code | CSA
Understanding Security Risks in AI-Generated Code | CSA
AI coding assistants accelerate development, but they also introduce security risks. Learn how AI-generated code introduces risk and how to stay ahead.
·cloudsecurityalliance.org·
Understanding Security Risks in AI-Generated Code | CSA
Microsoft Patch Tuesday, July 2025 Edition
Microsoft Patch Tuesday, July 2025 Edition
Microsoft today released updates to fix at least 137 security vulnerabilities in its Windows operating systems and supported software. None of the weaknesses addressed this month are known to be actively exploited, but 14 of the flaws earned Microsoft's most-dire…
·krebsonsecurity.com·
Microsoft Patch Tuesday, July 2025 Edition