Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

29710 bookmarks
Custom sorting
Alleged Chinese hacker tied to Silk Typhoon arrested for cyberespionage
Alleged Chinese hacker tied to Silk Typhoon arrested for cyberespionage
A Chinese national was arrested in Milan, Italy, last week for allegedly being linked to the state-sponsored Silk Typhoon hacking group, which responsible for cyberattacks against American organizations and government agencies.
·bleepingcomputer.com·
Alleged Chinese hacker tied to Silk Typhoon arrested for cyberespionage
Public exploits released for CitrixBleed 2 NetScaler flaw, patch now
Public exploits released for CitrixBleed 2 NetScaler flaw, patch now
Researchers have released proof-of-concept (PoC) exploits for a critical Citrix NetScaler vulnerability, tracked as CVE-2025-5777 and dubbed CitrixBleed2, warning that the flaw is easily exploitable and can successfully steal user session tokens.
·bleepingcomputer.com·
Public exploits released for CitrixBleed 2 NetScaler flaw, patch now
Brazilian police arrest IT worker over $100 million cyber theft
Brazilian police arrest IT worker over $100 million cyber theft
Police in Brazil arrested an employee of C&M Software, who allegedly told them he had sold his login credentials to the hackers behind a massive theft via the PIX instant payment system.
·therecord.media·
Brazilian police arrest IT worker over $100 million cyber theft
Atomic macOS infostealer adds backdoor for persistent attacks
Atomic macOS infostealer adds backdoor for persistent attacks
Malware analyst discovered a new version of the Atomic macOS info-stealer (also known as 'AMOS') that comes with a backdoor, to attackers persistent access to compromised systems.
·bleepingcomputer.com·
Atomic macOS infostealer adds backdoor for persistent attacks
Beware of Bert: New ransomware group targets healthcare, tech firms
Beware of Bert: New ransomware group targets healthcare, tech firms
Organizations on multiple continents — particularly in the health and tech sectors — have been breached by a ransomware group calling itself Bert, according to researchers at Trend Micro.
·therecord.media·
Beware of Bert: New ransomware group targets healthcare, tech firms
'Batavia' Windows spyware campaign targets dozens of Russian orgs
'Batavia' Windows spyware campaign targets dozens of Russian orgs
A previously undocumented spyware called 'Batavia' has been targeting large industrial enterprises in Russia in a phishing email campaign that uses contract-related lures.
·bleepingcomputer.com·
'Batavia' Windows spyware campaign targets dozens of Russian orgs
Qantas is being extorted in recent data-theft cyberattack
Qantas is being extorted in recent data-theft cyberattack
Qantas has confirmed that it is now being extorted by threat actors following a cyberattack that potentially exposed the data for 6 million customers.
·bleepingcomputer.com·
Qantas is being extorted in recent data-theft cyberattack
Why Identity Automation Fails at 96% of Organizations | CSA
Why Identity Automation Fails at 96% of Organizations | CSA
When it comes to executing identity processes, 96% of organizations still rely on manual workflows. Automation is the exception rather than the standard.
·cloudsecurityalliance.org·
Why Identity Automation Fails at 96% of Organizations | CSA
Hackers abuse leaked Shellter red team tool to deploy infostealers
Hackers abuse leaked Shellter red team tool to deploy infostealers
Shellter Project, the vendor of a commercial AV/EDR evasion loader for penetration testing, confirmed that hackers used its Shellter Elite product in attacks after a customer leaked a copy of the software.
·bleepingcomputer.com·
Hackers abuse leaked Shellter red team tool to deploy infostealers
Ce nouveau scam « péage Ulys » piège les automobilistes sur la route des vacances
Ce nouveau scam « péage Ulys » piège les automobilistes sur la route des vacances
C'est l'heure des grands départs pour des milliers d'automobilistes français. Depuis la fin du mois de juin, le trafic sur les autoroutes françaises se densifie. C’est aussi le moment choisi par des groupes cybercriminels pour relancer une vague d’arnaques aux péages Ulys. Sur les 20 employés d'Humanoid présents dans
·numerama.com·
Ce nouveau scam « péage Ulys » piège les automobilistes sur la route des vacances
Ingram Micro piégé par des hackers : l’attaque qui secoue la tech mondiale
Ingram Micro piégé par des hackers : l’attaque qui secoue la tech mondiale
Le géant mondial de la distribution IT, Ingram Micro, est frappé depuis le 3 juillet 2025 par une attaque ransomware inédite. Les systèmes sont paralysés et l’ensemble de l'approvisionnement est perturbé. Derrière cette opération, le groupe de cybercriminels SafePay, qui a exploité une faille critique pour
·numerama.com·
Ingram Micro piégé par des hackers : l’attaque qui secoue la tech mondiale
6 Key Steps to ISO 42001 Certification Explained | CSA
6 Key Steps to ISO 42001 Certification Explained | CSA
Learn why you should get an ISO 42001 certification, who needs to comply with the standard, and what the certification process looks like.
·cloudsecurityalliance.org·
6 Key Steps to ISO 42001 Certification Explained | CSA