TGViewer
Channel Public Channel
๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News

๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News

@cibsecurity

๐Ÿ—ž The finest daily news on cybersecurity and privacy.

๐Ÿ”” Daily releases.

๐Ÿ’ป Is your online life secure?

๐Ÿ“ฉ lalilolalo.dev@gmail.com
Subscribers
28.5K
Photos
0
Videos
0
Links
91.1K

Showing posts older than #90593 ยท Back to latest

Older Posts 20 shown
Post #90592 531
๐Ÿ“ข Everything we know about the Boston Scientific cyber attack so far ๐Ÿ“ข

Details remain limited, but Boston Scientific says it's lost access to some systems and is having problems processing orders.

๐Ÿ“– Read more.

๐Ÿ”— Via "ITPro"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
IT Pro Everything we know about the Boston Scientific cyber attack so far Details remain limited, but Boston Scientific says it's lost access to some systems and is having problems processing orders
Post #90591 804
๐Ÿ•ต๏ธโ€โ™‚๏ธ Dark Caracal Adds New Malware to Cyber Espionage Arsenal ๐Ÿ•ต๏ธโ€โ™‚๏ธ

GoCaracal is a new modular malware framework that broadens Dark Caracal's capabilities to steal data and maintain access to victims.

๐Ÿ“– Read more.

๐Ÿ”— Via "Dark Reading"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Dark Reading Dark Caracal Adds New Malware to Cyber Espionage Arsenal GoCaracal is a new modular malware framework that broadens Dark Caracal's capabilities to steal data and maintain access to victims.
  • โค 2
Post #90590 747
๐Ÿ•ต๏ธโ€โ™‚๏ธ Red Flags That Expose Fake North Korean IT Workers ๐Ÿ•ต๏ธโ€โ™‚๏ธ

North Korean operatives posing as IT workers are improving their tactics, but researchers say there are still ways to spot them before they do damage.

๐Ÿ“– Read more.

๐Ÿ”— Via "Dark Reading"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Dark Reading Red Flags That Expose Fake North Korean IT Workers North Korean operatives posing as IT workers are improving their tactics, but researchers say there are still ways to spot them before they do damage.
Post #90589 553
๐ŸŒŠ How an AiTM Phishing Attack Cleared SPF, DKIM, and MFA ๐ŸŒŠ

Compare the 10 best AI SOC platforms that keep your own SIEM data lake. Evaluate data sovereignty, onprem options, and lockin. Explore the shortlist now. The post How an AiTM Phishing Attack Cleared SPF, DKIM, and MFA appeared first on UnderDefense.

๐Ÿ“– Read more.

๐Ÿ”— Via "UnderDefense"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
UnderDefense How an AiTM Phishing Attack Cleared SPF, DKIM, and MFA AiTM phishing: domain registered 12 min before delivery, SPF/DKIM passed, MFA relayed by live proxy. Full attack chain, business risk, and containment.
Post #90588 347
๐ŸŒŠ Arctic Wolf vs. Deepwatch for SIEM Management: Coverage, Pricing, and Data Ownership Compared ๐ŸŒŠ

Compare Arctic Wolf vs Deepwatch for SIEM management on coverage, pricing, and data ownership. Discover which fits your team before you sign. The post Arctic Wolf vs. Deepwatch for SIEM Management Coverage, Pricing, and Data Ownership Compared appeared first on UnderDefense.

๐Ÿ“– Read more.

๐Ÿ”— Via "UnderDefense"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
UnderDefense Arctic Wolf vs Deepwatch for SIEM Management: 8 Criteria That Decide Compare Arctic Wolf vs Deepwatch for SIEM management on coverage, pricing, and data ownership. Discover which fits your team before you sign.
Post #90586 210
๐Ÿ“” Linux Foundation Introduces TRACE Standard for AI Runtime Evidence ๐Ÿ“”

This new open standard offers hardwareattested runtime and compliance evidence for AI agents.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Infosecurity Magazine Linux Foundation Introduces TRACE Standard for AI Runtime Evidence This new open standard offers hardware-attested runtime and compliance evidence for AI agents
Post #90585 193
๐Ÿ“” Average Cyber Insurance Losses Increase Despite Fewer Claims ๐Ÿ“”

Chubb reported that growing privacy litigation has contributed to surging cyber claim costs in the US.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Infosecurity Magazine Average Cyber Insurance Losses Increase Despite Fewer Claims Chubb reported that growing privacy litigation has contributed to surging cyber claim costs in the US
Post #90582 160
๐Ÿ“” Tortoiseshell Expands Malware Toolset With New Backdoor, SSH Tunnel ๐Ÿ“”

GroupIB uncovered new Tortoiseshell infrastructure, including a backdoor and SSH tunneling tool.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Infosecurity Magazine Tortoiseshell Expands Toolset With New Backdoor, SSH Tunnel Group-IB uncovered new Tortoiseshell infrastructure, including a backdoor and SSH tunneling tool
Post #90581 156
๐Ÿ–‹๏ธ Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes ๐Ÿ–‹๏ธ

Cybersecurity researchers have disclosed details of a phishingasaservice PhaaS platform built to strip Apple's Activation Lock from stolen devices, using rented AI voice agents that call theft victims posing as Apple Support and ask for their device passcode. SOCRadar Threat Research Unit STRU said the platform, which it tracks as AnonyMousKIT, is creditmetered and drives lures across.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90580 203
๐Ÿ–‹๏ธ Critical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like Payload ๐Ÿ–‹๏ธ

The U.S. Cybersecurity and Infrastructure Security Agency CISA on Tuesday warned of active exploitation efforts targeting a recently patched critical security flaw impacting Gitea. The vulnerability in question is CVE202660004 CVSS score 9.8, a case of remote code execution that allows an attacker with ordinary write access to a repository to execute arbitrary shell commands as the.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90579 160
๐Ÿ–‹๏ธ New SLEEPWALKER Backdoor Waits for One Crafted Packet, Then Runs Its Own Bytecode ๐Ÿ–‹๏ธ

An independent malware researcher has documented a previously unreported Windows backdoor, dubbed SLEEPWALKER, that stays inert in memory until a specifically crafted network packet reaches the machine and then runs commands written in a 23instruction language of its own design. The sample is an unsigned 64bit Windows dynamiclink library DLL of 59,904 bytes, built to be sideloaded into.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90578 161
๐Ÿ–‹๏ธ INTERPOL Operation Jackal IV Arrests 58, Identifies 263 in Global Cyber Fraud Crackdown ๐Ÿ–‹๏ธ

An eightmonth INTERPOL operation targeting West African organized crime groups has led to arrests of 58 people and the identification of 263 suspects. "The operation, which brought together 22 countries from six continents, is a response to the escalating global threat posed by West African criminal networks such as the Black Axe and other similar groups," INTERPOL said. "These groups are.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90577 168
๐Ÿ–‹๏ธ OpenAI Bans Russian ChatGPT Accounts Used to Run Influence Operation ๐Ÿ–‹๏ธ

OpenAI on Tuesday said it banned a cluster of Russian ChatGPT accounts that used VPNs to bypass access restrictions and run an influence operation, which relied on its artificial intelligence AI tool to generate social media posts and comments that were shared on Substack, Telegram, X, Facebook and LinkedIn. The accounts "were being used to promote the International Burke Institute IBI, a.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90576 175
๐Ÿ–‹๏ธ Claude Opus 4.6 Bypasses Gym Booking Limit, Cancels Other Users' Reservations in Tests ๐Ÿ–‹๏ธ

Aikido Security has published research that recreates the Australian gymbooking incident in a synthetic environment, finding that Claude Opus 4.6, running on the OpenClaw agent harness, exploited a clientsideonly booking restriction in 9 of 10 runs. The original incident was first reported by ABC News on August 10, based on chat logs and screenshots the user supplied. He had asked an.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90575 246
๐Ÿ–‹๏ธ Imagine the SOC Without a Queue: From Alert Backlog to AI Hypothesis Engine ๐Ÿ–‹๏ธ

The SOC we've always known was built around a model that guarantees most of the alert queue will never receive analyst review. There's never time. In a traditional SOC, the typical progression follows a wellknown pattern an alert arrives a detection engine assigns a severity score. The issue then waits for a human to decide if it should escalate to an investigation. Given the volume of.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
  • โค 1
Post #90574 169
๐Ÿ–‹๏ธ Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code ๐Ÿ–‹๏ธ

The CERT Coordination Center CERTCC has disclosed two unpatched vulnerabilities in Kaltura's HTML5 video player library that allow a remote, unauthenticated attacker to read arbitrary files from a server and execute code on it. The flaws, tracked as CVE202619913 and CVE202619912, both stem from the same unsafe deserialization in the mwEmbedLoader.php endpoint of the mwEmbed player.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90573 172
๐Ÿ–‹๏ธ CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing ๐Ÿ–‹๏ธ

The U.S. Cybersecurity and Infrastructure Security Agency CISA has published the results of two red team assessments it conducted simultaneously against two critical infrastructure organizations, using what it described as similar tradecraft while recording sharply different defensive outcomes. Both organizations were fully compromised at the domain level, and in both, the red team also.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Older posts โ†’
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook โ†’Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 โ†’