TGViewer
Channel Public Channel
๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News

๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News

@cibsecurity

๐Ÿ—ž The finest daily news on cybersecurity and privacy.

๐Ÿ”” Daily releases.

๐Ÿ’ป Is your online life secure?

๐Ÿ“ฉ lalilolalo.dev@gmail.com
Subscribers
28.4K
Photos
0
Videos
0
Links
90.9K

Showing posts older than #90873 ยท Back to latest

Older Posts 20 shown
Post #90872 146
๐Ÿ“” Most Firms Unable to Recover Quickly from Ransomware ๐Ÿ“”

Fenix24 found only four of more than 800 clients came close to stated ransomware recovery targets of 2448 hours.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Infosecurity Magazine Most Firms Unable to Recover Quickly from Ransomware Fenix24 found only four of more than 800 clients came close to stated ransomware recovery targets of 24-48 hours
Post #90871 151
๐Ÿ“” Most Firms Unable to Recover Quickly from Ransomware ๐Ÿ“”

Fenix24 found only four of more than 800 clients came close to stated ransomware recovery targets of 2448 hours.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Infosecurity Magazine Most Firms Unable to Recover Quickly from Ransomware Fenix24 found only four of more than 800 clients came close to stated ransomware recovery targets of 24-48 hours
Post #90870 177
๐Ÿšจ UK and allies expose spyware used by Iranian state actors to target dissidents, activists and journalists ๐Ÿšจ

UK and allies provide advice to help organisations and individuals at risk detect and counter the threat from CHOSEN BRICK malware.

๐Ÿ“– Read more.

๐Ÿ”— Via "UK NCSC"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
National Cyber Security Centre UK and allies expose spyware used by Iranian state actors to target dissidents, activists and journalists UK and allies provide advice to help organisations and individuals at risk detect and counter the threat from CHOSEN BRICK malware.
Post #90869 129
๐Ÿšจ UK and allies expose spyware used by Iranian state actors to target dissidents, activists and journalists ๐Ÿšจ

UK and allies provide advice to help organisations and individuals at risk detect and counter the threat from CHOSEN BRICK malware.

๐Ÿ“– Read more.

๐Ÿ”— Via "UK NCSC"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
National Cyber Security Centre UK and allies expose spyware used by Iranian state actors to target dissidents, activists and journalists UK and allies provide advice to help organisations and individuals at risk detect and counter the threat from CHOSEN BRICK malware.
Post #90868 117
๐Ÿšจ Iranian cyber targeting of dissidents, activists and journalists ๐Ÿšจ

Advisory on CHOSEN BRICK malware, including technical analysis and advice to help individuals and organisations protect themselves.

๐Ÿ“– Read more.

๐Ÿ”— Via "UK NCSC"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
National Cyber Security Centre Iranian cyber targeting of dissidents, activists and journalists Advisory on CHOSEN BRICK malware, including technical analysis and advice to help individuals and organisations protect themselves.
Post #90867 130
๐Ÿšจ Iranian cyber targeting of dissidents, activists and journalists ๐Ÿšจ

Advisory on CHOSEN BRICK malware, including technical analysis and advice to help individuals and organisations protect themselves.

๐Ÿ“– Read more.

๐Ÿ”— Via "UK NCSC"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
National Cyber Security Centre Iranian cyber targeting of dissidents, activists and journalists Advisory on CHOSEN BRICK malware, including technical analysis and advice to help individuals and organisations protect themselves.
Post #90866 129
๐Ÿ–‹๏ธ LiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared Server ๐Ÿ–‹๏ธ

A critical vulnerability in LiteSpeed Web Server Enterprise could let a lowprivilege website user gain root access on a sharedhosting server, cPanel warned in an advisory published on September 14. On such servers, many customers' sites run on a single machine, and an attacker with one of those hosting accounts could exploit the flaw to access or alter other sites and the server itself,.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90865 131
๐Ÿ–‹๏ธ Mass-Scanning Campaign Exploits Vite Flaw to Extract Cloud Credentials From Exposed Dev Servers ๐Ÿ–‹๏ธ

Cybersecurity researchers have disclosed details of a massscanning campaign that has targeted Vite deployments siphon sensitive data. The first is an automated effort aimed at internetexposed Vite development servers that's designed to steal cloud credentials, configurations from Amazon Web Services AWS and Microsoft Azure instances, and infrastructure state files, per F5 Labs. The.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90864 134
๐Ÿ–‹๏ธ Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point ๐Ÿ–‹๏ธ

Introduction Security teams have gotten pretty good at testing against what can hurt them. Can this EDR agent catch this payload? Will my organization fail the phishing simulation? Does this SIEM rule fire on this particular technique? And, in more mature organizations, this testing happens continuously rather than as a oneoff exercise. But no matter how much you validate against these.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90863 200
๐Ÿ–‹๏ธ Human Attacker Exploits Marimo RCE, Reaches SSH Bastion in Eight Seconds ๐Ÿ–‹๏ธ

With artificial intelligence AI shrinking the window between vulnerability discovery and exploitation and lowering the barrier to entry for bad actors, new findings from Sysdig show that skilled human operators can move just as swiftly after gaining initial access. In one instance highlighted by the cloud security company, the threat actor pivoted from a vulnerable Marimo notebook to an SSH.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90862 189
๐Ÿ“ข Two-thirds of cyber threats still require manual resolution ๐Ÿ“ข

Security teams are spending most of their time on reactive alert triage and manual data gathering, with little left over for proactive threat hunting.

๐Ÿ“– Read more.

๐Ÿ”— Via "ITPro"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
IT Pro Two-thirds of cyber threats still require manual resolution Security teams are spending most of their time on reactive alert triage and manual data gathering, with little left over for proactive threat hunting
Post #90860 244
๐Ÿ“ข Microsoft Patch Tuesday inadvertently takes down copy and paste in Excel โ€“ and there's no way to fix it yet ๐Ÿ“ข

The bug in release KB5002914 affects Excel 2016, 2019, 2021, and 2024.

๐Ÿ“– Read more.

๐Ÿ”— Via "ITPro"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
IT Pro Microsoft Patch Tuesday inadvertently takes down copy and paste in Excel โ€“ and there's no way to fix it yet The bug in release KB5002914 affects Excel 2016, 2019, 2021, and 2024
  • ๐Ÿ‘ 1
Post #90859 288
๐Ÿ“ข Microsoft Patch Tuesday inadvertently takes down copy and paste in Excel โ€“ and there's no way to fix it yet ๐Ÿ“ข

The bug in release KB5002914 affects Excel 2016, 2019, 2021, and 2024.

๐Ÿ“– Read more.

๐Ÿ”— Via "ITPro"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
IT Pro Microsoft Patch Tuesday inadvertently takes down copy and paste in Excel โ€“ and there's no way to fix it yet The bug in release KB5002914 affects Excel 2016, 2019, 2021, and 2024
Post #90858 336
๐Ÿ“ข Microsoft Patch Tuesday inadvertently takes down copy and paste in Excel โ€“ and there's no way to fix it yet ๐Ÿ“ข

The bug in release KB5002914 affects Excel 2016, 2019, 2021, and 2024.

๐Ÿ“– Read more.

๐Ÿ”— Via "ITPro"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
IT Pro Microsoft Patch Tuesday inadvertently takes down copy and paste in Excel โ€“ and there's no way to fix it yet The bug in release KB5002914 affects Excel 2016, 2019, 2021, and 2024
Post #90857 505
๐Ÿ–‹๏ธ China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE ๐Ÿ–‹๏ธ

A Chinese threat actor has been attributed to a spearphishing campaign that exploits recently patched security flaws in Google Chrome and Microsoft Windows to deliver a malicious JavaScript backdoor called GRIMWEDGE. Volexity, which is tracking the threat cluster under the moniker UTA0560, said the activity targeted multiple nongovernmental organizations NGOs on September 1, 2026. "The.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90856 418
๐Ÿ–‹๏ธ China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE ๐Ÿ–‹๏ธ

A Chinese threat actor has been attributed to a spearphishing campaign that exploits recently patched security flaws in Google Chrome and Microsoft Windows to deliver a malicious JavaScript backdoor called GRIMWEDGE. Volexity, which is tracking the threat cluster under the moniker UTA0560, said the activity targeted multiple nongovernmental organizations NGOs on September 1, 2026. "The.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90855 334
๐Ÿ–‹๏ธ Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution ๐Ÿ–‹๏ธ

Cisco has warned that a new critical vulnerability impacting AsyncOS Software for Cisco Secure Email Gateway has come under active exploitation in the wild. The vulnerability, tracked as CVE202676461, carries a CVSS score of 9.8 out of a maximum of 10.0. It has been described as a case of insufficient validation in the email parsing logic that could allow an unauthenticated, remote attacker.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90854 326
๐Ÿ–‹๏ธ Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution ๐Ÿ–‹๏ธ

Cisco has warned that a new critical vulnerability impacting AsyncOS Software for Cisco Secure Email Gateway has come under active exploitation in the wild. The vulnerability, tracked as CVE202676461, carries a CVSS score of 9.8 out of a maximum of 10.0. It has been described as a case of insufficient validation in the email parsing logic that could allow an unauthenticated, remote attacker.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Older posts โ†’
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook โ†’Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 โ†’