#  @SecurityAid Security Aid
Security Aid posts on X about microsoft, vmware, ai, cryptocurrency the most. They currently have [---] followers and [----] posts still getting attention that total [---] engagements in the last [--] hours.
### Engagements: [---] [#](/creator/twitter::1449014103637471232/interactions)

- [--] Week [---] +53%
- [--] Month [-----] -22%
- [--] Months [------] +34%
- [--] Year [------] +38%
### Mentions: [--] [#](/creator/twitter::1449014103637471232/posts_active)

- [--] Months [---] +21%
- [--] Year [---] +25%
### Followers: [---] [#](/creator/twitter::1449014103637471232/followers)

- [--] Week [---] +1.60%
- [--] Month [---] +5.90%
- [--] Months [---] +24%
- [--] Year [---] +172%
### CreatorRank: [---------] [#](/creator/twitter::1449014103637471232/influencer_rank)

### Social Influence
**Social category influence**
[technology brands](/list/technology-brands) [stocks](/list/stocks) [countries](/list/countries) [finance](/list/finance) [social networks](/list/social-networks) [automotive brands](/list/automotive-brands) [travel destinations](/list/travel-destinations) [cryptocurrencies](/list/cryptocurrencies) [currencies](/list/currencies) [ncaa football](/list/ncaa-football)
**Social topic influence**
[microsoft](/topic/microsoft), [vmware](/topic/vmware), [ai](/topic/ai), [cryptocurrency](/topic/cryptocurrency), [has been](/topic/has-been), [$googl](/topic/$googl), [crowdstrike](/topic/crowdstrike) #75, [google](/topic/google), [cybersecurity](/topic/cybersecurity), [open ai](/topic/open-ai)
**Top accounts mentioned or mentioned by**
[@sooyoon_eth](/creator/undefined)
**Top assets mentioned**
[Microsoft Corp. (MSFT)](/topic/microsoft) [Alphabet Inc Class A (GOOGL)](/topic/$googl) [Crowdstrike Holdings Inc (CRWD)](/topic/crowdstrike) [Cloudflare, Inc. (NET)](/topic/cloudflare) [Fortinet Inc (FTNT)](/topic/fortinet) [CyberConnect (CYBER)](/topic/cyber) [Zscaler Inc (ZS)](/topic/$zs) [IBM (IBM)](/topic/ibm) [Dell Technologies, Inc. (DELL)](/topic/dell) [April (APRIL)](/topic/april) [GrokCoin (GROKCOIN)](/topic/grok) [DUROV (DUROV)](/topic/durov) [FilesCoins Power Cu (FILECOIN)](/topic/files)
### Top Social Posts
Top posts by engagements in the last [--] hours
"Atomic Wallet hacks lead to over $35 million in crypto stolen The developers of Atomic Wallet are inve"
[X Link](https://x.com/SecurityAid/status/1666397524767252480) 2023-06-07T10:51Z [--] followers, [--] engagements
"New Windows [--] feature blocks NTLM-based attacks over SMB Microsoft added a new security feature to Windows [--] that lets admins block NTLM over SMB to prevent pass-the-hash NTLM relay or password-cracking attacks. .Read More BleepingComputer"
[X Link](https://x.com/SecurityAid/status/1749780710661963888) 2024-01-23T13:06Z [--] followers, [--] engagements
"MGM Resorts shuts down some systems because of a cybersecurity issue. A cybersecurity issue that affects availability looks like an extortion attempt but the victim is being unusually tight-lipped.Read More The CyberWire"
[X Link](https://x.com/SecurityAid/status/1750928270395101475) 2024-01-26T17:06Z [--] followers, [--] engagements
"Adobe warns of critical Acrobat and Reader zero-day exploited in attacks Adobe has released security updates to patch a zero-day vulnerability in Acrobat and Reader tagged as exploited in attacks. .Read More BleepingComputer"
[X Link](https://x.com/SecurityAid/status/1750958468964466838) 2024-01-26T19:06Z [--] followers, [--] engagements
"Cyber Attack at MGM Systems Forces IT Systems Shutdown In a recent development MGM Resorts a prominent hotel and casino giant has confirmed the presence of a cybersecurity issue responsible for an ongoing system outage that has affected its properti"
[X Link](https://x.com/SecurityAid/status/1751924837725937673) 2024-01-29T11:06Z [--] followers, [--] engagements
"MGM Resorts shuts down IT systems after cyberattack MGM Resorts International disclosed today that it is dealing with a cybersecurity issue that impacted some of its systems including its main website and online reservations. .Read More Bleepi. https://securityaid.co.uk/p=13906&feed_id=17696 https://securityaid.co.uk/p=13906&feed_id=17696"
[X Link](https://x.com/SecurityAid/status/1752257025042419717) 2024-01-30T09:06Z [--] followers, [--] engagements
"Powerful Ethnic Militia in Myanmar Repatriates [----] Chinese Suspected of Involvement in Cybercrime One of Myanmars biggest and most powerful ethnic minority militias arrested and repatriated more than [----] Chinese nationals allegedly involved in cri"
[X Link](https://x.com/SecurityAid/status/1753042199762128934) 2024-02-01T13:06Z [--] followers, [--] engagements
"Apple issues an emergency patch. Aerospace sector under attack. DPRK spearsphishes security researchers. Notes from the hybrid war including Starlinks judgments on jus in bello. Apple issues emergency patches. "Multiple nation-state actors" target th"
[X Link](https://x.com/SecurityAid/status/1753676376857596312) 2024-02-03T07:06Z [--] followers, [--] engagements
"Multiple APT Hackers Exploiting Fortinet & ManageEngine Vulnerability FortiOS SSL-VPN safeguards against data breaches while ManageEngine ServiceDesk Plus offers an integrated help desk and asset management for IT resources. At an Aeronautical Sector "
[X Link](https://x.com/SecurityAid/status/1753827370010542410) 2024-02-03T17:06Z [--] followers, [--] engagements
"Cisco Identity Services Engine Flaw Let Attacker Trigger DoS Condition Cisco addressed high-impact vulnerability CVE-2023-20243in the Cisco Identity Services Engine (ISE) allowing attackers to stop processing Radius packets. This vulnerability with "
[X Link](https://x.com/SecurityAid/status/1754159560409919835) 2024-02-04T15:06Z [--] followers, [--] engagements
"CISA Warning: Nation-State Hackers Exploit Fortinet and Zoho Vulnerabilities The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday warned that multiple nation-state actors are exploiting security flaws in Fortinet FortiOS SSL-VPN"
[X Link](https://x.com/SecurityAid/status/1754401152311996705) 2024-02-05T07:06Z [--] followers, [--] engagements
"Microsoft Paint in Windows [--] gets a background removal feature Microsoft is rolling out a new version of the Paint application on Windows [--] Insider builds that can remove the background from any picture with the click of a button. .Read More"
[X Link](https://x.com/SecurityAid/status/1754491748347257119) 2024-02-05T13:06Z [--] followers, [--] engagements
"CISA warns of critical Apache RocketMQ bug exploited in attacks The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added to its catalog of known exploited vulnerabilities (KEV) a critical-severity issue tracked as CVE-2023-33246 that "
[X Link](https://x.com/SecurityAid/status/1754521947537289574) 2024-02-05T15:06Z [--] followers, [--] engagements
"Identity attacks. Proton Mail vulnerability. Driving into a privacy pothole. Healthcare provider discloses effect of third-party data incident. Report: Security gaps allow for identity attacks. Proton Mail vulnerability allowed for email theft. Driving"
[X Link](https://x.com/SecurityAid/status/1754763541419077948) 2024-02-06T07:06Z [--] followers, [--] engagements
"Johnson & Johnson discloses IBM data breach impacting patients Johnson & Johnson Health Care Systems ("Janssen") has informed its CarePath customers that their sensitive information has been compromised in a third-party data breach involving IBM. "
[X Link](https://x.com/SecurityAid/status/1754944732948578492) 2024-02-06T19:06Z [--] followers, [--] engagements
"Cisco Patches Critical Vulnerability in BroadWorks Platform Cisco has released patches for CVE-2023-20238 a critical authentication bypass vulnerability in the BroadWorks Application Delivery Platform. The post Cisco Patches Critical Vulnerability in "
[X Link](https://x.com/SecurityAid/status/1754974936374903192) 2024-02-06T21:06Z [--] followers, [--] engagements
"Holiday Season Cyber Alert: Reflectiz Declares War on Magecart Reflectiz a cybersecurity company specializing in continuous web threat management offers an exclusive fully remote solution to battle Magecart web-skimming attacks a popular cyberattac"
[X Link](https://x.com/SecurityAid/status/1756635880637214940) 2024-02-11T11:06Z [--] followers, [--] engagements
"New Chae$ variant described. Smishing Triad. MinIO explot. Okta warns of social engineering. Notes from Russia's hybrid war. New variant of Chae$ malware described. "Smishing Triad" impersonates postal services. MinIO storage exploit reported. Okta soc"
[X Link](https://x.com/SecurityAid/status/1757028464836624465) 2024-02-12T13:06Z [--] followers, [--] engagements
"ASUS routers vulnerable to critical remote code execution flaws Three critical-severity remote code execution vulnerabilities impact ASUS RT-AX55 RT-AX56U_V2 and RT-AC86U routers potentially allowing threat actors to hijack devices if security updat"
[X Link](https://x.com/SecurityAid/status/1757058665431896532) 2024-02-12T15:06Z [--] followers, [--] engagements
"Kenya East Africa and America with African Intelligence Chief Wilson Boinett Brigadier General (Ret.) Wilson Boinett joins Andrew (Twitter; LinkedIn) to discuss Kenyan intelligence. Wilson is the former Director of Kenyas National Intelligence S"
[X Link](https://x.com/SecurityAid/status/1757390851716551034) 2024-02-13T13:06Z [--] followers, [--] engagements
"PoC Exploit Released for Critical VMware Aria's SSH Auth Bypass Vulnerability Proof-of-concept (PoC) exploit code has been made available for a recently disclosed and patched critical flaw impacting VMware Aria Operations for Networks (formerly vRealiz"
[X Link](https://x.com/SecurityAid/status/1758542188869222479) 2024-02-16T17:21Z [--] followers, [--] engagements
"Exploit Code Published for Critical-Severity VMware Security Defect Exploit code and root-cause analysis released by SinSinology documents the problem as a case where VMWare forgot to regenerate SSH keys. The post Exploit Code Published for Critical-"
[X Link](https://x.com/SecurityAid/status/1758900803190895055) 2024-02-17T17:06Z [--] followers, [--] engagements
"Exploit released for critical VMware SSH auth bypass vulnerability Proof-of-concept exploit code has been released for a critical SSH authentication bypass vulnerability in VMware's Aria Operations for Networks analysis tool (formerly known as vRealize"
[X Link](https://x.com/SecurityAid/status/1759112194736705914) 2024-02-18T07:06Z [--] followers, [--] engagements
"Microsoft retires Visual Studio for Mac support ends in a year Microsoft has announced it is retiring Visual Studio for Mac and that support for the latest version17.6will continue for another year until August [--] [----]. .Read More Bleepi"
[X Link](https://x.com/SecurityAid/status/1759232992172548437) 2024-02-18T15:06Z [--] followers, [--] engagements
"Golf gear giant Callaway data breach exposes info of [---] million Topgolf Callaway (Callaway) suffered a data breach at the start of August which exposed the sensitive personal and account data of more than a million customers. .Read More Bleep. https://securityaid.co.uk/p=13426&feed_id=18096 https://securityaid.co.uk/p=13426&feed_id=18096"
[X Link](https://x.com/SecurityAid/status/1759504780769030578) 2024-02-19T09:06Z [--] followers, [--] engagements
"Sourcegraph Discloses Data Breach Following Access Token Leak Sourcegraph says customer information was breached after an engineer accidentally leaked an admin access token. The post Sourcegraph Discloses Data Breach Following Access Token Leak appeare"
[X Link](https://x.com/SecurityAid/status/1759685974118818175) 2024-02-19T21:06Z [--] followers, [--] engagements
"Sourcegraph website breached using leaked admin access token AI-powered coding platform Sourcegraph revealed that its website was breached this week using a site-admin access token accidentally leaked online on July 14th. .Read More BleepingCom"
[X Link](https://x.com/SecurityAid/status/1759927569317532021) 2024-02-20T13:06Z [--] followers, [--] engagements
"North Korean hackers behind malicious VMConnect PyPI campaign North Korean state-sponsored hackers are behind the VMConnect campaign that uploaded to the PyPI (Python Package Index) repository malicious packages one of them mimicking the VMware vSpher"
[X Link](https://x.com/SecurityAid/status/1760048363683344657) 2024-02-20T21:06Z [--] followers, [--] engagements
"GRU hackers attack Ukrainian military with new Android malware Hackers working for the Main Directorate of the General Staff of the Armed Forces of the Russian Federation more commonly known as the GRU have been targeting Android devices in Ukraine w"
[X Link](https://x.com/SecurityAid/status/1760320153860919378) 2024-02-21T15:06Z [--] followers, [--] engagements
"Splunk IT Service Intelligence Injection Flaw Let Attacker Inject ANSI Codes in Log Files Splunk has been reported with a Unauthenticated Log injection vulnerability in the Splunk IT Service Intelligence (ITSI) product. This vulnerability exists in Spl"
[X Link](https://x.com/SecurityAid/status/1760350352413454765) 2024-02-21T17:06Z [--] followers, [--] engagements
"Compliance can't wait. Igor Volovich from Qmulos sits down with Dave to discuss how compliance cant wait for the government to find alignment on security and risk. Ben shares the story of a Federal Judge dismissing a lawsuit from the Republican Nation"
[X Link](https://x.com/SecurityAid/status/1760682541999440303) 2024-02-22T15:06Z [--] followers, [--] engagements
"Paramount discloses data breach following security incident American entertainment giant Paramount Global disclosed a data breach after its systems got hacked and attackers gained access to personally identifiable information (PII). .Read More "
[X Link](https://x.com/SecurityAid/status/1760773138596434027) 2024-02-22T21:06Z [--] followers, [--] engagements
"Windows [--] browser change: Europe applauds outrage everywhere else Microsoft will soon allow users in the European Union as well as from Iceland Liechtenstein and Norway to once again open all links in Windows using their default web browser rathe"
[X Link](https://x.com/SecurityAid/status/1760924135146897723) 2024-02-23T07:06Z [--] followers, [--] engagements
"WordPress migration add-on flaw could lead to data breaches All-in-One WP Migration a popular data migration plugin for WordPress sites that has [--] million active installations suffers from unauthenticated access token manipulation that could allow at"
[X Link](https://x.com/SecurityAid/status/1761075133572145581) 2024-02-23T17:06Z [--] followers, [--] engagements
"VMware Aria vulnerable to critical SSH authentication bypass flaw VMware Aria Operations for Networks (formerly vRealize Network Insight) is vulnerable to a critical severity authentication bypass flaw that could allow remote attackers to bypass SSH au"
[X Link](https://x.com/SecurityAid/status/1761135525241421913) 2024-02-23T21:06Z [--] followers, [--] engagements
"Multiple Flaws in VMware Aria Operations Let Attackers Bypass Authentication As per reports VMware has been reported with two critical vulnerabilities that could allow threat actors to perform an authentication bypass and gain arbitrary write access o"
[X Link](https://x.com/SecurityAid/status/1761709308331385107) 2024-02-25T11:06Z [--] followers, [--] engagements
"OpenAI Released ChatGPT Enterprise With SOC [--] Compliant & Data Encryption Several reports have indicated data leakage from ChatGPT ever since its release by the Microsoft-backed OpenAI in November [----]. Additionally threat actors have been abusing the"
[X Link](https://x.com/SecurityAid/status/1761739505868972125) 2024-02-25T13:06Z [--] followers, [--] engagements
"Critical Vulnerability Alert: VMware Aria Operations Networks at Risk from Remote Attacks VMware has released software updates to correct two security vulnerabilities in Aria Operations for Networks that could be potentially exploited to bypass authent"
[X Link](https://x.com/SecurityAid/status/1761799903422849522) 2024-02-25T17:06Z [--] followers, [--] engagements
"VMware Patches Major Security Flaws in Network Monitoring Product VWware patches critical flaws that allow hackers to bypass SSH authentication and gain access to the Aria Operations for Networks command line interface. The post VMware Patches Major Se"
[X Link](https://x.com/SecurityAid/status/1762192490491179243) 2024-02-26T19:06Z [--] followers, [--] engagements
"Chinese Hacking Group Exploits Barracuda Zero-Day to Target Government Military and Telecom A suspected Chinese-nexus hacking group exploited arecently disclosed zero-day flawin Barracuda Networks Email Security Gateway (ESG) appliances to breach g"
[X Link](https://x.com/SecurityAid/status/1762464282606711128) 2024-02-27T13:06Z [--] followers, [--] engagements
"How Hackers Abusing ChatGPT Features For Their Cybercriminal Activities Bypass Censorship Media and frequent innovative releases aggressively fuel the rapid industry rise of generative AI (Artificial Intelligence) ChatGPT. But besides its innovativ"
[X Link](https://x.com/SecurityAid/status/1762524682618634352) 2024-02-27T17:06Z [--] followers, [--] engagements
"Attacks on Citrix NetScaler systems linked to ransomware actor A threat actor believed to be tied to the FIN8 hacking group exploits the CVE-2023-3519 remote code execution flaw to compromise unpatched Citrix NetScaler systems in domain-wide attacks. "
[X Link](https://x.com/SecurityAid/status/1763128661824201134) 2024-02-29T09:06Z [--] followers, [--] engagements
"Update on the University of Minnesota breach. Pareto Phone data dumped by LockBit. English council suffers ransomware attack. FTX discloses breach. Update on the University of Minnesota breach. Pareto Phone data dumped by LockBit. English council suffe"
[X Link](https://x.com/SecurityAid/status/1764638610563756493) 2024-03-04T13:06Z [--] followers, [--] engagements
"Trends in the cybercriminal underworld. The prosecution of Lapsus$ and Tornado Cash. More developments in Russias hybrid war. Theres a new sophistication in BEC campaigns. Trends in brand impersonationcrooks still like to pretend theyre from Redmon"
[X Link](https://x.com/SecurityAid/status/1765393585707335802) 2024-03-06T15:06Z [--] followers, [--] engagements
"Chinese-backed APT Flax Typhoon Hacks Taiwan with Minimal Malware Footprint Microsoft warns that Chinese spies are hacking into Taiwanese organizations with minimal use of malware and by abusing legitimate software. The post Chinese-backed APT Flax "
[X Link](https://x.com/SecurityAid/status/1765453984951574596) 2024-03-06T19:06Z [--] followers, [--] engagements
"Tornado Cash Founders Charged in Billion-Dollar Crypto Laundering Scandal The U.S. Justice Department (DoJ) on Wednesdayunsealed an indictmentagainst two founders of the now-sanctioned Tornado Cash cryptocurrency mixer service charging them with lau"
[X Link](https://x.com/SecurityAid/status/1766182532184154569) 2024-03-08T19:21Z [--] followers, [--] engagements
"Hunting the hackers. Selena Larson and Tim Utzig discussing "Twitter Scammers Stole $1000 From My FriendSo I Hunted Them Down." Joe and Dave share a bit of follow up this week they discuss Hawaii fire scams and listener Steve writes in regarding so"
[X Link](https://x.com/SecurityAid/status/1766359953269284946) 2024-03-09T07:06Z [--] followers, [--] engagements
"Thoma Bravo completes acquisition of ForgeRock. SentinelOne may be exploring a sale. SpyCloud secures $110 million. Gamma acquires Satisnet. Grip Security raises $41 million in Series B round.Read More The CyberWire"
[X Link](https://x.com/SecurityAid/status/1766480750285627701) 2024-03-09T15:06Z [--] followers, [--] engagements
"US charges founders of Tornado Cash mixer used by Lazarus hackers The U.S. Justice Department charged two Tornado Cash founders with helping criminals including the notorious North Korean Lazarus hacking group launder over $1 billion worth of stolen "
[X Link](https://x.com/SecurityAid/status/1766722338295324877) 2024-03-10T07:06Z [--] followers, [--] engagements
"WinRAR zero-day exploited since April to hack trading accounts A WinRar zero-day vulnerability tracked as CVE-2023-38831 was actively exploited to install malware when clicking on harmless files in an archive allowing the hackers to breach online cryp"
[X Link](https://x.com/SecurityAid/status/1766843134757986646) 2024-03-10T15:06Z [--] followers, [--] engagements
"Nearly a third of young people preyed on by text pest delivery drivers Surely you should be able to order pizza without being pestered for sex or a date So how come so many young people are claiming that they are being hassled after ordering an onl"
[X Link](https://x.com/SecurityAid/status/1766933732462612507) 2024-03-10T21:06Z [--] followers, [--] engagements
"Solutions Spotlight: White House releases cybersecurity workforce and education strategy Solution Spotlight: White House release of its cybersecurity workforce and education strategy with Simone Petrella and Camille Stewart Gloster.Read More The Cy"
[X Link](https://x.com/SecurityAid/status/1767809504006037635) 2024-03-13T07:06Z [--] followers, [--] engagements
"New Carderbee APT Targeted Chinese Security Software in Supply Chain Attack A new APT group called Carderbee has been observed deploying the PlugX backdoor via a supply chain attack targeting organizations in Hong Kong. The post New Carderbee APT T"
[X Link](https://x.com/SecurityAid/status/1767869901425848648) 2024-03-13T11:06Z [--] followers, [--] engagements
"America [---] with Bill Britton of the California Cybersecurity Institute (CCI) Bill Britton joins Andrew Hammond in a discussion about cybersecurity and cyber awareness. Bill is the Director of the California Cybersecurity Institute and CIO at Cal P"
[X Link](https://x.com/SecurityAid/status/1767900101190484428) 2024-03-13T13:06Z [--] followers, [--] engagements
"Luke Vander Linden: With age comes knowledge. VP This week our guest is Luke Vander Linden Vice President of Membership & Marketing from RH-ISAC and host of the RH-ISAC podcast here at the CyberWire. Luke sits down to share his story all the way ba"
[X Link](https://x.com/SecurityAid/status/1769289253714845792) 2024-03-17T09:06Z [--] followers, [--] engagements
"Hacking Crew Breached the US Air Force Satellite In Orbit And Won $50000 This years Hack-A-Sat competition challenged teams to hack into an actual satellite in orbit. The US Air Force Moonlighter which was launched especially for the event was the "
[X Link](https://x.com/SecurityAid/status/1769651641853051024) 2024-03-18T09:06Z [--] followers, [--] engagements
"Interpol arrests [--] suspected cybercriminals for stealing $40 million An international law enforcement operation led by Interpol has led to the arrest of [--] suspected cybercriminals in an operation codenamed 'Africa Cyber Surge II' launched in April 2"
[X Link](https://x.com/SecurityAid/status/1770017805632479287) 2024-03-19T09:21Z [--] followers, [--] engagements
"Cisco Duo Device Health App Flaw Allows Directory Traversal Attacks The CryptoService function in the Cisco Duo Device Health Application for Windows has a vulnerability tracked as (CVE-2023-20229). This might allow a low-privileged attacker to carry o"
[X Link](https://x.com/SecurityAid/status/1770799202727051381) 2024-03-21T13:06Z [--] followers, [--] engagements
"Rapid7 Says ROI for Ransomware Remains High; Zero-Day Usage Expands A new report from Rapid7 says a ransomware gang like Cl0p would easily be able to afford a bevy of zero-day exploits for vulnerable enterprise software. The post Rapid7 Says ROI for R. https://securityaid.co.uk/p=12723&feed_id=18724 https://securityaid.co.uk/p=12723&feed_id=18724"
[X Link](https://x.com/SecurityAid/status/1770859607256174799) 2024-03-21T17:06Z [--] followers, [--] engagements
"CISA warns of critical Citrix ShareFile flaw exploited in the wild CISA is warning that a critical Citrix ShareFile secure file transfer vulnerability tracked as CVE-2023-24489 is being targeted by unknown actorsand has added the flaw to its catalog o"
[X Link](https://x.com/SecurityAid/status/1771493778781593799) 2024-03-23T11:06Z [--] followers, [--] engagements
"Check Point acquires Perimeter [--]. Thoma Bravo extends closing date for acquisition of ForgeRock. Osano raises $25 million in Series B round. Check Point acquires Perimeter [--]. Thoma Bravo extends closing date for acquisition of ForgeRock. Osano raises. https://securityaid.co.uk/p=12679&feed_id=18762 https://securityaid.co.uk/p=12679&feed_id=18762"
[X Link](https://x.com/SecurityAid/status/1771554176624984550) 2024-03-23T15:06Z [--] followers, [--] engagements
"Singapore on alert for potential electoral interference. US CFPB will regulate data brokers. CISA works toward guidance for cloud providers. Singapore is on alert for potential electoral interference. The US CFPB will regulate data brokers. CISA works "
[X Link](https://x.com/SecurityAid/status/1771584379577409709) 2024-03-23T17:06Z [--] followers, [--] engagements
"Hacked electronic sign declares Putin is a dickhead as Russian ruble slumps Someone clearly isn't very impressed with Vladimir Putin as the Russian economy continues to tank in the wake of sanctions.Read More Graham Cluley"
[X Link](https://x.com/SecurityAid/status/1771795768950604062) 2024-03-24T07:06Z [--] followers, [--] engagements
"Ivanti Patches Critical Vulnerability in Avalanche Enterprise MDM Solution Ivanti has patched critical- and high-severity vulnerabilities with the latest release of Avalanche its enterprise mobile device management solution. The post Ivanti Patches Cr"
[X Link](https://x.com/SecurityAid/status/1771886368152494207) 2024-03-24T13:06Z [--] followers, [--] engagements
"Ivanti Avalanche impacted by critical pre-auth stack buffer overflows Two stack-based buffer overflows collectively tracked as CVE-2023-32560 impact Ivanti Avalanche an enterprise mobility management (EMM) solution designed to manage monitor and sec"
[X Link](https://x.com/SecurityAid/status/1772339351503958164) 2024-03-25T19:06Z [--] followers, [--] engagements
"LinkedIn accounts hacked in widespread hijacking campaign LinkedIn is being targeted in a wave of account hacks resulting in many accounts being locked out for security reasons or ultimately hijacked by attackers. .Read More BleepingComputer"
[X Link](https://x.com/SecurityAid/status/1772373325706035655) 2024-03-25T21:21Z [--] followers, [--] engagements
"New CVE-2023-3519 scanner detects hacked Citrix ADC Gateway devices Mandiant has released a scanner to check if a Citrix NetScaler Application Delivery Controller (ADC) or NetScaler Gateway Appliance was compromised in widespread attacks exploiting th"
[X Link](https://x.com/SecurityAid/status/1772731937766932819) 2024-03-26T21:06Z [--] followers, [--] engagements
"CISO Conversations: CISOs in Cloud-based Services Discuss the Process of Leadership SecurityWeek talks to Billy Spears CISO at Teradata (a multi-cloud analytics provider) and Lea Kissner CISO at cloud security firm Lacework. The post CISO Conversati. https://securityaid.co.uk/p=12621&feed_id=18840 https://securityaid.co.uk/p=12621&feed_id=18840"
[X Link](https://x.com/SecurityAid/status/1772973530038059010) 2024-03-27T13:06Z [--] followers, [--] engagements
"Ongoing Xurum Attacks on E-commerce Sites Exploiting Critical Magento [--] Vulnerability E-commerce sites using Adobe's Magento [--] software are the target of an ongoing campaign that has been active since at least January [----]. The attacks dubbedXurumby. https://securityaid.co.uk/p=12574&feed_id=18888 https://securityaid.co.uk/p=12574&feed_id=18888"
[X Link](https://x.com/SecurityAid/status/1773819103611895940) 2024-03-29T21:06Z [--] followers, [--] engagements
"The fate and effects of a supply chain compromise. Cyberespionage: China Russia and North Korea. Lessons from a hybrid war. Major data breaches. CPU vulnerabilities. The fate and effects of a supply chain compromise. Cyberespionage: China Russia an. https://securityaid.co.uk/p=12484&feed_id=18939 https://securityaid.co.uk/p=12484&feed_id=18939"
[X Link](https://x.com/SecurityAid/status/1774785470225915979) 2024-04-01T13:06Z [--] followers, [--] engagements
"Microsoft .NET Core and Visual Studio Flaw Let hackers Launch Denial of Service Attack As per reports Microsoft .NET core and Visual Studio were found with a Denial of Service which can be exploited by threat actors. Microsoft has released patches to. https://securityaid.co.uk/p=12432&feed_id=18993 https://securityaid.co.uk/p=12432&feed_id=18993"
[X Link](https://x.com/SecurityAid/status/1775782036000686578) 2024-04-04T07:06Z [--] followers, [--] engagements
"Gafgyt malware exploits five-years-old flaw in EoL Zyxel router Fortinet has issued an alert warning that the Gafgyt botnet malware is actively trying to exploit a vulnerability in the end-of-life Zyxel P660HN-T1A router in thousands of daily attacks. . https://securityaid.co.uk/p=12407&feed_id=19002 https://securityaid.co.uk/p=12407&feed_id=19002"
[X Link](https://x.com/SecurityAid/status/1775906606451958091) 2024-04-04T15:21Z [--] followers, [--] engagements
"Dell Compellent hardcoded key exposes VMware vCenter admin creds An unfixed hardcoded encryption key flaw in Dell's Compellent Integration Tools for VMware (CITV) allows attackers to decrypt stored vCenter admin credentials and retrieve the cleartext p. https://securityaid.co.uk/p=12398&feed_id=19019 https://securityaid.co.uk/p=12398&feed_id=19019"
[X Link](https://x.com/SecurityAid/status/1776235020769787907) 2024-04-05T13:06Z [--] followers, [--] engagements
"CISA Warns Organizations of Exploited Vulnerability Affecting .NET Visual Studio CISA has added CVE-2023-38180 a zero-day vulnerability affecting .NET and Visual Studio to its Known Exploited Vulnerabilities Catalog. The post CISA Warns Organizatio. https://securityaid.co.uk/p=12390&feed_id=19041 https://securityaid.co.uk/p=12390&feed_id=19041"
[X Link](https://x.com/SecurityAid/status/1776627608500818224) 2024-04-06T15:06Z [--] followers, [--] engagements
"Smashing Security podcast #334: Acoustic attacks and the tears of a crypto rapper Razzlekhan the self-proclaimed Crocodile of Wall Street pleads guilty to the biggest crypto laundering scheme in history and just how safe are you typing while on a Z. https://securityaid.co.uk/p=12362&feed_id=19053 https://securityaid.co.uk/p=12362&feed_id=19053"
[X Link](https://x.com/SecurityAid/status/1776869201803633068) 2024-04-07T07:06Z [--] followers, [--] engagements
"Hackers use open source Merlin post-exploitation toolkit in attacks Ukraine is warning of a wave of attacks targeting state organizations using 'Merlin' an open-source post-exploitation and command and control framework. .Read More BleepingCom. https://securityaid.co.uk/p=12358&feed_id=19055 https://securityaid.co.uk/p=12358&feed_id=19055"
[X Link](https://x.com/SecurityAid/status/1776899399051870459) 2024-04-07T09:06Z [--] followers, [--] engagements
"Rhysida ransomware behind recent attacks on healthcare The Rhysida ransomware as a service (RaaS) operation that emerged in May [----] is gradually leaving the period of obscurity behind as a recent wave of attacks on healthcare organizations has forced. https://securityaid.co.uk/p=12352&feed_id=19063 https://securityaid.co.uk/p=12352&feed_id=19063"
[X Link](https://x.com/SecurityAid/status/1777020193887101036) 2024-04-07T17:06Z [--] followers, [--] engagements
"Microsoft Added GPT-4 and GPT-35-Turbo to businesses Azure AI Infrastructure Azure announced the global expansion of Azure OpenAI Service including GPT-4 and GPT-35-Turbo to its customers across the world. Azure recently embraced the latest AI techno. https://securityaid.co.uk/p=12349&feed_id=19073 https://securityaid.co.uk/p=12349&feed_id=19073"
[X Link](https://x.com/SecurityAid/status/1777231587660189727) 2024-04-08T07:06Z [--] followers, [--] engagements
"Sweet Security Emerges From Stealth With $12 Million Seed Funding and a Cloud Runtime Solution Israeli startup emerged from stealth with $12 million in Seed funding and launched a Cloud Runtime Security Suite. The post Sweet Security Emerges From Steal. https://securityaid.co.uk/p=12345&feed_id=19079 https://securityaid.co.uk/p=12345&feed_id=19079"
[X Link](https://x.com/SecurityAid/status/1777322183687070154) 2024-04-08T13:06Z [--] followers, [--] engagements
"Cloud Security Firm Kivera Raises $3.5 Million in Seed Funding Australian cybersecurity startup Kivera raised $3.5 million in seed funding from General Advance Round [--] Capital and angel investors. The post Cloud Security Firm Kivera Raises $3.5 Milli. https://securityaid.co.uk/p=12343&feed_id=19081 https://securityaid.co.uk/p=12343&feed_id=19081"
[X Link](https://x.com/SecurityAid/status/1777352383544070531) 2024-04-08T15:06Z [--] followers, [--] engagements
"CrowdStrike Debuts New Counter Adversary Operations Team to to Stop Modern Breaches On August [--] [----] Crowdstrike announced its new counter operations CrowdStrike Falcon Intelligence and the CrowdStrike Falcon OverWatch to detect and disrupt adv. https://securityaid.co.uk/p=12340&feed_id=19087 https://securityaid.co.uk/p=12340&feed_id=19087"
[X Link](https://x.com/SecurityAid/status/1777443049510985765) 2024-04-08T21:07Z [--] followers, [--] engagements
"Mentorship internships and apprenticeships in OT security. The Five Eyes outline the top exploited vulnerabilities. The Brunswick Corporation loses millions to cyberattack. Ransomware in the industrial space. The US Transportation Security Administra. https://securityaid.co.uk/p=12337&feed_id=19093 https://securityaid.co.uk/p=12337&feed_id=19093"
[X Link](https://x.com/SecurityAid/status/1777593976633131121) 2024-04-09T07:06Z [--] followers, [--] engagements
"Rapid7 Announces Layoffs Office Closings Under Restructuring Plan Restructuring plan will result in an 18% reduction in employee headcount and closing of some Rapid7 office locations. The post Rapid7 Announces Layoffs Office Closings Under Restructur. https://securityaid.co.uk/p=12326&feed_id=19107 https://securityaid.co.uk/p=12326&feed_id=19107"
[X Link](https://x.com/SecurityAid/status/1777805367654686796) 2024-04-09T21:06Z [--] followers, [--] engagements
"Microsoft Office update breaks actively exploited RCE attack chain Microsoft today released a defense-in-depth update for Microsoft Office that prevents exploitation of a remote code execution (RCE) vulnerability tracked as CVE-2023-36884 that threat a. https://securityaid.co.uk/p=12318&feed_id=19117 https://securityaid.co.uk/p=12318&feed_id=19117"
[X Link](https://x.com/SecurityAid/status/1778016763071877459) 2024-04-10T11:06Z [--] followers, [--] engagements
"Russian threat actor abuses Microsoft Teams chats. CrowdStrike's Threat Hunting Report. Cybersecurity and sports. Akamai looks at the current state of ransomware.Read More The CyberWire https://securityaid.co.uk/p=12313&feed_id=19119 https://securityaid.co.uk/p=12313&feed_id=19119"
[X Link](https://x.com/SecurityAid/status/1778046960923975773) 2024-04-10T13:06Z [--] followers, [--] engagements
"New Yashma Ransomware Variant Targets Multiple English-Speaking Countries An unknown threat actor is using a variant of the Yashma ransomware to target various entities in English-speaking countries Bulgaria China and Vietnam at least since June [--] . https://securityaid.co.uk/p=12290&feed_id=19161 https://securityaid.co.uk/p=12290&feed_id=19161"
[X Link](https://x.com/SecurityAid/status/1778801935434330188) 2024-04-12T15:06Z [--] followers, [--] engagements
"TikTok facing fines for violating childrens privacy The European Data Protection Board is expected to fine TikTok for violating the privacy of young children within the next four weeks. The European Data Protection Board said a binding decision has be. https://securityaid.co.uk/p=12273&feed_id=19175 https://securityaid.co.uk/p=12273&feed_id=19175"
[X Link](https://x.com/SecurityAid/status/1779073727549800478) 2024-04-13T09:06Z [--] followers, [--] engagements
"Pyongyangs new friendship with Moscow apparently only goes so far. Reptile rootkit in the wild. Cloudzy updates. Cl0ps torrents. And notes on cyber phases of Russias hybrid war. North Korean cyberespionage against a Russian aerospace firm. The Repti. https://securityaid.co.uk/p=12271&feed_id=19177 https://securityaid.co.uk/p=12271&feed_id=19177"
[X Link](https://x.com/SecurityAid/status/1779103924709900566) 2024-04-13T11:06Z [--] followers, [--] engagements
"New SkidMap Redis Malware Variant Targeting Vulnerable Redis Servers VulnerableRedis serviceshave been targeted by a "new improved dangerous" variant of a malware called SkidMap that's engineered to target a wide range of Linux distributions. "The . https://securityaid.co.uk/p=12243&feed_id=19215 https://securityaid.co.uk/p=12243&feed_id=19215"
[X Link](https://x.com/SecurityAid/status/1779798503201350087) 2024-04-15T09:06Z [--] followers, [--] engagements
"NYC Couple Pleads Guilty to Money Laundering in $3.6 Billion Bitfinex Hack A married couple from New York City has pleaded guilty to money laundering charges in connection with the [----] hack of cryptocurrency stock exchange Bitfinex resulting in the t. https://securityaid.co.uk/p=12126&feed_id=19281 https://securityaid.co.uk/p=12126&feed_id=19281"
[X Link](https://x.com/SecurityAid/status/1780976262363656216) 2024-04-18T15:06Z [--] followers, [--] engagements
"Fake VMware vConnector package on PyPI targets IT pros A malicious package that mimics the VMware vSphere connector module 'vConnector' was uploaded on the Python Package Index (PyPI) under the name 'VMConnect' targeting IT professionals. .Read. https://securityaid.co.uk/p=12125&feed_id=19293 https://securityaid.co.uk/p=12125&feed_id=19293"
[X Link](https://x.com/SecurityAid/status/1781217855737843902) 2024-04-19T07:06Z [--] followers, [--] engagements
"Major Cybersecurity Agencies Collaborate to Unveil 2022's Most Exploited Vulnerabilities A four-year-old critical security flaw impacting Fortinet FortiOS SSL has emerged as one of the most routinely and frequently exploited vulnerabilities in [----]. "I. https://securityaid.co.uk/p=12118&feed_id=19301 https://securityaid.co.uk/p=12118&feed_id=19301"
[X Link](https://x.com/SecurityAid/status/1781338651449868399) 2024-04-19T15:06Z [--] followers, [--] engagements
"Hackers Exploit Salesforce Email Zero-day Flaw in Facebook Targeted Phishing Attack Hackers exploited a zero-day vulnerability in the email services and SMTP servers of Salesforce. Malicious email traffic is often concealed within email gateway servic. https://securityaid.co.uk/p=12079&feed_id=19341 https://securityaid.co.uk/p=12079&feed_id=19341"
[X Link](https://x.com/SecurityAid/status/1782063425671078177) 2024-04-21T15:06Z [--] followers, [--] engagements
"Roll out the red carpet for cyber regulations. Valerie Abend Global Cyber Strategy Lead from Accenture sits down to discuss the Securities and Exchange Commissions recently announced cyber regulations. Ben shares the story of an interesting case conc. https://securityaid.co.uk/p=12064&feed_id=19357 https://securityaid.co.uk/p=12064&feed_id=19357"
[X Link](https://x.com/SecurityAid/status/1782365417731711274) 2024-04-22T11:06Z [--] followers, [--] engagements
"Resilience and the cyber workforce: a snapshot. Trends in private equity for cybersecurity startups. Nile secures $175 million in Series C round. Resilience and the cyber workforce: a snapshot. Trends in private equity for cybersecurity startups. Nile . https://securityaid.co.uk/p=12044&feed_id=19368 https://securityaid.co.uk/p=12044&feed_id=19368"
[X Link](https://x.com/SecurityAid/status/1782520186848837970) 2024-04-22T21:21Z [--] followers, [--] engagements
"Russian hackers target govt orgs in Microsoft Teams phishing attacks Microsoft says a hacking group tracked as APT29 and linked to Russia's Foreign Intelligence Service (SVR) targeted dozens of organizations worldwide including government agencies in. https://securityaid.co.uk/p=12045&feed_id=19373 https://securityaid.co.uk/p=12045&feed_id=19373"
[X Link](https://x.com/SecurityAid/status/1782667406625718568) 2024-04-23T07:06Z [--] followers, [--] engagements
"ControlLogix RCE exploit. Japans largest port disrupted by ransomware. Cl0p breaches Schneider Electric and Siemens Energy. Solar panel vulnerabilities. Threats and risks to electric vehicle charging stations. Massachusetts man charged with remotely s. https://securityaid.co.uk/p=12038&feed_id=19381 https://securityaid.co.uk/p=12038&feed_id=19381"
[X Link](https://x.com/SecurityAid/status/1782788200794141102) 2024-04-23T15:06Z [--] followers, [--] engagements
"Amazon's AWS SSM agent can be used as post-exploitation RAT malware Researchers have discovered a new post-exploitation technique in Amazon Web Services (AWS) that allows hackers to use the platform's System Manager (SSM) agent as an undetectable Remot. https://securityaid.co.uk/p=12040&feed_id=19385 https://securityaid.co.uk/p=12040&feed_id=19385"
[X Link](https://x.com/SecurityAid/status/1782848602114539946) 2024-04-23T19:06Z [--] followers, [--] engagements
"Phishers Exploit Salesforce's Email Services Zero-Day in Targeted Facebook Campaign A sophisticated Facebook phishing campaign has been observed exploiting a zero-day flaw in Salesforce's email services allowing threat actors to craft targeted phishin. https://securityaid.co.uk/p=12030&feed_id=19397 https://securityaid.co.uk/p=12030&feed_id=19397"
[X Link](https://x.com/SecurityAid/status/1783090193265819917) 2024-04-24T11:06Z [--] followers, [--] engagements
"Researchers Uncover AWS SSM Agent Misuse as a Covert Remote Access Trojan Cybersecurity researchers have discovered a new post-exploitation technique in Amazon Web Services (AWS) that allows the AWS Systems Manager Agent (SSM Agent) to be run as a remo. https://securityaid.co.uk/p=12027&feed_id=19413 https://securityaid.co.uk/p=12027&feed_id=19413"
[X Link](https://x.com/SecurityAid/status/1783392181824208919) 2024-04-25T07:06Z [--] followers, [--] engagements
"White House releases independent report in support of Section [---]. ONCD unveils plans for improving the cyber workforce. White House releases independent report in support of Section [---]. ONCD unveils plans for improving the cyber workforce.Read Mor. https://securityaid.co.uk/p=12012&feed_id=19435 https://securityaid.co.uk/p=12012&feed_id=19435"
[X Link](https://x.com/SecurityAid/status/1783784769861403081) 2024-04-26T09:06Z [--] followers, [--] engagements
"California investigates connected cars; Germany investigates WorldCoin. MOVEit breaches. Paying extortionists. Card data skimmed. California data privacy regulator investigates smart cars. WorldCoin receives scrutiny for collection of biometric data. T. https://securityaid.co.uk/p=12013&feed_id=19437 https://securityaid.co.uk/p=12013&feed_id=19437"
[X Link](https://x.com/SecurityAid/status/1783815010679996927) 2024-04-26T11:06Z [--] followers, [--] engagements
"C2-as-a-service. South Asian cyberespionage. Games targeted. Updates from Russia's hybrid war. OT IoT security trends. C2-as-a-service (and APTs are the customers). Cyberespionage activity by Indian APTs. Gamers under attack. StarLink limits Ukrainian . https://securityaid.co.uk/p=11967&feed_id=19453 https://securityaid.co.uk/p=11967&feed_id=19453"
[X Link](https://x.com/SecurityAid/status/1784116957286953438) 2024-04-27T07:06Z [--] followers, [--] engagements
"New NodeStealer Targeting Facebook Business Accounts and Crypto Wallets Cybersecurity researchers have unearthed a Python variant of a stealer malwareNodeStealerthat's equipped to fully take over Facebook business accounts as well as siphon cryptocur. https://securityaid.co.uk/p=11968&feed_id=19455 https://securityaid.co.uk/p=11968&feed_id=19455"
[X Link](https://x.com/SecurityAid/status/1784147156661657987) 2024-04-27T09:06Z [--] followers, [--] engagements
"Splunk SOAR Unauthenticated Log Injection Let attackers Execute Malicious Code Splunk has discovered a vulnerability that allows unauthenticated log injection which could enable malicious actors to run harmful code on the system. Splunk SOAR (Security. https://securityaid.co.uk/p=11960&feed_id=19473 https://securityaid.co.uk/p=11960&feed_id=19473"
[X Link](https://x.com/SecurityAid/status/1784479345894973496) 2024-04-28T07:06Z [--] followers, [--] engagements
"P2PInfect server botnet spreads using Redis replication feature Threat actors are actively targeting exposed instances of the Redis open-source data store with a peer-to-peer self-replicating worm with versions for both Windows and Linux that the malwa. https://securityaid.co.uk/p=11924&feed_id=19505 https://securityaid.co.uk/p=11924&feed_id=19505"
[X Link](https://x.com/SecurityAid/status/1785022927362044352) 2024-04-29T19:06Z [--] followers, [--] engagements
"New P2PInfect Worm Targets Redis Servers with Undocumented Breach Methods The P2PInfect peer-to-peer (P2) worm has been observed employing previously undocumented initial access methods to breach susceptible Redis servers and rope them into a botnet. ". https://securityaid.co.uk/p=11917&feed_id=19513 https://securityaid.co.uk/p=11917&feed_id=19513"
[X Link](https://x.com/SecurityAid/status/1785204122297282923) 2024-04-30T07:06Z [--] followers, [--] engagements
"Second Ivanti EPMM Zero-Day Vulnerability Exploited in Targeted Attacks Ivanti EPMM customers have been warned of CVE-2023-35081 a second zero-day vulnerability that has been exploited in targeted attacks. The post Second Ivanti EPMM Zero-Day Vulnerab. https://securityaid.co.uk/p=11906&feed_id=19523 https://securityaid.co.uk/p=11906&feed_id=19523"
[X Link](https://x.com/SecurityAid/status/1785355116565987469) 2024-04-30T17:06Z [--] followers, [--] engagements
"Microsoft fixes WSUS servers not pushing Windows [--] 22H2 updates Microsoft fixed a known issue impacting WSUS (Windows Server Update Services) servers upgraded to Windows Server [----] causing them not to push Windows [--] 22H2 updates to enterprise endpo. https://securityaid.co.uk/p=11903&feed_id=19528 https://securityaid.co.uk/p=11903&feed_id=19528"
[X Link](https://x.com/SecurityAid/status/1785419286846046315) 2024-04-30T21:21Z [---] followers, [--] engagements
"First principle strategies with CJ Moses. Rick Howard discusses cybersecurity first principle strategies with the CISO of AWS.Read More The CyberWire https://securityaid.co.uk/p=11901&feed_id=19535 https://securityaid.co.uk/p=11901&feed_id=19535"
[X Link](https://x.com/SecurityAid/status/1785596706995728850) 2024-05-01T09:06Z [--] followers, [--] engagements
"Microsoft Edge is getting a 'darker' dark mode theme Microsoft has quietly announced an enhancement to the Edge browser's dark mode making it even darker. .Read More BleepingComputer https://securityaid.co.uk/p=11878&feed_id=19539 https://securityaid.co.uk/p=11878&feed_id=19539"
[X Link](https://x.com/SecurityAid/status/1785657105929613789) 2024-05-01T13:06Z [--] followers, [--] engagements
"US hunts Chinese malware staged to interfere with US military operations. Chinese cyber operations move from espionage to sabotage. So far it's staging but US officials are concerned.Read More The CyberWire https://securityaid.co.uk/p=11871&feed_id=19547 https://securityaid.co.uk/p=11871&feed_id=19547"
[X Link](https://x.com/SecurityAid/status/1785777902929293680) 2024-05-01T21:06Z [--] followers, [--] engagements
"Linux version of Abyss Locker ransomware targets VMware ESXi servers The Abyss Locker operation is the latest to develop a Linux encryptor to target VMware's ESXi virtual machines platform in attacks on the enterprise. .Read More BleepingComputer https://securityaid.co.uk/p=11839&feed_id=19553 https://securityaid.co.uk/p=11839&feed_id=19553"
[X Link](https://x.com/SecurityAid/status/1785928895155314730) 2024-05-02T07:06Z [--] followers, [--] engagements
"Apple rejects new name 'X' for Twitter iOS app because. rules Mr. Musk may have successfully pushed Twitter's new name and logo 'X' and even made the vanity domain to the social media website but that's not to say. https://securityaid.co.uk/p=11834&feed_id=19557 http://x.com https://securityaid.co.uk/p=11834&feed_id=19557 http://x.com"
[X Link](https://x.com/SecurityAid/status/1785989296425460214) 2024-05-02T11:06Z [--] followers, [--] engagements
"The Week that Was: Cl0p claims to have accessed data from a third Big Four accounting firm. A malign AI tool: FraudGPT. Cl0p claims to have accessed data from a third Big Four accounting firm. A malign AI tool: FraudGPT. Report: Ransomware victims incr. https://securityaid.co.uk/p=11826&feed_id=19575 https://securityaid.co.uk/p=11826&feed_id=19575"
[X Link](https://x.com/SecurityAid/status/1786321486329925820) 2024-05-03T09:06Z [--] followers, [--] engagements
"White House Issues National Security Memorandum for Critical Infrastructure "value":" The White House has published a national security memorandum focusing on critical infrastructure security and resilience. The post White House Issues National Secur. https://securityaid.co.uk/p=29147&feed_id=19594 https://securityaid.co.uk/p=29147&feed_id=19594"
[X Link](https://x.com/SecurityAid/status/1786657446074683855) 2024-05-04T07:21Z [--] followers, [--] engagements
"Four Critical Vulnerabilities Expose HPE Aruba Devices to RCE Attacks "value":"HPE Aruba Networking (formerly Aruba Networks) has released security updates to address critical flaws impacting ArubaOS that could result in remote code execution (RCE) o. https://securityaid.co.uk/p=29140&feed_id=19603 https://securityaid.co.uk/p=29140&feed_id=19603"
[X Link](https://x.com/SecurityAid/status/1786804666983989399) 2024-05-04T17:06Z [--] followers, [--] engagements
"Police shuts down [--] fraud call centres arrests [--] suspects Law enforcement shut down [--] phone fraud call centers in Albania Bosnia and Herzegovina Kosovo and Lebanon behind thousands of scam calls daily. .Read More BleepingComputer https://securityaid.co.uk/p=29133&feed_id=19621 https://securityaid.co.uk/p=29133&feed_id=19621"
[X Link](https://x.com/SecurityAid/status/1787136856959647810) 2024-05-05T15:06Z [--] followers, [--] engagements
"APT42 impersonates journalists and event organizers. Threat actors abuse Microsoft Graph API for command-and-control. Dropbox discloses breach of digital signature platform.Read More The CyberWire https://securityaid.co.uk/p=29129&feed_id=19627 https://securityaid.co.uk/p=29129&feed_id=19627"
[X Link](https://x.com/SecurityAid/status/1787227452869050595) 2024-05-05T21:06Z [--] followers, [--] engagements
"LayerX Security Raises $24M for its Browser Security Platform Enabling Employees to Work Securely from Any Browser Anywhere "value":" LayerX pioneer of the LayerX Browser Security platform today announced $24 million in Series A funding led by Gl. https://securityaid.co.uk/p=29123&feed_id=19637 https://securityaid.co.uk/p=29123&feed_id=19637"
[X Link](https://x.com/SecurityAid/status/1787438848584102316) 2024-05-06T11:06Z [--] followers, [--] engagements
"Permira to Acquire Majority Stake in BioCatch at $1.3 Billion Valuation "value":" Permira has agreed to acquire a majority of BioCatch shares primarily from Bain Capital Tech Opportunities and Maverick Ventures. The post Permira to Acquire Majority . https://securityaid.co.uk/p=29192&feed_id=19693 https://securityaid.co.uk/p=29192&feed_id=19693"
[X Link](https://x.com/SecurityAid/status/1788103223171063951) 2024-05-08T07:06Z [--] followers, [--] engagements
"Akamai to Acquire API Security Startup Noname for $450 Million Akamai Technologies Inc. is set to acquire Noname Security a top API security vendor for $450 million signaling a major move to boost its API security capabilities. This acquisition mar. https://securityaid.co.uk/p=29290&feed_id=19697 https://securityaid.co.uk/p=29290&feed_id=19697"
[X Link](https://x.com/SecurityAid/status/1788163622998274326) 2024-05-08T11:06Z [--] followers, [--] engagements
"Desperate Taylor Swift fans defrauded by ticket scams When there are not nearly enough tickets for some concerts to accommodate all the fans that desperately want to be there it makes for ideal hunting grounds for scammers.Read More https://securityaid.co.uk/p=29318&feed_id=19713 https://securityaid.co.uk/p=29318&feed_id=19713"
[X Link](https://x.com/SecurityAid/status/1788465610982084956) 2024-05-09T07:06Z [--] followers, [--] engagements
"Brandywine Realty Trust Ransomware Attack: Services Disrupted Brandywine Realty Trust a significant U.S. real estate investment trust has confirmed a disruption to its operations due to a ransomware attack detected on May [--] [----]. The cyber incident . https://securityaid.co.uk/p=29349&feed_id=19743 https://securityaid.co.uk/p=29349&feed_id=19743"
[X Link](https://x.com/SecurityAid/status/1788978994970300867) 2024-05-10T17:06Z [--] followers, [--] engagements
"Alert Google Chrome Zero-day Exploited in the Wild Google has released an urgent update for its popular Chrome web browser. The update fixes a critical zero-day vulnerability that malicious attackers are actively exploiting. The vulnerability is consi. https://securityaid.co.uk/p=29355&feed_id=19761 https://securityaid.co.uk/p=29355&feed_id=19761"
[X Link](https://x.com/SecurityAid/status/1789250798385291621) 2024-05-11T11:06Z [--] followers, [--] engagements
"Dell API abused to steal [--] million customer records in data breach The threat actor behind the recent Dell data breach revealed they scraped information of [--] million customer records using an partner portal API they accessed as a fake company. .. https://securityaid.co.uk/p=29364&feed_id=19800 https://securityaid.co.uk/p=29364&feed_id=19800"
[X Link](https://x.com/SecurityAid/status/1789643370832277513) 2024-05-12T13:06Z [--] followers, [--] engagements
"Microsoft Deploys Generative AI for US Spies Plus: China is suspected in a hack targeting the UKs military the US Marines are testing gun-toting robotic dogs and Dell suffers a data breach impacting [--] million customers.Read More https://securityaid.co.uk/p=29406&feed_id=19825 https://securityaid.co.uk/p=29406&feed_id=19825"
[X Link](https://x.com/SecurityAid/status/1789794366308901271) 2024-05-12T23:06Z [--] followers, [---] engagements
"Notorious Hacker IntelBroker Claims that Europol has Suffered a Data Breach The European Unions law enforcement agency Europol has confirmed a security breach of its web portal but says no operational data was compromised. The notorious hacker group. https://securityaid.co.uk/p=29451&feed_id=19849 https://securityaid.co.uk/p=29451&feed_id=19849"
[X Link](https://x.com/SecurityAid/status/1789945364390269417) 2024-05-13T09:06Z [--] followers, [--] engagements
"Microsoft Deploys Generative AI for US Spies Plus: China is suspected in a hack targeting the UKs military the US Marines are testing gun-toting robotic dogs and Dell suffers a data breach impacting [--] million customers.Read More https://securityaid.co.uk/p=29406&feed_id=19865 https://securityaid.co.uk/p=29406&feed_id=19865"
[X Link](https://x.com/SecurityAid/status/1790126557572329687) 2024-05-13T21:06Z [--] followers, [--] engagements
"The $2.3 Billion Tornado Cash Case Is a Pivotal Moment for Crypto Privacy Tuesdays verdict in the trial of Alexey Pertsev a creator of crypto-privacy service Tornado Cash is the first in a string of cases that could make it much harder to skirt fina. https://securityaid.co.uk/p=29462&feed_id=19926 https://securityaid.co.uk/p=29462&feed_id=19926"
[X Link](https://x.com/SecurityAid/status/1790851333680943399) 2024-05-15T21:06Z [--] followers, [--] engagements
"Malicious Python Package Hides Sliver C2 Framework Within PNG File An attacker published a malicious package on PyPI named requests-darwin-lite masquerading as a variant of the popular requests library which contained a hidden Golang binary withi. https://securityaid.co.uk/p=29463&feed_id=19930 https://securityaid.co.uk/p=29463&feed_id=19930"
[X Link](https://x.com/SecurityAid/status/1790900403875258537) 2024-05-16T00:21Z [--] followers, [--] engagements
"Apple backports fix for RTKit iOS zero-day to older iPhones Apple has backported security patches released in March to older iPhones and iPads fixing an iOS Kernel zero-day tagged as exploited in attacks. .Read More https://securityaid.co.uk/p=29473&feed_id=19959 https://securityaid.co.uk/p=29473&feed_id=19959"
[X Link](https://x.com/SecurityAid/status/1791349615003848769) 2024-05-17T06:06Z [--] followers, [--] engagements
"OpenAI Releases GPT-4o Faster Model & Free For All ChatGPT Users OpenAI which is the leading artificial intelligence research lab recently announced its latest breakthrough in AI technology called GPT-4o. This newest and most advanced model represen. https://securityaid.co.uk/p=29474&feed_id=19962 https://securityaid.co.uk/p=29474&feed_id=19962"
[X Link](https://x.com/SecurityAid/status/1791394914216943898) 2024-05-17T09:06Z [--] followers, [--] engagements
"Microsoft to Mandate Multi-Factor Authentication for All Azure Users Microsoft has said that all Azure users will have to use multi-factor authentication (MFA) starting in July. This is a big step to make the cloud safer. This project is part of a lar. https://securityaid.co.uk/p=29554&feed_id=19980 https://securityaid.co.uk/p=29554&feed_id=19980"
[X Link](https://x.com/SecurityAid/status/1791666705036415238) 2024-05-18T03:06Z [--] followers, [--] engagements
"Kimsuky APT Deploying Linux Backdoor Gomir in South Korean Cyber Attacks TheKimsuky(aka Springtail) advanced persistent threat (APT) group which is linked to North Korea's Reconnaissance General Bureau (RGB) has been observed deploying a Linux vers. https://securityaid.co.uk/p=29557&feed_id=19989 https://securityaid.co.uk/p=29557&feed_id=19989"
[X Link](https://x.com/SecurityAid/status/1791802602692251719) 2024-05-18T12:06Z [--] followers, [--] engagements
"Nissan reveals ransomware attack exposed [-----] workers social security numbers Nissan North America has revealed that extortionists who demanded a ransom after breaking into its external VPN and disrupted systems last year also stole the social secur. https://securityaid.co.uk/p=29566&feed_id=20016 https://securityaid.co.uk/p=29566&feed_id=20016"
[X Link](https://x.com/SecurityAid/status/1792210287375859882) 2024-05-19T15:06Z [--] followers, [--] engagements
"Microsoft to start enforcing Azure multi-factor authentication in July Starting in July Microsoft will begin gradually enforcing multi-factor authentication (MFA) for all users signing into Azure to administer resources. .Read More https://securityaid.co.uk/p=29568&feed_id=20022 https://securityaid.co.uk/p=29568&feed_id=20022"
[X Link](https://x.com/SecurityAid/status/1792300882127618304) 2024-05-19T21:06Z [--] followers, [--] engagements
"Android malware Grandoreiro returns after police disruption The Android banking trojan "Grandoreiro" is spreading in a large-scale phishing campaignin over [--] countries targeting customeraccounts of roughly [----] banks. .Read More https://securityaid.co.uk/p=29571&feed_id=20031 https://securityaid.co.uk/p=29571&feed_id=20031"
[X Link](https://x.com/SecurityAid/status/1792436778600690035) 2024-05-20T06:06Z [--] followers, [--] engagements
"American Radio Relay League cyberattack takes Logbook of the World offline TheAmerican Radio Relay League (ARRL) warns it suffered a cyberattack which disrupted its IT systems and online operations including email and the Logbook of the World. .. https://securityaid.co.uk/p=29581&feed_id=20055 https://securityaid.co.uk/p=29581&feed_id=20055"
[X Link](https://x.com/SecurityAid/status/1792799166717972653) 2024-05-21T06:06Z [--] followers, [--] engagements
"PoC Released for JavaScript execution Vulnerability in PDF.js A critical vulnerability CVE-2024-4367 has been discovered in PDF.js a widely used JavaScript-based PDF viewer maintained by Mozilla. The issue affects a. https://securityaid.co.uk/p=29611&feed_id=20154 https://securityaid.co.uk/p=29611&feed_id=20154"
[X Link](https://x.com/SecurityAid/status/1794161894392996177) 2024-05-25T00:21Z [--] followers, [--] engagements
"GitHub warns of SAML auth bypass flaw in Enterprise Server GitHub has fixed amaximum severity (CVSS v4 score: 10.0) authentication bypass vulnerability tracked as CVE-2024-4986 whichimpacts GitHub Enterprise Server (GHES) instances using SAML single. https://securityaid.co.uk/p=29613&feed_id=20160 https://securityaid.co.uk/p=29613&feed_id=20160"
[X Link](https://x.com/SecurityAid/status/1794252492605202857) 2024-05-25T06:21Z [--] followers, [--] engagements
"Rockwell Automation warns admins to take ICS devices offline Rockwell Automation warned customers to disconnect all industrial control systems (ICSs) not designed for online exposure from the Internet due to increasing malicious activity worldwide. . https://securityaid.co.uk/p=29619&feed_id=20177 https://securityaid.co.uk/p=29619&feed_id=20177"
[X Link](https://x.com/SecurityAid/status/1794520508043518041) 2024-05-26T00:06Z [--] followers, [--] engagements
"Atlassian Bitbucket artifacts can leak plaintext auth secrets Threat actors were found breaching AWS accounts using authentication secrets leaked as plaintext in Atlassian Bitbucket artifact objects. .Read More https://securityaid.co.uk/p=29620&feed_id=20180 https://securityaid.co.uk/p=29620&feed_id=20180"
[X Link](https://x.com/SecurityAid/status/1794565808678474096) 2024-05-26T03:06Z [--] followers, [--] engagements
"GhostEngine mining attacks kill EDR security using vulnerable drivers A malicious crypto mining campaign codenamed 'REF4578' hasbeen discovereddeploying a malicious payload named GhostEngine that usesvulnerable drivers to turn off security products. https://securityaid.co.uk/p=29624&feed_id=20192 https://securityaid.co.uk/p=29624&feed_id=20192"
[X Link](https://x.com/SecurityAid/status/1794747002699284953) 2024-05-26T15:06Z [--] followers, [--] engagements
"Critical Unauthenticated RCE Vulnerability in Fortinet FortiSIEM: PoC Published A proof-of-concept (PoC) exploit has been released for a critical unauthenticated remote code execution vulnerability in Fortinet FortiSIEM tracked as CVE-2023-34992. Th. https://securityaid.co.uk/p=29626&feed_id=20198 https://securityaid.co.uk/p=29626&feed_id=20198"
[X Link](https://x.com/SecurityAid/status/1794837598730375573) 2024-05-26T21:06Z [--] followers, [--] engagements
"Rockwell Automation Warns Admin to Disconnect Devices From Internet Rockwell Automation has sent an urgent message to all of its customers because of rising geopolitical issues and hostile cyber activity worldwide. The company is asking that any device. https://securityaid.co.uk/p=29630&feed_id=20210 https://securityaid.co.uk/p=29630&feed_id=20210"
[X Link](https://x.com/SecurityAid/status/1795018794005328036) 2024-05-27T09:06Z [--] followers, [--] engagements
"Critical VMware Vulnerabilities Let Attackers Execute Code & Trigger DOS VMware a leading virtualization and cloud computing software provider has issued patches for several critical and important vulnerabilities affecting its ESXi Workstation Clou. https://securityaid.co.uk/p=29631&feed_id=20213 https://securityaid.co.uk/p=29631&feed_id=20213"
[X Link](https://x.com/SecurityAid/status/1795064090500428257) 2024-05-27T12:06Z [--] followers, [--] engagements
"PoC Exploit Released for Critical Git RCE Vulnerability A critical vulnerability in Git identified as CVE-2024-32002 has recently come to light posing significant risks to users of the widely used version control system. The vulnerability allows fo. https://securityaid.co.uk/p=29646&feed_id=20237 https://securityaid.co.uk/p=29646&feed_id=20237"
[X Link](https://x.com/SecurityAid/status/1795426479263625303) 2024-05-28T12:06Z [--] followers, [--] engagements
"Rockwell Advises Disconnecting Internet-Facing ICS Devices Amid Cyber Threats Rockwell Automation is urging its customers to disconnect all industrial control systems (ICSs) not meant to be connected to the public-facing internet to mitigate unauthoriz. https://securityaid.co.uk/p=29647&feed_id=20240 https://securityaid.co.uk/p=29647&feed_id=20240"
[X Link](https://x.com/SecurityAid/status/1795471776702415099) 2024-05-28T15:06Z [--] followers, [--] engagements
"State hackers turn to massive ORB proxy networks to evade detection Security researchersare warningthat China-linked state-backed hackersare increasingly relyingon vast proxy networks of virtual private servers and compromised connected devices for. https://securityaid.co.uk/p=29654&feed_id=20261 https://securityaid.co.uk/p=29654&feed_id=20261"
[X Link](https://x.com/SecurityAid/status/1795788865208221748) 2024-05-29T12:06Z [--] followers, [--] engagements
"Smashing Security podcast #373: iPhone undeleted photos and stealing Scarlett Johanssons voice iPhone photos come back from the dead Scarlett Johansson sounds upset about GPT-4o and there's a cockup involving celebrity fakes. All this and much more. https://securityaid.co.uk/p=29657&feed_id=20270 https://securityaid.co.uk/p=29657&feed_id=20270"
[X Link](https://x.com/SecurityAid/status/1795924760641053158) 2024-05-29T21:06Z [--] followers, [--] engagements
"End of VBScript Microsoft Replacing it With Advanced Alternatives Microsoft has officially announced the gradual deprecation of VBScript with plans to replace it with more advanced alternatives such as JavaScript and PowerShell. The move comes as pa. https://securityaid.co.uk/p=29659&feed_id=20276 https://securityaid.co.uk/p=29659&feed_id=20276"
[X Link](https://x.com/SecurityAid/status/1796015360782610820) 2024-05-30T03:06Z [--] followers, [--] engagements
"Threat Actor Claiming Access to AWS Azure MongoDB & Github API Keys A threat actor has claimed to have gained unauthorized access to API keys for major cloud service providers including Amazon Web Services (AWS) Microsoft Azure MongoDB and GitHub. https://securityaid.co.uk/p=29662&feed_id=20286 https://securityaid.co.uk/p=29662&feed_id=20286"
[X Link](https://x.com/SecurityAid/status/1796155029696459043) 2024-05-30T12:21Z [--] followers, [--] engagements
"Ransomware Attacks Targeting VMware ESXi Infrastructure Adopt New Pattern Cybersecurity professionals at Sygnia have noted a notable change in the strategies used by ransomware groups that are aiming at virtualized environments specifically VMware ESX. https://securityaid.co.uk/p=29678&feed_id=20333 https://securityaid.co.uk/p=29678&feed_id=20333"
[X Link](https://x.com/SecurityAid/status/1796876029237100948) 2024-06-01T12:06Z [--] followers, [--] engagements
"New DoS Attack DNSBomb Exploiting DNS Queries & Responses Cybersecurity researchers have unveiled a new and potent Denial of Service (DoS) attack dubbed DNSBomb. This attack leverages the inherent mechanisms of the Domain Name System (DNS) to cre. https://securityaid.co.uk/p=29679&feed_id=20336 https://securityaid.co.uk/p=29679&feed_id=20336"
[X Link](https://x.com/SecurityAid/status/1796921328588439591) 2024-06-01T15:06Z [--] followers, [--] engagements
"Cencora data breach exposes US patient info from [--] drug companies Some of the largest drug companies in the world have disclosed data breaches due to a February [----] cyberattack at Cencora whom they partner with for pharmaceutical and business service. https://securityaid.co.uk/p=29688&feed_id=20363 https://securityaid.co.uk/p=29688&feed_id=20363"
[X Link](https://x.com/SecurityAid/status/1797329013934874977) 2024-06-02T18:06Z [--] followers, [--] engagements
"Experts Find Flaw in Replicate AI Service Exposing Customers' Models and Data Cybersecurity researchers have discovered a critical security flaw in an artificial intelligence (AI)-as-a-service providerReplicatethat could have allowed threat actors to. https://securityaid.co.uk/p=29694&feed_id=20381 https://securityaid.co.uk/p=29694&feed_id=20381"
[X Link](https://x.com/SecurityAid/status/1797600806918664332) 2024-06-03T12:06Z [--] followers, [--] engagements
"Indian National Pleads Guilty for $37 Million By Running Fake Coinbases Website Chirag Tomar a 30-year-old citizen of the Republic of India appeared before U.S. Magistrate Judge Susan C. Rodriguez today and pleaded guilty to federal charges for orch. https://securityaid.co.uk/p=29701&feed_id=20396 https://securityaid.co.uk/p=29701&feed_id=20396"
[X Link](https://x.com/SecurityAid/status/1797827296763474209) 2024-06-04T03:06Z [--] followers, [--] engagements
"Moroccan Cybercrime Group Steals Up to $100K Daily Through Gift Card Fraud Microsoft is calling attention to a Morocco-based cybercrime group dubbedStorm-0539that's behind gift card fraud and theft through highly sophisticated email and SMS phishing . https://securityaid.co.uk/p=29709&feed_id=20420 https://securityaid.co.uk/p=29709&feed_id=20420"
[X Link](https://x.com/SecurityAid/status/1798189686617161960) 2024-06-05T03:06Z [--] followers, [--] engagements
"Exploit released for maximum severity Fortinet RCE bug patch now Security researchers have released a proof-of-concept (PoC) exploit for a maximum-severity vulnerability in Fortinet's security information and event management (SIEM) solution which w. https://securityaid.co.uk/p=29729&feed_id=20481 https://securityaid.co.uk/p=29729&feed_id=20481"
[X Link](https://x.com/SecurityAid/status/1799099431926522336) 2024-06-07T15:21Z [--] followers, [--] engagements
"US govt sanctions cybercrime gang behind massive [---] S5 botnet The U.S. Treasury Department has sanctioned a cybercrime network comprising three Chinese nationals and three Thailand-based companies linked to a massive botnet controlling a residential p. https://securityaid.co.uk/p=29733&feed_id=20492 https://securityaid.co.uk/p=29733&feed_id=20492"
[X Link](https://x.com/SecurityAid/status/1799276851610747334) 2024-06-08T03:06Z [--] followers, [--] engagements
"First American December data breach impacts [-----] people First American Financial Corporation the second-largest title insurance company in the United States revealed on Tuesday that a December cyberattack led to a breach impacting [-----] individual. https://securityaid.co.uk/p=29739&feed_id=20504 https://securityaid.co.uk/p=29739&feed_id=20504"
[X Link](https://x.com/SecurityAid/status/1799458044532724110) 2024-06-08T15:06Z [--] followers, [--] engagements
"PoC Exploit Released for Critical Fortinet FortiSIEM 2nd Order Command Injection Deep A proof-of-concept (PoC) exploit has been released for a critical vulnerability in Fortinets FortiSIEM. The vulnerability CVE-2024-23108 allows for remote unauth. https://securityaid.co.uk/p=29740&feed_id=20507 https://securityaid.co.uk/p=29740&feed_id=20507"
[X Link](https://x.com/SecurityAid/status/1799503344018354281) 2024-06-08T18:06Z [--] followers, [---] engagements
"Microsoft Uncovers 'Moonstone Sleet' New North Korean Hacker Group A never-before-seen North Korean threat actor codenamed Moonstone Sleet has been attributed as behind cyber attacks targeting individuals and organizations in the software and informa. https://securityaid.co.uk/p=29748&feed_id=20531 https://securityaid.co.uk/p=29748&feed_id=20531"
[X Link](https://x.com/SecurityAid/status/1799865732395667766) 2024-06-09T18:06Z [--] followers, [--] engagements
"Okta warns of credential stuffing attacks targeting its CORS feature Okta warnsthat a Customer Identity Cloud (CIC) feature is being targeted in credential stuffing attacks stating that numerous customers have been targeted since April. .Read Mo. https://securityaid.co.uk/p=29757&feed_id=20558 https://securityaid.co.uk/p=29757&feed_id=20558"
[X Link](https://x.com/SecurityAid/status/1800273416685015469) 2024-06-10T21:06Z [--] followers, [--] engagements
"U.S. Dismantles World's Largest [---] S5 Botnet with [--] Million Infected Devices The U.S. Department of Justice (DoJ) on Wednesday said it dismantled what it described as "likely the world's largest botnet ever" which consisted of an army of [--] million. https://securityaid.co.uk/p=29771&feed_id=20600 https://securityaid.co.uk/p=29771&feed_id=20600"
[X Link](https://x.com/SecurityAid/status/1800907594606805367) 2024-06-12T15:06Z [--] followers, [--] engagements
"RedTail Crypto-Mining Malware Exploiting Palo Alto Networks Firewall Vulnerability The threat actors behind the RedTail cryptocurrency mining malware have added a recently disclosed security flaw impacting Palo Alto Networks firewalls to its exploit ar. https://securityaid.co.uk/p=29782&feed_id=20633 https://securityaid.co.uk/p=29782&feed_id=20633"
[X Link](https://x.com/SecurityAid/status/1801405878676947002) 2024-06-14T00:06Z [--] followers, [--] engagements
"BBC Data Breach: Hackers Access Cloud-Based Storage Service The BBC has confirmed a data security incident involving the personal information of some members of the BBC Pension Scheme. The breach which was detected by the BBCs information security te. https://securityaid.co.uk/p=29793&feed_id=20667 https://securityaid.co.uk/p=29793&feed_id=20667"
[X Link](https://x.com/SecurityAid/status/1801907935502639229) 2024-06-15T09:21Z [--] followers, [--] engagements
"Windows-based AllaKore Malware Abuses Azure Cloud for C2 Infrastructure A new variant of AllaKore RAT named AllaSenha has been discovered targeting Brazilian bank accounts which leverages a multi-stage infection chain involving phishing emails mali. https://securityaid.co.uk/p=29800&feed_id=20687 https://securityaid.co.uk/p=29800&feed_id=20687"
[X Link](https://x.com/SecurityAid/status/1802221253173838115) 2024-06-16T06:06Z [--] followers, [--] engagements
"AI Company Hugging Face Notifies Users of Suspected Unauthorized Access Artificial Intelligence (AI) company Hugging Face on Friday disclosed that it detected unauthorized access to its Spaces platform earlier this week. "We have suspicions that a subs. https://securityaid.co.uk/p=29813&feed_id=20726 https://securityaid.co.uk/p=29813&feed_id=20726"
[X Link](https://x.com/SecurityAid/status/1802810131983306777) 2024-06-17T21:06Z [--] followers, [--] engagements
"The Ticketmaster Data Breach May Be Just the Beginning Data breaches at Ticketmaster and financial services company Santander have been linked to attacks against cloud provider Snowflake. Researchers fear more breaches will soon be uncovered.Read More https://securityaid.co.uk/p=29815&feed_id=20733 https://securityaid.co.uk/p=29815&feed_id=20733"
[X Link](https://x.com/SecurityAid/status/1802904501667438962) 2024-06-18T03:21Z [--] followers, [--] engagements
"Andariel Hackers Target South Korean Institutes with New Dora RAT Malware The North Korea-linked threat actor known as Andariel has been observed using a new Golang-based backdoor called Dora RAT in its attacks targeting educational institutes manufac. https://securityaid.co.uk/p=29826&feed_id=20760 https://securityaid.co.uk/p=29826&feed_id=20760"
[X Link](https://x.com/SecurityAid/status/1803312190687965572) 2024-06-19T06:21Z [--] followers, [--] engagements
"How Donald Trump Could Weaponize US Surveillance in a Second Term Donald Trump has vowed to go after political enemies undocumented immigrants and others if he wins. Experts warn he could easily turn the surveillance state against his targets.Read M. https://securityaid.co.uk/p=29827&feed_id=20762 https://securityaid.co.uk/p=29827&feed_id=20762"
[X Link](https://x.com/SecurityAid/status/1803353715048394904) 2024-06-19T09:06Z [--] followers, [--] engagements
"Hackers Exploiting Amazon Google And IBM Cloud Services To Steal Customer Data Criminals are exploiting cloud storage services to host phishing websites for SMS scams by abusing the static website hosting feature of cloud storage to store HTML files w. https://securityaid.co.uk/p=29831&feed_id=20774 https://securityaid.co.uk/p=29831&feed_id=20774"
[X Link](https://x.com/SecurityAid/status/1803534909077614632) 2024-06-19T21:06Z [--] followers, [--] engagements
"Verizon users report blurry photos in Android messaging apps Verizon customers using Android phones report that they receive blurry images through text messages on different services and apps with no response from Verizon as to why. .Read More https://securityaid.co.uk/p=29835&feed_id=20786 https://securityaid.co.uk/p=29835&feed_id=20786"
[X Link](https://x.com/SecurityAid/status/1803716103304073490) 2024-06-20T09:06Z [--] followers, [--] engagements
"Microsoft Indias X account hijacked in Roaring Kitty crypto scam The official Microsoft India account on Twitter with over [------] followers was hijacked by cryptocurrency scammers to impersonate Roaring Kitty the handle used by notorious meme stoc. https://securityaid.co.uk/p=29841&feed_id=20804 https://securityaid.co.uk/p=29841&feed_id=20804"
[X Link](https://x.com/SecurityAid/status/1803987892638732682) 2024-06-21T03:06Z [---] followers, [--] engagements
"Massive Ticketmaster Santander Data Breaches Linked to Snowflake Account Hacks Hackers have claimed responsibility for a massive data breach involving Ticketmaster and Santander Bank potentially affecting over [---] million accounts. The breach linked. https://securityaid.co.uk/p=29843&feed_id=20810 https://securityaid.co.uk/p=29843&feed_id=20810"
[X Link](https://x.com/SecurityAid/status/1804078489114484794) 2024-06-21T09:06Z [--] followers, [--] engagements
"PoC Exploit Released for macOS Root Access Vulnerability A security vulnerability identified as CVE-2024-27822 has been discovered in macOS. This vulnerability allows unauthorized root access and has raised serious concerns among cybersecurity exper. https://securityaid.co.uk/p=29844&feed_id=20813 https://securityaid.co.uk/p=29844&feed_id=20813"
[X Link](https://x.com/SecurityAid/status/1804123787975184821) 2024-06-21T12:06Z [--] followers, [--] engagements
"Hackers Actively Exploiting Checkpoint 0-Day Flaw Cybersecurity experts have identified a critical zero-day vulnerability in Checkpoints security software that hackers are actively exploiting. The flaw assigned to the identifier CVE-2024-24919 poses a. https://securityaid.co.uk/p=29846&feed_id=20819 https://securityaid.co.uk/p=29846&feed_id=20819"
[X Link](https://x.com/SecurityAid/status/1804214384492732683) 2024-06-21T18:06Z [--] followers, [--] engagements
"Russians Love YouTube. Thats a Problem for the Kremlin YouTube remains the only major US-based social media platform available in Russia. Its become "indispensable" to everyday people making a ban tricky. Journalists and dissidents are taking advant. https://securityaid.co.uk/p=29848&feed_id=20825 https://securityaid.co.uk/p=29848&feed_id=20825"
[X Link](https://x.com/SecurityAid/status/1804304979982721104) 2024-06-22T00:06Z [--] followers, [--] engagements
"Microsoft Azure Vulnerability Let Attackers Bypass Firewall Rules Tenable Research has uncovered a significant vulnerability in Microsoft Azure that allows malicious attackers to bypass firewall rules by forging requests from trusted services. This vul. https://securityaid.co.uk/p=29851&feed_id=20834 https://securityaid.co.uk/p=29851&feed_id=20834"
[X Link](https://x.com/SecurityAid/status/1804440876078309887) 2024-06-22T09:06Z [--] followers, [--] engagements
"AI Is Your Coworker Now. Can You Trust It Generative AI tools such as OpenAIs ChatGPT and Microsofts Copilot are becoming part of everyday business life. But they come with privacy and security considerations you should know about.Read More https://securityaid.co.uk/p=29852&feed_id=20837 https://securityaid.co.uk/p=29852&feed_id=20837"
[X Link](https://x.com/SecurityAid/status/1804486176759267724) 2024-06-22T12:06Z [--] followers, [--] engagements
"Confluence Data Center & Server Flaw Allows Remote Code Execution Atlassian disclosed a high-severity vulnerability that exists in multiple versions of their Confluence Data Center and Server. The CVE for this vulnerability was assigned with CVE-2024-. https://securityaid.co.uk/p=29854&feed_id=20843 https://securityaid.co.uk/p=29854&feed_id=20843"
[X Link](https://x.com/SecurityAid/status/1804576773406945315) 2024-06-22T18:06Z [--] followers, [--] engagements
"TikTok fixes zero-day bug used to hijack high-profile accounts Over the past week attackers have hijacked high-profile TikTok accounts belonging to multiple companies and celebrities exploitinga zero-day vulnerability in the social media's direct me. https://securityaid.co.uk/p=29863&feed_id=20870 https://securityaid.co.uk/p=29863&feed_id=20870"
[X Link](https://x.com/SecurityAid/status/1804984460577845433) 2024-06-23T21:06Z [--] followers, [--] engagements
"Hackers Exploited TikTok Zero-Day Vulnerability to Hijack High-Profile Accounts TikTok has confirmed that hackers exploited a zero-day vulnerability in its direct messaging (DM) feature to hijack several high-profile accounts. The affected accounts in. https://securityaid.co.uk/p=29866&feed_id=20879 https://securityaid.co.uk/p=29866&feed_id=20879"
[X Link](https://x.com/SecurityAid/status/1805120356195152334) 2024-06-24T06:06Z [--] followers, [--] engagements
"PoC Exploit Released for Linux Kernel Privilege Escalation Vulnerability A Proof-of-Concept (PoC) exploit has been released for a critical privilege escalation vulnerability in the Linux kernel. The vulnerability tracked as CVE-2023-3390 has raised ala. https://securityaid.co.uk/p=29867&feed_id=20882 https://securityaid.co.uk/p=29867&feed_id=20882"
[X Link](https://x.com/SecurityAid/status/1805165653290000567) 2024-06-24T09:06Z [--] followers, [--] engagements
"Databricks Is Acquiring Tabular A Data-Management Startup Databricks has announced its acquisition of Tabular Inc. a data management startup founded by Ryan Blue Daniel Weeks and Jason Reid. This acquisition brings together the original creators o. https://securityaid.co.uk/p=29870&feed_id=20891 https://securityaid.co.uk/p=29870&feed_id=20891"
[X Link](https://x.com/SecurityAid/status/1805301547347169445) 2024-06-24T18:06Z [--] followers, [--] engagements
"Zyxel Releases Patches for Firmware Vulnerabilities in EoL NAS Models Zyxel has released security updates to address critical flaws impacting two of its network-attached storage (NAS) devices that have currently reached end-of-life (EoL) status. Succes. https://securityaid.co.uk/p=29872&feed_id=20897 https://securityaid.co.uk/p=29872&feed_id=20897"
[X Link](https://x.com/SecurityAid/status/1805392145164943827) 2024-06-25T00:06Z [--] followers, [--] engagements
"Big name TikTok accounts hijacked after opening DM High profile TikTok accounts including CNN Sony anderParis Hilton have been targeted in a recent attack. CNN was the first account takeover that made the news with Semafor reporting that the acc. https://securityaid.co.uk/p=29874&feed_id=20903 https://securityaid.co.uk/p=29874&feed_id=20903"
[X Link](https://x.com/SecurityAid/status/1805482742018093218) 2024-06-25T06:06Z [--] followers, [--] engagements
"Targetcompany Ransomware Group Employs Linux Variant To Attack Esxi Environments The notorious TargetCompany ransomware group introduced a new Linux variant targeting VMware ESXi environments. This evolution in their tactics underscores the increasing . https://securityaid.co.uk/p=29879&feed_id=20918 https://securityaid.co.uk/p=29879&feed_id=20918"
[X Link](https://x.com/SecurityAid/status/1805709234849349865) 2024-06-25T21:06Z [--] followers, [--] engagements
"Twenty-Two Chinese Nationals Pleads Guilty For Stealing Money From Zambians Twenty-two Chinese nationals have pleaded guilty to committing cyber-related crimes in Zambia. These individuals are part of a larger group of [--] suspects arrested in April l. https://securityaid.co.uk/p=29895&feed_id=20966 https://securityaid.co.uk/p=29895&feed_id=20966"
[X Link](https://x.com/SecurityAid/status/1806434008495984643) 2024-06-27T21:06Z [--] followers, [--] engagements
"Smashing Security podcast #375: Crashing robo-taxis and name-dropping rappers Drones some coloured cardboard and a piece of tinfoil may be all the kit you need to crash a robot-driven taxi and a rapper is accused of using Justin Bieber's name to de. https://securityaid.co.uk/p=29902&feed_id=20987 https://securityaid.co.uk/p=29902&feed_id=20987"
[X Link](https://x.com/SecurityAid/status/1806751100927705457) 2024-06-28T18:06Z [--] followers, [--] engagements
"Advance Auto Parts customer data posted for sale A cybercriminal using the handle Sp1d3r is offering to sell [--] TB of data taken from Advance Auto Parts Inc. Advance Auto Parts is a US automotive aftermarket parts provider that serves both professional. https://securityaid.co.uk/p=29904&feed_id=20993 https://securityaid.co.uk/p=29904&feed_id=20993"
[X Link](https://x.com/SecurityAid/status/1806841696358916385) 2024-06-29T00:06Z [--] followers, [--] engagements
"Los Angeles Unified School District investigates data theft claims Los Angeles Unified School District (LAUSD) officials are investigating a threat actor's claims that they're selling stolen databases containing records belonging to millions of student. https://securityaid.co.uk/p=29914&feed_id=21023 https://securityaid.co.uk/p=29914&feed_id=21023"
[X Link](https://x.com/SecurityAid/status/1807294682130485289) 2024-06-30T06:06Z [--] followers, [--] engagements
"Hackers exploit [----] ThinkPHP flaws to install Dama web shells Chinese threat actors are targeting ThinkPHP applications vulnerable to CVE-2018-20062 and CVE-2019-9082to install a persistent web shell named Dama. .Read More https://securityaid.co.uk/p=29915&feed_id=21026 https://securityaid.co.uk/p=29915&feed_id=21026"
[X Link](https://x.com/SecurityAid/status/1807339980450050252) 2024-06-30T09:06Z [--] followers, [--] engagements
"Cisco Finesse Vulnerabilities Let Attackers Perform Stored XSS Attack Cisco has issued a security advisory detailing multiple vulnerabilities in Cisco Finesses web-based management interface. These vulnerabilities identified as CVE-2024-20404 and CVE. https://securityaid.co.uk/p=29916&feed_id=21029 https://securityaid.co.uk/p=29916&feed_id=21029"
[X Link](https://x.com/SecurityAid/status/1807385279382057107) 2024-06-30T12:06Z [--] followers, [--] engagements
"PoC Exploit Released for High Severity Apache HugeGraph RCE flaw A proof-of-concept (PoC) exploit has been released for a high-severity Remote Code Execution (RCE) vulnerability in the Apache HugeGraph Server. This vulnerability identified as CVE-202. https://securityaid.co.uk/p=29918&feed_id=21035 https://securityaid.co.uk/p=29918&feed_id=21035"
[X Link](https://x.com/SecurityAid/status/1807475873546752044) 2024-06-30T18:06Z [--] followers, [--] engagements
"Huge Surge in Attacks Exploiting Check Point VPN Zero-Day Vulnerability Check Point published an advisory regarding a critical vulnerability CVE-2024-24919 which has since seen a surge in exploitation attempts. The vulnerability rated with a CVSS sc. https://securityaid.co.uk/p=29921&feed_id=21044 https://securityaid.co.uk/p=29921&feed_id=21044"
[X Link](https://x.com/SecurityAid/status/1807611769935855872) 2024-07-01T03:06Z [--] followers, [--] engagements
"Hackers Attack ThinkPHP By Injecting Payload From Remote Servers Threat actors are constantly evolving their TTPs and developing new malicious tools to execute their activities. Recently Akamai researchers have noted a concerning trend of attackers ex. https://securityaid.co.uk/p=29923&feed_id=21050 https://securityaid.co.uk/p=29923&feed_id=21050"
[X Link](https://x.com/SecurityAid/status/1807702368592478396) 2024-07-01T09:06Z [--] followers, [--] engagements
"New York Times source code stolen using exposed GitHub token Internal source code and data belonging to The New York Times was leaked on the 4chan message board after being stolen from thecompany's GitHub repositories in January [----] The Times confir. https://securityaid.co.uk/p=29942&feed_id=21107 https://securityaid.co.uk/p=29942&feed_id=21107"
[X Link](https://x.com/SecurityAid/status/1808563040775753952) 2024-07-03T18:06Z [--] followers, [--] engagements
Limited data mode. Full metrics available with subscription: lunarcrush.com/pricing
@SecurityAid Security AidSecurity Aid posts on X about microsoft, vmware, ai, cryptocurrency the most. They currently have [---] followers and [----] posts still getting attention that total [---] engagements in the last [--] hours.
Social category influence technology brands stocks countries finance social networks automotive brands travel destinations cryptocurrencies currencies ncaa football
Social topic influence microsoft, vmware, ai, cryptocurrency, has been, $googl, crowdstrike #75, google, cybersecurity, open ai
Top accounts mentioned or mentioned by @sooyoon_eth
Top assets mentioned Microsoft Corp. (MSFT) Alphabet Inc Class A (GOOGL) Crowdstrike Holdings Inc (CRWD) Cloudflare, Inc. (NET) Fortinet Inc (FTNT) CyberConnect (CYBER) Zscaler Inc (ZS) IBM (IBM) Dell Technologies, Inc. (DELL) April (APRIL) GrokCoin (GROKCOIN) DUROV (DUROV) FilesCoins Power Cu (FILECOIN)
Top posts by engagements in the last [--] hours
"Atomic Wallet hacks lead to over $35 million in crypto stolen The developers of Atomic Wallet are inve"
X Link 2023-06-07T10:51Z [--] followers, [--] engagements
"New Windows [--] feature blocks NTLM-based attacks over SMB Microsoft added a new security feature to Windows [--] that lets admins block NTLM over SMB to prevent pass-the-hash NTLM relay or password-cracking attacks. .Read More BleepingComputer"
X Link 2024-01-23T13:06Z [--] followers, [--] engagements
"MGM Resorts shuts down some systems because of a cybersecurity issue. A cybersecurity issue that affects availability looks like an extortion attempt but the victim is being unusually tight-lipped.Read More The CyberWire"
X Link 2024-01-26T17:06Z [--] followers, [--] engagements
"Adobe warns of critical Acrobat and Reader zero-day exploited in attacks Adobe has released security updates to patch a zero-day vulnerability in Acrobat and Reader tagged as exploited in attacks. .Read More BleepingComputer"
X Link 2024-01-26T19:06Z [--] followers, [--] engagements
"Cyber Attack at MGM Systems Forces IT Systems Shutdown In a recent development MGM Resorts a prominent hotel and casino giant has confirmed the presence of a cybersecurity issue responsible for an ongoing system outage that has affected its properti"
X Link 2024-01-29T11:06Z [--] followers, [--] engagements
"MGM Resorts shuts down IT systems after cyberattack MGM Resorts International disclosed today that it is dealing with a cybersecurity issue that impacted some of its systems including its main website and online reservations. .Read More Bleepi. https://securityaid.co.uk/p=13906&feed_id=17696 https://securityaid.co.uk/p=13906&feed_id=17696"
X Link 2024-01-30T09:06Z [--] followers, [--] engagements
"Powerful Ethnic Militia in Myanmar Repatriates [----] Chinese Suspected of Involvement in Cybercrime One of Myanmars biggest and most powerful ethnic minority militias arrested and repatriated more than [----] Chinese nationals allegedly involved in cri"
X Link 2024-02-01T13:06Z [--] followers, [--] engagements
"Apple issues an emergency patch. Aerospace sector under attack. DPRK spearsphishes security researchers. Notes from the hybrid war including Starlinks judgments on jus in bello. Apple issues emergency patches. "Multiple nation-state actors" target th"
X Link 2024-02-03T07:06Z [--] followers, [--] engagements
"Multiple APT Hackers Exploiting Fortinet & ManageEngine Vulnerability FortiOS SSL-VPN safeguards against data breaches while ManageEngine ServiceDesk Plus offers an integrated help desk and asset management for IT resources. At an Aeronautical Sector "
X Link 2024-02-03T17:06Z [--] followers, [--] engagements
"Cisco Identity Services Engine Flaw Let Attacker Trigger DoS Condition Cisco addressed high-impact vulnerability CVE-2023-20243in the Cisco Identity Services Engine (ISE) allowing attackers to stop processing Radius packets. This vulnerability with "
X Link 2024-02-04T15:06Z [--] followers, [--] engagements
"CISA Warning: Nation-State Hackers Exploit Fortinet and Zoho Vulnerabilities The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday warned that multiple nation-state actors are exploiting security flaws in Fortinet FortiOS SSL-VPN"
X Link 2024-02-05T07:06Z [--] followers, [--] engagements
"Microsoft Paint in Windows [--] gets a background removal feature Microsoft is rolling out a new version of the Paint application on Windows [--] Insider builds that can remove the background from any picture with the click of a button. .Read More"
X Link 2024-02-05T13:06Z [--] followers, [--] engagements
"CISA warns of critical Apache RocketMQ bug exploited in attacks The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added to its catalog of known exploited vulnerabilities (KEV) a critical-severity issue tracked as CVE-2023-33246 that "
X Link 2024-02-05T15:06Z [--] followers, [--] engagements
"Identity attacks. Proton Mail vulnerability. Driving into a privacy pothole. Healthcare provider discloses effect of third-party data incident. Report: Security gaps allow for identity attacks. Proton Mail vulnerability allowed for email theft. Driving"
X Link 2024-02-06T07:06Z [--] followers, [--] engagements
"Johnson & Johnson discloses IBM data breach impacting patients Johnson & Johnson Health Care Systems ("Janssen") has informed its CarePath customers that their sensitive information has been compromised in a third-party data breach involving IBM. "
X Link 2024-02-06T19:06Z [--] followers, [--] engagements
"Cisco Patches Critical Vulnerability in BroadWorks Platform Cisco has released patches for CVE-2023-20238 a critical authentication bypass vulnerability in the BroadWorks Application Delivery Platform. The post Cisco Patches Critical Vulnerability in "
X Link 2024-02-06T21:06Z [--] followers, [--] engagements
"Holiday Season Cyber Alert: Reflectiz Declares War on Magecart Reflectiz a cybersecurity company specializing in continuous web threat management offers an exclusive fully remote solution to battle Magecart web-skimming attacks a popular cyberattac"
X Link 2024-02-11T11:06Z [--] followers, [--] engagements
"New Chae$ variant described. Smishing Triad. MinIO explot. Okta warns of social engineering. Notes from Russia's hybrid war. New variant of Chae$ malware described. "Smishing Triad" impersonates postal services. MinIO storage exploit reported. Okta soc"
X Link 2024-02-12T13:06Z [--] followers, [--] engagements
"ASUS routers vulnerable to critical remote code execution flaws Three critical-severity remote code execution vulnerabilities impact ASUS RT-AX55 RT-AX56U_V2 and RT-AC86U routers potentially allowing threat actors to hijack devices if security updat"
X Link 2024-02-12T15:06Z [--] followers, [--] engagements
"Kenya East Africa and America with African Intelligence Chief Wilson Boinett Brigadier General (Ret.) Wilson Boinett joins Andrew (Twitter; LinkedIn) to discuss Kenyan intelligence. Wilson is the former Director of Kenyas National Intelligence S"
X Link 2024-02-13T13:06Z [--] followers, [--] engagements
"PoC Exploit Released for Critical VMware Aria's SSH Auth Bypass Vulnerability Proof-of-concept (PoC) exploit code has been made available for a recently disclosed and patched critical flaw impacting VMware Aria Operations for Networks (formerly vRealiz"
X Link 2024-02-16T17:21Z [--] followers, [--] engagements
"Exploit Code Published for Critical-Severity VMware Security Defect Exploit code and root-cause analysis released by SinSinology documents the problem as a case where VMWare forgot to regenerate SSH keys. The post Exploit Code Published for Critical-"
X Link 2024-02-17T17:06Z [--] followers, [--] engagements
"Exploit released for critical VMware SSH auth bypass vulnerability Proof-of-concept exploit code has been released for a critical SSH authentication bypass vulnerability in VMware's Aria Operations for Networks analysis tool (formerly known as vRealize"
X Link 2024-02-18T07:06Z [--] followers, [--] engagements
"Microsoft retires Visual Studio for Mac support ends in a year Microsoft has announced it is retiring Visual Studio for Mac and that support for the latest version17.6will continue for another year until August [--] [----]. .Read More Bleepi"
X Link 2024-02-18T15:06Z [--] followers, [--] engagements
"Golf gear giant Callaway data breach exposes info of [---] million Topgolf Callaway (Callaway) suffered a data breach at the start of August which exposed the sensitive personal and account data of more than a million customers. .Read More Bleep. https://securityaid.co.uk/p=13426&feed_id=18096 https://securityaid.co.uk/p=13426&feed_id=18096"
X Link 2024-02-19T09:06Z [--] followers, [--] engagements
"Sourcegraph Discloses Data Breach Following Access Token Leak Sourcegraph says customer information was breached after an engineer accidentally leaked an admin access token. The post Sourcegraph Discloses Data Breach Following Access Token Leak appeare"
X Link 2024-02-19T21:06Z [--] followers, [--] engagements
"Sourcegraph website breached using leaked admin access token AI-powered coding platform Sourcegraph revealed that its website was breached this week using a site-admin access token accidentally leaked online on July 14th. .Read More BleepingCom"
X Link 2024-02-20T13:06Z [--] followers, [--] engagements
"North Korean hackers behind malicious VMConnect PyPI campaign North Korean state-sponsored hackers are behind the VMConnect campaign that uploaded to the PyPI (Python Package Index) repository malicious packages one of them mimicking the VMware vSpher"
X Link 2024-02-20T21:06Z [--] followers, [--] engagements
"GRU hackers attack Ukrainian military with new Android malware Hackers working for the Main Directorate of the General Staff of the Armed Forces of the Russian Federation more commonly known as the GRU have been targeting Android devices in Ukraine w"
X Link 2024-02-21T15:06Z [--] followers, [--] engagements
"Splunk IT Service Intelligence Injection Flaw Let Attacker Inject ANSI Codes in Log Files Splunk has been reported with a Unauthenticated Log injection vulnerability in the Splunk IT Service Intelligence (ITSI) product. This vulnerability exists in Spl"
X Link 2024-02-21T17:06Z [--] followers, [--] engagements
"Compliance can't wait. Igor Volovich from Qmulos sits down with Dave to discuss how compliance cant wait for the government to find alignment on security and risk. Ben shares the story of a Federal Judge dismissing a lawsuit from the Republican Nation"
X Link 2024-02-22T15:06Z [--] followers, [--] engagements
"Paramount discloses data breach following security incident American entertainment giant Paramount Global disclosed a data breach after its systems got hacked and attackers gained access to personally identifiable information (PII). .Read More "
X Link 2024-02-22T21:06Z [--] followers, [--] engagements
"Windows [--] browser change: Europe applauds outrage everywhere else Microsoft will soon allow users in the European Union as well as from Iceland Liechtenstein and Norway to once again open all links in Windows using their default web browser rathe"
X Link 2024-02-23T07:06Z [--] followers, [--] engagements
"WordPress migration add-on flaw could lead to data breaches All-in-One WP Migration a popular data migration plugin for WordPress sites that has [--] million active installations suffers from unauthenticated access token manipulation that could allow at"
X Link 2024-02-23T17:06Z [--] followers, [--] engagements
"VMware Aria vulnerable to critical SSH authentication bypass flaw VMware Aria Operations for Networks (formerly vRealize Network Insight) is vulnerable to a critical severity authentication bypass flaw that could allow remote attackers to bypass SSH au"
X Link 2024-02-23T21:06Z [--] followers, [--] engagements
"Multiple Flaws in VMware Aria Operations Let Attackers Bypass Authentication As per reports VMware has been reported with two critical vulnerabilities that could allow threat actors to perform an authentication bypass and gain arbitrary write access o"
X Link 2024-02-25T11:06Z [--] followers, [--] engagements
"OpenAI Released ChatGPT Enterprise With SOC [--] Compliant & Data Encryption Several reports have indicated data leakage from ChatGPT ever since its release by the Microsoft-backed OpenAI in November [----]. Additionally threat actors have been abusing the"
X Link 2024-02-25T13:06Z [--] followers, [--] engagements
"Critical Vulnerability Alert: VMware Aria Operations Networks at Risk from Remote Attacks VMware has released software updates to correct two security vulnerabilities in Aria Operations for Networks that could be potentially exploited to bypass authent"
X Link 2024-02-25T17:06Z [--] followers, [--] engagements
"VMware Patches Major Security Flaws in Network Monitoring Product VWware patches critical flaws that allow hackers to bypass SSH authentication and gain access to the Aria Operations for Networks command line interface. The post VMware Patches Major Se"
X Link 2024-02-26T19:06Z [--] followers, [--] engagements
"Chinese Hacking Group Exploits Barracuda Zero-Day to Target Government Military and Telecom A suspected Chinese-nexus hacking group exploited arecently disclosed zero-day flawin Barracuda Networks Email Security Gateway (ESG) appliances to breach g"
X Link 2024-02-27T13:06Z [--] followers, [--] engagements
"How Hackers Abusing ChatGPT Features For Their Cybercriminal Activities Bypass Censorship Media and frequent innovative releases aggressively fuel the rapid industry rise of generative AI (Artificial Intelligence) ChatGPT. But besides its innovativ"
X Link 2024-02-27T17:06Z [--] followers, [--] engagements
"Attacks on Citrix NetScaler systems linked to ransomware actor A threat actor believed to be tied to the FIN8 hacking group exploits the CVE-2023-3519 remote code execution flaw to compromise unpatched Citrix NetScaler systems in domain-wide attacks. "
X Link 2024-02-29T09:06Z [--] followers, [--] engagements
"Update on the University of Minnesota breach. Pareto Phone data dumped by LockBit. English council suffers ransomware attack. FTX discloses breach. Update on the University of Minnesota breach. Pareto Phone data dumped by LockBit. English council suffe"
X Link 2024-03-04T13:06Z [--] followers, [--] engagements
"Trends in the cybercriminal underworld. The prosecution of Lapsus$ and Tornado Cash. More developments in Russias hybrid war. Theres a new sophistication in BEC campaigns. Trends in brand impersonationcrooks still like to pretend theyre from Redmon"
X Link 2024-03-06T15:06Z [--] followers, [--] engagements
"Chinese-backed APT Flax Typhoon Hacks Taiwan with Minimal Malware Footprint Microsoft warns that Chinese spies are hacking into Taiwanese organizations with minimal use of malware and by abusing legitimate software. The post Chinese-backed APT Flax "
X Link 2024-03-06T19:06Z [--] followers, [--] engagements
"Tornado Cash Founders Charged in Billion-Dollar Crypto Laundering Scandal The U.S. Justice Department (DoJ) on Wednesdayunsealed an indictmentagainst two founders of the now-sanctioned Tornado Cash cryptocurrency mixer service charging them with lau"
X Link 2024-03-08T19:21Z [--] followers, [--] engagements
"Hunting the hackers. Selena Larson and Tim Utzig discussing "Twitter Scammers Stole $1000 From My FriendSo I Hunted Them Down." Joe and Dave share a bit of follow up this week they discuss Hawaii fire scams and listener Steve writes in regarding so"
X Link 2024-03-09T07:06Z [--] followers, [--] engagements
"Thoma Bravo completes acquisition of ForgeRock. SentinelOne may be exploring a sale. SpyCloud secures $110 million. Gamma acquires Satisnet. Grip Security raises $41 million in Series B round.Read More The CyberWire"
X Link 2024-03-09T15:06Z [--] followers, [--] engagements
"US charges founders of Tornado Cash mixer used by Lazarus hackers The U.S. Justice Department charged two Tornado Cash founders with helping criminals including the notorious North Korean Lazarus hacking group launder over $1 billion worth of stolen "
X Link 2024-03-10T07:06Z [--] followers, [--] engagements
"WinRAR zero-day exploited since April to hack trading accounts A WinRar zero-day vulnerability tracked as CVE-2023-38831 was actively exploited to install malware when clicking on harmless files in an archive allowing the hackers to breach online cryp"
X Link 2024-03-10T15:06Z [--] followers, [--] engagements
"Nearly a third of young people preyed on by text pest delivery drivers Surely you should be able to order pizza without being pestered for sex or a date So how come so many young people are claiming that they are being hassled after ordering an onl"
X Link 2024-03-10T21:06Z [--] followers, [--] engagements
"Solutions Spotlight: White House releases cybersecurity workforce and education strategy Solution Spotlight: White House release of its cybersecurity workforce and education strategy with Simone Petrella and Camille Stewart Gloster.Read More The Cy"
X Link 2024-03-13T07:06Z [--] followers, [--] engagements
"New Carderbee APT Targeted Chinese Security Software in Supply Chain Attack A new APT group called Carderbee has been observed deploying the PlugX backdoor via a supply chain attack targeting organizations in Hong Kong. The post New Carderbee APT T"
X Link 2024-03-13T11:06Z [--] followers, [--] engagements
"America [---] with Bill Britton of the California Cybersecurity Institute (CCI) Bill Britton joins Andrew Hammond in a discussion about cybersecurity and cyber awareness. Bill is the Director of the California Cybersecurity Institute and CIO at Cal P"
X Link 2024-03-13T13:06Z [--] followers, [--] engagements
"Luke Vander Linden: With age comes knowledge. VP This week our guest is Luke Vander Linden Vice President of Membership & Marketing from RH-ISAC and host of the RH-ISAC podcast here at the CyberWire. Luke sits down to share his story all the way ba"
X Link 2024-03-17T09:06Z [--] followers, [--] engagements
"Hacking Crew Breached the US Air Force Satellite In Orbit And Won $50000 This years Hack-A-Sat competition challenged teams to hack into an actual satellite in orbit. The US Air Force Moonlighter which was launched especially for the event was the "
X Link 2024-03-18T09:06Z [--] followers, [--] engagements
"Interpol arrests [--] suspected cybercriminals for stealing $40 million An international law enforcement operation led by Interpol has led to the arrest of [--] suspected cybercriminals in an operation codenamed 'Africa Cyber Surge II' launched in April 2"
X Link 2024-03-19T09:21Z [--] followers, [--] engagements
"Cisco Duo Device Health App Flaw Allows Directory Traversal Attacks The CryptoService function in the Cisco Duo Device Health Application for Windows has a vulnerability tracked as (CVE-2023-20229). This might allow a low-privileged attacker to carry o"
X Link 2024-03-21T13:06Z [--] followers, [--] engagements
"Rapid7 Says ROI for Ransomware Remains High; Zero-Day Usage Expands A new report from Rapid7 says a ransomware gang like Cl0p would easily be able to afford a bevy of zero-day exploits for vulnerable enterprise software. The post Rapid7 Says ROI for R. https://securityaid.co.uk/p=12723&feed_id=18724 https://securityaid.co.uk/p=12723&feed_id=18724"
X Link 2024-03-21T17:06Z [--] followers, [--] engagements
"CISA warns of critical Citrix ShareFile flaw exploited in the wild CISA is warning that a critical Citrix ShareFile secure file transfer vulnerability tracked as CVE-2023-24489 is being targeted by unknown actorsand has added the flaw to its catalog o"
X Link 2024-03-23T11:06Z [--] followers, [--] engagements
"Check Point acquires Perimeter [--]. Thoma Bravo extends closing date for acquisition of ForgeRock. Osano raises $25 million in Series B round. Check Point acquires Perimeter [--]. Thoma Bravo extends closing date for acquisition of ForgeRock. Osano raises. https://securityaid.co.uk/p=12679&feed_id=18762 https://securityaid.co.uk/p=12679&feed_id=18762"
X Link 2024-03-23T15:06Z [--] followers, [--] engagements
"Singapore on alert for potential electoral interference. US CFPB will regulate data brokers. CISA works toward guidance for cloud providers. Singapore is on alert for potential electoral interference. The US CFPB will regulate data brokers. CISA works "
X Link 2024-03-23T17:06Z [--] followers, [--] engagements
"Hacked electronic sign declares Putin is a dickhead as Russian ruble slumps Someone clearly isn't very impressed with Vladimir Putin as the Russian economy continues to tank in the wake of sanctions.Read More Graham Cluley"
X Link 2024-03-24T07:06Z [--] followers, [--] engagements
"Ivanti Patches Critical Vulnerability in Avalanche Enterprise MDM Solution Ivanti has patched critical- and high-severity vulnerabilities with the latest release of Avalanche its enterprise mobile device management solution. The post Ivanti Patches Cr"
X Link 2024-03-24T13:06Z [--] followers, [--] engagements
"Ivanti Avalanche impacted by critical pre-auth stack buffer overflows Two stack-based buffer overflows collectively tracked as CVE-2023-32560 impact Ivanti Avalanche an enterprise mobility management (EMM) solution designed to manage monitor and sec"
X Link 2024-03-25T19:06Z [--] followers, [--] engagements
"LinkedIn accounts hacked in widespread hijacking campaign LinkedIn is being targeted in a wave of account hacks resulting in many accounts being locked out for security reasons or ultimately hijacked by attackers. .Read More BleepingComputer"
X Link 2024-03-25T21:21Z [--] followers, [--] engagements
"New CVE-2023-3519 scanner detects hacked Citrix ADC Gateway devices Mandiant has released a scanner to check if a Citrix NetScaler Application Delivery Controller (ADC) or NetScaler Gateway Appliance was compromised in widespread attacks exploiting th"
X Link 2024-03-26T21:06Z [--] followers, [--] engagements
"CISO Conversations: CISOs in Cloud-based Services Discuss the Process of Leadership SecurityWeek talks to Billy Spears CISO at Teradata (a multi-cloud analytics provider) and Lea Kissner CISO at cloud security firm Lacework. The post CISO Conversati. https://securityaid.co.uk/p=12621&feed_id=18840 https://securityaid.co.uk/p=12621&feed_id=18840"
X Link 2024-03-27T13:06Z [--] followers, [--] engagements
"Ongoing Xurum Attacks on E-commerce Sites Exploiting Critical Magento [--] Vulnerability E-commerce sites using Adobe's Magento [--] software are the target of an ongoing campaign that has been active since at least January [----]. The attacks dubbedXurumby. https://securityaid.co.uk/p=12574&feed_id=18888 https://securityaid.co.uk/p=12574&feed_id=18888"
X Link 2024-03-29T21:06Z [--] followers, [--] engagements
"The fate and effects of a supply chain compromise. Cyberespionage: China Russia and North Korea. Lessons from a hybrid war. Major data breaches. CPU vulnerabilities. The fate and effects of a supply chain compromise. Cyberespionage: China Russia an. https://securityaid.co.uk/p=12484&feed_id=18939 https://securityaid.co.uk/p=12484&feed_id=18939"
X Link 2024-04-01T13:06Z [--] followers, [--] engagements
"Microsoft .NET Core and Visual Studio Flaw Let hackers Launch Denial of Service Attack As per reports Microsoft .NET core and Visual Studio were found with a Denial of Service which can be exploited by threat actors. Microsoft has released patches to. https://securityaid.co.uk/p=12432&feed_id=18993 https://securityaid.co.uk/p=12432&feed_id=18993"
X Link 2024-04-04T07:06Z [--] followers, [--] engagements
"Gafgyt malware exploits five-years-old flaw in EoL Zyxel router Fortinet has issued an alert warning that the Gafgyt botnet malware is actively trying to exploit a vulnerability in the end-of-life Zyxel P660HN-T1A router in thousands of daily attacks. . https://securityaid.co.uk/p=12407&feed_id=19002 https://securityaid.co.uk/p=12407&feed_id=19002"
X Link 2024-04-04T15:21Z [--] followers, [--] engagements
"Dell Compellent hardcoded key exposes VMware vCenter admin creds An unfixed hardcoded encryption key flaw in Dell's Compellent Integration Tools for VMware (CITV) allows attackers to decrypt stored vCenter admin credentials and retrieve the cleartext p. https://securityaid.co.uk/p=12398&feed_id=19019 https://securityaid.co.uk/p=12398&feed_id=19019"
X Link 2024-04-05T13:06Z [--] followers, [--] engagements
"CISA Warns Organizations of Exploited Vulnerability Affecting .NET Visual Studio CISA has added CVE-2023-38180 a zero-day vulnerability affecting .NET and Visual Studio to its Known Exploited Vulnerabilities Catalog. The post CISA Warns Organizatio. https://securityaid.co.uk/p=12390&feed_id=19041 https://securityaid.co.uk/p=12390&feed_id=19041"
X Link 2024-04-06T15:06Z [--] followers, [--] engagements
"Smashing Security podcast #334: Acoustic attacks and the tears of a crypto rapper Razzlekhan the self-proclaimed Crocodile of Wall Street pleads guilty to the biggest crypto laundering scheme in history and just how safe are you typing while on a Z. https://securityaid.co.uk/p=12362&feed_id=19053 https://securityaid.co.uk/p=12362&feed_id=19053"
X Link 2024-04-07T07:06Z [--] followers, [--] engagements
"Hackers use open source Merlin post-exploitation toolkit in attacks Ukraine is warning of a wave of attacks targeting state organizations using 'Merlin' an open-source post-exploitation and command and control framework. .Read More BleepingCom. https://securityaid.co.uk/p=12358&feed_id=19055 https://securityaid.co.uk/p=12358&feed_id=19055"
X Link 2024-04-07T09:06Z [--] followers, [--] engagements
"Rhysida ransomware behind recent attacks on healthcare The Rhysida ransomware as a service (RaaS) operation that emerged in May [----] is gradually leaving the period of obscurity behind as a recent wave of attacks on healthcare organizations has forced. https://securityaid.co.uk/p=12352&feed_id=19063 https://securityaid.co.uk/p=12352&feed_id=19063"
X Link 2024-04-07T17:06Z [--] followers, [--] engagements
"Microsoft Added GPT-4 and GPT-35-Turbo to businesses Azure AI Infrastructure Azure announced the global expansion of Azure OpenAI Service including GPT-4 and GPT-35-Turbo to its customers across the world. Azure recently embraced the latest AI techno. https://securityaid.co.uk/p=12349&feed_id=19073 https://securityaid.co.uk/p=12349&feed_id=19073"
X Link 2024-04-08T07:06Z [--] followers, [--] engagements
"Sweet Security Emerges From Stealth With $12 Million Seed Funding and a Cloud Runtime Solution Israeli startup emerged from stealth with $12 million in Seed funding and launched a Cloud Runtime Security Suite. The post Sweet Security Emerges From Steal. https://securityaid.co.uk/p=12345&feed_id=19079 https://securityaid.co.uk/p=12345&feed_id=19079"
X Link 2024-04-08T13:06Z [--] followers, [--] engagements
"Cloud Security Firm Kivera Raises $3.5 Million in Seed Funding Australian cybersecurity startup Kivera raised $3.5 million in seed funding from General Advance Round [--] Capital and angel investors. The post Cloud Security Firm Kivera Raises $3.5 Milli. https://securityaid.co.uk/p=12343&feed_id=19081 https://securityaid.co.uk/p=12343&feed_id=19081"
X Link 2024-04-08T15:06Z [--] followers, [--] engagements
"CrowdStrike Debuts New Counter Adversary Operations Team to to Stop Modern Breaches On August [--] [----] Crowdstrike announced its new counter operations CrowdStrike Falcon Intelligence and the CrowdStrike Falcon OverWatch to detect and disrupt adv. https://securityaid.co.uk/p=12340&feed_id=19087 https://securityaid.co.uk/p=12340&feed_id=19087"
X Link 2024-04-08T21:07Z [--] followers, [--] engagements
"Mentorship internships and apprenticeships in OT security. The Five Eyes outline the top exploited vulnerabilities. The Brunswick Corporation loses millions to cyberattack. Ransomware in the industrial space. The US Transportation Security Administra. https://securityaid.co.uk/p=12337&feed_id=19093 https://securityaid.co.uk/p=12337&feed_id=19093"
X Link 2024-04-09T07:06Z [--] followers, [--] engagements
"Rapid7 Announces Layoffs Office Closings Under Restructuring Plan Restructuring plan will result in an 18% reduction in employee headcount and closing of some Rapid7 office locations. The post Rapid7 Announces Layoffs Office Closings Under Restructur. https://securityaid.co.uk/p=12326&feed_id=19107 https://securityaid.co.uk/p=12326&feed_id=19107"
X Link 2024-04-09T21:06Z [--] followers, [--] engagements
"Microsoft Office update breaks actively exploited RCE attack chain Microsoft today released a defense-in-depth update for Microsoft Office that prevents exploitation of a remote code execution (RCE) vulnerability tracked as CVE-2023-36884 that threat a. https://securityaid.co.uk/p=12318&feed_id=19117 https://securityaid.co.uk/p=12318&feed_id=19117"
X Link 2024-04-10T11:06Z [--] followers, [--] engagements
"Russian threat actor abuses Microsoft Teams chats. CrowdStrike's Threat Hunting Report. Cybersecurity and sports. Akamai looks at the current state of ransomware.Read More The CyberWire https://securityaid.co.uk/p=12313&feed_id=19119 https://securityaid.co.uk/p=12313&feed_id=19119"
X Link 2024-04-10T13:06Z [--] followers, [--] engagements
"New Yashma Ransomware Variant Targets Multiple English-Speaking Countries An unknown threat actor is using a variant of the Yashma ransomware to target various entities in English-speaking countries Bulgaria China and Vietnam at least since June [--] . https://securityaid.co.uk/p=12290&feed_id=19161 https://securityaid.co.uk/p=12290&feed_id=19161"
X Link 2024-04-12T15:06Z [--] followers, [--] engagements
"TikTok facing fines for violating childrens privacy The European Data Protection Board is expected to fine TikTok for violating the privacy of young children within the next four weeks. The European Data Protection Board said a binding decision has be. https://securityaid.co.uk/p=12273&feed_id=19175 https://securityaid.co.uk/p=12273&feed_id=19175"
X Link 2024-04-13T09:06Z [--] followers, [--] engagements
"Pyongyangs new friendship with Moscow apparently only goes so far. Reptile rootkit in the wild. Cloudzy updates. Cl0ps torrents. And notes on cyber phases of Russias hybrid war. North Korean cyberespionage against a Russian aerospace firm. The Repti. https://securityaid.co.uk/p=12271&feed_id=19177 https://securityaid.co.uk/p=12271&feed_id=19177"
X Link 2024-04-13T11:06Z [--] followers, [--] engagements
"New SkidMap Redis Malware Variant Targeting Vulnerable Redis Servers VulnerableRedis serviceshave been targeted by a "new improved dangerous" variant of a malware called SkidMap that's engineered to target a wide range of Linux distributions. "The . https://securityaid.co.uk/p=12243&feed_id=19215 https://securityaid.co.uk/p=12243&feed_id=19215"
X Link 2024-04-15T09:06Z [--] followers, [--] engagements
"NYC Couple Pleads Guilty to Money Laundering in $3.6 Billion Bitfinex Hack A married couple from New York City has pleaded guilty to money laundering charges in connection with the [----] hack of cryptocurrency stock exchange Bitfinex resulting in the t. https://securityaid.co.uk/p=12126&feed_id=19281 https://securityaid.co.uk/p=12126&feed_id=19281"
X Link 2024-04-18T15:06Z [--] followers, [--] engagements
"Fake VMware vConnector package on PyPI targets IT pros A malicious package that mimics the VMware vSphere connector module 'vConnector' was uploaded on the Python Package Index (PyPI) under the name 'VMConnect' targeting IT professionals. .Read. https://securityaid.co.uk/p=12125&feed_id=19293 https://securityaid.co.uk/p=12125&feed_id=19293"
X Link 2024-04-19T07:06Z [--] followers, [--] engagements
"Major Cybersecurity Agencies Collaborate to Unveil 2022's Most Exploited Vulnerabilities A four-year-old critical security flaw impacting Fortinet FortiOS SSL has emerged as one of the most routinely and frequently exploited vulnerabilities in [----]. "I. https://securityaid.co.uk/p=12118&feed_id=19301 https://securityaid.co.uk/p=12118&feed_id=19301"
X Link 2024-04-19T15:06Z [--] followers, [--] engagements
"Hackers Exploit Salesforce Email Zero-day Flaw in Facebook Targeted Phishing Attack Hackers exploited a zero-day vulnerability in the email services and SMTP servers of Salesforce. Malicious email traffic is often concealed within email gateway servic. https://securityaid.co.uk/p=12079&feed_id=19341 https://securityaid.co.uk/p=12079&feed_id=19341"
X Link 2024-04-21T15:06Z [--] followers, [--] engagements
"Roll out the red carpet for cyber regulations. Valerie Abend Global Cyber Strategy Lead from Accenture sits down to discuss the Securities and Exchange Commissions recently announced cyber regulations. Ben shares the story of an interesting case conc. https://securityaid.co.uk/p=12064&feed_id=19357 https://securityaid.co.uk/p=12064&feed_id=19357"
X Link 2024-04-22T11:06Z [--] followers, [--] engagements
"Resilience and the cyber workforce: a snapshot. Trends in private equity for cybersecurity startups. Nile secures $175 million in Series C round. Resilience and the cyber workforce: a snapshot. Trends in private equity for cybersecurity startups. Nile . https://securityaid.co.uk/p=12044&feed_id=19368 https://securityaid.co.uk/p=12044&feed_id=19368"
X Link 2024-04-22T21:21Z [--] followers, [--] engagements
"Russian hackers target govt orgs in Microsoft Teams phishing attacks Microsoft says a hacking group tracked as APT29 and linked to Russia's Foreign Intelligence Service (SVR) targeted dozens of organizations worldwide including government agencies in. https://securityaid.co.uk/p=12045&feed_id=19373 https://securityaid.co.uk/p=12045&feed_id=19373"
X Link 2024-04-23T07:06Z [--] followers, [--] engagements
"ControlLogix RCE exploit. Japans largest port disrupted by ransomware. Cl0p breaches Schneider Electric and Siemens Energy. Solar panel vulnerabilities. Threats and risks to electric vehicle charging stations. Massachusetts man charged with remotely s. https://securityaid.co.uk/p=12038&feed_id=19381 https://securityaid.co.uk/p=12038&feed_id=19381"
X Link 2024-04-23T15:06Z [--] followers, [--] engagements
"Amazon's AWS SSM agent can be used as post-exploitation RAT malware Researchers have discovered a new post-exploitation technique in Amazon Web Services (AWS) that allows hackers to use the platform's System Manager (SSM) agent as an undetectable Remot. https://securityaid.co.uk/p=12040&feed_id=19385 https://securityaid.co.uk/p=12040&feed_id=19385"
X Link 2024-04-23T19:06Z [--] followers, [--] engagements
"Phishers Exploit Salesforce's Email Services Zero-Day in Targeted Facebook Campaign A sophisticated Facebook phishing campaign has been observed exploiting a zero-day flaw in Salesforce's email services allowing threat actors to craft targeted phishin. https://securityaid.co.uk/p=12030&feed_id=19397 https://securityaid.co.uk/p=12030&feed_id=19397"
X Link 2024-04-24T11:06Z [--] followers, [--] engagements
"Researchers Uncover AWS SSM Agent Misuse as a Covert Remote Access Trojan Cybersecurity researchers have discovered a new post-exploitation technique in Amazon Web Services (AWS) that allows the AWS Systems Manager Agent (SSM Agent) to be run as a remo. https://securityaid.co.uk/p=12027&feed_id=19413 https://securityaid.co.uk/p=12027&feed_id=19413"
X Link 2024-04-25T07:06Z [--] followers, [--] engagements
"White House releases independent report in support of Section [---]. ONCD unveils plans for improving the cyber workforce. White House releases independent report in support of Section [---]. ONCD unveils plans for improving the cyber workforce.Read Mor. https://securityaid.co.uk/p=12012&feed_id=19435 https://securityaid.co.uk/p=12012&feed_id=19435"
X Link 2024-04-26T09:06Z [--] followers, [--] engagements
"California investigates connected cars; Germany investigates WorldCoin. MOVEit breaches. Paying extortionists. Card data skimmed. California data privacy regulator investigates smart cars. WorldCoin receives scrutiny for collection of biometric data. T. https://securityaid.co.uk/p=12013&feed_id=19437 https://securityaid.co.uk/p=12013&feed_id=19437"
X Link 2024-04-26T11:06Z [--] followers, [--] engagements
"C2-as-a-service. South Asian cyberespionage. Games targeted. Updates from Russia's hybrid war. OT IoT security trends. C2-as-a-service (and APTs are the customers). Cyberespionage activity by Indian APTs. Gamers under attack. StarLink limits Ukrainian . https://securityaid.co.uk/p=11967&feed_id=19453 https://securityaid.co.uk/p=11967&feed_id=19453"
X Link 2024-04-27T07:06Z [--] followers, [--] engagements
"New NodeStealer Targeting Facebook Business Accounts and Crypto Wallets Cybersecurity researchers have unearthed a Python variant of a stealer malwareNodeStealerthat's equipped to fully take over Facebook business accounts as well as siphon cryptocur. https://securityaid.co.uk/p=11968&feed_id=19455 https://securityaid.co.uk/p=11968&feed_id=19455"
X Link 2024-04-27T09:06Z [--] followers, [--] engagements
"Splunk SOAR Unauthenticated Log Injection Let attackers Execute Malicious Code Splunk has discovered a vulnerability that allows unauthenticated log injection which could enable malicious actors to run harmful code on the system. Splunk SOAR (Security. https://securityaid.co.uk/p=11960&feed_id=19473 https://securityaid.co.uk/p=11960&feed_id=19473"
X Link 2024-04-28T07:06Z [--] followers, [--] engagements
"P2PInfect server botnet spreads using Redis replication feature Threat actors are actively targeting exposed instances of the Redis open-source data store with a peer-to-peer self-replicating worm with versions for both Windows and Linux that the malwa. https://securityaid.co.uk/p=11924&feed_id=19505 https://securityaid.co.uk/p=11924&feed_id=19505"
X Link 2024-04-29T19:06Z [--] followers, [--] engagements
"New P2PInfect Worm Targets Redis Servers with Undocumented Breach Methods The P2PInfect peer-to-peer (P2) worm has been observed employing previously undocumented initial access methods to breach susceptible Redis servers and rope them into a botnet. ". https://securityaid.co.uk/p=11917&feed_id=19513 https://securityaid.co.uk/p=11917&feed_id=19513"
X Link 2024-04-30T07:06Z [--] followers, [--] engagements
"Second Ivanti EPMM Zero-Day Vulnerability Exploited in Targeted Attacks Ivanti EPMM customers have been warned of CVE-2023-35081 a second zero-day vulnerability that has been exploited in targeted attacks. The post Second Ivanti EPMM Zero-Day Vulnerab. https://securityaid.co.uk/p=11906&feed_id=19523 https://securityaid.co.uk/p=11906&feed_id=19523"
X Link 2024-04-30T17:06Z [--] followers, [--] engagements
"Microsoft fixes WSUS servers not pushing Windows [--] 22H2 updates Microsoft fixed a known issue impacting WSUS (Windows Server Update Services) servers upgraded to Windows Server [----] causing them not to push Windows [--] 22H2 updates to enterprise endpo. https://securityaid.co.uk/p=11903&feed_id=19528 https://securityaid.co.uk/p=11903&feed_id=19528"
X Link 2024-04-30T21:21Z [---] followers, [--] engagements
"First principle strategies with CJ Moses. Rick Howard discusses cybersecurity first principle strategies with the CISO of AWS.Read More The CyberWire https://securityaid.co.uk/p=11901&feed_id=19535 https://securityaid.co.uk/p=11901&feed_id=19535"
X Link 2024-05-01T09:06Z [--] followers, [--] engagements
"Microsoft Edge is getting a 'darker' dark mode theme Microsoft has quietly announced an enhancement to the Edge browser's dark mode making it even darker. .Read More BleepingComputer https://securityaid.co.uk/p=11878&feed_id=19539 https://securityaid.co.uk/p=11878&feed_id=19539"
X Link 2024-05-01T13:06Z [--] followers, [--] engagements
"US hunts Chinese malware staged to interfere with US military operations. Chinese cyber operations move from espionage to sabotage. So far it's staging but US officials are concerned.Read More The CyberWire https://securityaid.co.uk/p=11871&feed_id=19547 https://securityaid.co.uk/p=11871&feed_id=19547"
X Link 2024-05-01T21:06Z [--] followers, [--] engagements
"Linux version of Abyss Locker ransomware targets VMware ESXi servers The Abyss Locker operation is the latest to develop a Linux encryptor to target VMware's ESXi virtual machines platform in attacks on the enterprise. .Read More BleepingComputer https://securityaid.co.uk/p=11839&feed_id=19553 https://securityaid.co.uk/p=11839&feed_id=19553"
X Link 2024-05-02T07:06Z [--] followers, [--] engagements
"Apple rejects new name 'X' for Twitter iOS app because. rules Mr. Musk may have successfully pushed Twitter's new name and logo 'X' and even made the vanity domain to the social media website but that's not to say. https://securityaid.co.uk/p=11834&feed_id=19557 http://x.com https://securityaid.co.uk/p=11834&feed_id=19557 http://x.com"
X Link 2024-05-02T11:06Z [--] followers, [--] engagements
"The Week that Was: Cl0p claims to have accessed data from a third Big Four accounting firm. A malign AI tool: FraudGPT. Cl0p claims to have accessed data from a third Big Four accounting firm. A malign AI tool: FraudGPT. Report: Ransomware victims incr. https://securityaid.co.uk/p=11826&feed_id=19575 https://securityaid.co.uk/p=11826&feed_id=19575"
X Link 2024-05-03T09:06Z [--] followers, [--] engagements
"White House Issues National Security Memorandum for Critical Infrastructure "value":" The White House has published a national security memorandum focusing on critical infrastructure security and resilience. The post White House Issues National Secur. https://securityaid.co.uk/p=29147&feed_id=19594 https://securityaid.co.uk/p=29147&feed_id=19594"
X Link 2024-05-04T07:21Z [--] followers, [--] engagements
"Four Critical Vulnerabilities Expose HPE Aruba Devices to RCE Attacks "value":"HPE Aruba Networking (formerly Aruba Networks) has released security updates to address critical flaws impacting ArubaOS that could result in remote code execution (RCE) o. https://securityaid.co.uk/p=29140&feed_id=19603 https://securityaid.co.uk/p=29140&feed_id=19603"
X Link 2024-05-04T17:06Z [--] followers, [--] engagements
"Police shuts down [--] fraud call centres arrests [--] suspects Law enforcement shut down [--] phone fraud call centers in Albania Bosnia and Herzegovina Kosovo and Lebanon behind thousands of scam calls daily. .Read More BleepingComputer https://securityaid.co.uk/p=29133&feed_id=19621 https://securityaid.co.uk/p=29133&feed_id=19621"
X Link 2024-05-05T15:06Z [--] followers, [--] engagements
"APT42 impersonates journalists and event organizers. Threat actors abuse Microsoft Graph API for command-and-control. Dropbox discloses breach of digital signature platform.Read More The CyberWire https://securityaid.co.uk/p=29129&feed_id=19627 https://securityaid.co.uk/p=29129&feed_id=19627"
X Link 2024-05-05T21:06Z [--] followers, [--] engagements
"LayerX Security Raises $24M for its Browser Security Platform Enabling Employees to Work Securely from Any Browser Anywhere "value":" LayerX pioneer of the LayerX Browser Security platform today announced $24 million in Series A funding led by Gl. https://securityaid.co.uk/p=29123&feed_id=19637 https://securityaid.co.uk/p=29123&feed_id=19637"
X Link 2024-05-06T11:06Z [--] followers, [--] engagements
"Permira to Acquire Majority Stake in BioCatch at $1.3 Billion Valuation "value":" Permira has agreed to acquire a majority of BioCatch shares primarily from Bain Capital Tech Opportunities and Maverick Ventures. The post Permira to Acquire Majority . https://securityaid.co.uk/p=29192&feed_id=19693 https://securityaid.co.uk/p=29192&feed_id=19693"
X Link 2024-05-08T07:06Z [--] followers, [--] engagements
"Akamai to Acquire API Security Startup Noname for $450 Million Akamai Technologies Inc. is set to acquire Noname Security a top API security vendor for $450 million signaling a major move to boost its API security capabilities. This acquisition mar. https://securityaid.co.uk/p=29290&feed_id=19697 https://securityaid.co.uk/p=29290&feed_id=19697"
X Link 2024-05-08T11:06Z [--] followers, [--] engagements
"Desperate Taylor Swift fans defrauded by ticket scams When there are not nearly enough tickets for some concerts to accommodate all the fans that desperately want to be there it makes for ideal hunting grounds for scammers.Read More https://securityaid.co.uk/p=29318&feed_id=19713 https://securityaid.co.uk/p=29318&feed_id=19713"
X Link 2024-05-09T07:06Z [--] followers, [--] engagements
"Brandywine Realty Trust Ransomware Attack: Services Disrupted Brandywine Realty Trust a significant U.S. real estate investment trust has confirmed a disruption to its operations due to a ransomware attack detected on May [--] [----]. The cyber incident . https://securityaid.co.uk/p=29349&feed_id=19743 https://securityaid.co.uk/p=29349&feed_id=19743"
X Link 2024-05-10T17:06Z [--] followers, [--] engagements
"Alert Google Chrome Zero-day Exploited in the Wild Google has released an urgent update for its popular Chrome web browser. The update fixes a critical zero-day vulnerability that malicious attackers are actively exploiting. The vulnerability is consi. https://securityaid.co.uk/p=29355&feed_id=19761 https://securityaid.co.uk/p=29355&feed_id=19761"
X Link 2024-05-11T11:06Z [--] followers, [--] engagements
"Dell API abused to steal [--] million customer records in data breach The threat actor behind the recent Dell data breach revealed they scraped information of [--] million customer records using an partner portal API they accessed as a fake company. .. https://securityaid.co.uk/p=29364&feed_id=19800 https://securityaid.co.uk/p=29364&feed_id=19800"
X Link 2024-05-12T13:06Z [--] followers, [--] engagements
"Microsoft Deploys Generative AI for US Spies Plus: China is suspected in a hack targeting the UKs military the US Marines are testing gun-toting robotic dogs and Dell suffers a data breach impacting [--] million customers.Read More https://securityaid.co.uk/p=29406&feed_id=19825 https://securityaid.co.uk/p=29406&feed_id=19825"
X Link 2024-05-12T23:06Z [--] followers, [---] engagements
"Notorious Hacker IntelBroker Claims that Europol has Suffered a Data Breach The European Unions law enforcement agency Europol has confirmed a security breach of its web portal but says no operational data was compromised. The notorious hacker group. https://securityaid.co.uk/p=29451&feed_id=19849 https://securityaid.co.uk/p=29451&feed_id=19849"
X Link 2024-05-13T09:06Z [--] followers, [--] engagements
"Microsoft Deploys Generative AI for US Spies Plus: China is suspected in a hack targeting the UKs military the US Marines are testing gun-toting robotic dogs and Dell suffers a data breach impacting [--] million customers.Read More https://securityaid.co.uk/p=29406&feed_id=19865 https://securityaid.co.uk/p=29406&feed_id=19865"
X Link 2024-05-13T21:06Z [--] followers, [--] engagements
"The $2.3 Billion Tornado Cash Case Is a Pivotal Moment for Crypto Privacy Tuesdays verdict in the trial of Alexey Pertsev a creator of crypto-privacy service Tornado Cash is the first in a string of cases that could make it much harder to skirt fina. https://securityaid.co.uk/p=29462&feed_id=19926 https://securityaid.co.uk/p=29462&feed_id=19926"
X Link 2024-05-15T21:06Z [--] followers, [--] engagements
"Malicious Python Package Hides Sliver C2 Framework Within PNG File An attacker published a malicious package on PyPI named requests-darwin-lite masquerading as a variant of the popular requests library which contained a hidden Golang binary withi. https://securityaid.co.uk/p=29463&feed_id=19930 https://securityaid.co.uk/p=29463&feed_id=19930"
X Link 2024-05-16T00:21Z [--] followers, [--] engagements
"Apple backports fix for RTKit iOS zero-day to older iPhones Apple has backported security patches released in March to older iPhones and iPads fixing an iOS Kernel zero-day tagged as exploited in attacks. .Read More https://securityaid.co.uk/p=29473&feed_id=19959 https://securityaid.co.uk/p=29473&feed_id=19959"
X Link 2024-05-17T06:06Z [--] followers, [--] engagements
"OpenAI Releases GPT-4o Faster Model & Free For All ChatGPT Users OpenAI which is the leading artificial intelligence research lab recently announced its latest breakthrough in AI technology called GPT-4o. This newest and most advanced model represen. https://securityaid.co.uk/p=29474&feed_id=19962 https://securityaid.co.uk/p=29474&feed_id=19962"
X Link 2024-05-17T09:06Z [--] followers, [--] engagements
"Microsoft to Mandate Multi-Factor Authentication for All Azure Users Microsoft has said that all Azure users will have to use multi-factor authentication (MFA) starting in July. This is a big step to make the cloud safer. This project is part of a lar. https://securityaid.co.uk/p=29554&feed_id=19980 https://securityaid.co.uk/p=29554&feed_id=19980"
X Link 2024-05-18T03:06Z [--] followers, [--] engagements
"Kimsuky APT Deploying Linux Backdoor Gomir in South Korean Cyber Attacks TheKimsuky(aka Springtail) advanced persistent threat (APT) group which is linked to North Korea's Reconnaissance General Bureau (RGB) has been observed deploying a Linux vers. https://securityaid.co.uk/p=29557&feed_id=19989 https://securityaid.co.uk/p=29557&feed_id=19989"
X Link 2024-05-18T12:06Z [--] followers, [--] engagements
"Nissan reveals ransomware attack exposed [-----] workers social security numbers Nissan North America has revealed that extortionists who demanded a ransom after breaking into its external VPN and disrupted systems last year also stole the social secur. https://securityaid.co.uk/p=29566&feed_id=20016 https://securityaid.co.uk/p=29566&feed_id=20016"
X Link 2024-05-19T15:06Z [--] followers, [--] engagements
"Microsoft to start enforcing Azure multi-factor authentication in July Starting in July Microsoft will begin gradually enforcing multi-factor authentication (MFA) for all users signing into Azure to administer resources. .Read More https://securityaid.co.uk/p=29568&feed_id=20022 https://securityaid.co.uk/p=29568&feed_id=20022"
X Link 2024-05-19T21:06Z [--] followers, [--] engagements
"Android malware Grandoreiro returns after police disruption The Android banking trojan "Grandoreiro" is spreading in a large-scale phishing campaignin over [--] countries targeting customeraccounts of roughly [----] banks. .Read More https://securityaid.co.uk/p=29571&feed_id=20031 https://securityaid.co.uk/p=29571&feed_id=20031"
X Link 2024-05-20T06:06Z [--] followers, [--] engagements
"American Radio Relay League cyberattack takes Logbook of the World offline TheAmerican Radio Relay League (ARRL) warns it suffered a cyberattack which disrupted its IT systems and online operations including email and the Logbook of the World. .. https://securityaid.co.uk/p=29581&feed_id=20055 https://securityaid.co.uk/p=29581&feed_id=20055"
X Link 2024-05-21T06:06Z [--] followers, [--] engagements
"PoC Released for JavaScript execution Vulnerability in PDF.js A critical vulnerability CVE-2024-4367 has been discovered in PDF.js a widely used JavaScript-based PDF viewer maintained by Mozilla. The issue affects a. https://securityaid.co.uk/p=29611&feed_id=20154 https://securityaid.co.uk/p=29611&feed_id=20154"
X Link 2024-05-25T00:21Z [--] followers, [--] engagements
"GitHub warns of SAML auth bypass flaw in Enterprise Server GitHub has fixed amaximum severity (CVSS v4 score: 10.0) authentication bypass vulnerability tracked as CVE-2024-4986 whichimpacts GitHub Enterprise Server (GHES) instances using SAML single. https://securityaid.co.uk/p=29613&feed_id=20160 https://securityaid.co.uk/p=29613&feed_id=20160"
X Link 2024-05-25T06:21Z [--] followers, [--] engagements
"Rockwell Automation warns admins to take ICS devices offline Rockwell Automation warned customers to disconnect all industrial control systems (ICSs) not designed for online exposure from the Internet due to increasing malicious activity worldwide. . https://securityaid.co.uk/p=29619&feed_id=20177 https://securityaid.co.uk/p=29619&feed_id=20177"
X Link 2024-05-26T00:06Z [--] followers, [--] engagements
"Atlassian Bitbucket artifacts can leak plaintext auth secrets Threat actors were found breaching AWS accounts using authentication secrets leaked as plaintext in Atlassian Bitbucket artifact objects. .Read More https://securityaid.co.uk/p=29620&feed_id=20180 https://securityaid.co.uk/p=29620&feed_id=20180"
X Link 2024-05-26T03:06Z [--] followers, [--] engagements
"GhostEngine mining attacks kill EDR security using vulnerable drivers A malicious crypto mining campaign codenamed 'REF4578' hasbeen discovereddeploying a malicious payload named GhostEngine that usesvulnerable drivers to turn off security products. https://securityaid.co.uk/p=29624&feed_id=20192 https://securityaid.co.uk/p=29624&feed_id=20192"
X Link 2024-05-26T15:06Z [--] followers, [--] engagements
"Critical Unauthenticated RCE Vulnerability in Fortinet FortiSIEM: PoC Published A proof-of-concept (PoC) exploit has been released for a critical unauthenticated remote code execution vulnerability in Fortinet FortiSIEM tracked as CVE-2023-34992. Th. https://securityaid.co.uk/p=29626&feed_id=20198 https://securityaid.co.uk/p=29626&feed_id=20198"
X Link 2024-05-26T21:06Z [--] followers, [--] engagements
"Rockwell Automation Warns Admin to Disconnect Devices From Internet Rockwell Automation has sent an urgent message to all of its customers because of rising geopolitical issues and hostile cyber activity worldwide. The company is asking that any device. https://securityaid.co.uk/p=29630&feed_id=20210 https://securityaid.co.uk/p=29630&feed_id=20210"
X Link 2024-05-27T09:06Z [--] followers, [--] engagements
"Critical VMware Vulnerabilities Let Attackers Execute Code & Trigger DOS VMware a leading virtualization and cloud computing software provider has issued patches for several critical and important vulnerabilities affecting its ESXi Workstation Clou. https://securityaid.co.uk/p=29631&feed_id=20213 https://securityaid.co.uk/p=29631&feed_id=20213"
X Link 2024-05-27T12:06Z [--] followers, [--] engagements
"PoC Exploit Released for Critical Git RCE Vulnerability A critical vulnerability in Git identified as CVE-2024-32002 has recently come to light posing significant risks to users of the widely used version control system. The vulnerability allows fo. https://securityaid.co.uk/p=29646&feed_id=20237 https://securityaid.co.uk/p=29646&feed_id=20237"
X Link 2024-05-28T12:06Z [--] followers, [--] engagements
"Rockwell Advises Disconnecting Internet-Facing ICS Devices Amid Cyber Threats Rockwell Automation is urging its customers to disconnect all industrial control systems (ICSs) not meant to be connected to the public-facing internet to mitigate unauthoriz. https://securityaid.co.uk/p=29647&feed_id=20240 https://securityaid.co.uk/p=29647&feed_id=20240"
X Link 2024-05-28T15:06Z [--] followers, [--] engagements
"State hackers turn to massive ORB proxy networks to evade detection Security researchersare warningthat China-linked state-backed hackersare increasingly relyingon vast proxy networks of virtual private servers and compromised connected devices for. https://securityaid.co.uk/p=29654&feed_id=20261 https://securityaid.co.uk/p=29654&feed_id=20261"
X Link 2024-05-29T12:06Z [--] followers, [--] engagements
"Smashing Security podcast #373: iPhone undeleted photos and stealing Scarlett Johanssons voice iPhone photos come back from the dead Scarlett Johansson sounds upset about GPT-4o and there's a cockup involving celebrity fakes. All this and much more. https://securityaid.co.uk/p=29657&feed_id=20270 https://securityaid.co.uk/p=29657&feed_id=20270"
X Link 2024-05-29T21:06Z [--] followers, [--] engagements
"End of VBScript Microsoft Replacing it With Advanced Alternatives Microsoft has officially announced the gradual deprecation of VBScript with plans to replace it with more advanced alternatives such as JavaScript and PowerShell. The move comes as pa. https://securityaid.co.uk/p=29659&feed_id=20276 https://securityaid.co.uk/p=29659&feed_id=20276"
X Link 2024-05-30T03:06Z [--] followers, [--] engagements
"Threat Actor Claiming Access to AWS Azure MongoDB & Github API Keys A threat actor has claimed to have gained unauthorized access to API keys for major cloud service providers including Amazon Web Services (AWS) Microsoft Azure MongoDB and GitHub. https://securityaid.co.uk/p=29662&feed_id=20286 https://securityaid.co.uk/p=29662&feed_id=20286"
X Link 2024-05-30T12:21Z [--] followers, [--] engagements
"Ransomware Attacks Targeting VMware ESXi Infrastructure Adopt New Pattern Cybersecurity professionals at Sygnia have noted a notable change in the strategies used by ransomware groups that are aiming at virtualized environments specifically VMware ESX. https://securityaid.co.uk/p=29678&feed_id=20333 https://securityaid.co.uk/p=29678&feed_id=20333"
X Link 2024-06-01T12:06Z [--] followers, [--] engagements
"New DoS Attack DNSBomb Exploiting DNS Queries & Responses Cybersecurity researchers have unveiled a new and potent Denial of Service (DoS) attack dubbed DNSBomb. This attack leverages the inherent mechanisms of the Domain Name System (DNS) to cre. https://securityaid.co.uk/p=29679&feed_id=20336 https://securityaid.co.uk/p=29679&feed_id=20336"
X Link 2024-06-01T15:06Z [--] followers, [--] engagements
"Cencora data breach exposes US patient info from [--] drug companies Some of the largest drug companies in the world have disclosed data breaches due to a February [----] cyberattack at Cencora whom they partner with for pharmaceutical and business service. https://securityaid.co.uk/p=29688&feed_id=20363 https://securityaid.co.uk/p=29688&feed_id=20363"
X Link 2024-06-02T18:06Z [--] followers, [--] engagements
"Experts Find Flaw in Replicate AI Service Exposing Customers' Models and Data Cybersecurity researchers have discovered a critical security flaw in an artificial intelligence (AI)-as-a-service providerReplicatethat could have allowed threat actors to. https://securityaid.co.uk/p=29694&feed_id=20381 https://securityaid.co.uk/p=29694&feed_id=20381"
X Link 2024-06-03T12:06Z [--] followers, [--] engagements
"Indian National Pleads Guilty for $37 Million By Running Fake Coinbases Website Chirag Tomar a 30-year-old citizen of the Republic of India appeared before U.S. Magistrate Judge Susan C. Rodriguez today and pleaded guilty to federal charges for orch. https://securityaid.co.uk/p=29701&feed_id=20396 https://securityaid.co.uk/p=29701&feed_id=20396"
X Link 2024-06-04T03:06Z [--] followers, [--] engagements
"Moroccan Cybercrime Group Steals Up to $100K Daily Through Gift Card Fraud Microsoft is calling attention to a Morocco-based cybercrime group dubbedStorm-0539that's behind gift card fraud and theft through highly sophisticated email and SMS phishing . https://securityaid.co.uk/p=29709&feed_id=20420 https://securityaid.co.uk/p=29709&feed_id=20420"
X Link 2024-06-05T03:06Z [--] followers, [--] engagements
"Exploit released for maximum severity Fortinet RCE bug patch now Security researchers have released a proof-of-concept (PoC) exploit for a maximum-severity vulnerability in Fortinet's security information and event management (SIEM) solution which w. https://securityaid.co.uk/p=29729&feed_id=20481 https://securityaid.co.uk/p=29729&feed_id=20481"
X Link 2024-06-07T15:21Z [--] followers, [--] engagements
"US govt sanctions cybercrime gang behind massive [---] S5 botnet The U.S. Treasury Department has sanctioned a cybercrime network comprising three Chinese nationals and three Thailand-based companies linked to a massive botnet controlling a residential p. https://securityaid.co.uk/p=29733&feed_id=20492 https://securityaid.co.uk/p=29733&feed_id=20492"
X Link 2024-06-08T03:06Z [--] followers, [--] engagements
"First American December data breach impacts [-----] people First American Financial Corporation the second-largest title insurance company in the United States revealed on Tuesday that a December cyberattack led to a breach impacting [-----] individual. https://securityaid.co.uk/p=29739&feed_id=20504 https://securityaid.co.uk/p=29739&feed_id=20504"
X Link 2024-06-08T15:06Z [--] followers, [--] engagements
"PoC Exploit Released for Critical Fortinet FortiSIEM 2nd Order Command Injection Deep A proof-of-concept (PoC) exploit has been released for a critical vulnerability in Fortinets FortiSIEM. The vulnerability CVE-2024-23108 allows for remote unauth. https://securityaid.co.uk/p=29740&feed_id=20507 https://securityaid.co.uk/p=29740&feed_id=20507"
X Link 2024-06-08T18:06Z [--] followers, [---] engagements
"Microsoft Uncovers 'Moonstone Sleet' New North Korean Hacker Group A never-before-seen North Korean threat actor codenamed Moonstone Sleet has been attributed as behind cyber attacks targeting individuals and organizations in the software and informa. https://securityaid.co.uk/p=29748&feed_id=20531 https://securityaid.co.uk/p=29748&feed_id=20531"
X Link 2024-06-09T18:06Z [--] followers, [--] engagements
"Okta warns of credential stuffing attacks targeting its CORS feature Okta warnsthat a Customer Identity Cloud (CIC) feature is being targeted in credential stuffing attacks stating that numerous customers have been targeted since April. .Read Mo. https://securityaid.co.uk/p=29757&feed_id=20558 https://securityaid.co.uk/p=29757&feed_id=20558"
X Link 2024-06-10T21:06Z [--] followers, [--] engagements
"U.S. Dismantles World's Largest [---] S5 Botnet with [--] Million Infected Devices The U.S. Department of Justice (DoJ) on Wednesday said it dismantled what it described as "likely the world's largest botnet ever" which consisted of an army of [--] million. https://securityaid.co.uk/p=29771&feed_id=20600 https://securityaid.co.uk/p=29771&feed_id=20600"
X Link 2024-06-12T15:06Z [--] followers, [--] engagements
"RedTail Crypto-Mining Malware Exploiting Palo Alto Networks Firewall Vulnerability The threat actors behind the RedTail cryptocurrency mining malware have added a recently disclosed security flaw impacting Palo Alto Networks firewalls to its exploit ar. https://securityaid.co.uk/p=29782&feed_id=20633 https://securityaid.co.uk/p=29782&feed_id=20633"
X Link 2024-06-14T00:06Z [--] followers, [--] engagements
"BBC Data Breach: Hackers Access Cloud-Based Storage Service The BBC has confirmed a data security incident involving the personal information of some members of the BBC Pension Scheme. The breach which was detected by the BBCs information security te. https://securityaid.co.uk/p=29793&feed_id=20667 https://securityaid.co.uk/p=29793&feed_id=20667"
X Link 2024-06-15T09:21Z [--] followers, [--] engagements
"Windows-based AllaKore Malware Abuses Azure Cloud for C2 Infrastructure A new variant of AllaKore RAT named AllaSenha has been discovered targeting Brazilian bank accounts which leverages a multi-stage infection chain involving phishing emails mali. https://securityaid.co.uk/p=29800&feed_id=20687 https://securityaid.co.uk/p=29800&feed_id=20687"
X Link 2024-06-16T06:06Z [--] followers, [--] engagements
"AI Company Hugging Face Notifies Users of Suspected Unauthorized Access Artificial Intelligence (AI) company Hugging Face on Friday disclosed that it detected unauthorized access to its Spaces platform earlier this week. "We have suspicions that a subs. https://securityaid.co.uk/p=29813&feed_id=20726 https://securityaid.co.uk/p=29813&feed_id=20726"
X Link 2024-06-17T21:06Z [--] followers, [--] engagements
"The Ticketmaster Data Breach May Be Just the Beginning Data breaches at Ticketmaster and financial services company Santander have been linked to attacks against cloud provider Snowflake. Researchers fear more breaches will soon be uncovered.Read More https://securityaid.co.uk/p=29815&feed_id=20733 https://securityaid.co.uk/p=29815&feed_id=20733"
X Link 2024-06-18T03:21Z [--] followers, [--] engagements
"Andariel Hackers Target South Korean Institutes with New Dora RAT Malware The North Korea-linked threat actor known as Andariel has been observed using a new Golang-based backdoor called Dora RAT in its attacks targeting educational institutes manufac. https://securityaid.co.uk/p=29826&feed_id=20760 https://securityaid.co.uk/p=29826&feed_id=20760"
X Link 2024-06-19T06:21Z [--] followers, [--] engagements
"How Donald Trump Could Weaponize US Surveillance in a Second Term Donald Trump has vowed to go after political enemies undocumented immigrants and others if he wins. Experts warn he could easily turn the surveillance state against his targets.Read M. https://securityaid.co.uk/p=29827&feed_id=20762 https://securityaid.co.uk/p=29827&feed_id=20762"
X Link 2024-06-19T09:06Z [--] followers, [--] engagements
"Hackers Exploiting Amazon Google And IBM Cloud Services To Steal Customer Data Criminals are exploiting cloud storage services to host phishing websites for SMS scams by abusing the static website hosting feature of cloud storage to store HTML files w. https://securityaid.co.uk/p=29831&feed_id=20774 https://securityaid.co.uk/p=29831&feed_id=20774"
X Link 2024-06-19T21:06Z [--] followers, [--] engagements
"Verizon users report blurry photos in Android messaging apps Verizon customers using Android phones report that they receive blurry images through text messages on different services and apps with no response from Verizon as to why. .Read More https://securityaid.co.uk/p=29835&feed_id=20786 https://securityaid.co.uk/p=29835&feed_id=20786"
X Link 2024-06-20T09:06Z [--] followers, [--] engagements
"Microsoft Indias X account hijacked in Roaring Kitty crypto scam The official Microsoft India account on Twitter with over [------] followers was hijacked by cryptocurrency scammers to impersonate Roaring Kitty the handle used by notorious meme stoc. https://securityaid.co.uk/p=29841&feed_id=20804 https://securityaid.co.uk/p=29841&feed_id=20804"
X Link 2024-06-21T03:06Z [---] followers, [--] engagements
"Massive Ticketmaster Santander Data Breaches Linked to Snowflake Account Hacks Hackers have claimed responsibility for a massive data breach involving Ticketmaster and Santander Bank potentially affecting over [---] million accounts. The breach linked. https://securityaid.co.uk/p=29843&feed_id=20810 https://securityaid.co.uk/p=29843&feed_id=20810"
X Link 2024-06-21T09:06Z [--] followers, [--] engagements
"PoC Exploit Released for macOS Root Access Vulnerability A security vulnerability identified as CVE-2024-27822 has been discovered in macOS. This vulnerability allows unauthorized root access and has raised serious concerns among cybersecurity exper. https://securityaid.co.uk/p=29844&feed_id=20813 https://securityaid.co.uk/p=29844&feed_id=20813"
X Link 2024-06-21T12:06Z [--] followers, [--] engagements
"Hackers Actively Exploiting Checkpoint 0-Day Flaw Cybersecurity experts have identified a critical zero-day vulnerability in Checkpoints security software that hackers are actively exploiting. The flaw assigned to the identifier CVE-2024-24919 poses a. https://securityaid.co.uk/p=29846&feed_id=20819 https://securityaid.co.uk/p=29846&feed_id=20819"
X Link 2024-06-21T18:06Z [--] followers, [--] engagements
"Russians Love YouTube. Thats a Problem for the Kremlin YouTube remains the only major US-based social media platform available in Russia. Its become "indispensable" to everyday people making a ban tricky. Journalists and dissidents are taking advant. https://securityaid.co.uk/p=29848&feed_id=20825 https://securityaid.co.uk/p=29848&feed_id=20825"
X Link 2024-06-22T00:06Z [--] followers, [--] engagements
"Microsoft Azure Vulnerability Let Attackers Bypass Firewall Rules Tenable Research has uncovered a significant vulnerability in Microsoft Azure that allows malicious attackers to bypass firewall rules by forging requests from trusted services. This vul. https://securityaid.co.uk/p=29851&feed_id=20834 https://securityaid.co.uk/p=29851&feed_id=20834"
X Link 2024-06-22T09:06Z [--] followers, [--] engagements
"AI Is Your Coworker Now. Can You Trust It Generative AI tools such as OpenAIs ChatGPT and Microsofts Copilot are becoming part of everyday business life. But they come with privacy and security considerations you should know about.Read More https://securityaid.co.uk/p=29852&feed_id=20837 https://securityaid.co.uk/p=29852&feed_id=20837"
X Link 2024-06-22T12:06Z [--] followers, [--] engagements
"Confluence Data Center & Server Flaw Allows Remote Code Execution Atlassian disclosed a high-severity vulnerability that exists in multiple versions of their Confluence Data Center and Server. The CVE for this vulnerability was assigned with CVE-2024-. https://securityaid.co.uk/p=29854&feed_id=20843 https://securityaid.co.uk/p=29854&feed_id=20843"
X Link 2024-06-22T18:06Z [--] followers, [--] engagements
"TikTok fixes zero-day bug used to hijack high-profile accounts Over the past week attackers have hijacked high-profile TikTok accounts belonging to multiple companies and celebrities exploitinga zero-day vulnerability in the social media's direct me. https://securityaid.co.uk/p=29863&feed_id=20870 https://securityaid.co.uk/p=29863&feed_id=20870"
X Link 2024-06-23T21:06Z [--] followers, [--] engagements
"Hackers Exploited TikTok Zero-Day Vulnerability to Hijack High-Profile Accounts TikTok has confirmed that hackers exploited a zero-day vulnerability in its direct messaging (DM) feature to hijack several high-profile accounts. The affected accounts in. https://securityaid.co.uk/p=29866&feed_id=20879 https://securityaid.co.uk/p=29866&feed_id=20879"
X Link 2024-06-24T06:06Z [--] followers, [--] engagements
"PoC Exploit Released for Linux Kernel Privilege Escalation Vulnerability A Proof-of-Concept (PoC) exploit has been released for a critical privilege escalation vulnerability in the Linux kernel. The vulnerability tracked as CVE-2023-3390 has raised ala. https://securityaid.co.uk/p=29867&feed_id=20882 https://securityaid.co.uk/p=29867&feed_id=20882"
X Link 2024-06-24T09:06Z [--] followers, [--] engagements
"Databricks Is Acquiring Tabular A Data-Management Startup Databricks has announced its acquisition of Tabular Inc. a data management startup founded by Ryan Blue Daniel Weeks and Jason Reid. This acquisition brings together the original creators o. https://securityaid.co.uk/p=29870&feed_id=20891 https://securityaid.co.uk/p=29870&feed_id=20891"
X Link 2024-06-24T18:06Z [--] followers, [--] engagements
"Zyxel Releases Patches for Firmware Vulnerabilities in EoL NAS Models Zyxel has released security updates to address critical flaws impacting two of its network-attached storage (NAS) devices that have currently reached end-of-life (EoL) status. Succes. https://securityaid.co.uk/p=29872&feed_id=20897 https://securityaid.co.uk/p=29872&feed_id=20897"
X Link 2024-06-25T00:06Z [--] followers, [--] engagements
"Big name TikTok accounts hijacked after opening DM High profile TikTok accounts including CNN Sony anderParis Hilton have been targeted in a recent attack. CNN was the first account takeover that made the news with Semafor reporting that the acc. https://securityaid.co.uk/p=29874&feed_id=20903 https://securityaid.co.uk/p=29874&feed_id=20903"
X Link 2024-06-25T06:06Z [--] followers, [--] engagements
"Targetcompany Ransomware Group Employs Linux Variant To Attack Esxi Environments The notorious TargetCompany ransomware group introduced a new Linux variant targeting VMware ESXi environments. This evolution in their tactics underscores the increasing . https://securityaid.co.uk/p=29879&feed_id=20918 https://securityaid.co.uk/p=29879&feed_id=20918"
X Link 2024-06-25T21:06Z [--] followers, [--] engagements
"Twenty-Two Chinese Nationals Pleads Guilty For Stealing Money From Zambians Twenty-two Chinese nationals have pleaded guilty to committing cyber-related crimes in Zambia. These individuals are part of a larger group of [--] suspects arrested in April l. https://securityaid.co.uk/p=29895&feed_id=20966 https://securityaid.co.uk/p=29895&feed_id=20966"
X Link 2024-06-27T21:06Z [--] followers, [--] engagements
"Smashing Security podcast #375: Crashing robo-taxis and name-dropping rappers Drones some coloured cardboard and a piece of tinfoil may be all the kit you need to crash a robot-driven taxi and a rapper is accused of using Justin Bieber's name to de. https://securityaid.co.uk/p=29902&feed_id=20987 https://securityaid.co.uk/p=29902&feed_id=20987"
X Link 2024-06-28T18:06Z [--] followers, [--] engagements
"Advance Auto Parts customer data posted for sale A cybercriminal using the handle Sp1d3r is offering to sell [--] TB of data taken from Advance Auto Parts Inc. Advance Auto Parts is a US automotive aftermarket parts provider that serves both professional. https://securityaid.co.uk/p=29904&feed_id=20993 https://securityaid.co.uk/p=29904&feed_id=20993"
X Link 2024-06-29T00:06Z [--] followers, [--] engagements
"Los Angeles Unified School District investigates data theft claims Los Angeles Unified School District (LAUSD) officials are investigating a threat actor's claims that they're selling stolen databases containing records belonging to millions of student. https://securityaid.co.uk/p=29914&feed_id=21023 https://securityaid.co.uk/p=29914&feed_id=21023"
X Link 2024-06-30T06:06Z [--] followers, [--] engagements
"Hackers exploit [----] ThinkPHP flaws to install Dama web shells Chinese threat actors are targeting ThinkPHP applications vulnerable to CVE-2018-20062 and CVE-2019-9082to install a persistent web shell named Dama. .Read More https://securityaid.co.uk/p=29915&feed_id=21026 https://securityaid.co.uk/p=29915&feed_id=21026"
X Link 2024-06-30T09:06Z [--] followers, [--] engagements
"Cisco Finesse Vulnerabilities Let Attackers Perform Stored XSS Attack Cisco has issued a security advisory detailing multiple vulnerabilities in Cisco Finesses web-based management interface. These vulnerabilities identified as CVE-2024-20404 and CVE. https://securityaid.co.uk/p=29916&feed_id=21029 https://securityaid.co.uk/p=29916&feed_id=21029"
X Link 2024-06-30T12:06Z [--] followers, [--] engagements
"PoC Exploit Released for High Severity Apache HugeGraph RCE flaw A proof-of-concept (PoC) exploit has been released for a high-severity Remote Code Execution (RCE) vulnerability in the Apache HugeGraph Server. This vulnerability identified as CVE-202. https://securityaid.co.uk/p=29918&feed_id=21035 https://securityaid.co.uk/p=29918&feed_id=21035"
X Link 2024-06-30T18:06Z [--] followers, [--] engagements
"Huge Surge in Attacks Exploiting Check Point VPN Zero-Day Vulnerability Check Point published an advisory regarding a critical vulnerability CVE-2024-24919 which has since seen a surge in exploitation attempts. The vulnerability rated with a CVSS sc. https://securityaid.co.uk/p=29921&feed_id=21044 https://securityaid.co.uk/p=29921&feed_id=21044"
X Link 2024-07-01T03:06Z [--] followers, [--] engagements
"Hackers Attack ThinkPHP By Injecting Payload From Remote Servers Threat actors are constantly evolving their TTPs and developing new malicious tools to execute their activities. Recently Akamai researchers have noted a concerning trend of attackers ex. https://securityaid.co.uk/p=29923&feed_id=21050 https://securityaid.co.uk/p=29923&feed_id=21050"
X Link 2024-07-01T09:06Z [--] followers, [--] engagements
"New York Times source code stolen using exposed GitHub token Internal source code and data belonging to The New York Times was leaked on the 4chan message board after being stolen from thecompany's GitHub repositories in January [----] The Times confir. https://securityaid.co.uk/p=29942&feed_id=21107 https://securityaid.co.uk/p=29942&feed_id=21107"
X Link 2024-07-03T18:06Z [--] followers, [--] engagements
Limited data mode. Full metrics available with subscription: lunarcrush.com/pricing
/creator/twitter::SecurityAid