🇫🇷 Une attaque en déni de service distribué a perturbé certains services Météo-France (meteofrance.com
) #france #ddos #threats #numérique #online #incident #networks #dns #application #mobile #outage #weather #services #meteo #panne #informatique
L'attaque a rendu quasiment inaccessibles les sites Internet et l'application destinés au grand public. Ont également été concernés, les extranets des clients institutionnels et commerciaux contenant l'information météorologique et les moyens de télétravail.
🇫🇷 Une partie des systèmes informatiques du Centre Hospitalier de Bourg en Bresse (ch-bourg-en-bresse.fr
) impactée par une attaque informatique perpétrée dans la nuit du 10 avril 2023 #france #hospital #health #medicine #surgical #outage #cyber #systems #networks #santé #patients #ségur #incident #surgeon #cardiology #clinical #safety #surgery #devices #citizens #obstetrics #resource #numérique #services #informatique
https://www.ch-bourg-en-bresse.fr/blog/2023/04/13/accueil-copy/
🇨🇦 Une attaque en déni de service distribué a perturbé l'application Hydro-Québec (hydroquebec.com
) ainsi que tous les services clients en ligne #canada #energies #online #industrial #ddos #threats #panne #web #services #outage #informatique
🇩🇪 Evotec SE (evotec.com
) #germany #pharma #ransomware #databreach #business #industries #healthcare #biology #ai #ml #santé #therapeutic #technologies #biotech #firms #patients #bigdata #drug #health #biotherapeutics #antibodies #manufacturers #services #commercial #biotechnology #clinical #market #systems #allemagne #informatique
https://www.ntg24.de/Evotec-Cyber-Angriff-laesst-Kurse-purzeln-12042023-AGD-Aktien
🇩🇪 Lürssen #germany #naval #marine #vessels #logistics #transport #fleet #systems #strategic #outage #clients #facilities #ransomware #shipyard #technologies #shipbuilder #construction #business #maintenance #innovative #gdpr #market #databreach #customers #navy #boats #panne #luxury #careers #yatch #ocean #services #industrial #threats #allemagne #informatique
https://www.nordkurier.de/cyberangriff-auf-schiffbauer-luerssen-1532729
🇩🇪 ZBW (zbw.eu
) has fallen victim to a cyber attack. Numerous services, including e-mail, are unavailable #germany #europe #digital #cloud #infrastructure #economics #services #sciences #careers #outage #technologies #management #allemagne #informatique
🇺🇸 Operations knocked offline due to a malware attack at the Oak Ridge (oakridgetn.gov
) will gradually return in the coming weeks #usa #city #payments #malware #web #citizens #online #incident #digital #bills #departments #customers #outage #billing #services #panne #informatique
https://www.oakridgetn.gov/oak-ridge-business-operations-continue-amid-outage
🇬🇧 Capita plc (capita.com
) #uk #financial #digital #software #outage #insights #money #services #solutions #defence #health #innovative #government #justice #retails #telecom #medias #electronics #incident #military #market #transport #education #careers #technologies #business #banking #customers #support #management #education #panne #informatique
https://www.theguardian.com/business/2023/mar/31/capita-it-systems-fail-cyber-attack-nhs-fears
🇺🇸 Lumen Technologies, Inc (lumen.com
) #usa #telecom #provider #systems #devices #platform #hardware #threats #scalable #edge #databreach #networks #cloud #malware #framework #fiber #solutions #management #software #infrastructure #ransomware #connectivity #technologies #customers #services #clients #careers #chain #supply #market #products #darkfiber #defense #informatique
https://www.securityweek.com/lumen-technologies-hit-by-two-cyberattacks/
🇺🇸 A ransomware attack targeted the Jefferson County School (jefcoed.com
) system over spring break #usa #shools #education #ransomware #safety #systems #scholar #incident #informatique
https://www.al.com/news/2023/04/jefferson-county-schools-victim-of-ransomware-attack.html
🇺🇸 Mendocino County Office of Education (mcoe.us
) #usa #education #threats #ransomware #databreach #students #informatique ( via bettercyber.co
)
https://www.mcoe.us/files/user/228/MCOE-%20Website%20Notice-%20FINAL.pdf
🇧🇪 SABCA (sabca.be
) #belgium #aero #military #drones #aircraft #systems #helicopters #maintenance #logistics #industries #space #solutions #threats #flying #management #critical #industrial #partnership #safety #incident #defence #aviation #innovative #launchers #infrastructure #support #customers #belgique #informatique
🇪🇸 La operadora del Grupo MASMOVIL (grupomasmovil.com
) ha comunicado que han accedido a datos sensibles de los clientes Yoigo (yoigo.com
) y advierte sobre posibles intentos de phising #spain #mobile #networks #telecom #provider #technologies #clientes #servicios #gsm #internet #business #consumidores #umts #products #services #market #operador #ofertas #commercial #databreach #customers #clients #threats #mercado #telefonía #compañía #espagne #informatique
A better way to attack Microsoft Azure AD with temporary access passes
Microsoft's TAPs were designed to simplify passwordless authentication, but they can also be used by attackers to bypass MFA.
Even if an administrator goes in and deletes the TAP, an attacker could still maintain access to the user account. In the process of the OAuth On-Behalf-Of (OBO) flow, we have somehow removed the correlation between the Temporary Access Passes (TAP) and the refresh token, a process I (
Daniel Heinsen
,SpecterOps
) am calling « OBO persistence ».Granted, in this scenario, you only have access to APIs that don't require admin consent, but that's enough to read the users email, Teams messages, OneNote notes, and calendar. In order to revoke this access, an administrator will need to revoke all the user refresh tokens. #microsoft #azure #python #script #tools #informatique
https://posts.specterops.io/id-tap-that-pass-8f79fff839ac
🛠 obo-wash
🗃 March 31 : World Backup Day #worldbackupday #backup #data #sauvegardes #systems #safety #archivages #software #backups #storage #informatique
🇪🇺 European School Education Platform (school-education.ec.europa.eu
) #europe #education #online #resources #digital #scholar #numérique #threats #web #services #informatique
https://www.politico.eu/article/eu-commission-website-links-to-onlyfans-logins-illegal-streaming/
🇫🇷 Lockbit 3.0 revendique une attaque informatique à l'encontre de Théus Industries (theus-industries.fr
)
#france #industrial #lockbit #ransomware #facilities #logistics #chaudronnerie #products #commercial #steel #employees #conception #brands #databreach #threats #engineering #business #manufacturer #market #careers #technologies #acier #gdpr #solutions #informatique
Lockbit 3.0 revendique l'attaque informatique à l'encontre de 🇫🇷 Séché Environnement (groupe-seche.com
) #lockbit #databreach #threats
sc(r)apy | full metal packets
> We Are the Borg
> You Will be Assimilated
> Resistance is Futile