Plus récents

🇷🇺 Russia is exploiting the physicality of and forcing 🇺🇦 Ukrainian ISPs to send traffic through Russian ISPs.

providers

wired.com/story/ukraine-russia

Tens of thousands of user tokens are exposed via the Travis CI API, which allows anyone to access historical clear-text logs.

More than 770 million logs of free tier users are available, from which you can easily extract tokens, secrets, and other credentials associated with popular cloud service providers such as GitHub, AWS, and Docker Hub. Attackers can use this sensitive data to launch massive cyberattacks and to move laterally in the cloud.

blog.aquasec.com/travis-ci-sec

« A cunning tactic »

Cybercrime groups that specialize in stealing corporate data & demanding a ransom not to publish it have tried countless approaches to shaming their victims into paying.

The latest innovation in ratcheting up the heat comes from the BlackCat ransomware group, which has traditionally published any stolen victim data on the Dark Web. Today, however, the group began publishing individual victim websites on the public Internet, with the leaked data made available in an easily searchable form.

krebsonsecurity.com/2022/06/ra

🇫🇷 Les opérateurs BlackCat revendiquent une attaque informatique à l'encontre de l'École des Ingénieurs de la Ville de Paris (eivp-paris.fr)

Les opérateurs Cl0p diffusent des données relatives à :

  • 🇨🇦 Pricedex Software, Inc (pricedex.com)

  • 🇩🇪 perbit Software GmbH (perbit.com)

  • 🇺🇸 Newcourse Communications, Inc (newcoursecc.com)

  • 🇺🇸 888VoIP (888voip.com)

  • 🇺🇸 KSS Enterprises (kssenterprises.com)

  • 🇺🇸 American Trading Real Estate Properties, Inc (atapcoproperties.com)

  • 🇺🇸 Orbit Industries, Inc. (orbitelectric.com)

  • 🇺🇸 Ferran Services (ferran-services.com)

  • 🇺🇸 ENS Security (enssecurity.com)

  • 🇺🇸 Alternative Technologies (alternativetechs.com)

  • 🇫🇷 ** (latournerie-wolfrom.com)

  • 🇺🇸 Fort Sumner Municipal Schools (ftsumnerk12.com)

  • 🇺🇸 AFJ Consulting, LLC. (afjconsulting.net)

🇺🇸 A cyberattack on Shields Health Care Group Inc (shields.com) may have compromised the identity and medical information of approximately 2 million people, the imaging and outpatient surgical center company disclosed.

boston.com/news/local-news/202

🇬🇧 L'autorité de régulation britannique (ofcom.org.uk) saisie après la diffusion sur Channel 4 d'une fausse alerte anxiogène calquée sur l’œuvre d'Orson Welles : la guerre des mondes.

Channel 4 faces Ofcom probe over « emergency news » stunt to promote cyber attack drama « The Undeclared War ».

inews.co.uk/culture/television

Hello XD ransomware operators now using an open-source backdoor named MicroBackdoor to navigate the compromised system, exfiltrate files, execute commands, wipe traces,...

unit42.paloaltonetworks.com/he

🇫🇷 Une partie des systèmes informatiques du District urbain de Faulquemont (dufcc.com), de la ville de Faulquemont (ville-faulquemont.fr) et du syndicat des eaux de Basses-Vigneulles et Faulquemont (sebvf.com) impactée par une attaque informatique.

republicain-lorrain.fr/faits-d

Plus anciens