Plus récents

🇮🇷 Un groupe, nommé Ghiam Sarnegouni, revendique une attaque informatique contre les infrastructures de l'organisation de la culture et de la communication islamiques (icro.ir)

🇺🇸 Employ Florida (employflorida.com), a job search website that unemployment benefit applicants are required to use, has been taken offline after a cyberattack against its software vendor, Geographic Solutions Inc (geographicsolutions.com) 

orlandosentinel.com/business/f

BumbleBee's links to a number of high-profile ransomware operations suggest that it is now at the epicenter of the cyber-crime ecosystem. Any organization that discovers a Bumblebee infection on its network should treat this incident with high priority since it could be the pathway to several dangerous ransomware threats.

symantec-enterprise-blogs.secu

🇺🇸 ICE (ice.gov) is now able to track transactions made through nearly a dozen different currencies, including Bitcoin, Ether, and Tether. It's unclear to what end ICE will be using Coinbase (coinbase.com). The agency could not be immediately reached for comment.

theintercept.com/2022/06/29/cr

cloudvulndb is an open project to list all known vulnerabilities and security issues.

History: cloud providers don't issue CVEs for security vulnerabilities, so there's no transparency about issues.

cloudvulndb.org

(CVE-2022-30333) - An attacker is able to create files outside of the target extraction directory when an application or victim user extracts an untrusted RAR archive. If they can write to a known location, they are likely to be able to leverage it in a way leading to the execution of arbitrary commands on the system.

blog.sonarsource.com/zimbra-pr

Plus anciens