Plus récents

Extensions pour navigateurs permettant de récupérer une page web et de la transformer en Markdown

github.com/deathau/markdownloa

It was probably inevitable that the two dominant threats of the day - attacks and ransomware would combine to wreak havoc.
« This is SolarWinds, but with ransomware » (Brett Callow, Threat Analyst at Emsisoft )
Attackers have been able to distribute their bundle to MSPs, which includes the itself as well as a copy of Defender and an expired but legitimately signed certificate that has not yet been revoked.

wired.com/story/kaseya-supply-

Why CVE-2021-1675 works also against Windows 11 ?

Coop Sweden, one of biggest supermarket chains said Saturday it had to temporarily close around 800 stores nationwide after a cyberattack blocked access to its checkouts.

wionews.com/world/major-swedis

WSSC Water (wsscwater.com), a water company in Maryland, is investigating a ransomware attack that hit parts of its business in May 2021. WSSC Water has notified the FBI, Maryland Attorney General and state and Local Homeland Security officials and will cooperate with any investigation.

itpro.co.uk/security/ransomwar

Michigan Public School District's attack results in it and phone systems disruption - FBI assisting Monroe schools in attack

eu.monroenews.com/story/news/2

QSure, a big player in South Africa's , has been hit by a in which bank account numbers and other sensitive information were compromised by a third party.

techcentral.co.za/data-breach-

Pure PowerShell implementation of CVE-2021-1675 (PrintNightmare) Print Spooler Local Privilege Escalation

github.com/calebstewart/CVE-20

CVE-2021-3520 : There is a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an 💥 out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well.

github.com/lz4/lz4/pull/972

A new ransomware family : Diavol

  • Wizard Spider is a financially motivated criminal group
  • Wizard Spider is conducting campaigns since at least 2018
  • Wizard Spider is reportedly associated with Grim Spider & Lunar Spider
  • Wizard Spider is the Russia-based operator of the banking

fortinet.com/blog/threat-resea

Multiples vulnérabilités dans Zimbra 9.0.x versions antérieures à 9.0.0

  • CVE-2021-34807
  • CVE-2021-35209
  • CVE-2021-35208
  • CVE-2021-35207

blog.zimbra.com/2021/06/new-zi

attack : ransomware gang appears to have gained access to the infrastructure of Kaseya, a provider of remote , and is using a malicious for the VSA to deploy ransomware on . The malicious Kaseya update is reaching VSA on-premise servers, from where, using the internal scripting engine, the is deployed to all connected client systems. This incident, believed to have impacted thousands of companies across the world.

therecord.media/revil-ransomwa

After focusing almost exclusively on delivering ransomware for the past year, the code changes could indicate that** TrickBot** is getting back into the bank-fraud game.

threatpost.com/trickbot-bankin

Plus anciens