Plus récents

🇫🇮 Finland's government says that its websites were targeted in a cyberattack. Helsinki did not say who was behind the attack or give further details but it was exactly during a speech to parliament by 🇺🇦 Ukraine's President Volodymyr Zelenskyy. « Russians were likely behind this attack » ( Mikko Hyppönen (CEO @ F-Secure).

um.fi/ajankohtaista/-/asset_pu

🇺🇸 Les opérateurs Blackcat revendiquent une attaque informatique contre l'Université internationale de Floride située à Miami, Florida International University (fiu.edu)

🇺🇸 North Carolina A&T State University (ncat.edu), the largest historically black college in the U.S, hit with ransomware. The ransomware attack disrupted the school’s wireless connections, Blackboard instruction, single sign-on websites, VPN, Jabber, Qualtrics, Banner Document Management and Chrome River. Some of the services are still down.

therecord.media/north-carolina

🇳🇬 To combat fraudsters and cybercriminals, the Nigerian Economic and Financial Crimes Commission (efcc.gov.ng) has insisted that all SIM cards must be linked to National Identity Numbers

capacitymedia.com/article/29xv

Pour le mois de mars 2022, le nombre de cyberattaques avec ransomware observées à travers le monde a fortement progressé par rapport aux deux premiers mois de l'année. Et rien ne semble annoncer une éventuelle accalmie. De nouveaux ransomwares ont fait leur apparition : IceFire, Vovabol, LokiLocker, RURansom, ..

lemagit.fr/actualites/25251570

🚨 CVE-2022-1159 & CVE-2022-1161 in Rockwell PLCs & engineering workstation software that can be exploited to inject malicious code and stealthily modify automation processes.

claroty.com/2022/03/31/blog-re

In this post, Koen Rouwhorst will discuss why the 🇷🇺 Russian government created a national certificate authority and why it is asking users to install specific browsers.

koen.engineer/russias-certific

🇬🇧 Panne majeur de la plateforme douanière informatisée Goods Vehicle Movement Service (GVMS) sur laquelle doivent s'inscrire depuis le 1er janvier 2022 tous les véhicules transportant des marchandises vers l'Union Européenne.

rha.uk.net/news/news-blogs-and

🇫🇷 La plateforme nationale Parcoursup a rencontré un « bug », non expliqué, entraînant une panne du système informatique et empêchant ainsi certains lycéens et étudiants en réorientation de valider leurs vœux de formation pour la rentrée prochaine et ça à quelques heures de la date limite. La date limite a donc été décalée de 24h, au vendredi 8 avril 23h59.

francebleu.fr/infos/education/

David Ballantyne Smith, 57, have collected and communicated useful information to the 🇷🇺 Russian state between October 2020 and August 2021. It was also alleged that he communicated information relating to the layout of the 🇬🇧 British embassy in 🇩🇪 Berlin. Between August 5 and 6, Smith is also accused of collecting SIM card packaging and video recordings. Smith also allegedly made unauthorised photocopies of documents, video recordings of the embassy's CCTV system. Smith gave information about building repairs at the embassy

mylondon.news/news/uk-world-ne

🇫🇷 Un acteur connu propose à la vente une base de données comprenant pas moins de 754 000 mails et mots de passe. D'après Damien Bancal, la fuite concerne en partie les Universités de Nantes et de Poitiers.

librexpression.fr/nouvelle-fui

VMware fixes 8 serious security issues.

🔥 CVE-2022-22954 Server-Side Template Injection in VMware Workspace ONE Access. According to Positive Technologies Offensive Team, successful exploitation could lead to RCE from an unauthenticated user.

vmware.com/security/advisories

APT-C-23 has upgraded its malware arsenal with new tools which are equipped with enhanced stealth and a focus on operational security. Attackers use a completely new infrastructure that is distinct from the known infrastructure. In addition, all 3 malware in use were also specifically designed to be used against Israeli targets.

cybereason.com/blog/operation-

🇫🇷 Risques cyber et déstabilisation électorale [Partie 2/2] - « La numérisation massive de la société française expose ses pratiques démocratiques à de nouveaux risques issus de l'exploitation des technologies de l'information et de la communication. »

portail-ie.fr/analysis/4034/ri

Afficher le fil de discussion

Sandworm botnet - 👮 🇺🇸 FBI's Cyber Division has wrested control of thousands of routers and firewall appliances away from Russian military hackers. The targeted botnet was controlled through malware Cyclops Blink. It was designed to hijack devices manufactured by WatchGuard Technologies Inc. () and ASUSTek Computer Inc. (). It provides Russian Federation's Main Intelligence Directorate (GRU) with access to those compromised systems, offering the ability to remotely exfiltrate or delete data or turn the devices against a third party.

justice.gov/opa/pr/justice-dep

🇫🇷 Une partie des systèmes informatiques et téléphoniques du Département de l'Ardèche (ardeche.fr) impactée par une attaque informatique perpétrée dans la matinée du mercredi 6 avril 2022.

francebleu.fr/infos/faits-dive

Attackers exploit the legitimate VLC Media Player by launching a custom loader via the VLC Exports function, and use the WinVNC tool for remote control of victim machines. APT10 has been linked to espionage-style operations dating back to 2009 and « has a lot of firepower ».

symantec-enterprise-blogs.secu

Plus anciens