typo3 - Login Handling is susceptible to open redirection which allows attackers redirecting to arbitrary content, and conducting phishing attacks. No authentication is required. (CVE-2021-21338)
Marché numérique - big data, or noir des revendeurs de données (data broker), opium de la gouvernance. Pression sociale, exclusions sociales, contrôle social, restrictions des libertés.
WireGuard retiré de pfSense pour raisons de sécurité
A team of unknown advanced hackers exploited no fewer than 11 zeroday vulnerabilities in a nine-month campaign.
Programme pour une Europe numérique
Déploiements technologiques dans 5 domaines cruciaux :
Metamorfo is abusing AutoHotKey (AHK) to evade detection and steal users information
Metamorfo is abusing AutoHotKey (AHK) to evade detection and steal users information
🇨🇱 The Financial Market Commission (CMF) has been the subject of a cyber-attack.
https://www.cmfchile.cl/portal/prensa/615/w3-article-47213.html
SMS text messaging can easily be hijacked.
https://lucky225.medium.com/its-time-to-stop-using-sms-for-anything-203c41361c80
Les conséquences de la vulnérabilité de Microsoft Exchange server pour les organisations et entreprises belges sont de plus en plus évidentes. Plus de 400 systèmes où une forme d'intrusion s'est produite.
Nikkei's Hong Kong affiliate hit by unauthorized access
https://asia.nikkei.com/Business/Companies/Nikkei-s-Hong-Kong-affiliate-hit-by-unauthorized-access
DDoS attacks reached a record high during the pandemic. Criminals launched new and increasingly complex attacks. Link11, the European leader in cyber-resilience, is warning organizations.
XcodeSpy, a custom version of open source back door EggShell that aims to spy on the Macs of iOS developers
Necro upgrades again, using Tor + DGA
Luxembourg, cible du crime organisé.
http://www.lessentiel.lu/fr/luxembourg/story/le-luxembourg-vraie-cible-du-crime-organise-10814179
Malwoverview v4.3.1 is out !
feroxbuster v2.2.3 is out ! Fast, simple, recursive content discovery tool written in Rust.
The latest version of Necro turns to Tor C2 and targets both Linux and Windows.
https://blog.netlab.360.com/necro-shi-yong-tor-dong-tai-yu-ming-dga-shuang-sha-windows-linux/
Social Tokens Crash After Reported Hack at Roll
https://www.nasdaq.com/articles/social-tokens-crash-after-reported-hack-at-roll-2021-03-14
sc(r)apy | full metal packets
> We Are the Borg
> You Will be Assimilated
> Resistance is Futile