🚆 A computer « glitch » in a railway signalling system caused train traffic disruptions in #Poland, #Italia and #Asia, French rail giant Alstom said Thursday. The problem has been detected and is in the process of being fixed, a spokesman for the company said, adding that it was not a cyberattack. #pologne #italie #asie #railway #outage #informatique
🇮🇹 Les opérateurs Lockbit revendiquent une attaque informatique sur la commune italienne de Villefranche (villafrancapiemonte.to.it
) #lockbit #ransomware #city #italia #cyber #threats #databreach #italie #informatique
Dragos has observed consistent network communication between Emotet C2 servers and numerous auto manufacturing companies. These #Emotet servers are suspected to be controlled by the Conti ransomware group. #conti #automotive #databreach #cyber #botnet #threats #informatique
🇮🇱 The cellphone of the wife of Mossad chief David Barnea was hacked and the contents, including photos and documents, distributed on an anonymous #Telegram channel. #israel #data #phone #cyber #retaliation #telecom #threats #warfare #tactics #smartphone #databreach #informatique
Denso (denso.com
), a multibillion supplier to key automotive companies like Toyota, Mercedes-Benz and Ford, confirmed that cybercriminals leaked stolen, classified information from the Japan-based car-components manufacturer after an attack on one of its offices in Germany. #pandora #ransomware #cyber #automotive #threats #databreach #informatique
https://threatpost.com/pandora-ransomware-hits-giant-automotive-supplier-denso/178911/
Pandora (Rook) - The Box has been open for a while... #pandora #ransomware #cyber #threats #informatique
On March 15, 2022, users of the popular Vue.js frontend #JavaScript #framework started experiencing what can only be described as a #supply chain attack impacting the npm ecosystem. This was the result of the nested dependencies node-ipc
and peacenotwar
being sabotaged as an act of protest by the maintainer of the node-ipc package. #vuln #cyber #threats #informatique
hhttps://snyk.io/blog/peacenotwar-malicious-npm-node-ipc-package-vulnerability/
CVE-2022-25636 #vuln #linux #threats #informatique
CVE-2022-25636 : Nick Gregory discovered a hole in 🐧 #Linux's netfilter #firewall program that's « exploitable to achieve kernel code execution », giving full local privilege escalation, container escape, .. #cyber #threats #informatique
https://nickgregory.me/linux/security/2022/03/12/cve-2022-25636/
Renaud Lifchitz : « Blockchains dans la cybersécurité et cybersécurité des blockchains » #blockchain #cyber #informatique
https://www.arcsi.fr/doc/Lundi_Cyber_Renaud_Lifchitz-02-22.pdf
Les #blockchains sont connues pour leurs applications financières, ce qui éclipse malheureusement bien souvent leurs nombreux autres intérêts. Renaud Lifchitz s'est focalisé sur les principes, techniques et projets blockchain concrets qui apportent un réel intérêt d'un point de vue confidentialité, intégrité, disponibilité ou authentification. #blockchain #informatique
🇫🇷 Les systèmes informatiques de L'École Nationale de l'Aviation Civile (enac.fr
) paralysés suite à une attaque informatique. #france #aero #ransomware #education #cyber #databreach #campus #threats #informatique
🇫🇷 Une partie des systèmes informatiques de la Communauté de communes de Montesquieu (cc-montesquieu.fr
) impactée suite à une attaque informatique. #france #ransomware #city #cyber #databreach #threats #informatique
🌐 2022-03-16 14:36:33 UTC | M 7.5 - Namie, 🇯🇵 Japan | A tsunami adivsory has been issued for Miyagi and Fukushima prefectures. #japon
A detailed post on how Daniel Eshetu chained 3 vulnerabilities (A path traversal (CVE-2021-45968), an SSRF in an external piece of software (CVE-2021-45967) and a post-authentication RCE (CVE-2021-45966)) into a full pre-auth RCE in 🇩🇪 Pascom (pascom.net
) Cloud phone system. #vuln #devices #phone #cloud #telecom #informatique
🔥 CVE-2022-26320 - Fermat Attack on RSA. Multiple printers of the Fujifilm Apeos, DocuCentre and DocuPrint series generate self-signed TLS certificates with vulnerable RSA keys. Some Canon printers have the ability to generate a CSR with a vulnerable RSA key. Both the Fujifilm and the Canon printers use the Basic Crypto Module of the Safezone library by Rambus. Other products using this module to generate RSA keys may also be affected. #crypto #devices #firmware #vuln #informatique
As #Microsoft Windows doesn't verify that the SIDs exist on the domain when an ACL is created it's possible to insert a non-existent SID into any object's ACL we have privileges over. The main exploitation vector here is persistence. Threat actors with domain control can add permissions and privileges to future SIDs and regain a foothold by creating a user or computer account. #windows #malware #powershell #vuln #audit #informatique
With the deprecation of WMIC, malicious usage WMI functionality with PowerShell will likely increase. #windows #malware #powershell #audit #informatique
Security researchers went on to predict that ransomware totals would reach 714 million by the end of the year, constituting a 134% year-over-year increase. #ransomware #cyber #threats #informatique
https://www.cybereason.com/blog/leveraging-artificial-intelligence-to-prevent-ransomops-attacks
🇺🇸 U.S. Senator for Florida, Marco Rubio warns of rising risk of cyberattacks amid russian invasion of Ukraine. #usa #industries #cyber #banking #threats #business #informatique
sc(r)apy | full metal packets
> We Are the Borg
> You Will be Assimilated
> Resistance is Futile