๐จ Latest issue of my curated #cybersecurity and #infosec list of resources for week #40/2023 is out! It includes the following and much more:
๐บ๐ธ ๐ณ๏ธ D.C. Board of #Elections confirms voter data stolen in site hack
๐ ๐ชช #MGM Resorts confirms hackers stole customersโ personal data during #cyberattack
๐ ๐งฌ #DNA testing service 23andMe investigating theft of user data
๐ ๐ง #Sony confirms #databreach impacting thousands in the U.S.
๐ฑ ๐ฅ Lyca Mobile Group Services Significantly Disrupted by Cyberattack
๐ ๐ต๐ปโโ๏ธ #NATO investigating breach, #leak of internal documents
๐ ๐ช๐บ European Telecommunications Standards Institute Discloses Data Breach
๐ ๐จ #MotelOne discloses data breach following #ransomware attack
๐ฐ๐ต ๐ฐ North Korea's #Lazarus Group Launders $900 Million in #Cryptocurrency
๐ง๐ช ๐จ๐ณ #Alibaba accused of โpossible espionageโ at European hub
๐จ๐ณ #China-linked cyberspies #backdoor #semiconductor firms with #CobaltStrike
๐ฅธ Meet LostTrust #ransomware โ A likely rebrand of the #MetaEncryptor gang
๐ฌ๐พ ๐จ๐ณ #Guyana Governmental Entity Hit by #DinodasRAT in #CyberEspionage Attack
๐ท๐บ ๐บ๐ธ #FBI most-wanted Russian hacker reveals why he burned his passport
๐บ๐ธ ๐ฅ #FDA cyber mandates for #medicaldevices goes into effect
โ๏ธ ๐ Number of Internet-Exposed #ICS Drops Below 100,000
โ๏ธ #Microsoft Warns of Cyber Attacks Attempting to Breach Cloud via #SQL Server Instance
๐ฆ ๐ #QakBot Threat Actors Still in Action, Using Ransom Knight and Remcos RAT in Latest Attacks
๐ ๐ #Apple Warns of Newly Exploited iOS 17 Kernel Zero-Day
๐ฃ ๐ง๐ปโ๐ผ US Executives Targeted in #Phishing Attacks Exploiting Flaw in Indeed Job Platform
๐ฆ ๐ฆ #Zanubis #Android Banking Trojan Poses as Peruvian Government App to Target Users
๐ฆ ๐ฎ๐ท Iranian APT Group #OilRig Using New Menorah #Malware for Covert Operations
๐ โ๏ธ #Amazon to make #MFA mandatory for 'root' #AWS accounts by mid-2024
๐ก๏ธ ๐ง
#Microsoft Defender no longer flags #Tor Browser as malware
๐ X-Force uncovers global #NetScaler Gateway credential harvesting campaign
๐ ๐ฐ Zero-days for hacking #WhatsApp are now worth millions of dollars
๐ฉน #Cisco fixes hard-coded root credentials in Emergency Responder
๐ Vulnerabilities in #Supermicro BMCs could allow for unkillable server #rootkits
๐ ๐ง Looney Tunables: New #Linux Flaw Enables Privilege Escalation on Major Distributions
๐ Warning: #PyTorch Models Vulnerable to Remote Code Execution via ShellTorch
๐ฉน Microsoft Edge, Teams get fixes for zero-days in #opensource libraries
๐ ๐ฅ Live Exploitation Underscores Urgency to Patch Critical WS-FTP Server Flaw
โ๏ธ Cloudflare #DDoS protections ironically bypassed using #Cloudflare
๐ This week's recommended reading is: "8 Steps to Better Security: A Simple Cyber Resilience Guide for Business" by Kim Crawley
Subscribe to the #infosecMASHUP newsletter to have it piping hot in your inbox every week-end โฌ๏ธ
https://infosec-mashup.santolaria.net/p/infosec-mashup-week-402023