Aggregator
9th December – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 9th December, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Romania’s Constitutional Court annulled the first round of its presidential election after declassified intelligence revealed Russian interference favoring right wing candidate Călin Georgescu. The interference involved a sophisticated social media campaign on […]
The post 9th December – Threat Intelligence Report appeared first on Check Point Research.
A Secure Future in Australia with the Scam-Safe Accord
The Birth of the Scam-Safe Accord The Scam-Safe Accord (also called the ScamSafe Accord or Scam Safe Accord) is an initiative launched by the Australian Banking Association in response to the increasing prevalence of scams and fraud targeting consumers in the financial sector. Australia’s top banks and financial institutions, usually fierce competitors, came together with […]
The post A Secure Future in Australia with the Scam-Safe Accord appeared first on Security Boulevard.
RSA expands phishing-resistant, passwordless capabilities
RSA announced expanded phishing-resistant, passwordless capabilities. Built to secure financial services organizations, government agencies, healthcare, and other highly-regulated industries from the most frequent and highest-impact attacks, these new RSA capabilities meet the most stringent cybersecurity regulations and are a key asset in developing a Zero Trust security architecture: The FIDO2 Certified RSA Authenticator App 4.5 for iOS and Android: RSA now makes it easy to deploy FIDO2-Certified device-bound passkeys on users’ mobile devices through RSA … More →
The post RSA expands phishing-resistant, passwordless capabilities appeared first on Help Net Security.
CVE-2014-8178 | Docker Engine up to 1.8.2 Image Layer Cache Poisoning input validation (Nessus ID 86437 / ID 155327)
CVE-2014-8179 | Docker Engine up to 1.8.2 Manifest input validation (Nessus ID 86437 / ID 168239)
CVE-2014-8270 | BMC Track-It! 11.3.0 Password Reset access control (ID 123276 / XFDB-99353)
CVE-2014-8325 | Calender Base up to 1.5.3 PCRE Library resource management (ID 11497 / XFDB-97669)
CVE-2014-8350 | Smarty up to 2.6.8 language=php> code injection (tps://c / Nessus ID 79070)
从勒索软件到APT:揭开制造业面临的8大网络安全威胁
劫持其他APT组织基础设施实施攻击,APT组织新战术曝光;罗克韦尔自动化软件曝多个严重漏洞,可被利用执行远程代码 | 牛览
Funksec
9 декабря: как компьютерная мышь изменила мир технологий
Hornetsecurity boosts 365 Total Backup with self-service recovery for end users
Hornetsecurity unveiled an upgraded version of its 365 Total Backup solution, introducing self-service recovery for end users while also offering full backup and recovery support for Microsoft OneNote. This new functionality is also available with 365 Total Protection Plans 3 and 4. Enabling end users to independently recover their own data Hornetsecurity has added a new self-service functionality to its backup solution. This allows end users to independently recover their mailbox, OneDrive and OneNote data … More →
The post Hornetsecurity boosts 365 Total Backup with self-service recovery for end users appeared first on Help Net Security.
CVE-2015-5558 | Adobe Flash Player 11.2.202.491/18.0.0.209 type confusion (APSB15-19 / EDB-37878)
CVE-2021-30150 | Composr 10.0.36 XML Script cross site scripting (EDB-49749)
CVE-2022-40032 | Simple Task Managing System 1.0 login.php username/password information disclosure (EDB-51273)
Google 延长 Pixel 6 和 7 的软件更新两年
AWS Makes Significant Progress on Driving MFA Adoption
Amazon Web Services (AWS) is reporting that since last April more than 750,000 root user accounts on its AWS Organizations console for managing access to cloud services have enabled multifactor authentication (MFA).
The post AWS Makes Significant Progress on Driving MFA Adoption appeared first on Security Boulevard.