Aggregator
Kill
勒索软件忙招人,2024 年网络安全五大新趋势
勒索软件袭击供应链管理公司 Blue Yonder,导致客户配送系统中断
Supply Chain Ransomware Attack Hits Starbucks, UK Grocers
Coffee store giant Starbucks was among other organizations affected by a ransomware attack this month on cloud managed service provider Blue Yonder, a Panasonic subsidiary that has more than 3,000 customers. Two UK grocery chains also were impacted.
The post Supply Chain Ransomware Attack Hits Starbucks, UK Grocers appeared first on Security Boulevard.
Lazarus Group 利用带有 “RustyAttr” 的 xattr 来逃避检测
PyPI Python 库“aiocpa”发现通过 Telegram Bot 泄露加密密钥
Researchers reveal exploitable flaws in corporate VPN clients
Researchers have discovered vulnerabilities in the update process of Palo Alto Networks (CVE-2024-5921) and SonicWall (CVE-2024-29014) corporate VPN clients that could be exploited to remotely execute code on users’ devices. CVE-2024-5921 CVE-2024-5921 affects various versions of Palo Alto’s GlobalProtect App on Windows, macOS and Linux, and stems from insufficient certification validation. It enables attackers to connect the GlobalProtect app to arbitrary servers, the company confirmed, and noted that this may result in attackers installing malicious … More →
The post Researchers reveal exploitable flaws in corporate VPN clients appeared first on Help Net Security.
恶意软件滥用有缺陷的 Avast Anti-Rootkit 驱动程序
微软又全球宕机 11 小时,多项核心服务无法使用
The Elephant in AppSec Talks Highlight: Shifting Left Doesn’t Mean Anything Anymore
Discover key highlights from Tanya Janca's talk at The Elephant in AppSec Conference on shifting security to be present throughout the entire Software Development Lifecycle.
The post The Elephant in AppSec Talks Highlight: Shifting Left Doesn’t Mean Anything Anymore appeared first on Security Boulevard.
Secure Workload Access in Minutes with Aembit’s New QuickStart Guide
3 min readThis step-by-step resource helps you deploy workloads, configure policies, and explore Aembit’s approach to securing non-human identities.
The post Secure Workload Access in Minutes with Aembit’s New QuickStart Guide appeared first on Aembit.
The post Secure Workload Access in Minutes with Aembit’s New QuickStart Guide appeared first on Security Boulevard.
估值 1548 亿美元!网安 AI 市场将迎来爆炸性增长
CVE-2024-36463 | Zabbix up to 5.0.42/6.0.32/6.4.17/7.0.2 access to critical private variable via public method
Fog
过去十多年全球艾滋病感染率和死亡率大幅下降
Why Cybersecurity Leaders Trust the MITRE ATT&CK Evaluations
尽快提交!《嘶吼2024中国网络安全产业势能榜》调研征集即将结束
Authorities disrupt major cybercrime operation, 1000+ suspects arrested
Authorities across 19 African countries have arrested 1,006 suspects and dismantled 134,089 malicious infrastructures and networks thanks to a joint operation by INTERPOL and AFRIPOL against cybercrime. Results of the operation (Source: INTERPOL) Operation Serengeti Operation Serengeti (2 September – 31 October) targeted criminals behind ransomware, business email compromise (BEC), digital extortion, and online scams – all identified as prominent threats in the 2024 Africa Cyber Threat Assessment Report. Over 35,000 victims were identified during … More →
The post Authorities disrupt major cybercrime operation, 1000+ suspects arrested appeared first on Help Net Security.