Infosec News

InfoSec News 20240604

  • Publicado: Ter, 04/06/2024 - 14:36

Top News


  • Azure Service Tags tagged as security risk, Microsoft disagrees

"​Security researchers at Tenable discovered what they describe as a high-severity vulnerability in Azure Service Tags that could allow attackers to access customers' private data."

Link

InfoSec News 20240531

  • Publicado: Sex, 31/05/2024 - 12:11

Top News


  • NIST says NVD will be back on track by September 2024

"NIST confirmed that they are working on a multi-pronged solution that will include improved tools and methods, as well as establishing a consortium that will help addressed various challenges."

Link

TLP1 : Green

InfoSec News 20240529

  • Publicado: Qua, 29/05/2024 - 09:52

Top News


  • OpenAI Forms Another Safety Committee After Dismantling Prior Team

"The committee is being set up as the ChatGPT creator begins to train its latest large language model, GPT-5, which will reach "a new level of capabilities.""

Link

TLP1 : Green

InfoSec News 20240528

  • Publicado: Ter, 28/05/2024 - 10:05

Top News


  • Usage of TLS in DDNS Services leads to Information Disclosure in Multiple Vendors

"When DDNS is combined with automatic TLS certificate generation using ACME clients, the public Certificate Transparency logs can be abused by attackers to find vulnerable devices en masse."

Link

InfoSec News 20240527

  • Publicado: Seg, 27/05/2024 - 10:01

Top News


  • Cybercriminals Exploit Cloud Storage For SMS Phishing Scams

"Security researchers have revealed a series of criminal campaigns that exploit cloud storage services such as Amazon S3, Google Cloud Storage, Backblaze B2 and IBM Cloud Object Storage."

Link

TLP1 : Green

InfoSec News 20240524

  • Publicado: Sex, 24/05/2024 - 11:07

Top News


  • Report Reveals 341% Rise in Advanced Phishing Attacks

"Security experts from SlashNext have reported a 341% increase in malicious phishing links, business email compromise (BEC), QR code, and attachment-based threats in the past six months."

Link

TLP1 : Green

InfoSec News 20240523

  • Publicado: Qui, 23/05/2024 - 09:54

Top News


  • More than 70% of surveyed water systems failed to meet EPA cyber standards

"Over 70% of water systems surveyed since last September failed to meet certain EPA security standards, leaving them vulnerable to cyberattacks that could disrupt wastewater and water sanitation systems nationwide, the EPA reported on Monday."

Link

InfoSec News 20240522

  • Publicado: Qua, 22/05/2024 - 11:17

Top News


  • AI Chatbots Highly Vulnerable to Jailbreaks, UK Researchers Find

"In a May 2024 update published ahead of the AI Seoul Summit 2024, co-hosted by the UK and South Korea on 21-22 May, the UK AISI shared the results of a series of tests performed on five leading AI chatbots."

Link

InfoSec News 20240520

  • Publicado: Seg, 20/05/2024 - 11:16

Top News


  • CISA issues guidance to help federal agencies better encrypt DNS traffic

"The CISA has issued new guidance to help federal civilian agencies better encrypt their Domain Name System (DNS) traffic as part of a broader effort to improve the security posture of their internal networks and meet a zero trust deadline this fall."

Link

InfoSec News 20240517

  • Publicado: Sex, 17/05/2024 - 09:56

Top News


  • Palo Alto Networks is buying security assets from IBM to expand customer base

"Palo Alto Networks is acquiring IBM's QRadar cloud security software assets and migrating existing customers to its own Cortex XSIAM platform, as part of a broader partnership that will give Palo Alto access to consultants and a larger customer base."

Link

Páginas