Infosec News

InfoSec News 20230803

  • Publicado: Qui, 03/08/2023 - 12:14

Top News


  • "Mysterious Team Bangladesh" Targeting India with DDoS Attacks and Data Breaches

"A hacktivist group known as Mysterious Team Bangladesh has been linked to over 750 distributed denial-of-service (DDoS) attacks and 78 website defacements since June 2022."

Link

InfoSec News 20230802

  • Publicado: Qua, 02/08/2023 - 12:46

Top News


  • Threat actors abuse Google AMP for evasive phishing attacks

"Security researchers are warning of increased phishing activity that abuses Google Accelerated Mobile Pages (AMP) to bypass email security measures and get to inboxes of enterprise employees."

Link

TLP1 : Green

InfoSec News 20230731

  • Publicado: Seg, 31/07/2023 - 07:33

Top News


  • Hackers Deploy "SUBMARINE" Backdoor in Barracuda Email Security Gateway Attacks

"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday disclosed details of a "novel persistent backdoor" called SUBMARINE deployed by threat actors in connection with the hack on Barracuda Email Security Gateway (ESG) appliances."

Link

InfoSec News 20230728

  • Publicado: Sex, 28/07/2023 - 12:38

Top News


  • Hackers Target Apache Tomcat Servers for Mirai Botnet and Crypto Mining

"Misconfigured and poorly secured Apache Tomcat servers are being targeted as part of a new campaign designed to deliver the Mirai botnet malware and cryptocurrency miners."

Link

TLP1 : Green

InfoSec News 20230727

  • Publicado: Qui, 27/07/2023 - 07:46

Top News


  • New AI Tool 'FraudGPT' Emerges, Tailored for Sophisticated Attacks

"Following the footsteps of WormGPT, threat actors are advertising yet another cybercrime generative artificial intelligence (AI) tool dubbed FraudGPT on various dark web marketplaces and Telegram channels."

Link

InfoSec News 20230726

  • Publicado: Qua, 26/07/2023 - 09:52

Top News


  • North Korean Nation-State Actors Exposed in JumpCloud Hack After OPSEC Blunder

"North Korean nation-state actors affiliated with the Reconnaissance General Bureau (RGB) have been attributed to the JumpCloud hack following an operational security (OPSEC) blunder that exposed their actual IP address."

Link

InfoSec News 20230724

  • Publicado: Seg, 24/07/2023 - 17:25

Top News


  • New OpenSSH Vulnerability Exposes Linux Systems to Remote Command Injection

"Details have emerged about a now-patched flaw in OpenSSH that could be potentially exploited to run arbitrary commands remotely on compromised hosts under specific conditions."

Link

TLP1 : Green

InfoSec News 20230721

  • Publicado: Sex, 21/07/2023 - 16:14

Top News


  • CISA: Citrix RCE bug exploited to breach critical infrastructure org

"Threat actors have breached the network of a U.S. organization in the critical infrastructure sector after exploiting a zero-day RCE vulnerability currently identified as CVE-2023-3519, a critical-severity issue in NetScaler ADC and Gateway that Citrix patched this week."

Link

Páginas