HomePodcastCybersecurity Headlines

Cybersecurity Headlines

CYBER SECURITY HEADLINES

Cybersecurity News: Hijacked 404 pages, Chinese attackers target Confluence, Adobe’s “icon of transparency”

404 pages hijacked Researchers at Akamai spotted this new campaign by the threat actors behind the Magecart payment skimmer. This hides JavaScript code in a...

Cybersecurity News: Zero-day fuels largest-ever DDoS attack, 23andMe resets user passwords after data leak, Exchange gets ‘better’ patch for critical bug

Internet-wide zero-day bug fuels largest-ever DDoS attack An Internet-wide zero-day vulnerability is to blame for a record-breaking distributed denial-of-service (DDoS) attack dubbed "HTTP/2 Rapid Reset"...

Cybersecurity News: Middle East hacktivists, Curl security flaw, HelloKitty improves ransomware

Hacktivist attacks abound in the Middle East According to The Register, at least 15 known ransomware groups “have announced their active participation in disruptive attacks...

Cybersecurity News: MGM ransomware costs, Blackbaud breach settlement, 23andMe breach claims

MGM Resorts quotes ransomware tab at $110 million The company behind the iconic resorts that were hit by ransomware in September has stated that this...

Cyber Security Headlines Week in Review: Progress FTPbug, CloudFlare DDoS mistake, Lazarus Meta recruiters

This week’s Cyber Security Headlines - Week in Review, is hosted by Rich Stroffolino with guest Bob Schuetter, CISO, Ashland  Cyber Security Headlines -...

Cybersecurity News: Apple zero-day patch, Cisco 911 patch, ICS exposure warning

Apple rolls out patch for active iOS Zero-Day Tracked as CVE-2023-42824, this is a kernel vulnerability that can be abused for privilege escalations. Apple says...

Cybersecurity News: Red Cross hacktivist rules, Looney Tunables hit Linux, CISA violates First Amendment

Red Cross issues hacktivist rules The International Committee of the Red Cross published a set of rules regarding hacktivist activities in time of armed conflict...

Cybersecurity News: GPU driver exploits, EU strengthens spyware protections, NSA’s AI Security Center

Arm and Qualcomm warn about exploited GPU drivers Earlier this week, the chip designer Arm issued an advisory about actively exploited attacks against drivers in...

Cybersecurity News: Progress FTP bug exploit, Norway urges ban on Meta data collection, KillNet claims DDoS against Royal Family website

Critical Progress FTP bug now being exploited in attacks Following up on a story we brought to you Friday on Cyber Security Headlines related to...

Cybersecurity News: Cloudflare’s protection bypass, ALPHV healthcare victim, Lazarus Meta recruiter

Cloudflare DDoS protections bypassed using Cloudflare A researcher at Certitude has discovered that Cloudflare's Firewall and DDoS prevention can be bypassed through “a specific attack...

Cyber Security Headlines Week in Review: Fallout from government email breach, H&R Block faces RICO charges, hotel scams continue

This week’s Cyber Security Headlines - Week in Review, is hosted by Rich Stroffolino with guest Andrew Storms, VP of security, Replicated Cyber Security Headlines...

Cybersecurity News: Government email damage, Johnson Controls attacked, Google’s 5th zero-day

Chinese hackers stole emails from US State Dept in Microsoft breach A Senate staffer has told Reuters that Chinese hackers who breached Microsoft's email platform...

Cybersecurity News: GPU pixel-stealing, info-stealing on GitHub, Sony hackers hit NTT Docomo

GPUs vulnerable to pixel-stealing attacks Don’t worry GPUs, you don’t have to feel left out of side channel attacks anymore. A new paper from researchers...

Cybersecurity News: Multiple threat actors lay claim to Sony hack, Philippines health org struggling with ransomware recovery, Flair Airlines leaked user data for months

Multiple threat actors lay claim to Sony hack A threat actor that surfaced last month, RansomedVC (or “Ransomed”), claims they have compromised Sony’s systems and...

Cybersecurity News: Mixin Network breach, Kia and Hyundai thefts explode, stress testing voting equipment

Mixin Network loses $200 million  The decentralized finance startup disclosed on September 25th that a cyber attack against its cloud service provider database saw it...