02/06

TLP:CLEAR MIVD AIVD Advisory COATHANGER | Publicatie | Nationaal Cyber Security Centrum

https://www.ncsc.nl/documenten/publicaties/2024/februari/6/mivd-aivd-advisory-coathanger-tlp-clear
TLP:CLEAR MIVD AIVD Advisory COATHANGER | Publicatie | Nationaal Cyber Security Centrum

New Google TAG report: How Commercial Surveillance Vendors work

https://blog.google/threat-analysis-group/commercial-surveillance-vendors-google-tag-report/
New Google TAG report: How Commercial Surveillance Vendors work

Beware: Fake Facebook Job Ads Spreading 'Ov3r_Stealer' to Steal Crypto and Credentials

https://thehackernews.com/2024/02/beware-fake-facebook-job-ads-spreading.html
Beware: Fake Facebook Job Ads Spreading 'Ov3r_Stealer' to Steal Crypto and Credentials

Secure coding and more: Exploiting a vulnerable Minifilter Driver to create a process killer

https://antonioparata.blogspot.com/2024/02/exploiting-vulnerable-minifilter-driver.html
Secure coding and more: Exploiting a vulnerable Minifilter Driver to create a process killer

U.S. Imposes Visa Restrictions on those Involved in Illegal Spyware Surveillance

https://thehackernews.com/2024/02/us-imposes-visa-restrictions-on-those.html
U.S. Imposes Visa Restrictions on those Involved in Illegal Spyware Surveillance

Recent SSRF Flaw in Ivanti VPN Products Undergoes Mass Exploitation

https://thehackernews.com/2024/02/recently-disclosed-ssrf-flaw-in-ivanti.html
Recent SSRF Flaw in Ivanti VPN Products Undergoes Mass Exploitation

Experts Detail New Flaws in Azure HDInsight Spark, Kafka, and Hadoop Services

https://thehackernews.com/2024/02/high-severity-flaws-found-in-azure.html
Experts Detail New Flaws in Azure HDInsight Spark, Kafka, and Hadoop Services

Hackers Exploit Job Boards, Stealing Millions of Resumes and Personal Data

https://thehackernews.com/2024/02/hackers-exploit-job-boards-in-apac.html
Hackers Exploit Job Boards, Stealing Millions of Resumes and Personal Data

US announces visa ban on those linked to commercial spyware

https://www.bleepingcomputer.com/news/security/us-announces-visa-ban-on-those-linked-to-commercial-spyware/
US announces visa ban on those linked to commercial spyware

Hackers steal data of 2 million in SQL injection, XSS attacks

https://www.bleepingcomputer.com/news/security/hackers-steal-data-of-2-million-in-sql-injection-xss-attacks/
Hackers steal data of 2 million in SQL injection, XSS attacks

JetBrains warns of new TeamCity auth bypass vulnerability

https://www.bleepingcomputer.com/news/security/jetbrains-warns-of-new-teamcity-auth-bypass-vulnerability/
JetBrains warns of new TeamCity auth bypass vulnerability

Verizon insider data breach hits over 63,000 employees

https://www.bleepingcomputer.com/news/security/verizon-insider-data-breach-hits-over-63-000-employees/
Verizon insider data breach hits over 63,000 employees

Humble Tech Book Bundle: Cybersecurity 2024 from Packt (pay what you want and help charity)

https://www.humblebundle.com/books/cybersecurity-2024-from-packt-books
Humble Tech Book Bundle: Cybersecurity 2024 from Packt (pay what you want and help charity)

Fortinet FortiSIEM hit by two 10/10 severity vulns • The Register

https://go.theregister.com/feed/www.theregister.com/2024/02/06/fortinet_fortisiem_vulns/
Fortinet FortiSIEM hit by two 10/10 severity vulns • The Register

PSIRT | FortiGuard

https://www.fortiguard.com/psirt/FG-IR-23-130
PSIRT | FortiGuard

Google fixed an Android critical remote code execution flaw

https://securityaffairs.com/158730/mobile-2/google-android-critical-rce.html
Google fixed an Android critical remote code execution flaw

The Real Shim Shady - How CVE-2023-40547 Impacts Most Linux Systems - Eclypsium | Supply Chain Security for the Modern Enterprise

https://eclypsium.com/blog/the-real-shim-shady-how-cve-2023-40547-impacts-most-linux-systems/
The Real Shim Shady - How CVE-2023-40547 Impacts Most Linux Systems - Eclypsium | Supply Chain Security for the Modern Enterprise

Critical Remote Code Execution Vulnerability Patched in Android - SecurityWeek

https://www.securityweek.com/critical-remote-code-execution-vulnerability-patched-in-android/
Critical Remote Code Execution Vulnerability Patched in Android - SecurityWeek

A Chicago Children's Hospital Has Taken Its Networks Offline After a Cyberattack - SecurityWeek

https://www.securityweek.com/a-chicago-childrens-hospital-has-taken-its-networks-offline-after-a-cyberattack/
A Chicago Children's Hospital Has Taken Its Networks Offline After a Cyberattack - SecurityWeek

Join Bluesky Today (Bye, Invites!) - Bluesky

https://bsky.social/about/blog/02-06-2024-join-bluesky
Join Bluesky Today (Bye, Invites!) - Bluesky

A man faces up to 25 years in prison for his role in operating unlicensed crypto exchange BTC-e

https://securityaffairs.com/158716/cyber-crime/btc-e-operator-waiting-sentence.html
A man faces up to 25 years in prison for his role in operating unlicensed crypto exchange BTC-e

Data breach at French healthcare services firm puts millions at risk

https://www.bleepingcomputer.com/news/security/data-breach-at-french-healthcare-services-firm-puts-millions-at-risk/
Data breach at French healthcare services firm puts millions at risk

Spoutible API exposed encrypted password reset tokens, 2FA secrets of users - Help Net Security

https://www.helpnetsecurity.com/2024/02/06/spoutible-api-data-leak/
Spoutible API exposed encrypted password reset tokens, 2FA secrets of users - Help Net Security

ZeroFox to be Taken Private in $350 Million Deal - SecurityWeek

https://www.securityweek.com/zerofox-to-be-taken-private-in-350-million-deal/
ZeroFox to be Taken Private in $350 Million Deal - SecurityWeek

Millions of User Records Stolen From 65 Websites via SQL Injection Attacks - SecurityWeek

https://www.securityweek.com/millions-of-user-records-stolen-from-65-websites-via-sql-injection-attacks/
Millions of User Records Stolen From 65 Websites via SQL Injection Attacks - SecurityWeek

Canon Patches 7 Critical Vulnerabilities in Small Office Printers - SecurityWeek

https://www.securityweek.com/canon-patches-7-critical-vulnerabilities-in-small-office-printers/
Canon Patches 7 Critical Vulnerabilities in Small Office Printers - SecurityWeek

Senior Security Engineer - Incident Response (Open to remote across ANZ), Sydney, NSW, Australia (Hybrid) | Canva Careers

https://www.lifeatcanva.com/en/jobs/743999964309823/senior-security-engineer-incident-response-open-to-remote-across-anz/
Senior Security Engineer - Incident Response (Open to remote across ANZ), Sydney, NSW, Australia (Hybrid) | Canva Careers

Rust Won't Save Us: An Analysis of 2023's Known Exploited Vulnerabilities – Horizon3.ai

https://www.horizon3.ai/analysis-of-2023s-known-exploited-vulnerabilities/
Rust Won't Save Us: An Analysis of 2023's Known Exploited Vulnerabilities – Horizon3.ai

Chinese hackers infect Dutch military network with malware

https://www.bleepingcomputer.com/news/security/chinese-hackers-infect-dutch-armed-forces-network-with-malware/
Chinese hackers infect Dutch military network with malware

HPE is investigating claims of a new security breach

https://securityaffairs.com/158690/cyber-crime/hpe-investigating-security-breach.html
HPE is investigating claims of a new security breach

Google says spyware vendors behind most zero-days it discovers

https://www.bleepingcomputer.com/news/security/google-says-spyware-vendors-behind-most-zero-days-it-discovers/
Google says spyware vendors behind most zero-days it discovers