09/24

MoneyGram confirms a cyberattack is behind dayslong outage

https://www.bleepingcomputer.com/news/security/moneygram-confirms-a-cyberattack-is-behind-dayslong-outage/
MoneyGram confirms a cyberattack is behind dayslong outage

New Octo Android malware version impersonates NordVPN, Google Chrome

https://www.bleepingcomputer.com/news/security/new-octo-android-malware-version-impersonates-nordvpn-google-chrome/
New Octo Android malware version impersonates NordVPN, Google Chrome

Palo Alto Networks Senior Manager, Cyber Crime Research Leader (Unit 42) | SmartRecruiters

https://jobs.smartrecruiters.com/PaloAltoNetworks2/744000015869025-senior-manager-cyber-crime-research-leader-unit-42-
Palo Alto Networks Senior Manager, Cyber Crime Research Leader (Unit 42) | SmartRecruiters

AI-Generated Malware Found in the Wild - SecurityWeek

https://www.securityweek.com/ai-generated-malware-found-in-the-wild/
AI-Generated Malware Found in the Wild - SecurityWeek

Kaspersky Exits U.S., Automatically Replaces Software With UltraAV, Raising Concerns

https://thehackernews.com/2024/09/kaspersky-exits-us-automatically.html
Kaspersky Exits U.S., Automatically Replaces Software With UltraAV, Raising Concerns

JSAC2023 - CFP -

https://jsac.jpcert.or.jp/cfp.html
JSAC2023 - CFP -

US proposes ban on connected vehicle tech from China, Russia

https://www.bleepingcomputer.com/news/security/us-proposes-ban-on-connected-vehicle-tech-from-china-russia/
US proposes ban on connected vehicle tech from China, Russia

Infostealer malware bypasses Chrome’s new cookie-theft defenses

https://www.bleepingcomputer.com/news/security/infostealer-malware-bypasses-chromes-new-cookie-theft-defenses/
Infostealer malware bypasses Chrome’s new cookie-theft defenses

CrowdStrike Overhauls Testing and Rollout Procedures to Avoid System Crashes - SecurityWeek

https://www.securityweek.com/crowdstrike-overhauls-testing-and-rollout-procedures-to-avoid-bsod-crashes/
CrowdStrike Overhauls Testing and Rollout Procedures to Avoid System Crashes - SecurityWeek

New Mallox ransomware Linux variant based on leaked Kryptina code

https://www.bleepingcomputer.com/news/security/new-mallox-ransomware-linux-variant-based-on-leaked-kryptina-code/
New Mallox ransomware Linux variant based on leaked Kryptina code

MalwareBazaar | Necro-Triada

https://bazaar.abuse.ch/browse/tag/Necro-Triada/
MalwareBazaar | Necro-Triada

U.S. govt agency CMS says data breach impacted 3.1 million people

https://www.bleepingcomputer.com/news/healthcare/us-govt-agency-cms-says-data-breach-impacted-31-million-people/
U.S. govt agency CMS says data breach impacted 3.1 million people

Kansas water plant cyberattack forces switch to manual operations

https://www.bleepingcomputer.com/news/security/kansas-water-plant-cyberattack-forces-switch-to-manual-operations/
Kansas water plant cyberattack forces switch to manual operations

Winning the AIxCC Qualification Round | by Theori Security Assessment | Sep, 2024 | Medium

https://medium.com/@sa-blog/winning-the-aixcc-qualification-round-7263d1cde9c8
Winning the AIxCC Qualification Round | by Theori Security Assessment | Sep, 2024 | Medium

Kaspersky’s US Exit Sparks Outrage as UltraAV Takes Over Systems Without Consent - SecurityWeek

https://www.securityweek.com/users-quick-to-remove-ultraav-after-silent-transition-from-kaspersky-antivirus/
Kaspersky’s US Exit Sparks Outrage as UltraAV Takes Over Systems Without Consent - SecurityWeek

FBI raids government IT and cyber contractor Carahsoft - Nextgov/FCW

https://www.nextgov.com/acquisition/2024/09/fbi-raids-government-it-and-cyber-contractor-carahsoft/399782/
FBI raids government IT and cyber contractor Carahsoft - Nextgov/FCW

Exclusive: House Homeland Security chair releases, pushes forth cyber workforce bill | CyberScoop

https://cyberscoop.com/exclusive-house-homeland-security-chair-releases-pushes-forth-cyber-workforce-bill/
Exclusive: House Homeland Security chair releases, pushes forth cyber workforce bill | CyberScoop

Did Israel infiltrate Lebanese telecoms networks?

https://securityaffairs.com/168817/intelligence/did-israel-infiltrate-lebanese-telecoms-networks.html
Did Israel infiltrate Lebanese telecoms networks?

A review of prevalent web trackers in 2023–2024, region by region | Securelist

https://securelist.com/web-trackers-report-2023-2024/113778/
A review of prevalent web trackers in 2023–2024, region by region | Securelist

Telegram Agrees to Share User Data With Authorities for Criminal Investigations

https://thehackernews.com/2024/09/telegram-agrees-to-share-user-data-with.html
Telegram Agrees to Share User Data With Authorities for Criminal Investigations

Mandiant gives tips on catching North Korean IT operatives • The Register

https://go.theregister.com/feed/www.theregister.com/2024/09/24/mandiant_north_korea_workers/
Mandiant gives tips on catching North Korean IT operatives • The Register

How private intelligence companies became the new spymasters - Engelsberg ideas

https://engelsbergideas.com/essays/private-intelligence/
How private intelligence companies became the new spymasters - Engelsberg ideas

Kansas Water Facility Switches to Manual Operations Following Cyberattack - SecurityWeek

https://www.securityweek.com/kansas-water-facility-switches-to-manual-operations-following-cyberattack/
Kansas Water Facility Switches to Manual Operations Following Cyberattack - SecurityWeek

SANS Difference Makers Awards (DMAs) 2024 Community Voting

https://survey.sans.org/jfe/form/SV_e3RIHG3KQIDo050
SANS Difference Makers Awards (DMAs) 2024 Community Voting

Versa Networks Patches Vulnerability Exposing Authentication Tokens - SecurityWeek

https://www.securityweek.com/versa-networks-patches-vulnerability-exposing-authentication-tokens/
Versa Networks Patches Vulnerability Exposing Authentication Tokens - SecurityWeek

Microsoft Names Deputy CISOs, Governance Council to Manage Security Push  - SecurityWeek

https://www.securityweek.com/microsoft-names-deputy-cisos-governance-council-to-manage-security-push/
Microsoft Names Deputy CISOs, Governance Council to Manage Security Push  - SecurityWeek

Unpatched Vulnerabilities Expose Riello UPSs to Hacking: Security Firm - SecurityWeek

https://www.securityweek.com/unpatched-vulnerabilities-expose-riello-upss-to-hacking-security-firm/
Unpatched Vulnerabilities Expose Riello UPSs to Hacking: Security Firm - SecurityWeek

Deloitte Says No Threat to Sensitive Data After Hacker Claims Server Breach - SecurityWeek

https://www.securityweek.com/deloitte-says-no-threat-to-sensitive-data-after-hacker-claims-server-breach/
Deloitte Says No Threat to Sensitive Data After Hacker Claims Server Breach - SecurityWeek

Critical Ivanti vTM auth bypass bug now exploited in attacks

https://www.bleepingcomputer.com/news/security/critical-ivanti-vtm-auth-bypass-bug-now-exploited-in-attacks/
Critical Ivanti vTM auth bypass bug now exploited in attacks

Ghost in the PPL Part 3: LSASS Memory Dump | itm4n's blog

https://itm4n.github.io/ghost-in-the-ppl-part-3/
Ghost in the PPL Part 3: LSASS Memory Dump | itm4n's blog