Cybersecurity
đź’€This malware campaign uses Discord emojis for C2 instructions
Camera emoji? "Take a screenshot of the victim's screen and upload it to the command channel as an attachment."
Cybersecurity
Camera emoji? "Take a screenshot of the victim's screen and upload it to the command channel as an attachment."
SolarWinds
“CVE-2024-28995 is not known to be exploited in the wild as of 9 AM ET on June 11. We expect this to change."
Snowflake
"The user must be left in the disabled state for 6 hours to fully invalidate any possible unauthorized access via this ID token feature."
vulnerabilities
106,000 customers publicly exposed, initial searches suggest.
Cybersecurity
Update comes after CISA started enriching CVEs itself…
Cybersecurity
Estonian ex-prez Ilves and Columbia Law prof deliver stark warning to cyberpros
Cybersecurity
Anonymous Substack post with AI signs put the fear of Tan in Zscaler staff
Cybersecurity
"Six exploits, no configuration needed, no ports need to get opened; just straight-up RCEs, no fuss, no muss."
Cybersecurity
Malware operators “have established a significant presence in data centers worldwide”Â
ransomware
Ransomware group using "Backstab" to kill EDR processes.
Wales
18 local authorities along with fire and rescue services to get onboarded to centrally funded Security Operations Centre.
Zscaler
"No impact or compromise to our customer, production and corporate environments" -- but were credentials stolen?