Oddbean new post about | logout

Notes by ITSEC News | export

 Trend Micro fixes endpoint protection zero-day used in attacks - Trend Micro fixed a remote code execution zero-day vulnerability in the Trend Micro's Ape... https://www.bleepingcomputer.com/news/security/trend-micro-fixes-endpoint-protection-zero-day-used-in-attacks/ #security 
 Acronis Unveils First Ever AI-powered Cyber Protection Software for Consumers - Acronis, a global cyber protection company, today announced the launch of Acronis Cyber P... https://www.itsecurityguru.org/2023/09/19/acronis-unveils-first-ever-ai-powered-cyber-protection-software-for-consumers/?utm_source=rss&utm_medium=rss&utm_campaign=acronis-unveils-first-ever-ai-powered-cyber-protection-software-for-consumers #aiandmachinelearning 
 Sample Breach Forums Personally Identifiable Cybercriminal Email Address Accounts - Dear blog readers,
The following is a personally identifiable email address compi... https://tech-wreckblog.blogspot.com/2023/09/sample-breach-forums-personally.html 
 Understanding the Cyber Kill Chain: A Comprehensive Guide to Cybersecurity - In today’s interconnected digital world, cyberattacks have become an ever-present threat ... https://tech-wreckblog.blogspot.com/2023/09/understanding-cyber-kill-chain.html 
 Cyber Week 2023 & The Israel National Cyber Directorate Presents – FraudCON In-Person - Many thanks to Israel’s Tel Aviv University for publishing their presenter’s tremendous C... https://tech-wreckblog.blogspot.com/2023/09/cyber-week-2023-israel-national-cyber_17.html 
 TikTok flooded by 'Elon Musk' cryptocurrency giveaway scams - TikTok is flooded by a surge of fake cryptocurrency giveaways posted to the video-sharing... https://www.bleepingcomputer.com/news/security/tiktok-flooded-by-elon-musk-cryptocurrency-giveaway-scams/ #cryptocurrency #security 
 When Ransomware Attacks Seem Inevitable, What Can IT Teams Do? - The possibility of their business falling victim to a cyberattack has always kept IT team... https://tech-wreckblog.blogspot.com/2023/09/when-ransomware-attacks-seem-inevitable.html 
 Cyber Week 2023 & The Israel National Cyber Directorate Presents – CSA Israel Event: Deep Dive Into Cloud Security Operations - Many thanks to Israel’s Tel Aviv University for publishing their presenter’s tremendous C... https://tech-wreckblog.blogspot.com/2023/09/cyber-week-2023-israel-national-cyber.html 
 Google Chrome tests Microsoft Edge-like Read Aloud feature - Google Chrome is set to enhance its user experience on the desktop by adding a "read alou... https://www.bleepingcomputer.com/news/google/google-chrome-tests-microsoft-edge-like-read-aloud-feature/ #software #google 
 Microsoft Edge is losing tablet-friendly "Web Select" feature - Microsoft's Edge browser, known for its innovative features, is now shedding one of its m... https://www.bleepingcomputer.com/news/microsoft/microsoft-edge-is-losing-tablet-friendly-web-select-feature/ #microsoft #software 
 WhatsApp rival Telegram gets Crypto wallet integration - Telegram, the widely used messaging app, has unveiled an integrated crypto wallet feature... https://www.bleepingcomputer.com/news/technology/whatsapp-rival-telegram-gets-crypto-wallet-integration/ #cryptocurrency #technology #software 
 BlackCat ransomware hits Azure Storage with Sphynx encryptor - The BlackCat (ALPHV) ransomware gang now uses stolen Microsoft accounts and the recently ... https://www.bleepingcomputer.com/news/security/blackcat-ransomware-hits-azure-storage-with-sphynx-encryptor/ #security 
 2023 OWASP Top-10 Series: API8:2023 Security Misconfiguration - Welcome to the 9th post in our weekly series on the new 2023 OWASP API Security Top-10 li... https://tech-wreckblog.blogspot.com/2023/09/2023-owasp-top-10-series-api82023.html 
 The Week in Ransomware - September 15th 2023 - Russian Roulette - This week's big news is the extortion attacks on the Caesars and MGM Las Vegas casino cha... https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-september-15th-2023-russian-roulette/ #security 
 Capslock: What is your code really capable of? - Jess McClintock and John Dethridge, Google Open Source Security Team, and Damien M... http://security.googleblog.com/2023/09/capslock-what-is-your-code-really.html 
 Retool blames breach on Google Authenticator MFA cloud sync feature - Software company Retool says the accounts of 27 cloud customers were compromised followin... https://www.bleepingcomputer.com/news/security/retool-blames-breach-on-google-authenticator-mfa-cloud-sync-feature/ #cryptocurrency #security #google 
 Google extends security update support for Chromebooks to 10 years - Google has announced the Auto Update Expiration (AUE) date will be extended from 5 years ... https://www.bleepingcomputer.com/news/security/google-extends-security-update-support-for-chromebooks-to-10-years/ #security #google 
 ICO issues warning over smart devices harvesting personal data - The Information Commissioner’s Office (ICO) has issued a warning about the risks posed by... https://www.itsecurityguru.org/2023/09/15/ico-issues-warning-over-smart-devices-harvesting-personal-data/?utm_source=rss&utm_medium=rss&utm_campaign=ico-issues-warning-over-smart-devices-harvesting-personal-data #news 
 Trend Micro Protects Kingston University During Peak Clearing Period - Trend Micro Incorporated (TYO: 4704; TSE: 4704), a global cybersecurity leader, today rev... https://www.itsecurityguru.org/2023/09/15/trend-micro-protects-kingston-university-during-peak-clearing-period/?utm_source=rss&utm_medium=rss&utm_campaign=trend-micro-protects-kingston-university-during-peak-clearing-period #casestudies 
 Google pays $93M to settle Android tracking lawsuit in California - California's Attorney General announced today that Google will pay $93 million to settle ... https://www.bleepingcomputer.com/news/google/google-pays-93m-to-settle-android-tracking-lawsuit-in-california/ #google 
 ORBCOMM ransomware attack causes trucking fleet management outage - Trucking and fleet management solutions provider ORBCOMM has confirmed that a ransomware ... https://www.bleepingcomputer.com/news/security/orbcomm-ransomware-attack-causes-trucking-fleet-management-outage/ #security 
 Cyberattacks Increasingly Target APIs - Nearly three-quarters of organizations suffered three or more breaches involving ... https://tech-wreckblog.blogspot.com/2023/09/cyberattacks-increasingly-target-apis.html 
 Tech-Wreck Tipper (TWT) - 009 - Peach Sandstorm -  Description: Microsoft Threat Intelligence reports on cyber activity by an Iranian natio... https://tech-wreckblog.blogspot.com/2023/09/tech-wreck-tipper-twt-008-peach.html 
 Tech-Wreck Tipper (TWT) - 008 - RedLine and Vidar stealer malware -  Description: Threat actors responsible for the RedLine and Vidar stealer malwares... https://tech-wreckblog.blogspot.com/2023/09/tech-wreck-tipper-twt-008-redline-and.html 
 United Cloud, the Fastest Growing Innovation Centre in SEE Europe, Selects Verimatrix XTD for Mobile App Protection - Yesterday, Verimatrix announced that United Cloud will deploy Verimatrix Extended Threat ... https://www.itsecurityguru.org/2023/09/15/united-cloud-the-fastest-growing-innovation-centre-in-see-europe-selects-verimatrix-xtd-for-mobile-app-protection/?utm_source=rss&utm_medium=rss&utm_campaign=united-cloud-the-fastest-growing-innovation-centre-in-see-europe-selects-verimatrix-x... 
 TikTok slapped with $368 million fine over child privacy violations - The Irish Data Protection Commission (DPC) has fined TikTok €345 million ($368 million) f... https://www.bleepingcomputer.com/news/technology/tiktok-slapped-with-368-million-fine-over-child-privacy-violations/ #technology 
 The Details of Microsoft’s September 2023 Patch Tuesday Release - On September 12th, 2023, Microsoft released their September Patch Tuesday and revealed 59... https://tech-wreckblog.blogspot.com/2023/09/the-details-of-microsofts-september.html 
 MGM and Caesars Casinos Suffer Massive Cyberattack - Two of Las Vegas’ iconic casinos, the MGM and Caesars hotel, have fallen victim to a majo... https://www.itsecurityguru.org/2023/09/15/mgm-and-caesars-suffer-massive-cyberattack/?utm_source=rss&utm_medium=rss&utm_campaign=mgm-and-caesars-suffer-massive-cyberattack #editorsnews #features #security #betting #casino #cyber #news 
 Employer Obligations on Employee Data Under Indian Law - UPDATE: The Personal Data Protection Bill 2019 has been withdrawn by the Indian governmen... https://tech-wreckblog.blogspot.com/2023/09/employer-obligations-on-employee-data.html 
 Bing Chat AI is down, affecting Windows Copilot and more - Bing Chat, the famous ChatGPT-powered chatbot that allows users to converse with various ... https://www.bleepingcomputer.com/news/microsoft/bing-chat-ai-is-down-affecting-windows-copilot-and-more/ #microsoft #software 
 Armis forges ahead into Cyber Exposure Management as it readies for IPO - During a live-streamed even this week, Armis co-founders Yevgeny Dibrov and Nadir ... https://www.itsecurityguru.org/2023/09/15/armis-forges-ahead-into-cyber-exposure-management-as-it-readies-for-ipo/?utm_source=rss&utm_medium=rss&utm_campaign=armis-forges-ahead-into-cyber-exposure-management-as-it-readies-for-ipo #featured #features 
 Adobe Acrobat and Reader Arbitrary Code Execution Vulnerability (CVE-2023-26369) Notification - Overview Recently, NSFOCUS CERT monitored Adobe’s official security announcement and fixe... https://tech-wreckblog.blogspot.com/2023/09/adobe-acrobat-and-reader-arbitrary-code.html 
 Microsoft Septemer Security Updates for Multiple High-Risk Product Vulnerabilities - Overview On September 13, NSFOCUS CERT found that Microsoft had released a security updat... https://tech-wreckblog.blogspot.com/2023/09/microsoft-septemer-security-updates-for.html 
 Will Cyber Threats Result in Decline of Fintech Industry? - The Fintech industry has emerged as an essential factor in the digital age. The revolutio... https://tech-wreckblog.blogspot.com/2023/09/will-cyber-threats-result-in-decline-of.html 
 Generative AI & Trust: A Paradigm Shift in Security - Generative AI, which includes models like GPT-3 and its successors, is changing the way p... https://tech-wreckblog.blogspot.com/2023/09/generative-ai-trust-paradigm-shift-in.html 
 MGM casino's ESXi servers allegedly encrypted in ransomware attack - An affiliate of the BlackCat ransomware group, also known as APLHV, is behind the attack ... https://www.bleepingcomputer.com/news/security/mgm-casinos-esxi-servers-allegedly-encrypted-in-ransomware-attack/ #security 
 Tech-Wreck Tipper (TWT) - 007 - UNC3944 -  Description: This Tech-Wreck report covers the activities of UNC3944, a threat cl... https://tech-wreckblog.blogspot.com/2023/09/tech-wreck-tipper-twt-007-unc3944.html 
 MGM Resorts ESXi servers allegedly encrypted in ransomware attack - An affiliate of the BlackCat ransomware group, also known as APLHV, is behind the attack ... https://www.bleepingcomputer.com/news/security/mgm-resorts-esxi-servers-allegedly-encrypted-in-ransomware-attack/ #security 
 Auckland transport authority hit by suspected ransomware attack - The Auckland Transport (AT) transportation authority in New Zealand is dealing with a wid... https://www.bleepingcomputer.com/news/security/auckland-transport-authority-hit-by-suspected-ransomware-attack/ #security 
 Turns out even the NFL is worried about deepfakes - Welcome to this week’s edition of the Threat Source newsletter.I’m at the point in the ca... https://blog.talosintelligence.com/threat-source-newsletter-sept-14-2023/ #threatsourcenewsletter 
 Windows 11 Snipping Tool gets OCR support to copy text from images - Microsoft has added text recognition support to the latest Snipping Tool build, allowing ... https://www.bleepingcomputer.com/news/microsoft/windows-11-snipping-tool-gets-ocr-support-to-copy-text-from-images/ #microsoft 
 Caesars Entertainment confirms ransom payment, customer data theft - Caesars Entertainment, self-described as the largest U.S. casino chain with the most exte... https://www.bleepingcomputer.com/news/security/caesars-entertainment-confirms-ransom-payment-customer-data-theft/ #security 
 Iranian hackers breach defense orgs in password spray attacks - Microsoft says an Iranian-backed threat group has targeted thousands of organizations in ... https://www.bleepingcomputer.com/news/security/iranian-hackers-breach-defense-orgs-in-password-spray-attacks/ #microsoft #security 
 Windows 11 ‘ThemeBleed’ RCE bug gets proof-of-concept exploit - Security researcher Gabe Kirkpatrick has made a proof-of-concept (PoC) exploit available ... https://www.bleepingcomputer.com/news/security/windows-11-themebleed-rce-bug-gets-proof-of-concept-exploit/ #microsoft #security 
 Greater Manchester Police latest force to suffer serious data breach - Uh-oh, yet another UK police force has suffered a serious data breach.

After the inciden... https://grahamcluley.com/greater-manchester-police-latest-force-to-suffer-serious-data-breach/ #greatermanchesterpolice #ransomware #databreach #dataloss #malware 
 BLASTPASS: Government agencies told to secure iPhones against spyware attacks - CISA, the United States's Cybersecurity and Infrastructure Security Agency, has ordered f... https://www.tripwire.com/state-of-security/government-agencies-told-secure-iphones-against-spyware-attacks #vulnerability #guestblog #nsogroup #malware #pegasus #spyware #apple #macos #ios 
 Criminal IP Elevates Payment Security with PCI DSS Level 1 Certification - Criminal IP, a cyber threat intelligence search engine, has achieved PCI DSS Level 1 cert... https://www.bleepingcomputer.com/news/security/criminal-ip-elevates-payment-security-with-pci-dss-level-1-certification/ #security 
 Manchester Police officers' data exposed in ransomware attack - United Kingdom's Greater Manchester Police (GMP) said earlier today that some of its empl... https://www.bleepingcomputer.com/news/security/manchester-police-officers-data-exposed-in-ransomware-attack/ #security 
 Automation is key to effective and efficient pentest reporting - Graham Cluley Security News is sponsored this week by the folks at PlexTrac. Thanks to th... https://grahamcluley.com/feed-sponsor-plextrac-2/ #feedonly 
 Car companies are collecting data on your sex life, and apparently you’re fine with that - It seems modern cars are gobbling up all kinds of data about their drivers including - as... https://grahamcluley.com/car-companies-are-collecting-data-on-your-sex-life-and-apparently-youre-fine-with-that/ #privacypolicy #privacy #nissan #car #kia 
 Fake Cisco Webex Google Ads abuse tracking templates to push malware - Threat actors use Google Ads tracking templates as a loophole to create convincing Webex ... https://www.bleepingcomputer.com/news/security/fake-cisco-webex-google-ads-abuse-tracking-templates-to-push-malware/ #security 
 How to Improve Student Mental Health: 7 Strategies for K-12 - The stress of being a young person has never been easy. From classwork and relationships ... https://tech-wreckblog.blogspot.com/2023/09/how-to-improve-student-mental-health-7.html 
 How Cisco Talos IR helped a healthcare company quickly resolve a Qakbot attack - Healthcare is one of the most popular targets for threat actors, as evidenced by the fact... https://blog.talosintelligence.com/how-cisco-talos-ir-helped-a-healthcare-company-quickly-resolve-a-qakbot-attack/ #ciscotalosincidentresponse #topstory 
 Report Surfaces Root Causes of Cloud Security Issues - Palo Alto Networks found that half of the critical exposures discovered in cloud ... https://tech-wreckblog.blogspot.com/2023/09/report-surfaces-root-causes-of-cloud.html 
 GUEST ESSAY: The timing is ripe to instill trust in the open Internet — and why this must get done - In today’s digital age, trust has become a cornerstone of building a better Intern... https://www.lastwatchdog.com/guest-essay-the-timing-is-ripe-to-instill-trust-in-the-open-internet-and-why-this-must-get-done/ #uncategorized 
 5 Strategies for Reliable Protection Against BEC Scams - The recent Cloudflare 2023 Phishing Threats Report unravels many interesting statistics a... https://tech-wreckblog.blogspot.com/2023/09/5-strategies-for-reliable-protection.html 
 Tech-Wreck Tipper (TWT) - 007 - MSSQL DB#JAMMER Threat -  Description: Threat actors are targeting exposed MSSQL databases as part of an at... https://tech-wreckblog.blogspot.com/2023/09/tech-wreck-tipper-twt-007-mssql.html 
 NSFOCUS Ranked No. 2 in China Network Detection and Response Market 2022 - IDC has recently published its China Network Detection and Response (NDR) Market Report f... https://tech-wreckblog.blogspot.com/2023/09/nsfocus-ranked-no-2-in-china-network.html 
 FBI Hacker Dropped Stolen Airbus Data on 9/11 - In December 2022, KrebsOnSecurity broke the news that a cybercriminal using the ha... https://krebsonsecurity.com/2023/09/fbi-hacker-dropped-stolen-airbus-data-on-9-11/ #alittlesunshine #thecomingstorm #genesismarket #databreaches #breachforums #hudsonrock #infragard #microsoft #redline #airbus #usdod #fbi 
 Smashing Security podcast #339: Bitcoin boo-boo, deepfakes for good, and time to say goodbye to usernames? - Deepfakes are being used for good (perhaps), common usernames could pose a security threa... https://grahamcluley.com/smashing-security-podcast-339/ #smashingsecurity #securitythreats #cryptocurrency #blockchain #deepfake #password #username #podcast #bitcoin 
 Rollbar discloses data breach after hackers stole access tokens - Software bug-tracking company Rollbar disclosed a data breach after unknown attackers hac... https://www.bleepingcomputer.com/news/security/rollbar-discloses-data-breach-after-hackers-stole-access-tokens/ #security 
 New Windows 11 feature blocks NTLM-based attacks over SMB - Microsoft added a new security feature to Windows 11 that lets admins block NTLM over SMB... https://www.bleepingcomputer.com/news/security/new-windows-11-feature-blocks-ntlm-based-attacks-over-smb/ #microsoft #security 
 Tech-Wreck - Cyber PDB - Sep 13, 2023 -  [Summary]:This PDB contains an analysis of recent cybersecurity threats, vulnerab... https://tech-wreckblog.blogspot.com/2023/09/tech-wreck-cyber-pdb-sep-13-2023_13.html 
 France demands Apple pull iPhone 12 due to high RF radiation levels - The Agence Nationale des Fréquences (ANFR) has asked Apple to withdraw iPhone 12 smartpho... https://www.bleepingcomputer.com/news/security/france-demands-apple-pull-iphone-12-due-to-high-rf-radiation-levels/ #security #apple 
 Black Hat Fireside Chat: The impactful role crowdsourced security intelligence must play - From Kickstarter to Wikipedia, crowdsourcing has become a part of everyday life.
S... https://www.lastwatchdog.com/black-hat-fireside-chat-the-impactful-role-crowdsourced-security-intelligence-must-play/ #blackhatpodcasts #fortechnologists #topstories #podcasts 
 Tech-Wreck Tipper (TWT) - 004 - Kubernetes Vulnerabilities -  Description: Three high-severity security flaws have been discovered in Kubernetes, whic... https://tech-wreckblog.blogspot.com/2023/09/tech-wreck-tipper-twt-004-kubernetes.html 
 Microsoft Teams down: Ongoing outage behind message failures, delays - Microsoft is investigating an ongoing outage preventing customers from sending or receivi... https://www.bleepingcomputer.com/news/microsoft/microsoft-teams-down-ongoing-outage-behind-message-failures-delays/ #microsoft 
 How end-user phishing training works (and why it doesn’t) - Training end-users to spot phishing has its benefits, but it's clear to see organizations... https://www.bleepingcomputer.com/news/security/how-end-user-phishing-training-works-and-why-it-doesnt/ #security 
 Hackers steal $53 million worth of cryptocurrency from CoinEx - Global cryptocurrency exchange CoinEX announced that someone hacked its hot wallets and s... https://www.bleepingcomputer.com/news/security/hackers-steal-53-million-worth-of-cryptocurrency-from-coinex/ #cryptocurrency #security 
 LogRhythm Announces More Details on RhythmWorld 2023 Security Conference - RhythmWorld 2023 Releases Full Agenda   BROOMFIELD, Colo., September 12, 2023–(BUSINESS W... https://tech-wreckblog.blogspot.com/2023/09/logrhythm-announces-more-details-on.html 
 Hackers use new 3AM ransomware to save failed LockBit attack - A new ransomware strain called 3AM has been uncovered after a threat actor used it in an ... https://www.bleepingcomputer.com/news/security/hackers-use-new-3am-ransomware-to-save-failed-lockbit-attack/ #security 
 Tech-Wreck Tipper (TWT) - 003 - MGM - ALPHV/BLACKCAT Ransomware -  Description: The MGM Resorts International suffered a severe cyberattack claimed ... https://tech-wreckblog.blogspot.com/2023/09/tech-wreck-tipper-twt-003-mgm.html 
 Tech-Wreck Tipper (TWT) - 002 - Teams Storm 0324 / Microsoft Teams -  Description: Microsoft's Threat Intelligence team has issued a warning about a ne... https://tech-wreckblog.blogspot.com/2023/09/tech-wreck-tipper-twt-002-teams-storm.html 
 Tech-Wreck Tipper (TWT) - 001 - MetaStealer -  Network Entity Analysis Toolkit (NEAT) generated output produced on 2023-09-13Not... https://tech-wreckblog.blogspot.com/2023/09/tech-wreck-tipper-twt-001-metastealer.html 
 6 Ways Passwords Can be Stolen — and How Passwordless Can Stop Them All - Passwords have gotten a lot of attention lately. Why? Because they pose a double threat w... https://tech-wreckblog.blogspot.com/2023/09/6-ways-passwords-can-be-stolen-and-how.html 
 Machine Learning is a Must for API Security - Modern digital transformations have been fuelled by APIs, altering how many businesses an... https://www.itsecurityguru.org/2023/09/13/machine-learning-is-a-must-for-api-security/?utm_source=rss&utm_medium=rss&utm_campaign=machine-learning-is-a-must-for-api-security #insight 
 Build a Custom Kubernetes Platform? Or Try the Insights Free Tier? - As businesses grow and scale, the deployment of applications and services on prod... https://tech-wreckblog.blogspot.com/2023/09/build-custom-kubernetes-platform-or-try.html 
 Adobe, Apple, Google & Microsoft Patch 0-Day Bugs - Microsoft today issued software updates to fix at least five dozen security holes ... https://krebsonsecurity.com/2023/09/adobe-apple-google-microsoft-patch-0-day-bugs/ #microsoftpatchtuesdayseptember2023 #cve-2023-26369 #cve-2023-36761 #cve-2023-36802 #cve-2023-38148 #cve-2023-41064 #microsoftword #lockdownmode #timetopatch #ios16.16.1 #microsoft #tombowyer #automox #google #adobe #apple 
 Microsoft Patch Tuesday for September 2023 — Unusually low 5 critical vulnerabilities included in Microsoft Patch Tuesday, along with two zero-days - Microsoft disclosed 65 vulnerabilities across its suite of products and software Tuesday,... https://blog.talosintelligence.com/microsoft-patch-tuesday-for-september-2023/ #patchtuesday 
 Mozilla patches Firefox, Thunderbird against zero-day exploited in attacks - Mozilla released emergency security updates today to fix a critical zero-day vulnerabilit... https://www.bleepingcomputer.com/news/security/mozilla-patches-firefox-thunderbird-against-zero-day-exploited-in-attacks/ #security 
 New 'MetaStealer' malware targets Intel-based macOS systems - A new information stealer malware named 'MetaStealer' has appeared in the wild, stealing ... https://www.bleepingcomputer.com/news/security/new-metastealer-malware-targets-intel-based-macos-systems/ #security #apple 
 You can try to hide your firmware from Kelly Patterson, but she’ll find it (and break it) - How her work illustrates the difference Talos’ vulnerability research team makesWhen Kell... https://blog.talosintelligence.com/researcher-spotlight-kelly-patterson-vulnerabilities/ #researcherspotlight #features 
 Holy Macroni! A recipe for progressive language enhancement - By Brent Pappas
Despite its use for refactoring and static analysis tooling, Clang has a ... https://blog.trailofbits.com/2023/09/11/holy-macroni-a-recipe-for-progressive-language-enhancement/ #uncategorized 
 Iranian hackers breach US aviation org via ManageEngine, Fortinet bugs - State-backed hacking groups have breached a U.S. aeronautical organization using exploits... https://www.bleepingcomputer.com/news/security/iranian-hackers-breach-us-aviation-org-via-manageengine-fortinet-bugs/ #security 
 'Evil Telegram' Android apps on Google Play infected 60K with spyware - Several malicious Telegram clones for Android on Google Play were installed over 60,000 t... https://www.bleepingcomputer.com/news/security/evil-telegram-android-apps-on-google-play-infected-60k-with-spyware/ #security #google #mobile 
 The Week in Ransomware - September 8th 2023 - Conti Indictments - It started as a slow ransomware news week but slowly picked up pace with the Department o... https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-september-8th-2023-conti-indictments/ #security 
 Ragnar Locker claims attack on Israel's Mayanei Hayeshua hospital - The Ragnar Locker ransomware gang has claimed responsibility for an attack on Israel's Ma... https://www.bleepingcomputer.com/news/security/ragnar-locker-claims-attack-on-israels-mayanei-hayeshua-hospital/ #security 
 Dymocks Booksellers suffers data breach impacting 836k customers - Dymocks Booksellers is warning customers their personal information was exposed in a data... https://www.bleepingcomputer.com/news/security/dymocks-booksellers-suffers-data-breach-impacting-836k-customers/ #security 
 Fortifying the Foundation: Empowering a Zero-Trust Security Paradigm - Zero-trust has become a significant trend as organizations adapt to a world where... https://tech-wreckblog.blogspot.com/2023/09/fortifying-foundation-empowering-zero.html 
 Cisco warns of VPN zero-day exploited by ransomware gangs - Cisco is warning of a zero-day vulnerability in its Cisco Adaptive Security Appliance (AS... https://www.bleepingcomputer.com/news/security/cisco-warns-of-vpn-zero-day-exploited-by-ransomware-gangs/ #security 
 Detection Engineering is Painful — and It Shouldn’t Be (Part 1) - Detection Engineering is Painful — and It Shouldn’t Be (Part 1)
This blog series w... https://tech-wreckblog.blogspot.com/2023/09/detection-engineering-is-painfuland-it.html 
 Multiple Security Vulnerability Notifications on Apple Products - Overview Recently, NSFOCUS CERT has detected that Apple has officially repaired two 0day ... https://tech-wreckblog.blogspot.com/2023/09/multiple-security-vulnerability.html 
 Government tech tsar warns of AI cyber threat to NHS - Ian Hogarth, the government’s new AI tsar has warned that artificial intelligence could b... https://www.itsecurityguru.org/2023/09/08/government-tech-tsar-warns-of-ai-cyber-threat-to-nhs/?utm_source=rss&utm_medium=rss&utm_campaign=government-tech-tsar-warns-of-ai-cyber-threat-to-nhs #featured 
 Keeper Introduces Major Password Manager Update for iOS - Keeper Security has announced the Keeper Password Manager app for iOS, which features a b... https://www.itsecurityguru.org/2023/09/08/keeper-introduces-major-password-manager-update-for-ios/?utm_source=rss&utm_medium=rss&utm_campaign=keeper-introduces-major-password-manager-update-for-ios #pressreleases #securitynews 
 Strider Technologies Names Royal Navy and UK Ministry of Defence Veteran, Admiral Sir Tim Fraser, as an Advisor - Strider Technologies, Inc. (“Strider”), the leading provider of Strategic Intelligence, t... https://www.itsecurityguru.org/2023/09/08/strider-technologies-names-royal-navy-and-uk-ministry-of-defence-veteran-admiral-sir-tim-fraser-as-an-advisor/?utm_source=rss&utm_medium=rss&utm_campaign=strider-technologies-names-royal-navy-and-uk-ministry-of-defence-veteran-admiral-sir-tim-fras... 
 Bridewell announces CHECK penetration testing accreditation from NCSC - Bridewell, a leading UK cyber security firm, today announces that it has been accredited ... https://www.itsecurityguru.org/2023/09/08/bridewell-announces-check-penetration-testing-accreditation-from-ncsc/?utm_source=rss&utm_medium=rss&utm_campaign=bridewell-announces-check-penetration-testing-accreditation-from-ncsc #guruspicks 
 Enriched Visibility: Understand Level 2 of the ARMOR Assessment - The post Enriched Visibility: Understand Level 2 of the ARMOR Assessment appeared first o... https://tech-wreckblog.blogspot.com/2023/09/enriched-visibility-understand-level-2.html 
 Microsoft Paint in Windows 11 gets a background removal tool -  Microsoft is rolling out a new version of the Paint application on Windows 11 Insider bu... https://www.bleepingcomputer.com/news/microsoft/microsoft-paint-in-windows-11-gets-a-background-removal-tool/ #microsoft 
 CISA warns of critical Apache RocketMQ bug exploited in attacks - The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added to its catalog... https://www.bleepingcomputer.com/news/security/cisa-warns-of-critical-apache-rocketmq-bug-exploited-in-attacks/ #security 
 Iranian hackers breach US aviation org via Zoho, Fortinet bugs - State-backed hacking groups have breached a U.S. aeronautical organization using exploits... https://www.bleepingcomputer.com/news/security/iranian-hackers-breach-us-aviation-org-via-zoho-fortinet-bugs/ #security 
 Google is enabling Chrome real-time phishing protection for everyone - Google announced today that it is deprecating the Google Chrome Safe Browsing feature and... https://www.bleepingcomputer.com/news/google/google-is-enabling-chrome-real-time-phishing-protection-for-everyone/ #google 
 Apple zero-click iMessage exploit used to infect iPhones with spyware - Citizen Lab says two zero-days fixed by Apple today in emergency security updates were ac... https://www.bleepingcomputer.com/news/security/apple-zero-click-imessage-exploit-used-to-infect-iphones-with-spyware/ #security #apple