PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Google Created 'Open-Source Maintenance Crew' to Help Secure Critical Projects

vendredi 13 mai 2022 à 14:26
Google on Thursday announced the creation of a new "Open Source Maintenance Crew" to focus on bolstering the security of critical open source projects. Additionally, the tech giant pointed out Open Source Insights as a tool for analyzing packages and their dependency graphs, using it to determine "whether a vulnerability in a dependency might affect your code." "With this information, developers

New Saitama backdoor Targeted Official from Jordan's Foreign Ministry

vendredi 13 mai 2022 à 11:32
A spear-phishing campaign targeting Jordan's foreign ministry has been observed dropping a new stealthy backdoor dubbed Saitama. Researchers from Malwarebytes and Fortinet FortiGuard Labs attributed the campaign to an Iranian cyber espionage threat actor tracked under the moniker APT34, citing resemblances to past campaigns staged by the group. "Like many of these attacks, the email contained a

Zyxel Releases Patch for Critical Firewall OS Command Injection Vulnerability

vendredi 13 mai 2022 à 08:24
Zyxel has moved to address a critical security vulnerability affecting Zyxel firewall devices that enables unauthenticated and remote attackers to gain arbitrary code execution. "A command injection vulnerability in the CGI program of some firewall versions could allow an attacker to modify specific files and then execute some OS commands on a vulnerable device," the company said in an advisory

Iranian Hackers Leveraging BitLocker and DiskCryptor in Ransomware Attacks

jeudi 12 mai 2022 à 15:56
A ransomware group with an Iranian operational connection has been linked to a string of file-encrypting malware attacks targeting organizations in Israel, the U.S., Europe, and Australia. Cybersecurity firm Secureworks attributed the intrusions to a threat actor it tracks under the moniker Cobalt Mirage, which it said is linked to an Iranian hacking crew dubbed Cobalt Illusion (aka APT35,

E.U. Proposes New Rules for Tech Companies to Combat Online Child Sexual Abuse

jeudi 12 mai 2022 à 15:21
The European Commission on Wednesday proposed new regulation that would require tech companies to scan for child sexual abuse material (CSAM) and grooming behavior, raising worries that it could undermine end-to-end encryption (E2EE). To that end, online service providers, including hosting services and communication apps, are expected to proactively scan their platforms for CSAM as well as