2024-09-04 12:00 UTC
Government
NIST Cybersecurity Insights · Jody Jacobs, Julie Haney · indexed 2026-08-15 20:45 UTC
Human-centered cybersecurity (also known as ‘usable security’) involves the social, organizational, and technological influences on people’s understanding of and interactions with cybersecurity. By taking a human-centered cybersecurity (HCC) approach, we can both improve people's cybersecurity experiences and achieve better cybersecurity outcomes, which is so important in today’s digitally interconnected world. At NIST, we understand the value of making connections, listening, and interactivity…
P0
2024-09-04 06:52 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Explore the growing threats posed by the Lazarus Group's financially-driven campaign against developers. We will examine their recent Python scripts, including the CivetQ and BeaverTail malware variants, along with their updated versions in Windows and Python releases. Additionally, we will analyze their tactics, techniques, and indicators of compromise.
P0
2024-09-03 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Join Huntress team members as they walk through some of the most malicious phishing techniques, presented from the attacker's perspective.
P0
2024-08-28 06:52 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Learn why RansomHub's new affiliate program and its advanced ransomware tactics—recruiting former Scattered Spider members, exploiting unprotected RDP services, and exfiltrating large data volumes—are critical for staying ahead of modern cyber threats.
P15
2024-08-28 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress identified an intrusion against a non-profit supporting Vietnamese human rights that’s likely spanned years. Jump in as we provide a thorough analysis of this malicious threat actor.
P0
2024-08-26 13:32 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Group-IB explores methods of process visibility evasion through /proc filesystem manipulation in Linux, along with effective defenses to counteract these tactics.
P0
2024-08-26 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Cyberattacks on U.S. government and critical infrastructure surged in 2023, with over 420 million global attacks. Learn which states are most affected and discover how Huntress can help protect your organization
P0
2024-08-22 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Join Imani on her adventures as she learns how to remain secure in remote work environments with our latest Huntress SAT episode!
P0
2024-08-21 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Discover how our new Unwanted Access capability strengthens your defenses against session hijacking and credential theft. Dive in and learn how to minimize risks and protect your business-critical assets from evolving cyber threats.
P0
2024-08-20 12:00 UTC
Government
NIST Cybersecurity Insights · Joseph Near, David Darais, Mark Durkee · indexed 2026-08-15 20:45 UTC
In this post, we talk with Dr. Xiaowei Huang and Dr. Yi Dong (University of Liverpool), Dr. Mat Weldon ( United Kingdom (UK) Office of National Statistics (ONS)), and Dr. Michael Fenton (Trūata) who were winners in the UK-US Privacy-Enhancing Technologies ( PETs) Prize Challenges. We discuss implementation challenges of privacy-preserving federated learning (PPFL) - specifically, the areas of threat modeling and real world deployments. Threat Modeling In research on privacy-preserving federated…
P0
2024-08-20 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
P0
2024-08-19 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
A vulnerability in Azure Kubernetes Services allowed attackers to escalate privileges and access cluster credentials. Affected clusters used Azure CNI for network configuration and Azure for network policy. Attackers could exploit this issue to steal data and cause financial and reputational damage. The vulnerability has been fixed by Microsoft after disclosure by Mandiant.
P0
2024-08-15 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
A BGP-based feature of the AWS Direct Connect service allowed a third party to inject an incorrect route for an external IP, effectively hijacking AWS-sourced traffic. This resulted in connectivity issues between AWS EC2 instances and external systems. The issue was caused by a typo in a Direct Connect customer's configuration, which advertised an incorrect prefix to AWS.
P0
2024-08-14 06:45 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Deep dive into Brain Cipher ransomware group's activities and techniques, and how they are seemingly linked to other ransomware groups such as EstateRansomware and SenSayQ
P15
2024-08-13 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
P10
2024-08-09 14:02 UTC
Other
Black Lantern Security · TheTechromancer · indexed 2026-09-07 17:30 UTC
The recursive internet scanner gets an upgrade
P0
2024-08-09 00:00 UTC
Government
CERT-FR Alerts · indexed 2026-09-07 17:35 UTC
Le 4 août 2024, Roundcube a publié des correctifs concernant les vulnérabilités critiques CVE-2024-42008 et CVE-2024-42009 affectant son serveur de courriel. Ces vulnérabilités permettent des injections de code indirectes à distance (XSS) qui peuvent, par exemple, conduire à la récupération du...
P5
2024-08-07 06:25 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
The leakage of credentials for Mobile Device Management (MDM) services could pose significant risks to organizations and their data security.
P0
2024-08-07 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Researchers discovered critical vulnerabilities in 6 AWS services that could allow attackers to breach accounts through malicious S3 buckets. By claiming predictable bucket names, attackers could inject code, steal data, or gain admin access. AWS has since fixed the issues, but the attack vector may still apply to other services and open source projects.
P0
2024-08-07 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Semperis researchers discovered vulnerabilities in Microsoft applications that allowed privilege elevation in Entra ID beyond expected authorization controls. The most severe finding enabled adding users to privileged roles, including Global Administrator, without proper permissions. The issues affected Device Registration Service, Viva Engage, and Microsoft Rights Management Service. Microsoft has since resolved the vulnerabilities.
P0
2024-08-05 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Here’s why purchasing your cybersecurity products and services through your RMM provider isn’t always the best value. Learn how to avoid common pitfalls and choose more effective EDR and MDR solutions.
P0
2024-08-03 20:24 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress gives you a non-technical breakdown of the SlashAndGab ConnectWise ScreenConnect Vulnerability; dig into the insights on how we discovered it and supported the community along the way.
P0
2024-08-02 07:48 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
With NIS 2 non-compliance proving detrimental — resulting in millions in fines, business activity suspension, and more, become compliant while there’s still time!
P0
2024-08-01 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
What is a CVE Numbering Authority (CNA)? Learn how CNAs assign CVE IDs, why they matter for vulnerability management, and how Huntress became one.
P0
2024-07-31 06:51 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
CraxsRAT is a notorious Android malware family known for its Remote Administration Tools (RAT), which include remote device control and advanced spyware functions like keylogging, gesture manipulation, and recording of cameras, screens, and calls.
P0
2024-07-30 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress Managed EDR was featured in 50 unique G2 reports, earning over 44 Leader badges. Learn why we’re retaining our #1 rank for the 9th quarter in a row.
P0
2024-07-25 05:58 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Specializing in AI-powered phishing-as-a-service and Android malware capable of intercepting OTP codes, the GXC Team targets Spanish bank users and 30 institutions worldwide
P0
2024-07-24 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
A privilege escalation vulnerability dubbed "ConfusedFunction" was discovered in Google Cloud Platform's Cloud Functions service. It allows attackers to escalate privileges from Cloud Function permissions to the default Cloud Build service account during function deployment. The vulnerability affects both first and second-generation Cloud Functions.
P10
2024-07-23 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Hackers cloned a legitimate medical image viewer site to distribute malware, but thanks to Huntress, the threat was detected in time. Dive into the incident and see how we uncovered the deception and averted disaster.
P0
2024-07-17 06:00 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Discover the insidious tactics of the Qilin ransomware group, notorious for their $50 million attack on the healthcare sector, impacting key NHS hospitals.
P15