Replies

This profile is from a federated server and may be incomplete. Browse more on the original instance.

campuscodi, to random
@campuscodi@mastodon.social avatar

Newsletter: https://news.risky.biz/risky-biz-news-interpol-plugs-red-notices-leak/
Podcast: https://risky.biz/RBNEWS298/

-Interpol plugs Red Notices leak
-Kaspersky says Apple didn't pay bounty for Triangulation report
-Medibank faces monumental fine
-CISA named as first-ever CVE ADP
-Dubai hit by ransomware attack
-Disney hacked for ClubPenguin data
-Cisco fixes bug used by German journalists
-iPhone 15 to have only 5 years of security updates
-FCC gives $200mil to schools for cyber
-New Conti member detained
-Epsilon hacker detained in FR

campuscodi,
@campuscodi@mastodon.social avatar

Plus:
-New GitHub repo-wiping attacks
-WatchGuard VPNs see brute-force attacks
-Malware reports on Dama, Muhstik, Commando Cat, PlugX, DarkGate, Seidr, TargetCompany, RansomHub, Fog
-APT reports on Mustang Panda, Crimson Palace, Sapphire Werewolf, Vermin, ExCobalt
-Israel govt paid for disinfo campaign
-Russian disinfo ops are everywhere these days
-Security updates for RoR, Elastic, SolarWinds
-Vuln reports in PHP-CGI, HugeGraph
-Telerik servers under attack
-Cyber job shortage not as bad in US

campuscodi, to random
@campuscodi@mastodon.social avatar

According to reports from the New York Times and Haaretz, the Israel Ministry of Diaspora Affairs paid a private company named STOIC $2 million for a social media influence campaign that targeted US politicians. (1/2)

https://www.nytimes.com/2024/06/05/technology/israel-campaign-gaza-social-media.html

https://www.nytimes.com/2024/06/05/technology/israel-campaign-gaza-social-media.html

campuscodi,
@campuscodi@mastodon.social avatar

(2/2)

The campaign launched a month after the Hamas October 7 attack and targeted at least 128 members of the US Congress. According to disinformation experts, social media accounts controlled by STOIC targeted US lawmakers with pro-Israeli propaganda and anti-Arab views. STOIC's campaign was also spotted and disrupted by Meta and OpenAI earlier this month.

PDF: https://fakereporter.net/pdf/pro-Israeli_influence_network-new_findings-0624.pdf

campuscodi, to random
@campuscodi@mastodon.social avatar

Newsletter: https://news.risky.biz/risky-biz-news-the-linux-cna-mess/
Podcast: https://risky.biz/RB297a/

-The Linux CNA mess you didn't know about
-TikTok zero-day used to hack high-profile accounts
-New APT targets China
-Hungary's ruling party boycotts Russian hack investigation
-Australian rare-earth mining company hit by ransomware attack
-GrapheneOS adds duress password
-Denmark raises cyber threat level
-White House to harmonize cybersecurity regulations
-Russia ramps up Olympics disinfo
-Azure firewall bypass discovered

campuscodi,
@campuscodi@mastodon.social avatar

Plus:

-APT reports on APT28, APT29, UAC-0900
-Malware reports on DarkGate, PikaBot, Vidar
-New V3B PhaaS
-QNAP changes default passwords on its NASs
-Google to track Drive API changes now to fight abuse
-noyb files complaint against Microsoft 365 Education
-Microsoft removes local account install support on Win11
-Data broker execs convicted
-Android security updates
-Zyxel removes "NsaRescueAngel" backdoor account (lol)
-OpenSSL security audit
-ClangOver attack on ML-KEM
-OffensiveCon24 videos

campuscodi, to random
@campuscodi@mastodon.social avatar

A cyber attack has forced three major UK hospitals to cancel operations and redirect emergency patients to other nearby care facilities.

According to Metro, the incident has impacted transplant surgeries and blood transfusion centers.

https://metro.co.uk/2024/06/04/cyber-attack-forces-three-major-hospitals-cancel-operations-20968948/

campuscodi,
@campuscodi@mastodon.social avatar
campuscodi,
@campuscodi@mastodon.social avatar

@ku glad to hear it! Wishing her a speedy recovery!

campuscodi, to random
@campuscodi@mastodon.social avatar

From this report: https://mastodon.social/@ravirockks@infosec.exchange/112555805013166419

"Including any given PHP library has a greater than 50% chance of bringing a security flaw along with it."

kek 😆

campuscodi, (edited )
@campuscodi@mastodon.social avatar

Just look at this chart!

What are we doing JS developers?

How tf do you have 1,400 dependencies in a project?

Do we actually code anymore or we just playing with legos at this point?

campuscodi, to random
@campuscodi@mastodon.social avatar

Newsletter: https://news.risky.biz/risky-biz-news-law-enforcement-disrupts-six-malware-botnets/
Podcast: https://risky.biz/RBNEWS295/

-Law enforcement disrupts six malware botnets
-Check Point patches zero-day
-ISP loses 600,000 routers in data-wiping attack
-Poland's secret surveillance program deemed illegal
-Pegasus used against RU&BE independent journalists
-Israel accused of hacking the ICC
-BBC data breach
-Japanese man arrested for AI ransomware
-Dutch Fappening suspect sentenced
-Teen wanted for DDoSing Texas exams
-911 S5 botnet admin arrested

campuscodi,
@campuscodi@mastodon.social avatar

Plus:

-Okta discloses cred-stuffing attacks
-Cloudflare disrupts FlyingYeti operations
-Malware reports on Ov3r_Stealer, AllaSenha, Cuckoo, CryptoChameleon, RedTail
-New Merry-Go-Round ad fraud scheme
-APT report on Andariel, LightSpy, LilacSquid, APT41, BlueDelta
-OpenAI and Meta disrupt influence networks
-NIST backlog expected to be fixed by end of year
-MinMax CMS secret backdoor
-Security updates for ASUS, XZ-Utils, TeamCity
-Docker blocked in Russia
-Cloudflare buys BastionZero

campuscodi, to random
@campuscodi@mastodon.social avatar

Check Point has released a security update to patch a zero-day exploited in its VPN and security appliances.

Tracked as CVE-2024-24919, the zero-day is an information disclosure that allows threat actor to retrieve data from appliances.

https://support.checkpoint.com/results/sk/sk182336

Security firm Mnemonic says it observed threat actors use the vulnerability to enumerate and extract password hashes, including the accounts used to connect to Active Directory.

https://www.mnemonic.io/resources/blog/advisory-check-point-remote-access-vpn-vulnerability-cve-2024-24919/

campuscodi,
@campuscodi@mastodon.social avatar

The attacks are related to a security advisory it released earlier this week, where it warned about mysterious attacks on its VPN products.

campuscodi, to random
@campuscodi@mastodon.social avatar

Newsletter: https://news.risky.biz/risky-biz-news-ir-reports-are-not-protected-documents-multiple-judges-rule/
Podcast: https://risky.biz/RBNEWS294/

-IR reports are not protected documents, multiple judges rule
-US sanctions Chinese nationals behind 911S5 proxy botnet
-MediSecure asks for a government bailout
-Check Point VPNs are under attack
-Ransomware hits Russian delivery service CDEK
-Ransomware hits Belgian ride-sharing app Mpact
-Rav-Rx paid a ransomware gang
-Data leak exposes Google Search internal docs
-OpenAI creates Safety Board
-Pegasus widely used in Rwanda

campuscodi,
@campuscodi@mastodon.social avatar

Plus:

-Thailand launches Cyber Command unit
-US govt agencies to adopt RPKI
-Scattered Spider membership estimated ~1K
-New NL NCSC head
-Anatsa malware found on the Play Store
-Malware reports on Kiteshield Packer and Rebirth botnet
-Synapse ransomware avoids Iranian systems
-APT reports on Sapphire Werewolf, Blind Eagle, Moonstone Sleet
-PoCs released for Apple, FortiSIEM bugs
-Major RCE in TP-Link gaming routers
-Internet Archive under DDoS attack

campuscodi, to random
@campuscodi@mastodon.social avatar

The Rwandan government has deployed the NSO Group's Pegasus spyware against past political opponents, its own ministers, and even the family of a former presidential candidate.

Reporters from Forbidden Stories, discovered the attacks in a leaked list of phone numbers targeted with Pegasus spyware.

According to the same reporters, Rwandan officials had access to Pegasus between 2017 and 2021, after which its contract was not extended.

https://forbiddenstories.org/pegasus-in-rwanda-sister-of-presidential-candidate-high-ranking-rwandan-politicians-added-to-spyware-list/

campuscodi,
@campuscodi@mastodon.social avatar

@ku I don't see how these are connected. Rwanda was a known NSO customer for years. We just learned the targets

campuscodi, to random
@campuscodi@mastodon.social avatar

Newsletter: https://news.risky.biz/risky-biz-news-google-throws-out-globaltrust-certs/
Podcast: https://risky.biz/RBNEWS293/

-Google distrust GlobalTrust certs
-Spyware vendor pcTattletale hacked
-South Africa suspends child maintenance payments after hack
-Russian initial access broker charged in the US
-Optus to be investigated for 2022 hack
-MediSecure data sold online
-FHA adds new cybersecurity reporting requirements
-CyberCom holds hunt forward mission in Zambia
-Coinbase phisher pleads guilty
-Eighth Chrome zero-day this year

campuscodi,
@campuscodi@mastodon.social avatar

And:

-PyLocky ransomware case in France to finally continue
-Vulnerabilities in MikroTik, ILIAS LMS, Replicate, Jenkins, WhatsApp
-POCs for Telesquare routers, Win10 EoP
-BLOODALCHEMY malware linked to ShadowPad
-Bugcrowd acquires Informer
-Shedding Zmiy APT linked to old Cobalt gang
-Hellhounds continues attacking Russia
-Report on the malware used in the MITRE hack
-A fifth of Rust crates use "unsafe" keyword
-Trump promises to pardon Ross Ulbricht for some reason
-ICQ to shut down on June 26

campuscodi, to random
@campuscodi@mastodon.social avatar

How about you f*** off instead

campuscodi,
@campuscodi@mastodon.social avatar

Shitty ass Meta... doesn't ask me for an OTP for ages... asks me for one when opting out of their AI bullshit.

Passive aggressive cunts!

campuscodi, to random
@campuscodi@mastodon.social avatar

Newsletter: https://news.risky.biz/risky-biz-news-backdoor-found-in-court-and-jail-av-recording-software/
Podcast: https://risky.biz/RBNEWS292/

-Backdoor found in court and jail AV recording software
-Kevin Mandia steps down
-TikTok takes down several influence networks
-LastPass will start encrypting URLs
-Microsoft publishes VBScript deprecation timeline
-Gala Games gets its hacked funds back
-pcTattletale spyware leaks user data
-TLS Session Tickets are GDPR compliant (if you were curious)
-Edge gets screenshot protection
-NVD backlog is getting worse by the week

campuscodi,
@campuscodi@mastodon.social avatar

Plus:

-Change Healthcare victims ask US HHS for HIPAA exemption
-NYSE fined over 2021 hack
-City of Eindhoven has a leak
-UK ICO to investigate Microsoft over Recall feature
-Apple's WPS is leaking
-US lawmakers propose Diverse Cybersecurity Workforce Act
-EU countries put out anti-propaganda statement
-Latvia wants to criminalize political deepfakes
-BEC money launderer sentenced
-Malware reports on Gootloader, bunch of new stealers, ShrinkLocker, and CatDDoS
-Loads of reports on Chinese APTs

campuscodi, to random
@campuscodi@mastodon.social avatar
campuscodi,
@campuscodi@mastodon.social avatar

@dey bring it on!

campuscodi, to random
@campuscodi@mastodon.social avatar

Just think about it!

In just 14 days, Microsoft pivoted from "do security" in an internal memo on May 5 to "let's install spyware on everyone's PC" on May 21.

That must be a world record in bad corporate management

campuscodi,
@campuscodi@mastodon.social avatar

For those unaware of what's happening, this post from @GossiTheDog explains Microsoft's completely idiotic plans

https://doublepulsar.com/how-the-new-microsoft-recall-feature-fundamentally-undermines-windows-security-aa072829f218

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • cubers
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • megavids
  • tacticalgear
  • osvaldo12
  • normalnudes
  • tester
  • cisconetworking
  • everett
  • GTA5RPClips
  • ethstaker
  • anitta
  • Leos
  • provamag3
  • modclub
  • lostlight
  • All magazines