br00t4c, to random
@br00t4c@mastodon.social avatar
br00t4c, to random
@br00t4c@mastodon.social avatar

Ben Cardin Speaks Out After Staffer Allegedly Filmed Sex Tape In Senate Room

https://www.huffpost.com/entry/ben-cardin-staffer-sex-tape_n_65816933e4b0e142c0bf2621

br00t4c, to random
@br00t4c@mastodon.social avatar

MongoDB warns breach of internal systems exposed customer contact info

https://go.theregister.com/feed/www.theregister.com/2023/12/18/infosec_in_brief/

rfwaveio, to Cybersecurity

MongoDB is warning that they were a victim of a cyber attack. They say their corporate systems were breached on Dec 13 and that customer data was exposed. At this time, MongoDB is not aware of any exposure to data stored in MongoDB Atlas. MongoDB is recommending all customers to enable MFA, rotate accounts, and be vigilant against social engineering attacks.

https://www.bleepingcomputer.com/news/security/mongodb-says-customer-data-was-exposed-in-a-cyberattack/

0x58, to infosec

🚨 If you are using Atlas, start changing your passwords (both for the users and for database connections) IMMEDIATELY

https://beyondmachines.net/event_details/mongodb-reports-data-breach-customer-metadata-exposed-w-f-v-5-e/gD2P6Ple2L

cazabon, to Health

Another day, another in the ...

This time, it's (get this...) my employer's Canadian subsidiary's group health plan's provider's banking partner's provider of file transfer services, .

It's 6 of , but not in a good way.

"The type of accessed could include any of..." <everything needed for >, and as an extra-special bonus, " information relating to a claim"!

And then they trigger my pet

[...]

ai6yr, to Cybersecurity
@ai6yr@m.ai6yr.org avatar
br00t4c, to random
@br00t4c@mastodon.social avatar
br00t4c, to random
@br00t4c@mastodon.social avatar

My Girlfriend and I Used to Rely on Weekly Letters to Communicate. Then, "Texting" Came to My Prison.

https://slate.com/technology/2023/12/e-messaging-prison-gettingout-romantic-relationships.html

br00t4c, to random
@br00t4c@mastodon.social avatar

Gary Lineker seemed to break rules, next BBC chairman says

https://www.bbc.co.uk/news/uk-67701186?at_medium=RSS&at_campaign=KARANGA

br00t4c, to BBC
@br00t4c@mastodon.social avatar
YourAnonRiots, to Cybersecurity Japanese

New: The infamous hacker IntelBroker has leaked sensitive documents potentially containing communications between the Pentagon and the Army's CIO/G-6.

https://hackread.com/hacker-intelbroker-leaks-us-dod-documents/

#CyberSecurity #CyberAttack #Breach #Leaks

br00t4c, to genealogy
@br00t4c@mastodon.social avatar

A proposed class-action lawsuit against 23andMe could include more people in Canada than originally anticipated, experts say, after the genetic testing company said a data breach affected millions more customers than initially believed.

A statement from the company on Tuesday said hackers have gained access to roughly 6.9 million profiles on the site — nearly half its client base. Those profiles contain delicate personal data

https://www.cbc.ca/news/canada/23andme-data-breach-canadian-class-action-lawsuit-1.7049449

br00t4c, to random
@br00t4c@mastodon.social avatar

The 23andMe Data Breach Keeps Spiraling

https://www.wired.com/story/23andme-breach-sec-update/

br00t4c, to random
@br00t4c@mastodon.social avatar
br00t4c, to random
@br00t4c@mastodon.social avatar

23andMe admits hackers accessed 6.9 million users' DNA Relatives data

https://www.theverge.com/2023/12/4/23988050/23andme-hackers-accessed-user-data-confirmed

PogoWasRight, to ai
br00t4c, to random
@br00t4c@mastodon.social avatar
br00t4c, to random
@br00t4c@mastodon.social avatar

Okta Breach Impacted All Customer Support Users--Not 1 Percent

https://www.wired.com/story/okta-breach-disclosure-all-customer-support-users/

br00t4c, to random
@br00t4c@mastodon.social avatar
br00t4c, to random
@br00t4c@mastodon.social avatar

Hackers spent 2+ years looting secrets of chipmaker NXP before being detected

https://arstechnica.com/?p=1986661

0x58, to Cybersecurity

📨 Latest issue of my curated #cybersecurity and #infosec list of resources for week #47/2023 is out! It includes the following and much more:

➝ 🔓 🇬🇧 University of Manchester #CISO Speaks Out on Summer Cyber-Attack
➝ 🔓 🇺🇸 Hacktivists breach U.S. nuclear research lab, steal employee data
➝ 🔓 👀 Sumo Logic Completes Investigation Into Recent Security #Breach
➝ 🔓 🇺🇸 Auto parts giant AutoZone warns of #MOVEit data breach
➝ 🔓 🇨🇦 Canadian government discloses data breach after contractor hacks
➝ 🇦🇫 New 'HrServ.dll' Web Shell Detected in #APT Attack Targeting Afghan Government
➝ 🇬🇧 🇰🇷 UK and South Korea: Hackers use zero-day in supply-chain attack
➝ 🇵🇸 🇮🇱 #Hamas-Linked #Cyberattacks Using Rust-Powered SysJoker #Backdoor Against #Israel
➝ 🇷🇺 😱 “They are tired of him, but they are afraid”: what is known about the leader of the hacker group Killnet
➝ 🇰🇵 N. Korean Hackers Distribute Trojanized #CyberLink Software in Supply Chain Attack
➝ ▶️ 🛒 Play #Ransomware Goes Commercial - Now Offered as a Service to Cybercriminals
➝ 🇮🇳 Indian Hack-for-Hire Group Targeted U.S., #China, and More for Over 10 Years
➝ 🇷🇺 Russian hackers use #Ngrok feature and #WinRAR exploit to attack embassies
➝ 🇺🇸 🩺 #CISA Releases Cybersecurity Guidance for #Healthcare, Public Health Organizations
➝ 🇬🇧 🙏🏻 Thanking the vulnerability research community with #NCSC Challenge Coins
➝ 🧅 #Tor Network Removes Risky Relays Associated With #Cryptocurrency Scheme
➝ 🇺🇦 👋🏻 #Ukraine fires top cybersecurity officials
➝ 🩹 Johnson Controls Patches Critical #Vulnerability in Industrial Refrigeration Products
➝ 🦠 🦀 New WailingCrab #Malware Loader Spreading via Shipping-Themed Emails
➝ 🦠 📨 New Agent Tesla Malware Variant Using ZPAQ Compression in Email Attacks
➝ 🦠 🎠 NetSupport #RAT Infections on the Rise - Targeting Government and Business Sectors
➝ 🚫 Google #Chrome will limit ad blockers starting June 2024
➝ 🐛 ☁️ 3 Critical Vulnerabilities Expose #ownCloud Users to Data Breaches
➝ 🔓 ☁️ Researchers Discover Dangerous Exposure of Sensitive #Kubernetes Secrets
➝ 🔓 ☝🏻 New Flaws in Fingerprint Sensors Let Attackers Bypass #Windows Hello Login
➝ 🔓 🩸 ‘#CitrixBleed’ vulnerability targeted by nation-state and criminal hackers: CISA
➝ 🐡 Researchers extract RSA keys from #SSH server signing errors

📚 This week's recommended reading is: "How I Rob Banks: And Other Such Places" by FC a.k.a. Freakyclown

Subscribe to the #infosecMASHUP newsletter to have it piping hot in your inbox every week-end ⬇️

https://infosec-mashup.santolaria.net/p/infosec-mashup-week-472023

br00t4c, to random
@br00t4c@mastodon.social avatar

'Serious breach': social media platform X booted from Australia's misinformation code

https://www.theguardian.com/australia-news/2023/nov/27/x-twitter-removed-digi-misinformation-code-australia

AndiMann, to security
@AndiMann@masto.ai avatar

"@okta #Security #Breach Report: 134 Clients Impacted, Incl. @Cloudflare, @1Password"

Great write-up of Okta's post-incident review, w/ lots of details a good timeline of events, and a dash of "Oh no, not again!?!"

via @cpomagazine

https://www.cpomagazine.com/cyber-security/okta-security-breach-report-134-clients-impacted-including-cloudflare-and-1password/

0x58, to Cybersecurity

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes the following and much more:

➝ 🔓 🇯🇵 confirms breach after Medusa threatens to leak data
➝ 🇺🇸 😂 Ransomware gang files complaint over victim’s undisclosed
➝ 🔓 🪶 Attackers claim Plume Design, Inc data breach
➝ 🇺🇸 💰 paid ransom after hack that disrupted markets, say
➝ 🔓 Says No Evidence of Breach After Ransomware Gang Claims Hack via Third Party
➝ 🔓 ✈️ Hackers swipe Booking.com, damage from attack is global
➝ 🇷🇺 🇺🇦 Russian Group Deploys USB in Targeted Attacks
➝ 🇮🇱 🇺🇸 Israeli Man Who Made $5M From Hacking Scheme Sentenced to Prison in US
➝ 🇫🇮 ⚖️ Alleged Extortioner of Psychotherapy Patients Faces Trial
➝ 🇺🇸 💸 ransomware exploits in attacks, 10K servers exposed
➝ 🇺🇸 ⚖️ botnet with 23,000 proxies for malicious traffic dismantled
➝ 👶🏻 🧨 Teens with “digital bazookas” are winning the ransomware war, researcher laments
➝ 💸 feature abused to steal $60 million from 99K victims
➝ 🇩🇰 🇷🇺 Hit With Largest on Record
➝ 🇨🇳 🇰🇭 Chinese Hackers Launch Covert Attacks on 24 Cambodian Organizations
➝ 🇲🇾 Major Phishing-as-a-Service Syndicate '' Dismantled by Malaysian Authorities
➝ 🇪🇺 🥳 EU Parliament committee rejects mass scanning of private and encrypted communications
➝ 🩹 Patch Tuesday: 90 Vulnerabilities Addressed by Siemens and Schneider Electric
➝ 🦠 🐍 27 Malicious Packages with Thousands of Downloads Found Targeting IT Experts
🇻🇳 🇮🇳 Vietnamese Hackers Using New -Powered to Target Indian Marketers
➝ 🔐 Adds Support to New Titan Security Key
➝ 🐛 Zero-Day Flaw in Email Software Exploited by Four Hacker Groups
➝ 🩹 Patches Critical Vulnerability in Business One Product
➝ 🐛 New CPU flaw impacts Intel desktop and server systems
➝ 🐛 New AMD attack lets hackers gain root in Linux VMs

📚 This week's recommended reading is: "Tribe of Hackers: Cybersecurity Advice from the Best Hackers in the World" by @marcusjcarey and Jennifer Jin

Subscribe to the newsletter to have it piping hot in your inbox every week-end ⬇️

https://infosec-mashup.santolaria.net/p/infosec-mashup-week-462023

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • ngwrru68w68
  • khanakhh
  • thenastyranch
  • magazineikmin
  • InstantRegret
  • rosin
  • ethstaker
  • modclub
  • Youngstown
  • slotface
  • osvaldo12
  • kavyap
  • DreamBathrooms
  • normalnudes
  • everett
  • GTA5RPClips
  • tacticalgear
  • Durango
  • Leos
  • mdbf
  • provamag3
  • cisconetworking
  • cubers
  • tester
  • anitta
  • megavids
  • lostlight
  • All magazines