- Cybersecurity News:
- Kenyan gov’t says its e-Citizen portal suffered cyberattack [Andrew Wasike, Anadolu Agency]
- Security Incident Impacts CardioComm’s Operations [Alessandro Mascellino, Infosecurity Magazine]
- New Study Reveals Forged Certificate Attack Risks [Alessandro Mascellino, Infosecurity Magazine]
- Breaches & Leaks:
- BreachForums database and private chats for sale in hacker data breach [Lawrence Abrams, Bleeping Computer]
- Cybersecurity Agencies Warn Against IDOR Bugs Exploited for Data Breaches [The Hacker News, The Hacker News]
- 8 million people hit by data breach at US govt contractor Maximus [Bill Toulas, Bleeping Computer]
- Vulnerabilities & Patches:
- Zimbra patches zero-day vulnerability exploited in XSS attacks [Sergiu Gatlan, Bleeping Computer]
- Vulnerabilities exposed Peloton treadmills to malware and DoS attac [HABIBA RASHID, HackRead]
- Major Security Flaw Discovered in Metabase BI Software – Urgent Update Required [The Hacker News, The Hacker News]
- GameOver(lay): Two Severe Linux Vulnerabilities Impact 40% of Ubuntu Users [The Hacker News, The Hacker News]
- Patch Now: Up to 900K MikroTik Routers Vulnerable to Total Takeover [Jai Vijayan, DarkReading]
- Wiz Says 62% of AWS Environments Exposed to Zenbleed Exploitation [Ryan Naraine, Security Week]
- AMD ‘Zenbleed’ exploit can leak passwords and encryption keys from Ryzen CPUs [Jess Weatherbed, TheVerge]
- Malware
- New Android malware uses OCR to steal credentials from images [Bill Toulas, Bleeping Computer]
- Hackers spreading malware in Call of Duty lobbies [Myles Illidge, MyBroadband]
- New Nitrogen malware pushed via Google Ads for ransomware attacks [Bill Toulas, Bleeping Computer]
- Decoy Dog Malware Upgraded to Include New Features [Alessandro Mascellino, Infosecurity Magazine]
C410 A2BE CB73 EF77 746E 9682 E2C4 91CE D20D 800F