Sat.Oct 12, 2024

article thumbnail

Russia-linked group APT29 is targeting Zimbra and JetBrains TeamCity servers on a large scale

Security Affairs

U.S. and U.K. cyber agencies warn that Russia-linked group APT29 is targeting vulnerable Zimbra and JetBrains TeamCity servers on a large scale. Russia-linked cyber espionage group APT29 (aka SVR group , BlueBravo , Cozy Bear , Nobelium , Midnight Blizzard , and The Dukes ) target vulnerable Zimbra and JetBrains TeamCity servers as part of a mass scale campaign, U.S. and U.K. cyber agencies warned.

article thumbnail

CVE-2024-9180: HashiCorp Vault Vulnerability Could Lead to Privilege Escalation

Penetration Testing

HashiCorp has issued a security bulletin disclosing a vulnerability in its Vault secret management platform that could allow attackers to escalate their privileges to the highly sensitive root policy. Tracked... The post CVE-2024-9180: HashiCorp Vault Vulnerability Could Lead to Privilege Escalation appeared first on Cybersecurity News.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Exploring OSINT Tools: How Ethical Hackers Gather Intelligence

Hacker's King

In today’s digital landscape, gathering intelligence is a critical component of cybersecurity and ethical hacking. Ethical hackers use Open Source Intelligence (OSINT) tools to collect information about their targets from publicly available sources. OSINT allows hackers to leverage data from the internet, social media, databases, and other open channels to uncover potential vulnerabilities.

Media 52
article thumbnail

My favorite laptop power bank can fully charge a MacBook in 90 minutes

Zero Day

The Ugreen 145W power bank will charge all of your gadgets -- laptops included. But its best feature puts it at the top for me.

Banking 98
article thumbnail

Why Giant Content Libraries Do Nothing for Your Employees’ Cyber Resilience

Many cybersecurity awareness platforms offer massive content libraries, yet they fail to enhance employees’ cyber resilience. Without structured, engaging, and personalized training, employees struggle to retain and apply key cybersecurity principles. Phished.io explains why organizations should focus on interactive, scenario-based learning rather than overwhelming employees with excessive content.

article thumbnail

Pig Butchering Scams Are Going High Tech

WIRED Threat Level

Scammers in Southeast Asia are increasingly turning to AI, deepfakes, and dangerous malware in a way that makes their pig butchering operations even more convincing.

Scams 98
article thumbnail

This ultra-portable power station gives you AC power on the move

Zero Day

Bigger than a power bank, smaller than a power station, this is the perfect choice for those wanting AC power when out and about.

Banking 98

LifeWorks

More Trending

article thumbnail

This 12-in-1 electric screwdriver is my go-to tool

Zero Day

This top-rated electric screwdriver has served me well for over a year.

98
article thumbnail

A Mysterious Hacking Group Has 2 New Tools to Steal Data From Air-Gapped Machines

WIRED Threat Level

It's hard enough creating one air-gap-jumping tool. Researchers say the group GoldenJackal did it twice in five years.

Hacking 75
article thumbnail

The 65+ best Walmart deals you can shop now: Live updates

Zero Day

Walmart's major sale on tech, home, toys, and more ahead of the holidays is still going strong, with affordable deals from Apple, Samsung, and more.

98
article thumbnail

A cyber attack hit Iranian government sites and nuclear facilities

Security Affairs

As Middle East tensions rise, cyberattacks hit Iran’s government branches and nuclear facilities, following Israel’s response to Iran’s October 1 missile barrage. Amid escalating Middle East tensions, Iran faced major cyberattacks Saturday, disrupting its government branches and targeting nuclear facilities. The massive cyberattack followed Israel’s pledged response to Iran’s October 1 missile barrage, as regional conflicts intensified in Gaza and Lebanon.

article thumbnail

Zero Trust Mandate: The Realities, Requirements and Roadmap

The DHS compliance audit clock is ticking on Zero Trust. Government agencies can no longer ignore or delay their Zero Trust initiatives. During this virtual panel discussion—featuring Kelly Fuller Gordon, Founder and CEO of RisX, Chris Wild, Zero Trust subject matter expert at Zermount, Inc., and Principal of Cybersecurity Practice at Eliassen Group, Trey Gannon—you’ll gain a detailed understanding of the Federal Zero Trust mandate, its requirements, milestones, and deadlines.

article thumbnail

Grab two Anker USB-C chargers and two cables for under $20

Zero Day

Someone in your home or at the office always stealing your charger? Got more devices than you have chargers for? Solve your woes for $19.

98
article thumbnail

Suspected Nation-State Adversary Exploits Ivanti CSA in a Series of Sophisticated Attacks

Penetration Testing

Fortinet’s FortiGuard Labs recently released a detailed analysis of a sophisticated cyberattack targeting the Ivanti Cloud Services Appliance (CSA). The attackers, suspected to be a nation-state actor, exploited a chain... The post Suspected Nation-State Adversary Exploits Ivanti CSA in a Series of Sophisticated Attacks appeared first on Cybersecurity News.

article thumbnail

My favorite USB-C accessory of all time is 25% off

Zero Day

USB-C ports can be fragile, and a ripped cord can seriously damage your laptop. This clever MagSafe-like gadget keeps your laptop safe.

97
article thumbnail

USENIX NSDI ’24 – Known Knowns and Unknowns: Near-Realtime Earth Observation Via Query Bifurcation In Serval

Security Boulevard

Authors/Presenters:Bill Tao, Om Chabra, Ishani Janveja, Indranil Gupta, Deepak Vasisht Our sincere thanks to USENIX , and the Presenters & Authors for publishing their superb 21st USENIX Symposium on Networked Systems Design and Implementation (NSDI '24) content, placing the organizations enduring commitment to Open Access front and center. Originating from the conference’s events situated at the Hyatt Regency Santa Clara ; and via the organizations YouTube channel.

64
article thumbnail

Prevent Data Breaches With Zero-Trust Enterprise Password Management

Keeper Security is transforming cybersecurity for people and organizations around the world. Keeper’s affordable and easy-to-use solutions are built on a foundation of zero-trust and zero-knowledge security to protect every user on every device. Our next-generation privileged access management solution deploys in minutes and seamlessly integrates with any tech stack to prevent breaches, reduce help desk costs and ensure compliance.

article thumbnail

This is one of the best value power banks I've ever tested, and it's 20% off

Zero Day

Fast charging, lots of capacity, and a built-in cable -- this power bank has it all!

Banking 75
article thumbnail

One of the most versatile power stations I've tested is only $799

Zero Day

The Bluetti AC180 delivers up to 1800W of output, with 11 ports for ultimate flexibility, and now you can grab it for $799.

75
article thumbnail

Why this versatile air pump is my new must-have for traveling

Zero Day

The AstroAI Dual Motor's tire inflator can continuously operate for up to 15 minutes, inflating a flat tire from 0 to 36 PSI in around five minutes.

52
article thumbnail

This Bluetti power station is ideal for road-tripping - and it's now only $379!

Zero Day

The Bluetti AC70 is portable and delivers enough power for your basic energy-intensive devices. Right now you can get it for $379!

40
article thumbnail

Optimizing The Modern Developer Experience with Coder

Many software teams have migrated their testing and production workloads to the cloud, yet development environments often remain tied to outdated local setups, limiting efficiency and growth. This is where Coder comes in. In our 101 Coder webinar, you’ll explore how cloud-based development environments can unlock new levels of productivity. Discover how to transition from local setups to a secure, cloud-powered ecosystem with ease.

article thumbnail

I can't recommend this rugged power station enough to drone users -- now with $400 off!

Zero Day

The latest DJI Power 1000 is specifically designed for drones but is strong enough to power most high-watt devices, as I found in testing.

40