Friday, January 13, 2023

Hackers to Get a Crack at Systems Running the Pentagon in New Bug Bounty - Nextgov

The Defense Department is planning the third iteration of its Hack the Pentagon program with a focus on identifying vulnerabilities in the operational technologies that keep the iconic building and grounds running.

The DOD launched the Hack the Pentagon program in 2016 with vendor HackerOne coordinating a bug bounty program on the department's public websites. More than 1,400 hackers joined in the first round, discovering 138 unique vulnerabilities and tallying $75,000 in bounty rewards.

logo
Publisher: Nextgov.com
Date: 2023-01-13T19:01:00 00:00
Author: Aaron Boyd
Twitter: @nextgov
Reference: (Read more) Visit Source



Russia Criticizes Reuters Story on Russian Hackers Targeting U.S. Nuclear Scientists

Russia’s Foreign Ministry on Thursday criticized Reuters for spreading what it said was poorly sourced anti-Russian propaganda with a story about a Russian hacking team which targeted three nuclear research laboratories.

Reuters on Jan. 6 reported the Russian hacking team, known as Cold River, had targeted three nuclear research laboratories in the United States this past summer, according to internet records reviewed by Reuters and five cyber security experts.

logo
Publisher: Insurance Journal
Date: 2023-01-13T14:53:16 00:00
Author: Guy Faulconbridge
Twitter: @ijournal
Reference: (Read more) Visit Source



NortonLifeLock warns that hackers breached Password Manager accounts

According to a letter sample shared with the Office of the Vermont Attorney General, the attacks did not result from a breach on the company but from account compromise on other platforms.

The firm detected "an unusually large volume" of failed login attempts on December 12, 2022, indicating credential stuffing attacks where threat actors try out credentials in bulk.

Publisher: BleepingComputer
Twitter: @BleepinComputer
Reference: (Read more) Visit Source



Russian Hackers Try to Bypass ChatGPT's Restrictions For Malicious Purposes - Infosecurity Magazine

Russian cyber-criminals have been observed on dark web forums trying to bypass OpenAI’s API restrictions to gain access to the ChatGPT chatbot for nefarious purposes.

Various individuals have been observed, for instance, discussing how to use stolen payment cards to pay for upgraded users on OpenAI (thus circumventing the limitations of free accounts).

Publisher: Infosecurity Magazine
Date: 2023-01-13T17:00:00
Author: Alessandro Mascellino
Twitter: @InfosecurityMag
Reference: (Read more) Visit Source



Pro-Russia hackers use Telegram, GitHub to attack Czech presidential election - The Record from ...

A group of pro-Russian hackers is using Telegram and GitHub to launch distributed denial-of-service attacks against Ukraine and several NATO countries.

Researchers at SentinelOne said that as recently as this week they found the group – called NoName057(16) – targeting the websites of candidates in the 2023 Czech presidential election as well as businesses and organizations across Poland and Lithuania.

logo
Publisher: The Record from Recorded Future News
Date: 2023-01-12T18:45:31 00:00
Twitter: @therecord_media
Reference: (Read more) Visit Source



'Dark Pink' hackers target state and military organizations in Asia, Europe - The Record from ...

The group's core goal, according to a report by Group-IB, is corporate espionage, as hackers have exfiltrated files, microphone audio and messenger data from infected devices.

The researchers have not been able to attribute Dark Pink's activity to any known hacking group — it uses “custom tools and some rarely seen tactics and techniques,” the report said.

logo
Publisher: The Record from Recorded Future News
Date: 2023-01-12T16:36:54 00:00
Twitter: @therecord_media
Reference: (Read more) Visit Source



Personal and employee data is a goldmine for hackers | TechRadar

Personal and employee data is a goldmine for hackers, who are now apparently more focused on obtaining these types of data than any other, new research has claimed. 

A report from Imperva analyzing 100 data breach reports published in the last 12 months says personal employee and customer data accounted for almost half (45%) of all data stolen last year.

logo
Publisher: TechRadar
Date: 2023-01-13T15:08:34Z
Author: Sead Fadilpa i
Twitter: @TechRadar
Reference: (Read more) Visit Source



Hackers exploit Control Web Panel flaw to open reverse shells

Hackers are actively exploiting a critical vulnerability patched recently in Control Web Panel (CWP), a tool for managing servers formerly known as CentOS Web Panel.

The security issue is identified as CVE-2022-44877 and received a critical severity score of 9.8 out of 10 as it allows an attacker to execute code remotely without authentication.

Publisher: BleepingComputer
Twitter: @BleepinComputer
Reference: (Read more) Visit Source



Cyber attack against Royal Mail linked to Russia

Royal Mail informed the public of the cyber attack on January 11, saying it had caused “severe disruption” to the computerized systems used to send mail abroad.

The system affected by the cyber attack has been used at six Royal Mail sites including at the company’s Heathrow Airport distribution center and has been used to track and trace items sent abroad, as well as to prepare mail to be dispatched overseas.  

Publisher: Cyber Security Hub
Date: 2023-01-13
Author: Olivia Powell
Twitter: @CSHubUSA
Reference: (Read more) Visit Source







🥰🍀💕❤️💋😘

https://sypuber.page.link/forestgods

Forest Gods. Click here.



Earth is nice. We want it.





No comments:

Post a Comment