Author: Cybernoz

[tl;dr sec] #275 - Damn Vulnerable MCP, Figma's Modern Endpoint Strategy, BloodHound for AWS IAM
17
Apr
2025

[tl;dr sec] #275 – Damn Vulnerable MCP, Figma’s Modern Endpoint Strategy, BloodHound for AWS IAM

Deliberately vulnerable MCP to practice your hacking chops, how Figma’s balances usability & security, a new tool to put a…

Food Lion store
17
Apr
2025

Ahold Delhaize confirms data theft after INC ransomware claims attack

Food retail giant Ahold Delhaize confirms that data was stolen from its U.S. business systems during a November 2024 cyberattack. “Based…

Hackers Weaponize MMC Script to Deploy MysterySnail RAT Malware
17
Apr
2025

Hackers Weaponize MMC Script to Deploy MysterySnail RAT Malware

A sophisticated cyberespionage campaign leveraging malicious Microsoft Management Console (MMC) scripts to deploy the stealthy MysterySnail remote access trojan (RAT). …

BREAKING: CISA Steps In to Keep CVE Services Alive
17
Apr
2025

BREAKING: CISA Steps In to Keep CVE Services Alive

By Gary Miliefsky, Publisher, Cyber Defense Magazine Good news comes to us like a Windows patch Tuesday: Common Vulnerabilities and…

New Jersey Sues Discord for Allegedly Failing to Protect Children
17
Apr
2025

New Jersey Sues Discord for Allegedly Failing to Protect Children

Discord is facing a new lawsuit from the state of New Jersey, which claims that the chat app is engaged…

Weaponized Amazon Gift Cards Used to Steal Microsoft Credentials
17
Apr
2025

Weaponized Amazon Gift Cards Used to Steal Microsoft Credentials

Cybercriminals are exploiting the trust in e-gift cards and the prestige of Amazon to steal Microsoft credentials from unsuspecting employees….

Mass Ransomware Campaign Hits S3 Buckets Using Stolen AWS Keys
17
Apr
2025

Mass Ransomware Campaign Hits S3 Buckets Using Stolen AWS Keys

Researchers reveal a large-scale ransomware campaign leveraging over 1,200 stolen AWS access keys to encrypt S3 buckets. Learn how attackers…

Random Thoughts on Religion | Daniel Miessler
17
Apr
2025

Random Thoughts on Religion | Daniel Miessler

(cleaning out some notes I had jotted down. Now I’m putting them here instead) Religion needs to die because people…

CISA warns companies to secure credentials amid claims of Oracle Cloud data breach
17
Apr
2025

CISA warns companies to secure credentials amid claims of Oracle Cloud data breach

The Cybersecurity and Infrastructure Security Agency on Wednesday said organizations and individuals should take steps to protect their environments from…

China Plans Expanded Cybersecurity Cooperation with Russia
17
Apr
2025

China Plans Expanded Cybersecurity Cooperation with Russia

China has announced a significant step forward in its partnership with Russia, with plans to expand their cooperation in the…

Tariff turmoil is making supply chain security riskier
17
Apr
2025

Tariff turmoil is making supply chain security riskier

Cyber security remained the most pressing challenge facing those in supply chain management roles during the first three months of…

Node.js malvertising campaign targets crypto users
17
Apr
2025

Node.js malvertising campaign targets crypto users

Node.js malvertising campaign targets crypto users Pierluigi Paganini April 17, 2025 Microsoft warns of a malvertising campaign using Node.js to…