Author: Cybernoz

[tl;dr sec] #179 - BSidesSF Summaries, Attacking Kubernetes, OpenAI + Burp Suite
27
Apr
2023

[tl;dr sec] #179 – BSidesSF Summaries, Attacking Kubernetes, OpenAI + Burp Suite

Hey there, I hope you’ve been doing well! Conference Montage I have some amusing anecdotes from BSidesSF and RSA that…

SLP Protocol Vulnerability
27
Apr
2023

SLP Protocol Bug Lets Attackers Launch 2,200x DDoS Attack

The Service Location Protocol (SLP) has been found to have a new reflective Denial-of-Service (DoS) amplification vulnerability.  Threat actors can…

Brace Yourself for the 2024 Deepfake Election
27
Apr
2023

Brace Yourself for the 2024 Deepfake Election

“It consistently amazes me that in the physical world, when we release products there are really stringent guidelines,” Farid says….

Google Cloud seals bug that could have led to data breaches
27
Apr
2023

Google Cloud seals bug that could have led to data breaches

Google Cloud has fixed a potentially dangerous application programming interface (API) vulnerability in its platform that, had it been exploited…

Jedox’s Journey with HackerOne: A Q&A with CTO, Vladislav Maličević
27
Apr
2023

Jedox’s Journey with HackerOne: A Q&A with CTO, Vladislav Maličević

Vladislav Maličević is the Chief Technology Officer at Jedox, a leading global provider of cloud-based enterprise performance management solutions for…

27
Apr
2023

PaperCut vulnerabilities leveraged by Clop, LockBit ransomware affiliates

Clop and LockBit ransomware affiliates are behind the recent attacks exploiting vulnerabilities in PaperCut application servers, according to Microsoft and…

Linux Ransomware
27
Apr
2023

RTM Locker’s First Linux Ransomware Strain Targeting NAS and ESXi Hosts

Apr 27, 2023Ravie LakshmananLinux / Endpoint Security The threat actors behind RTM Locker have developed a ransomware strain that’s capable…

Web Cache Entanglement – Novel Pathways to Poisoning
27
Apr
2023

Web Cache Entanglement – Novel Pathways to Poisoning

Each year we anticipate new research from James Kettle at the annual Black Hat USA event and he’s become known…

27
Apr
2023

Eesti Energia Cyberattack Repeats As NoName Targets Estonia

Months after the Eesti Energia cyberattack, hacker group NoName has listed it and several Estonian organizations as victims. Among the…

27
Apr
2023

GitHub introduces private vulnerability reporting for open source repositories

GitHub has announced that its private vulnerability reporting feature for open source repositories is now available to all project owners….

LockBit and Cl0p Ransomware
27
Apr
2023

Microsoft Confirms PaperCut Servers Used to Deliver LockBit and Cl0p Ransomware

Microsoft has confirmed that the active exploitation of PaperCut servers is linked to attacks designed to deliver Cl0p and LockBit…

Vulnerability Disclosure | What’s the Responsible Solution?
27
Apr
2023

Vulnerability Disclosure | What’s the Responsible Solution?

What Is a Vulnerability Disclosure? During a vulnerability disclosure, individuals report security weaknesses in computer systems to the organization. Disclosures…