Mensuel Shaarli

Tous les liens d'un mois sur une page.

November, 2023

Zyxel - CVE-2023-5593 | Portail du CERT Santé
Toyota confirms breach after Medusa ransomware threatens to leak data
thumbnail

Toyota Financial Services (TFS) has confirmed that it detected unauthorized access on some of its systems in Europe and Africa after Medusa ransomware claimed an attack on the company.

Hacker Leaks 800,000 Scraped Chess.com User Records
thumbnail

A threat actor, using the alias 'DrOne,' has claimed responsibility for leaking a scraped database from Chess.com with data from 800,000 users.

Okta breach happened after employee logged into personal Google account

Okta has concluded that the root cause of its breach was an employee storing company credentials in a private Google account.

Boeing confirms cyberattack amid LockBit ransomware claims

Aerospace giant Boeing is investigating a cyberattack that impacted its parts and distribution business after the LockBit ransomware gang claimed that they breached the company's network and stole data.

Thousands of exposed gas pumps invite cyberwarriors | Cybernews
MySQL servers targeted by 'Ddostf' DDoS-as-a-Service botnet
thumbnail

MySQL servers are being targeted by the 'Ddostf' malware botnet to enslave them for a DDoS-as-a-Service platform whose firepower is rented to other cybercriminals.

World’s Biggest Bank Forced to Trade via USB Stick After Hack
thumbnail

The incident spotlights a danger that bank leaders concede keeps them up at night — the prospect of a cyber attack that could someday cripple a key piece of the financial system’s wiring, setting off a cascade of disruptions.

Des infrastructures critiques de l’énergie danoises visées par une cyberattaque d’une ampleur inédite
Urgent: VMware Warns of Unpatched Critical Cloud Director Vulnerability
thumbnail

VMware raises the alarm about an unpatched security flaw (CVE-2023-34060) in Cloud Director, which could allow attackers to bypass authentication.

Australia locks down ports after DP World cyberattack
thumbnail

Operator DP World Australia says teams ‘working diligently to contain the situation and determine impact’

New Microsoft Exchange zero-days allow RCE, data theft attacks

Microsoft Exchange is impacted by four zero-day vulnerabilities that attackers can exploit remotely to execute arbitrary code or disclose sensitive information on affected installations.