PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

iPhones of 36 Journalists Hacked Using iMessage Zero-Click Exploit

lundi 21 décembre 2020 à 07:56
Three dozen journalists working for Al Jazeera had their iPhones stealthily compromised via a zero-click exploit to install spyware as part of a Middle East cyberespionage campaign. In a new report published yesterday by University of Toronto's Citizen Lab, researchers said personal phones of 36 journalists, producers, anchors, and executives at Al Jazeera, and a journalist at London-based Al

Microsoft Says Its Systems Were Also Breached in Massive SolarWinds Hack

vendredi 18 décembre 2020 à 05:40
The massive state-sponsored espionage campaign that compromised software maker SolarWinds also targeted Microsoft, as the unfolding investigation into the hacking spree reveals the incident may have been far more wider in scope, sophistication, and impact than previously thought. News of Microsoft's compromise was first reported by Reuters, which also said the company's own products were then

How to Use Password Length to Set Best Password Expiration Policy

jeudi 17 décembre 2020 à 11:36
One of the many features of an Active Directory Password Policy is the maximum password age. Traditional Active Directory environments have long using password aging as a means to bolster password security. Native password aging in the default Active Directory Password Policy is relatively limited in configuration settings. Let's take a look at a few best practices that have changed in regards

Software Supply-Chain Attack Hits Vietnam Government Certification Authority

jeudi 17 décembre 2020 à 11:28
Cybersecurity researchers today disclosed a new supply-chain attack targeting the Vietnam Government Certification Authority (VGCA) that compromised the agency's digital signature toolkit to install a backdoor on victim systems. Uncovered by Slovak internet security company ESET early this month, the "SignSight" attack involved modifying software installers hosted on the CA's website ("ca.gov.vn

New Evidence Suggests SolarWinds' Codebase Was Hacked to Inject Backdoor

mercredi 16 décembre 2020 à 18:11
The investigation into how the attackers managed to compromise SolarWinds' internal network and poison the company's software updates is still underway, but we may be one step closer to understanding what appears to be a very meticulously planned and highly-sophisticated supply chain attack. A new report published by ReversingLabs today and shared in advance with The Hacker News has revealed