PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Which Hole to Plug First? Solving Chronic Vulnerability Patching Overload

lundi 2 mai 2022 à 15:30
According to folklore, witches were able to sail in a sieve, a strainer with holes in the bottom. Unfortunately, witches don’t work in cybersecurity – where networks generally have so many vulnerabilities that they resemble sieves.  For most of us, keeping the sieve of our networks afloat requires nightmarishly hard work and frequent compromises on which holes to plug first. The reason? In 2010,

Russian Hackers Targeting Diplomatic Entities in Europe, Americas, and Asia

lundi 2 mai 2022 à 13:40
A Russian state-sponsored threat actor has been observed targeting diplomatic and government entities as part of a series of phishing campaigns commencing on January 17, 2022. Threat intelligence and incident response firm Mandiant attributed the attacks to a hacking group tracked as APT29 (aka Cozy Bear), with some set of the activities associated with the crew assigned the moniker Nobelium (

Google Releases First Developer Preview of Privacy Sandbox on Android 13

lundi 2 mai 2022 à 08:06
Google has officially released the first developer preview for the Privacy Sandbox on Android 13, offering an "early look" at the SDK Runtime and Topics API to boost users' privacy online. "The Privacy Sandbox on Android Developer Preview program will run over the course of 2022, with a beta release planned by the end of the year," the search giant said in an overview. A "multi-year effort," 

Here's a New Tool That Scans Open-Source Repositories for Malicious Packages

lundi 2 mai 2022 à 06:50
The Open Source Security Foundation (OpenSSF) has announced the initial prototype release of a new tool that's capable of carrying out dynamic analysis of all packages uploaded to popular open source repositories. Called the Package Analysis project, the initiative aims to secure open-source packages by detecting and alerting users to any malicious behavior with the goal of bolstering the

Microsoft Documents Over 200 Cyberattacks by Russia Against Ukraine

vendredi 29 avril 2022 à 14:32
At least six different Russia-aligned actors launched no less than 237 cyberattacks against Ukraine from February 23 to April 8, including 38 discrete destructive attacks that irrevocably destroyed files in hundreds of systems across dozens of organizations in the country. "Collectively, the cyber and kinetic actions work to disrupt or degrade Ukrainian government and military functions and