CVE-2021-1078
NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel driver (nvlddmkm.sys) where a NULL pointer dereference may lead to system crash.
Cybercrime , Fraud Management & Cybercrime , Fraud Risk Management Affiliate-Driven Ransomware-as-a-Service Operations Keep Generating Big Profits Mathew J. Schwartz (euroinfosec) • May 11, 2021 Statements posted to DarkSide’s data leak site “It’s not personal, Sonny. It’s strictly business.” See Also: Live Webinar | Software Security: Prescriptive vs. Descriptive That immortal…
May 17, 2021, 5:31 PM The Colonial Pipeline system, which supplies nearly half the fuel consumed along the Eastern Seaboard, resumed full operations this weekend after a ransomware attack eight days earlier. Following days of higher pump prices, panic buying, and gas stations running out of fuel, the system is beginning to return to normal….
March 29, 2021 CSO Online While sophisticated ransomware and nation-state threat actors target US critical infrastructure, the only protection most organizations have against these attacks is tight and effective cybersecurity. These attacks have drawn government attention and sparked calls for liability protection against malicious intrusions. If organizations want this protection, however, lawmakers say they need…
Cybersecurity Executive Order 2021: What It Means for Cloud and SaaS Security | IT Security News 14. June 2021 This article has been indexed from The Hacker News In response to malicious actors targeting US federal IT systems and their supply chain, the President released the “Executive Order on Improving the Nation’s Cybersecurity (Executive Order).”Although directed…
A spear-phishing attack operated by a North Korean threat actor targeting its southern counterpart has been found to conceal its malicious code within a bitmap (.BMP) image file to drop a remote access trojan (RAT) capable of stealing sensitive information.Attributing the attack to the Lazarus Group based on similarities to prior tactics adopted by the adversary, researchers…
Cybercrime as-a-service , Fraud Management & Cybercrime , Malware as-a-Service Fresh Ransomware-as-a-Service Operations Seek Affiliates for Extorting New Victims Mathew J. Schwartz (euroinfosec) • August 26, 2021 Extracts from ransomware operators’ ransom notes and data-leak sites After a string of high-profile hits in the middle of this year, a number of the largest…