CVE-2021-1522
CVE-2021-1522
Zero-day vulnerabilities in Microsoft Exchange Server | IT Security News 4. March 2021 The four vulnerabilities inside Microsoft Exchange Server allow an attacker to compromise a vulnerable server. As a result, an attacker will gain access to all registered email accounts, or be able to execute arbitrary code (remote code execution or RCE) within the…
Breach Notification , Governance & Risk Management , Incident & Breach Response Firm Pays $1 Million Settlement After Regulator Says It Misled Investors and Victims Mathew J. Schwartz (euroinfosec) • August 17, 2021 When is a data exposure not just a data exposure? See Also: Forrester Consulting: Strained Relationship Between Security and IT…
Suspected Chinese hackers are targeting online gambling companies in China with a new remote access trojan (RAT) that abuses Open Broadcaster Software (OBS) Studio live streaming software to record victims’ screens. Dubbed ‘BIOPASS RAT’ by researchers at Trend Micro who discovered this new threat, the malware spreads via a watering hole attack, in which unsuspecting…
The hacker who stole around $610 million worth of cryptocurrency from Poly Network earlier this month has returned the final slice of stolen funds to the firm. The platform confirmed that it had successfully retrieved all but $33 million. ‘As of now, Poly Network has regained control of the $610 million (not including the frozen…
Blockchain & Cryptocurrency , Cryptocurrency Fraud , Fraud Management & Cybercrime Images on Docker Hub Contained Cryptominers Prajeet Nair (@prajeetspeaks) • August 13, 2021 A recently uncovered cryptomining scheme used malicious Docker images to hijack organizations’ computing resources to mine cryptocurrency, according to cybersecurity firm Aqua Security. These images were uploaded to the…
Fraud Management & Cybercrime , Fraud Risk Management , Governance & Risk Management Colonial Pipeline Attack Used DarkSide Malware Doug Olenick (DougOlenick) • May 14, 2021 DarkSide ransomware was used in the attack against Colonial Pipeline Co. The gang behind DarkSide ransomware, which U.S. authorities say was used in the attack against Colonial…