News

Tech Nadu
technadu. com > saas-notification-pipeline-abuse-github-phishing-campaigns-and-jira-notification-hijacking-increased-cisco-talos-warns > 625534

Saa S Notification Pipeline Abuse Escalates Phishing Threats

1+ day, 2+ hour ago  (137+ words) The core of this methodology relies on manipulating inherent organizational trust. In observed Git Hub phishing campaigns, adversaries create unauthorized repositories and push commits containing embedded payloads, cybersecurity experts at Cisco Talos warned in a new report." "During one campaign…...

Tech Nadu
technadu. com > northern-ireland-schools-cyberattack-disrupts-access-to-educational-systems > 625521

Northern Ireland School Cyberattack Halts C2 K System

1+ day, 4+ hour ago  (490+ words) Lore Apostol is a cybersecurity news writer at Tech Nadu. With a university degree in journalism and advertising, she is keen on accuracy, conciseness, fact-checking, and staying current with cyber trends. Lore started as a cybersecurity creative proofreader at Tech…...

Tech Nadu
technadu. com > wireguard-vpn-developer-faces-update-block-due-to-microsoft-account-lock > 625589

Wire Guard VPN Developer Faces Update Block Due to Microsoft Account Lock

6+ hour, 56+ min ago  (178+ words) The creator of Wire Guard VPN is currently unable to deliver essential software patches to Windows users. Following an unexpected Microsoft account lock, developer Jason Donenfeld lost access to the Windows Hardware Program infrastructure required to digitally sign system drivers....

Tech Nadu
technadu. com > eurail-data-breach-exposes-300000-passports-impacts-discovereu-program > 625610

Eurail Data Breach Exposes Over 300, 000 Passenger Passports

5+ hour, 3+ min ago  (266+ words) The December Eurail B. V. breach occurred on December 26, when unauthorized threat actors infiltrated the IT infrastructure of the Netherlands-based organization managing cross-border rail passes for 35 European railway operators." Following the network intrusion, the company filed official data breach notifications with U. S. state…...

Tech Nadu
technadu. com > grafanaghost-exploit-exfiltrates-sensitive-grafana-business-data-via-indirect-prompt-injection > 625427

Grafana Flaw Allows Data Exfiltration via Indirect Prompt Injection

2+ day, 2+ hour ago  (276+ words) A critical Grafana flaw, dubbed the Grafana Ghost vulnerability, allows malicious actors to silently extract sensitive business data from the widely utilized open-source data visualization platform. The core of this Grafana data exfiltration attack relies entirely on indirect prompt injection....

Tech Nadu
technadu. com > apt28-dns-hijacking-targets-soho-router-vulnerabilities-impacting-200-organizations-and-5000-consumer-devices-globally > 625465

APT28 DNS Hijacking Targets SOHO Router Vulnerabilities

1+ day, 7+ hour ago  (227+ words) Over 200 organizations and 5, 000 consumer devices were affected, but Microsoft-owned assets or services were not among these. APT28 has leveraged DNS hijacking to support post-compromise AITM attacks targeting Transport Layer Security (TLS) connections on Microsoft Outlook web domains to intercept cloud-hosted content....

Tech Nadu
technadu. com > cyberattack-on-german-democratic-socialist-party-die-linke-claimed-by-qilin-ransomware > 625422

Die Linke Cyberattack Claimed by Qilin Ransomware

2+ day, 4+ hour ago  (313+ words) The Russian-speaking Qilin ransomware group has claimed responsibility for the recent compromise of the German democratic socialist party Die Linke's IT infrastructure, threatening to release sensitive operational data unless its financial demands are met. Party officials confirmed that a severe…...

Tech Nadu
technadu. com > medusa-ransomware-group-exploits-zero-day-vulnerabilities-within-24-hours-of-the-breach > 625415

Medusa Ransomware Group Exploits Zero-Day Vulnerabilities Within 24 Hours of the Breach

2+ day, 5+ hour ago  (576+ words) Lore Apostol is a cybersecurity news writer at Tech Nadu. With a university degree in journalism and advertising, she is keen on accuracy, conciseness, fact-checking, and staying current with cyber trends. Lore started as a cybersecurity creative proofreader at Tech…...

Tech Nadu
technadu. com > cyber-job-moves-leadership-updates-for-cybersecurity-ai-and-enterprise-security > 625375

New Leadership Appointments in Cybersecurity, AI, and Enterprise Security

3+ day, 9+ hour ago  (219+ words) Hagit Ynon " Pentera Nate Fick " Eos Energy Enterprises Pratik Shah " OPSWAT Anita Sheridan-Roddick " Baidam Kristy Nordmann " Innocent Lives Foundation Rahul Kashyap " Dispersive Bashar Abouseido " TENEX. AI Tajudeen Ahmed " Ouranos Technologies Poupak Modirassari Enbom " Yubico Masakiyo Furudate " New Relic Masakiyo Furudate…...

Tech Nadu
technadu. com > duales-duc-app-data-left-unprotected-due-to-unencrypted-server-over-360000-files-exposed > 625036

Duc App Data Exposure: Amazon Storage Server Unprotected

6+ day, 7+ hour ago  (174+ words) The Duc App data breach centers on the sensitive nature of the unencrypted information exposed. Cy Peace cybersecurity researcher Anurag Sen discovered that the database contained over 360, 000 files used for mandatory "know your customer" (KYC) protocols, according to Tech Crunch....