CISA Adds Atlassian Confluence Data Center Bug to Its Known Exploited Vulnerabilities Catalog

The vulnerability, tracked as CVE-2023-22527, allows remote attackers to execute arbitrary code on vulnerable Confluence installs. Atlassian has released patches to address the issue and recommends immediate action to update to the latest versions.

Cyware News – Latest Cyber News – ​Read More

ChatGPT Cybercrime Discussions Spike to Nearly 3K Posts on Dark Web

And there were an additional 3,000 comments posted to the Dark Web about the sale of stolen ChatGPT accounts.

darkreading – ​Read More

CISA’s Water Sector Guide Puts Incident Response Front & Center

As cyberattackers increasingly target water suppliers and wastewater utilities, the US federal government wants to help limit the impact of destructive attacks.

darkreading – ​Read More

Atlassian Tightens API After Hacker Scrapes 15M Trello Profiles

The company hasn’t acknowledged responsibility for the incident, although allowing scraping paves the way for dangerous follow-on attacks.

darkreading – ​Read More

Tech Giant HP Enterprise Hacked by Russian Hackers Linked to DNC Breach

Hackers with links to the Kremlin are suspected to have infiltrated information technology company Hewlett Packard Enterprise’s (HPE) cloud email environment to exfiltrate mailbox data.
“The threat actor accessed and exfiltrated data beginning in May 2023 from a small percentage of HPE mailboxes belonging to individuals in our cybersecurity, go-to-market, business segments, and other functions,”

The Hacker News – ​Read More

Ring Will Stop Giving Cops a Free Pass on Warrantless Video Requests

The Amazon-owned home surveillance company says it is shuttering a feature in its Neighbors app that allows police to request footage from users. But it’s not shutting out the cops entirely.

Security Latest – ​Read More