900k Impacted by Data Breach at Mississippi Healthcare Provider

Singing River Health System says the personal information of roughly 900,000 individuals was stolen in an August 2023 ransomware attack.

The post 900k Impacted by Data Breach at Mississippi Healthcare Provider appeared first on SecurityWeek.

SecurityWeek – ​Read More

VMware Fixed Zero-Day Flaws Demonstrated at Pwn2Own2024

VMware addressed four vulnerabilities, including three zero-day flaws demonstrated at the Pwn2Own Vancouver 2024 hacking contest, in its Workstation and Fusion desktop hypervisors.

Cyware News – Latest Cyber News – ​Read More

PoC Exploit Released for RCE Zero-Day in D-Link EXO AX4800 Routers

The D-Link EXO AX4800 (DIR-X4860) router is vulnerable to remote unauthenticated command execution that could lead to complete device takeovers by attackers with access to the HNAP port.

Cyware News – Latest Cyber News – ​Read More

Ongoing Social Engineering Campaign Linked to Black Basta Ransomware Operators

The threat actors then call the impacted users, posing as members of the organization’s IT team, and attempt to socially engineer the users into providing remote access to their computers through the use of legitimate RMM solutions.

Cyware News – Latest Cyber News – ​Read More

Senators Urge $32 Billion in Emergency Spending on AI After Finishing Yearlong Review

The group recommends that Congress draft emergency spending legislation to boost U.S. investments in artificial intelligence, including new R&D and testing standards to understand the technology’s potential harms.

The post Senators Urge $32 Billion in Emergency Spending on AI After Finishing Yearlong Review appeared first on SecurityWeek.

SecurityWeek – ​Read More

ICS Patch Tuesday: Advisories Published by Siemens, Rockwell, Mitsubishi Electric

Several ICS vendors released advisories on Tuesday to inform customers about vulnerabilities found in their products. 

The post ICS Patch Tuesday: Advisories Published by Siemens, Rockwell, Mitsubishi Electric appeared first on SecurityWeek.

SecurityWeek – ​Read More

BLint: Open-Source Tool to Check the Security Properties of Your Executables

BLint is a Binary Linter designed to evaluate the security properties and capabilities of executable files. It utilizes LIEF (Library for Executable and Instrumentation Format) for its operations.

Cyware News – Latest Cyber News – ​Read More

Microsoft Patches 61 Flaws, Including Two Actively Exploited Zero-Days

Microsoft has addressed a total of 61 new security flaws in its software as part of its Patch Tuesday updates for May 2024, including two zero-days which have been actively exploited in the wild.
Of the 61 flaws, one is rated Critical, 59 are rated Important, and one is rated Moderate in severity. This is in addition to 30 vulnerabilities&

The Hacker News – ​Read More

Experts Warn the NVD Backlog Is Reaching a Breaking Point

NIST has only analyzed 2 of the nearly 2,000 new vulnerabilities received in May. The backlog is attributed to an increase in software and vulnerabilities, as well as a change in interagency support, according to NIST.

Cyware News – Latest Cyber News – ​Read More

Dutch Court Sentences Tornado Cash Co-Founder to 5 Years in Prison for Money Laundering

A Dutch court on Tuesday sentenced one of the co-founders of the now-sanctioned Tornado Cash cryptocurrency mixer service to 5 years and 4 months in prison.
While the name of the defendant was redacted in the verdict, it’s known that Alexey Pertsev, a 31-year-old Russian national, has been awaiting trial in the Netherlands on money laundering charges.

The Hacker News – ​Read More