Critical Use-After-Free Vulnerability in Firefox (CVE-2024-9680)

ZERO DAY

Russia-linked APT29 Targets Zimbra and JetBrains Servers in Large-Scale Cyber Espionage Campaign

WEB THREATS

New Critical GitLab Vulnerability Could Allow Arbitrary CI/CD Pipeline Execution

WEB THREATS
From: www.security.nl   

The Netherlands has more than two hundred Zimbra mail servers with critical security vulnerabilities

WEB THREATS

Critical FortiOS Remote Code Execution Vulnerability (CVE-2024-23113) Exploited in the Wild

WEB THREATS

Palo Alto Networks Urges Immediate Patching of Vulnerabilities in PAN-OS Firewalls

WEB THREATS

Microsoft has released security updates to fix a total of 118 vulnerabilities across its software portfolio, two of which have come under active exploitation in the wild

WEB THREATS

Multiple Security Vulnerabilities in MMS Protocol Implementations

WEB THREATS

Qualcomm Security Flaw CVE-2024-43047 Exploited in the Wild, Urgent Patches Released

SPYWARE

Akira and Fog ransomware exploit critical Veeam vulnerability

RANSOMWARE

Ivanti warns of three more CSA zero-days exploited in attacks

ZERO DAY

New scanner finds Linux, UNIX servers exposed to CUPS RCE attacks

WEB THREATS

CISA Warns of Threat Actors Exploiting F5 BIG-IP Cookies for Network Reconnaissance

WEB THREATS
From: www.incibe.es   

INCIBE reported a spyware infection in a daycare center exposes personal data of minors

SPYWARE

MoneyGram: No evidence ransomware is behind recent cyberattack

SOCIAL ENGINEERING THREATS

OpenAI details how threat actors are abusing ChatGPT

SOCIAL ENGINEERING THREATS
From: x.com   x.com   

Italian manufacturer Daldoss Elevetronic was claimed as victim of 8Base ransomware group

RANSOMWARE

Meow ransomware group targets the company MaxDream in Italy

RANSOMWARE
From: x.com   

Doctors Regional Cancer Center in the United States has fallen victim of INC Ransom ransomware group

RANSOMWARE
From: x.com   x.com   

Italian company Navarra & Marzano was hit by the new Sarcoma ransomware group

RANSOMWARE
From: x.com   

Canea Partner Group AB has been reportedly targeted in a cyberattack by Meow Leaks

RANSOMWARE
From: x.com   

Newly-emerged BlackLock ransomware group claimed an attack against the Italian Avio and Sforza Real Estate Administrations

RANSOMWARE
From: x.com   x.com   

New ransomware group Sarcoma claimed an attack against Smart Media Group Bulgaria

RANSOMWARE
From: x.com   

Victron Energy Targeted in Abyss Ransomware Attack

RANSOMWARE
From: x.com   x.com   

Spanish insurance brokerage firm Ferrer & Ojeda victim of the new ransomware group Sarcoma

RANSOMWARE
From: x.com   

Kill Security hacking group claims to have breached Chinese finance group Ping An

RANSOMWARE
From: x.com   x.com   

Spanish agricultural and food production company Lacteos Loran was hit by the new Sarcoma ransomware group

RANSOMWARE

Hunters International group targets the company AIUT in Poland

RANSOMWARE
From: x.com   

Spanish technology consultancy Arelance Group has fallen victim to an attack carried out by Medusa ransomware group

RANSOMWARE
From: x.com   x.com   

Volkswagen Group hit by 8base ransomware group

RANSOMWARE
From: x.com   x.com   

8Base claimed an attack against the French manufacturer SOFPO

RANSOMWARE

Rhysida Ransomware Allegedly Claims Breach of Axis Health Systems in the United States

RANSOMWARE
From: x.com   x.com   

Danish flooring company ErgoFloor victim of 8Base ransomware group

RANSOMWARE
From: x.com   

Matki Falls Victim to Cactus Ransomware Attack

RANSOMWARE
From: x.com   x.com   

8Base ransomware group hit the German manufacturing company Schumag Aktiengesellschaft

RANSOMWARE
From: x.com   x.com   

French pharmaceutical company Therabel Lucien Pharma SAS attacked by Hunters International ransomware group

RANSOMWARE
From: x.com   

Kill Security claims to have breached the Algerian tech company Yassir, but the sample shows sensitive medical and financial documents tied to Italy and Spain

RANSOMWARE
From: x.com   

BianLian Ransomware Attack on Pearl Cohen Law Firm

RANSOMWARE

The Provincial Fund for Environmental Protection and Water Management in Poznan reported a security incident

RANSOMWARE
From: x.com   x.com   

Leading Spanish healthcare company Ascires Biomedical Group victim of Stormous ransomware

RANSOMWARE

Play ransomware group targets the company Anva in Sweden

RANSOMWARE
From: x.com   

Romanian tourism company Unita Turism victim of Meow ransomware group

RANSOMWARE
From: x.com   x.com   

Reunion Island Antenne Reunion Radio victim of the new ransomware group Sarcoma

RANSOMWARE
From: x.com   

German online retailer of auto parts, AUTODOC PRO, victim of RansomHub ransomware group

RANSOMWARE
From: x.com   x.com   

Austrian company Hauschild Installationen fell victim to 8Base ransomware group

RANSOMWARE
From: x.com   x.com   

Kerkstoel 2000+, a Belgian company specialising in the production of precast concrete floor elements, hit by 8Base ransomware group

RANSOMWARE
From: x.com   x.com   

Spanish denim producer Evlox victim of 8Base ransomware group

RANSOMWARE
From: x.com   x.com   

Swedish transfer service Nora Lindefrakt AB victim of the new ransomware group Sarcoma

RANSOMWARE

Trinity Ransomware Emerges as Significant Threat to Healthcare Sector

RANSOMWARE
From: x.com   x.com   

French media group Groupe Bayard victim of 8Base ransomware group

RANSOMWARE
From: x.com   

ARGO Finance Targeted by Kill Security Ransomware Attack

RANSOMWARE

Ransomware group publishes 50,000 patient reports Belgian MediCheck

RANSOMWARE
From: x.com   x.com   

Spanish manufacturer Curtidos Barbero was attacked by the newly-emerged ransomware group Sarcoma

RANSOMWARE
From: www.cert.hr   

Croatian National CERT has received several reports of attempted fraud in which the attackers pose as police officers

PHISHING
From: t.me   

Phishing Campaign Exploits Italian Police Identity to Steal Email Credentials

PHISHING

Ongoing Cyber Campaign: Awaken Likho

PHISHING

Host Europe and LKA Lower Saxony warn of phishing wave

PHISHING

New phishing campaign is masquerading as an Apple giveaway, reported in the Netherlands

PHISHING
From: www.dehir.hu   

Phishers misuse the name of Debreceni Transport Zrt in Hungary, selling fake DKV passes on Facebook

PHISHING
From: yle.fi   

The North Karelia wellbeing services is warning people about scam messages falsely claiming to be from My Kanta Pages

PHISHING
From: hackread.com   

Storm-1575 Threat Actor Deploys New Login Panels for Phishing Infrastructure

PHISHING

Warning for fake Bitvavo SMS in the Netherlands

PHISHING
From: t.me   

INPS Phishing Campaign Exploiting Identity Documents and Sensitive Data

PHISHING

New phishing email is doing the rounds purportedly from International Card Services (ICS)

PHISHING

New Mamba 2FA bypass service targets Microsoft 365 accounts

PHISHING
From: x.com   

CERT Polska warns of fraudsters sending SMS messages impersonating the e-Tax Office

PHISHING

Increased number of cases of fraudulent SMS messages that pretend to be official communications from the Police of the Czech Republic

PHISHING

Phishing scammers in Hungary are once again advertising discounted travel opportunities on behalf of Szeged Transport Ltd (SZKT)

PHISHING

Disinformation campaign targets Moldova ahead of presidential elections and EU membership referendum

MISINFORMATION/DISINFORMATION
From: nordnews.md   

NordNews.md, the target of a cyberattack by creating a fake website in Russian

MISINFORMATION/DISINFORMATION

German Intelligence Warns Of Russian GRU Cyberactivities Against NATO, EU

MISINFORMATION/DISINFORMATION

test

MINER/CRYPTO

Large-Scale Cryptocurrency-Stealing Malware Campaign Hits Over 28,000 Users in Eurasia

MINER/CRYPTO

Earth Simnavaz (aka APT34) Levies Advanced Cyberattacks Against UAE and Gulf Regions

MALWARE

GoldenJackal: Sophisticated Cyber Attacks Targeting Government and Diplomatic Entities

MALWARE

Ukrainian National Pleads Guilty to Role in Raccoon Infostealer Malware Operation

MALWARE

Lua Malware Targeting Student Gamers via Fake Game Cheats

MALWARE

US and UK warn of Russian APT29 hackers targeting Zimbra and TeamCity servers

INTRUSION

German printing inks manufacturer Hubergroup has became the target of a cyberattack

INTRUSION
From: hackread.com   

Cyberattack on American Water Shuts Down Customer Portal, Halts Billing

INTRUSION

Ukraine Claims Responsibility for Cyberattack on Russian State Media VGTRK

INTRUSION
From: x.com   

MoroccanCyberForces and ShadowDefenders claim to have aken down the Israel siren site Tzeva Adom

INTRUSION

Major Cyberattacks Hit Iran Amid Escalating Middle East Tensions

INTRUSION
From: nltimes.nl   

Tens of thousands of Dutch traffic lights vulnerable to hackers

INTRUSION

Websites of several Israel Sports Association hacked

INTRUSION
From: www.reisevor9.de   

The German travel tech company Traffics detected a cyberattack on its system landscape

INTRUSION
From: therecord.media   

Russian court websites down after breach claimed by pro-Ukraine hackers

INTRUSION
From: x.com   x.com   

Hacker attack blocked the University of Salerno in Italy for a whole day, with possible data theft

INTRUSION

Cyber Attack on Elbe-Heide Municipality

INTRUSION
From: x.com   

Cyberattack on Portugal's Agency for Administrative Modernization (AMA)

INTRUSION

Danish educational institution Mercantec hit by possible cyberattack

INTRUSION

LEGO's website hacked to push cryptocurrency scam

FRAUD

Dutch police warn against the fake webshop 'kledingoutlets-lelystad.nl'

FRAUD
From: poliisi.fi   

The Western Uusimaa Police warns companies about scammers in business-to-business transactions

FRAUD
From: www.mfsa.mt   

The Malta Financial Services Authority (MFSA) warns about Paragonix crypto trading platform making unauthorised use of the names of local Maltese personalities through fake ads

FRAUD
From: t.me   

NoName057 targeted the internet infrastructure of the city of Odessa in Ukraine, on October 09

DOS/DDOS
From: t.me   

Swedish websites were targeted by NoName057 on October 14

DOS/DDOS
From: x.com   t.me   

NoName057 claimed to have targeted multiple sectors in Belgium on October 11

DOS/DDOS
From: t.me   

NoName057 claimed a number of DDoS attacks against Belgium on the weekend of 2024 Belgian local elections (October 12-13)

DOS/DDOS
From: t.me   

The hacking group OverFlame targets an an aerospace company in Taiwan

DOS/DDOS
From: t.me   

The hacking group CyberDragon claimed to have targeted the government sector in Belgium on October 11

DOS/DDOS
From: t.me   t.me   

Ports, public administration and finance sector websites in Belgium were targeted at the fourth day of attacks by NoName057, on October 10

DOS/DDOS
From: x.com   

RADNET64 Claims Attack on Nice French Riviera Airport Website

DOS/DDOS
From: t.me   t.me   

Cyber Army of Russia Claimed DDoS Attacks in Ukrainian Government and Media Infrastructures on October 12

DOS/DDOS
From: t.me   

French winery Caves Ambacia allegedly attacked by RipperSec

DOS/DDOS
From: t.me   t.me   

Z-Pentest claimed to have targeted the public sector and digital infrastructure in Ukraine on October 13

DOS/DDOS
From: t.me   

Cyber Army of Russia Reborn targets the crypto mail site "bpost" in Belgium on October 08

DOS/DDOS
From: t.me   

NoName057 claimed to have targeted the local government sector in Ukraine on October 10

DOS/DDOS
From: t.me   

Cyber Army of Russia claimed to have targeted the website of Iwatani in Japan on October 14

DOS/DDOS
From: t.me   

The hacking group Z-Pentest claimed to have targeted the website of zanasos in Ukraine on October 11

DOS/DDOS
From: t.me   

Cyber Army of Russia Reborn targeted the website of Pokrovsk Khryukrainy council in Ukraine on October 14

DOS/DDOS
From: yle.fi   

Nordea's Chief Business Officer claims that the bank is constantly under renewed attacks

DOS/DDOS
From: t.me   t.me   

RipperSec allegedly targeted the websites of French Arcep administrative authority, classified ads site NaturaBuy and Ionos web hosting provider

DOS/DDOS
From: t.me   

The hacking group Liquid Blood claimed to have targeted the website of Scientific Research Center for Radiation Safety in Ukraine on October 08

DOS/DDOS
From: t.me   

LulzSec Black cyber-attacks against French websites on October 12

DOS/DDOS
From: x.com   

The hacking group SN_BlackMeta claimed to have targeted the website and the login page of AIPAC (American Israel Public Affairs Committee)

DOS/DDOS
From: t.me   t.me   

NoName057 targets multiple municipalities in Belgium on October 09

DOS/DDOS
From: t.me   t.me   

Z-Pentest hacking group targets three websites in Ukraine on October 09

DOS/DDOS
From: t.me   

Cyber Army of Russia Reborn in collaboration with the hacking group OverFlame targeted the Nagoya Stock Exchange sites on October 14

DOS/DDOS
From: t.me   

NoName057 claimed to have targeted the education and digital infrastructure in Ukraine on October 13

DOS/DDOS
From: t.me   t.me   

NoName057 targeted multiple sectors in Japan on October 14

DOS/DDOS
From: t.me   

Z-Pentest claimed the ddos attack on the website of CRMP Mods in Ukraine on October 12

DOS/DDOS
From: t.me   

CyberDragon group allegedly targeted Belgian cities and municipalities on October 08

DOS/DDOS
From: t.me   

NoName057 targets sectors, such as media, government policy, telecommunications, and electoral services in Belgium on October 11

DOS/DDOS
From: t.me   

The group Mysterious Team Bangladesh claimed to have targeted the website of Microsoft Israel R&D Center on October 12

DOS/DDOS
From: t.me   

NoName057 claimed to have targeted the telecommunication and defense sectors in Ukraine on October 08

DOS/DDOS
From: t.me   

Cyberattacks on Ukrainian Media and Government Websites on October 13

DOS/DDOS
From: t.me   

Cyber Army of Russia Reborn targets the website of Vinnytsia National Pirogov Institute in Ukraine on October 10

DOS/DDOS
From: t.me   

CyberDragon claimed a DDoS attacks against the city of Charleroi in Wallonia, Belgium

DOS/DDOS
From: t.me   

NoName057 targeted the energy, water and other services in Ukraine on October 14

DOS/DDOS
From: t.me   www.vrt.be   

The Belgian Centre for Cybersecurity (CCB) has confirmed the second day of NoName057 DDoS attacks launched against websites in Belgium

DOS/DDOS

Schwarz Gruppe, parent company of Lidl, is facing huge increase in cyberattacks

DOS/DDOS
From: t.me   

NoName057 claimed to have targeted multiple sectors in Ukraine on October 07

DOS/DDOS
From: t.me   

Center for Cybersecurity of Belgium (CCB) allegedly hit with a DDoS attack by NoName057

DOS/DDOS

ADT Faces Data Breach: Employee Credentials Compromised

DATA BREACH
From: dailydarkweb.net   

TopPaidSurveys UK Allegedly Breached

DATA BREACH

Universal Music Group Data Breach Notification

DATA BREACH
From: x.com   

Handala Hack Breaches Doscast Podcast Library Exposing User Data

DATA BREACH

Handala group targets the Ambassador of Israel in Germany Emails

DATA BREACH
From: dailydarkweb.net   

California Secretary of State Records Allegedly Leaked

DATA BREACH
From: x.com   www.casio.co.jp   

Unauthorized Access to Casio Network

DATA BREACH
From: x.com   

Potential Boutiqaat Data Breach Exposes 3 Million Users Personal Information

DATA BREACH
From: x.com   

Hack of Max Shop by Pro-Palestinian Hacktivists

DATA BREACH
From: t.me   t.me   

CyberDragon, in collaboration with KittyTXT and the Cyber Army of Russia Reborn, claimed to have hacked the NATO Training Center, Defense Research Center, and NATO School

DATA

A Threat Actor is Allegedly Selling Admin Access of an Unidentified Organization in the Netherlands

data

JAXA Cyberattacks Compromise Sensitive Space Exploration and National Security Data

data

Fidelity Investments suffered a second data breach this year

DATA
From: x.com   www.telemadrid.es   

Spanish insurance company Pelayo Mutua de Seguros y Reaseguros, S.L. suffered a cyberattack on its customer database

DATA
From: dailydarkweb.net   

Threat Actor Claims to Sell Access to a Slovenian perfumery store

DATA
From: x.com   

Ferramenta La Futura Srl Breached by Meow Hacking Group, Data Exfiltrated

DATA

Data from the German company The Platform Group up for sale on the dark web

DATA

Thousands of email addresses hacked from Eindhoven youth care organization Combinatie Jeugdzorg

data
From: x.com   

Save The Children International has reportedly been compromised by a cybercriminal

DATA

Major data breach at Danish sports technology company TrackMan

DATA

Cybercriminals Use Unicode to Hide Mongolian Skimmer in E-Commerce Platforms

data
From: www.security.nl   

Credential Stuffing Attack Targets Decathlon Customers' Savings Points

DATA
From: x.com   

UK-based provider of sub-sea telecoms solutions Xtera Communication suffered a data breach

DATA
From: dailydarkweb.net   

Alleged Data Breach Targets Israeli Ministry of Welfare

DATA
From: x.com   x.com   

The group RansomHouse targets the Universite Paris Saclay in France

data
From: hackread.com   

DumpForums Claim 10TB Data Breach at Russian Cybersecurity Firm

DATA
From: x.com   

7.000 Israeli Citizens' Sensitive Data Allegedly Hacked by Anonymous Syria

DATA

Threat actor allegedly sells 200.000 Spanish patients database

DATA

A Threat Actor is Allegedly Selling the Moldovan Border Police data

DATA
From: t.me   

Dutch consulting firm Versum Consulting was defaced by LulzSec Black group, data also possibly encrypted

DATA

Internet Archive's "Wayback Machine" Suffers Major Data Breach and DDoS Attack

data
From: x.com   

Meow Hacking Group Breaches Modiin Ezrachi

DATA

Sale of Full Access to Italian E-commerce Site on Dark Web

DATA
From: x.com   

A Threat Actor is Allegedly Selling Data from 230K Polish Customers

data
From: medium.com   

Libano-Suisse exposed unprotected data from an Azure Blob

data
From: dailydarkweb.net   

Wilson & Lafleur Ltee Data Breach: Sensitive Information Leaked Online

DATA
From: elpais.com   

Tendam admits that the cyberattack it suffered endangers data such as the ID of the members of its loyalty clubs

data
From: dailydarkweb.net   

A Threat Actor Allegedly Breached Madrid-based Konecta Group With 69 Million Lines Exposed

data
From: dailydarkweb.net   

Leadbuyer Data Breach Allegations: Sensitive Information of 1.3 Million Records Exposed

DATA

Unidentified Italian bank victim of data sale on the dark web

data
From: x.com   

Data breach at University of Paris 1 Pantheon-Sorbonne

data
From: dailydarkweb.net   

Alleged data breach invlolving Detsky Mir Group leading retailer of childrens goods in Russia, Kazakhstan, and Belarus

DATA

A Threat Actor is Allegedly Selling RDP and VPN Access to the Irish Company with $9 Billion in Revenue, Kingspan Group plc

DATA
From: dailydarkweb.net   

Maksavit Data Breach: Over 1.2 Million Customer Records Leaked on Dark Web

DATA
From: x.com   

Potential Cyberattack on Costa Del Sol Group by Sarcoma Group

DATA

The National Cyber Security Centre (NCSC) has identified 150 infected small office and home office (SOHO) routers in the Netherlands

BOTNETS

GorillaBot: A New Mirai-based Botnet Targeting Global Sectors with DDoS Attacks

BOTNETS

Microsoft Detects Growing Use of File Hosting Services in Business Email Compromise Attacks

BEC
From: t.me   

French Monte Paschi Bank SA. allegedly targeted by the threat actor RADNET64

DOS/DDOS
From: t.me   

Mysterious Team Bangladesh claimed an attack against Munich International Airport on October 14

DOS/DDOS
From: x.com   

Hacktivist group DXPLOIT allegedly hit the website of Lille Airport in France

DOS/DDOS
From: t.me   

Odessa Court of Appeal allegedly targeted by the Cyber Army of Russia Reborn

DOS/DDOS
From: t.me   

Port of Sete in France allegedly targeted by RipperSec hacktivist group

DOS/DDOS
From: t.me   

Pro-Russian hacktivist group Cyberforces claimed responsibility of cyberattacks against the Romanian Border Police, the Romanian Center for European Policy and Emag marketplace

DOS/DDOS
From: t.me   

Cyber Army of Russia Reborn claimed an attack against the website of Ukraine's Government Contact Center

DOS/DDOS
From: t.me   

Cyber Army of Russia Reborn claimed to have hit with DDoS attack the website of the Beglian Post Group

DOS/DDOS
From: x.com   t.me   

Liquid Blood claims to have targeted the website of Deportation and Repatriation Service in the Netherlands

DOS/DDOS
From: t.me   

The website of the Belgian Journalism Council was allegedly targeted the Cyber Army of Russia Reborn

DOS/DDOS
From: t.me   

The Dutch Computer Emergency Response Team (CERT.nl) victim of Cyber Army of Russia Reborn

DOS/DDOS
From: t.me   

DXPLOIT hacktivist group allegedly hit with DDoS attack the website of French Healthcare insurance company

DOS/DDOS
From: t.me   t.me   

Mysterious Team Bangladesh claimed targeting German data center operator Hetzner and the airports of Norderney and Munster/Osnabruck

DOS/DDOS
From: x.com   

RADNET64 hacktivist group claimed to have targeted the website of Liege Airport in Belgium

DOS/DDOS
From: www.reuters.com   

Finnish utility Fortum's power assets targeted with surveillance, cyber attacks

DOS/DDOS