Italian Watchdog Bans OpenAI’s ChatGPT Over Data Protection Concerns

03/04/2023 0 Comments 0 tags

The Italian data protection watchdog, Garante per la Protezione dei Dati Personali (aka Garante), has imposed a temporary ban of OpenAI’s ChatGPT service in the country, citing data protection concerns.

“It’s The Service Accounts, Stupid”: Why Do PAM Deployments Take (almost) Forever To Complete

03/04/2023 0 Comments 0 tags

Privileged Access Management (PAM) solutions are regarded as the common practice to prevent identity threats to administrative accounts. In theory, the PAM concept makes absolute sense: place admin credentials in

Crypto-Stealing OpcJacker Malware Targets Users with Fake VPN Service

03/04/2023 0 Comments 0 tags

A piece of new information-stealing malware called OpcJacker has been spotted in the wild since the second half of 2022 as part of a malvertising campaign. “OpcJacker’s main functions include keylogging, taking

Microsoft Fixes New Azure AD Vulnerability Impacting Bing Search and Major Apps

01/04/2023 0 Comments 0 tags

Microsoft has patched a misconfiguration issue impacting the Azure Active Directory (AAD) identity and access management service that exposed several “high-impact” applications to unauthorized access. “One of these apps is

Cacti, Realtek, and IBM Aspera Faspex Vulnerabilities Under Active Exploitation

01/04/2023 0 Comments 0 tags

Critical security flaws in Cacti, Realtek, and IBM Aspera Faspex are being exploited by various threat actors in hacks targeting unpatched systems. This entails the abuse of CVE-2022-46169 (CVSS score: 9.8) and CVE-2021-35394 (CVSS

Hackers Exploiting WordPress Elementor Pro Vulnerability: Millions of Sites at Risk!

01/04/2023 0 Comments 0 tags

Unknown threat actors are actively exploiting a recently patched security vulnerability in the Elementor Pro website builder plugin for WordPress. The flaw, described as a case of broken access control,

Winter Vivern APT Targets European Government Entities with Zimbra Vulnerability

31/03/2023 0 Comments 0 tags

The advanced persistent threat (APT) actor known as Winter Vivern is now targeting officials in Europe and the U.S. as part of an ongoing cyber espionage campaign. “TA473 since at

Cyber Police of Ukraine Busted Phishing Gang Responsible for $4.33 Million Scam

31/03/2023 0 Comments 0 tags

The Cyber Police of Ukraine, in collaboration with law enforcement officials from Czechia, has arrested several members of a cybercriminal gang that set up phishing sites to target European users.

Deep Dive Into 6 Key Steps to Accelerate Your Incident Response

31/03/2023 0 Comments 0 tags

Organizations rely on Incident response to ensure they are immediately aware of security incidents, allowing for quick action to minimize damage. They also aim to avoid follow on attacks or future related

3CX Supply Chain Attack — Here’s What We Know So Far

31/03/2023 0 Comments 0 tags

Enterprise communications software maker 3CX on Thursday confirmed that multiple versions of its desktop app for Windows and macOS are affected by a supply chain attack. The version numbers include 18.12.407 and