Quantcast
Channel: PRSOL:CC
Browsing index pages (3876 articles)
↧

Image may be NSFW.
Clik here to view.

マイクロソフト・アウトルック、11月からMSIX形式の添付ファイルの受信をブロックへ

マイクロソフトは、来月からOutlook Webおよび新しいOutlook Windowsクライアントにおいて、ブロック対象の添付ファイル一覧に「.msix」および「.msixbundle」形式の添付ファイルを追加すると発表した。 .msix ファイルは、特定のコンピュータアーキテクチャや構成に合わせて最適化された最新の Windows インストールパッケージであり、.msixbundle...

View Article


Image may be NSFW.
Clik here to view.

ランサムウェアの新たな標的が現れました。バックアップの準備はできていますか?

復旧が可能だと分かっていれば、ランサムウェアの脅威ははるかに和らぎます。 だからこそ、攻撃者はバックアップの暗号化に狙いを定めているのです。彼らは復旧ポイントを消去し、暗号化されたデータを復元するために必要なインフラを破壊します。その復旧手段が失われると、身代金を支払うよう迫る圧力は急激に高まります。...

View Article


Image may be NSFW.
Clik here to view.

PoeLLMマルウェアが、暗号通貨マイニング攻撃においてセキュリティ対策が不十分なAIサーバーに感染させる

公開されているAIサービスを標的とした暗号通貨マイニング攻撃では、PoeLLMマルウェアを使用して、侵害されたサーバーをスキャナーやエクスプロイトのランチャーとして悪用している。 このマルウェアは、GitHub上にホストされた詩からキーワードを抽出することで、コマンド&コントロール(C2)アドレスを取得するという、珍しい手法を採用している。...

View Article

Image may be NSFW.
Clik here to view.

SonicWall、SMA1000ゲートウェイにおける最大深刻度のSSRF脆弱性について警告

SonicWallは、SMA1000シリーズのアプライアンスに存在する、最大深刻度のサーバーサイドリクエストフォージェリー(SSRF)の脆弱性に対処するためのホットフィックスをリリースしました。 CVE-2026-102255として追跡されているこの脆弱性は、SMA1000 6210、 7210、および8200vモデルの「Appliance...

View Article

Image may be NSFW.
Clik here to view.

PoCが公開された後、ハッカーたちがアトラシアンの重大な脆弱性を悪用

Jira、Confluence、Bitbucket を含む複数の Atlassian 製品ファミリーに影響を与える重大な脆弱性(CVE-2026-21589)が、認証を必要としない攻撃で悪用されています。 本日早朝、セキュリティ企業のPrevidianは、詳細な技術レポートが公開されてからわずか数時間後に、自社のハニーポットネットワーク上でこの活動を検知しました。...

View Article


Image may be NSFW.
Clik here to view.

アドバンテスト、ランサムウェア攻撃による個人情報の流出を確認

アドバンテスト株式会社は、今年初めに発生したランサムウェア攻撃により、影響を受けた個人の個人識別情報が流出したことを、当該個人に通知しています。 同社は、半導体業界向けの自動試験装置を製造するグローバル企業です。2月15日、攻撃者が同社のネットワークに侵入し、一部のシステムへのアクセス権を取得しました。...

View Article

Image may be NSFW.
Clik here to view.

AIボットを用いた1,000万ドルのストリーミング詐欺で、ミュージシャンが実刑判決を受けた

ノースカロライナ州のミュージシャンが、大規模なストリーミング使用料詐欺事件に関与し、Spotify、Apple Music、Amazon Music、YouTube Musicから1,000万ドル以上の使用料を不正に受け取ったとして、懲役18か月の判決を受けた。...

View Article

Image may be NSFW.
Clik here to view.

「Ninja Forms」プラグインの脆弱性が悪用され、WordPressサイトがハッキングされる

ハッカーたちは、互いに関連性のない2つのWordPressプラグイン「Ninja Forms」と「WPC Product Bundles for WooCommerce」に存在する保存型クロスサイトスクリプティング(XSS)の脆弱性を悪用し、バックドアをインストールしたり、不正な管理者アカウントを作成したりしています。...

View Article


Image may be NSFW.
Clik here to view.

「Pwn2Own Ireland」初日、ハッカーたちが32件のゼロデイ脆弱性を悪用

「Pwn2Own Ireland 2026」コンテストの初日、セキュリティ研究者たちはサムスン「Galaxy S26」を2回ハッキングし、32件のゼロデイ脆弱性を悪用して388,500ドルを獲得した。 「Pwn2Own Ireland 2026」ハッキングコンテストでは、参加者は携帯電話(Apple iPhone 17、Samsung Galaxy S26、 Google Pixel...

View Article


Image may be NSFW.
Clik here to view.

ASOS confirms data breach after “HACKED” in-app notifications

UK fashion retailer ASOS confirmed a data breach Tuesday after hackers sent unauthorized push notifications through its mobile app while claiming to have stolen customer data from the company’s...

View Article

Image may be NSFW.
Clik here to view.

Atlassian warns of critical file-access flaw in Jira, Confluence

Atlassian is warning customers of a critical vulnerability, tracked as CVE-2026-21589, that can be exploited for arbitrary file-access in multiple self-hosted Data Center products, including...

View Article

Image may be NSFW.
Clik here to view.

Fake ChatGPT, Gemini Sites steal advertising accounts, MFA codes

A new campaign targeting ad account managers uses fake ChatGPT, Gemini, Claude, and Perplexity sites that steal login credentials and multi-factor authentication (MFA) codes through browser-in-browser...

View Article

Image may be NSFW.
Clik here to view.

How to secure RMM software: 8 controls MSPs should test

Secure remote monitoring and management (RMM) software should let an MSP discover endpoints, automate patching, control privileged access, cut alert noise, contain incidents, protect recovery points,...

View Article


Image may be NSFW.
Clik here to view.

Wikimedia: Rogue OpenAI agents behind unauthorized Wikipedia edits

The Wikimedia Foundation says rogue OpenAI agents made unauthorized Wikipedia edits and may have been partially responsible for a May outage. As Wikimedia Chief Product and Technology Officer Selena...

View Article

Image may be NSFW.
Clik here to view.

Nikkei discloses breaches of employees’ Microsoft, Google email accounts

Over the weekend, Japanese publishing giant Nikkei disclosed that unknown attackers recently breached two employee email accounts and used one to send thousands of phishing emails. In a Sunday...

View Article


Image may be NSFW.
Clik here to view.

Engineer sentenced for locking over 3,000 devices on employer network

A former core infrastructure engineer at an industrial company headquartered in New Jersey was sentenced to 32 months in prison for locking thousands of devices on his employer’s network in a...

View Article

Image may be NSFW.
Clik here to view.

Rejetto HFS servers now actively scanned for critical RCE flaw

Hackers are actively scanning for a Rejetto HFS weak signing key vulnerability, tracked as CVE-2026-61500, that allows session forgery, account takeover, and remote code execution (RCE). VulnCheck VP...

View Article


Image may be NSFW.
Clik here to view.

IQVIA fined $7.8 million for failing to properly anonymize health data

Italy’s Data Protection Authority (GPDP) has fined IQVIA €7 million ($7.8M) over poor data-processing practices that the agency says could have put roughly one million patients at risk of data...

View Article

Image may be NSFW.
Clik here to view.

South Korea probes bank breaches amid suspected AI-powered attacks

South Korea’s Financial Services Commission (FSC) held an emergency meeting following a series of cyberattacks targeting financial institutions in the country. During the meeting, officials confirmed...

View Article

Image may be NSFW.
Clik here to view.

New Dell System Update flaw lets hackers gain root privileges

Dell warned customers to patch a critical vulnerability in the System Update (DSU) command-line interface (CLI) deployment tool as soon as possible. DSU lets enterprise IT administrators deploy BIOS,...

View Article
Browsing index pages (3876 articles)


Latest Images