Voici le rapport de veille avec des liens directs vers les actus les plus intéressantes de la semaine passée. Certaines d’entre elles seront développées dans les prochains articles.
Pour information, cette veille est préparée avec un vrai cerveau non artificiel, alors bonne lecture et merci de soutenir le Décodeur !
Les actus sélectionnées cette semaine
Hackers are using developing countries for ransomware practice
Businesses in Africa, Asia, and South America hit before moving on to Western targets.
Nation-state hackers exploit Cisco firewall 0-days to backdoor government networks
Perimeter devices ought to prevent network hacks. Why are so many devices allowing attacks?
Security bugs in popular phone-tracking app iSharing exposed users’ precise locations | TechCrunch
The location-sharing app iSharing, which has 35 million users, fixed vulnerabilities that exposed users’ personal information and precise location data.
Un ransomware empêche une ville britannique d’éteindre ses lampadaires
Une ville du Royaume-Uni a été victime d’une cyberattaque. Un ransomware est en effet parvenu à s’emparer des données confidentielles du conseil municipal, obligeant la ville à fermer son système informatique. Depuis, une partie de l’éclairage public est hors de contrôle.
Des pirates utilisent un antivirus pour propager des malwares depuis 2019
Des cybercriminels venus de Corée du Nord ont trouvé le moyen de détourner un antivirus afin de servir leurs desseins. Les pirates se sont en effet servis d’une mise à jour du logiciel pour injecter des virus sur l’ordinateur de leurs cibles. L’opération a pour objectif d’amasser des cryptomonnaies.
European Police Chiefs call for industry and governments to take action against end-to-end encryption roll-out | Europol
Privacy measures currently being rolled out, such as end-to-end encryption, will stop tech companies from seeing any offending that occurs on their platforms. It will also stop law enforcement’s ability to obtain and use this evidence in investigations to prevent and prosecute the most serious crimes such as child sexual abuse, human trafficking, drug smuggling, homicides, economic crime and terrorism…
Man arrested for ‘framing colleague’ with AI-generated voice
Athletics boss accused of deep-faking Baltimore school principal
NSA Launches Guidance for Secure AI Deployment
The new document is the first release from NSA’s Artificial Intelligence Security Center (AISC), in partnership with other government agencies in the US and other Five Eyes countries
Russian FSB Counterintelligence Chief Gets 9 Years in Cybercrime Bribery Scheme
The head of counterintelligence for a division of the Russian Federal Security Service (FSB) was sentenced last week to nine years in a penal colony for accepting a USD $1.7 million bribe to ignore the activities of a prolific Russian cybercrime group that hacked thousands of e-commerce websites.
US offers a $10M reward for information on four Iranian nationals
Treasury Department’s Office of Foreign Assets Control sanctioned four Iranian nationals for their role in cyberattacks against the US.
Kaiser Permanente data breach may have impacted 13.4 million patients
Healthcare service provider Kaiser Permanente disclosed a security breach that may impact 13.4 million individuals in the United States.
Police Chiefs Call for Solutions to Access Encrypted Data in Serious Crime Cases
European police warn that default E2EE could severely hamper efforts to tackle online crimes like child abuse and terrorism.
Major Security Flaws Expose Keystrokes of Over 1 Billion Chinese Keyboard App Users
Major security flaws uncovered in popular Chinese keyboard apps! Researchers found vulnerabilities that could expose users’ private keystrokes.
Ransomware payments drop to record low of 28% in Q1 2024
Ransomware actors have had a rough start this year, as stats from cybersecurity firm Coveware show that the trend of victims declining to pay the cybercriminals continues and has now reached a new record low of 28%.
À trois mois des JO 2024, le rappel cyber de l’ANSSI | Silicon
Comme avant la Coupe du monde de rugby, l’ANSSI dresse un état des lieux de la menace cyber, avec cette fois-ci les JO 2024 en point de mire.
Le consortium Kaiser révèle une violation de données de santé, 13 millions d’Américains concernés
Kaiser Permanente, l’un des plus grands organismes de gestion de soins aux États-Unis, a annoncé une fuite de données de patients après…-Cybersécurité
FTC Finalizes Health Breach Notification Rule Update
The Federal Trade Commission has finalized changes to its Health Breach Notification Rule, expanding the type of technologies that apply to regulations pertaining
FBI Director Wray Issues Warning on Chinese Cyber Attacks
FBI Director Christopher Wray highlighted the severe and ongoing cyber threats posed by the Chinese government to U.S. national.
Volkswagen Hacked – Hackers Stolen 19,000 Documents From VW Server
Volkswagen, one of the world’s leading automotive manufacturers, has fallen victim to a sophisticated hacking operation in a significant cybersecurity breach.
L’armée suisse en mission secrète avec les Américains dans les Alpes
Plus de 400 cyberattaques sont prévues dans les prochains jours en Suisse, en Autriche et aux États-Unis, dans le cadre de l’exercice Locked Shields 2024.