Updates
- Microsoft April 2023 Patch Tuesday fixes 1 zero-day, 97 flaws
- Microsoft’s April 2023 Patch Tuesday Addresses 97 CVEs (CVE-2023-28252)
- Microsoft April 2023 Patch Tuesday - SANS Internet Storm Center
- Why you should patch the Windows QueueJumper vulnerability immediately
- New Windows password tool runs into compatibility problems
- Microsoft: Windows LAPS is incompatible with legacy policies
- Google Chrome emergency update fixes first zero-day of 2023
- SAP releases security updates for two critical-severity flaws
- Apple fixes recently disclosed zero-days on older iPhones and iPads
Incidents
- Darktrace Denies Getting Hacked After Ransomware Group Names Company on Leak Site
- Western Digital Hackers Demand 8-Figure Ransom Payment for Data
- Siemens Metaverse exposes sensitive corporate data
- Tesla Sued Over Workers' Alleged Access to Car Video Imagery
- Hyundai data breach exposes owner details in France and Italy
Threats
- Stolen ChatGPT premium accounts up for sale on the dark web
- Hackers start abusing Action1 RMM in ransomware attacks
- Attackers Hide RedLine Stealer Behind ChatGPT, Google Bard Facebook Ads
- Windows zero-day vulnerability exploited in ransomware attacks
- Hacked sites caught spreading malware via fake Chrome updates
- Microsoft shares guidance to detect BlackLotus UEFI bootkit attacks
- iPhones hacked via invisible calendar invites to drop QuaDream spyware
- Newly Discovered "By-Design" Flaw in Microsoft Azure Could Expose Storage Accounts to Hackers
Malware
- Vice Society ransomware uses new PowerShell data theft tool in attacks
- Legion: New hacktool steals credentials from misconfigured sites
Cyber Crime
- Police disrupts $98M online fraud ring with 33,000 victims
- Russian hackers linked to widespread attacks targeting NATO and EU
- Five arrested after 33,000 victims lose $98M to online investment fraud
- Lazarus Hacker Group Evolves Tactics, Tools, and Targets in DeathNote Campaign
Misc.
- European privacy watchdog creates ChatGPT task force
- Windows 11 is getting a new 'Presence sensing' privacy setting
- Google Launches New Cybersecurity Initiatives to Strengthen Vulnerability Management
- 40% of IT security pros told not to report data loss
- Why reporting an incident only makes the cybersecurity community stronger
- Making Cybersecurity More Inclusive for Women
- Microsoft Bing introduces ChatGPT answers in search results