Bleepingcomputer.com: Latest Cybersecurity News

 "Malicious PyPi packages create CloudFlare Tunnels to bypass firewalls."

Views expressed in this cybersecurity, cybercrime update are those of the reporters and correspondents.  Accessed on 08 January 2023, 1432 UTC.  Content provided by "Bleepingcomputer.com."

Source: https://www.bleepingcomputer.com/

Please click link or scroll down to read your selections.

Russ Roberts (https://www.hawaiicybersecurityjournal.net and https://paper.li/RussellRoberts).

Gain new programming skills with this premium training bundle deal

  • The demand for coding skills is growing fast, even in areas where code is secondary to other work. This 14-course bundle can broaden your knowledge of code for $24.99, 99% off the $2786 MSRP.

    • BLEEPINGCOMPUTER DEALS
    •  
    • JANUARY 08, 2023
    •  
    • 08:12 AM
    •  
    • Comment Count 0
  • pypi python
     

Malicious PyPi packages create CloudFlare Tunnels to bypass firewalls

  • Six malicious packages on PyPI, the Python Package Index, were found installing information-stealing and RAT (remote access trojan) malware while using Cloudflare Tunnel to bypass firewall restrictions for remote access.

  • Amazon AWS
     

Get started in Amazon Web Services with this training bundle deal

  • AWS is only going to become more common, and knowing its ins and outs can help advance your career. This half-dozen course bundle gets you up to speed for $59, 96% off the $1770 MSRP.

    • BLEEPINGCOMPUTER DEALS
    •  
    • JANUARY 07, 2023
    •  
    • 08:12 AM
    •  
    • Comment Count 0
  • Bitcoin
     

The Week in Ransomware - January 6th 2023 - Targeting Healthcare

  • This week saw a lot of ransomware news, ranging from new extortion tactics, to a ransomware gang giving away a free decryptor after attacking a children's hospital.

  • Chick-fil-A
     

Chick-fil-A investigates reports of hacked customer accounts

  • American fast-food restaurant chain Chick-fil-A is investigating what it described as "suspicious activity" linked to some of its customers' accounts.

  • Air France-KLM
     

Air France and KLM notify customers of account hacks

  • Air France and KLM have informed Flying Blue customers that some of their personal information was exposed after their accounts were breached.

  • VSCode
     

VSCode Marketplace can be abused to host malicious extensions

  • Threat analysts at AquaSec have experimented with the security of VSCode Marketplace and found that it's surprisingly easy to upload malicious extensions from accounts that appear verified on the platform.

  • FCC
     

FCC wants telecom carriers to report data breaches faster

  • The U.S. Federal Communications Commission wants to strengthen federal law enforcement and modernize breach notification requirements for telecommunications companies so that they notify customers of security breaches faster.

  • Amazon AWS
     

Amazon S3 will now encrypt all new data with AES-256 by default

  • Amazon Simple Storage Service (S3) will now automatically encrypt all new objects added on buckets on the server side, using AES-256 by default.

  • Windows 10
     

Microsoft shares temporary fix for ODBC database connection issues

  • Microsoft has released a temporary fix for a known issue impacting Windows apps using ODBC database connections after installing the November 2022 Patch Tuesday updates.

  • CompTIA
     

This 13 course CompTIA exam prep bundle is just $69 this week

  • Ready to upgrade your IT training and maybe earn an additional certification or two this new year? The Complete 2023 CompTIA Certification Course Super Bundle is just $69 for a limited time during the New Year sale.

    • BLEEPINGCOMPUTER DEALS
    •  
    • JANUARY 06, 2023
    •  
    • 07:26 AM
    •  
    • Comment Count 0
  • Rackspace
     

Rackspace: Customer email data accessed in ransomware attack

  • Rackspace revealed on Thursday that attackers behind last month's incident accessed some of its customers' Personal Storage Table (PST) files which can contain a wide range of information, including emails, calendar data, contacts, and tasks.

  • Key Decryptor Unlock
     

Bitdefender releases free MegaCortex ransomware decryptor

  • Antivirus company Bitdefender has released a decryptor for the MegaCortex ransomware family, making it possible for victims of the once notorious gang to restore their data for free.

  • Same you, new job with the Resoume resumé creator deal
     

Same you, new job with the Resoume resumé creator deal

  • How you present yourself is fundamental to how you move ahead in your career. This lifetime subscription to Resoume helps you put forward your best professional self for $24.99, 74% off the $95 MSRP.

    • BLEEPINGCOMPUTER DEALS
    •  
    • JANUARY 05, 2023
    •  
    • 02:16 PM
    •  
    • Comment Count 0
  • Apple
     

France fines Apple for targeted App Store ads without consent

  • France's data protection authority (CNIL) has fined Apple €8,000,000 ($8.5M) for collecting user data for targeted advertising on the App Store without requesting or securing the user's consent.

  • Artificial Intelligence AI
     

ChatGPT banned in NYC schools over learning impact concerns

  • The NYC Department of Education has banned the use of ChatGPT by students and teachers in New York City schools as there are serious concerns about its use hampering learning and leading to misinformation.

  • WhatsApp
     

WhatsApp adds proxy support to help bypass Internet blocks

  • Starting today, WhatsApp now allows users to connect via proxy servers due to Internet shutdowns or if their governments block the service in their country.

  • Android
     

SpyNote Android malware infections surge after source code leak

  • The Android malware family tracked as SpyNote (or SpyMax) has had a sudden increase in detections in the final quarter of 2022, which is attributed to a source code leak of one of its latest, known as 'CypherRat.'

  • Hacker VR Spyware Surveillance
     

Hackers use CAPTCHA bypass to make 20K GitHub accounts in a month

  • South African threat actors known as 'Automated Libra' has been improving its techniques to make a profit by using cloud platform resources for cryptocurrency mining.

  • Security Cybersecurity
     

Start 2023 with this cybersecurity course subscription for less than $55

  • There's a limited-time deal on platinum memberships to InfoSec4TC: Lifetime access is now $54.99, down from the previous sale price of $69.00. Don't wait too long to seize the day, though. This and other New Year's discounts expire by Jan. 9.

    • BLEEPINGCOMPUTER DEALS
    •  
    • JANUARY 05, 2023
    •  
    • 07:12 AM
    •  
    • Comment Count 0
VIEW MORE

Comments

Popular posts from this blog

SecurityWeek Briefing.

SecurityWeek Briefing.

Cyber War News Wire.