Wednesday , April 9 2025

infosecbulletin

Vast Voter Data Leaks Cast Shadow Over Indonesia’s 2024 Presidential Election

Indonesia

Investigators from Resecurity’s HUNTER (HUMINT) have found that Indonesia is increasingly being targeted by cyber-threat actors who have staged attacks that pose significant long-term risks to the integrity of the country’s elections. These findings coincide with the critical and fast-approaching Indonesian presidential election set to take place in February this …

Read More »

Juniper warns of critical RCE bug in firewalls and switches

juniper

Juniper Networks released security updates to fix a critical vulnerability in its SRX Series firewalls and EX Series switches. The vulnerability allows remote code execution (RCE) without authentication. A critical security flaw named CVE-2024-21591 was found in devices’ J-Web configuration interfaces. It can be exploited by unauthenticated attackers to gain …

Read More »

CISA alert
CISA Releases Nine Industrial Control Systems Advisories

CISA

CISA issued nine advisories about Industrial Control Systems (ICS) on January 11, 2024, to give timely information about security issues, vulnerabilities, and exploits related to ICS. ICSA-24-011-03 Rapid Software LLC Rapid SCADA ICSA-24-011-04 Horner Automation Cscape ICSA-24-011-05 Schneider Electric Easergy Studio ICSA-24-011-06 Siemens Teamcenter Visualization and JT2Go ICSA-24-011-07 Siemens Spectrum …

Read More »

Boost Bank and AEON Bank
Two new digital banks start operations in Malaysia

The central bank of Malaysia, Bank Negara, has approved two more digital banks to begin operations. The two banks are Boost Bank, a collaboration between fintech company Boost and RHB Banking Group, and AEON Bank, a subsidiary of AEON Financial Service. In 2022, Bank Negara granted digital banking licenses to …

Read More »

Talk time decreased 841 crore minutes, SMS by 708 crore
Telecom sector operators in business challenges

Telco

The technology change has brought challenges to all sectors. Many sectors are struggling to adapt and some are facing a crisis. Telecom operators are also affected as people are using talktime and SMS less. The usage has decreased significantly in the past year. People nowadays prefer using data-based communication applications …

Read More »

CISA Adds One Known Exploited Vulnerability to Catalog

CVE

CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2023-29357 Microsoft SharePoint Server Privilege Escalation Vulnerability. These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise. CVE-2023-29357 Detail: Description: Microsoft SharePoint …

Read More »

Microsoft to train 100,000 AI developers in India

Microsoft

Microsoft has launched AI Odyssey, a new initiative to train 100,000 developers in India in AI. The program aims to provide a month-long learning experience for developers to gain and demonstrate AI skills for important projects aligned with business goals. Microsoft’s AI Odyssey program aims to provide developers with opportunities …

Read More »
Trending Threat Actor: Lockbit, Lazarus, Blackcat, Cybercriminals, SaltTyphoon, Scttered Spider, RedGolf, BlueBravo, North Korean Hackers, ...
Trending Malware: SocGholish, Colabtstrike, Linuxkernel, Plugx, Lockbit, Xmrig, REMCOM RAT, Play Ransomware, LummaC2, HijackLoader, BugSleep
Trending vulnerability:CVE: 2024-21887, CVE: 2024-6387, CVE: 2024-46805, CVE: 2017-11882, CVE: 2021-44228, CVE:2024-40348, CVE: 2024-38112
Techniques: T1059.001, T1082, T1486, T1190, T1083
Tactics: TA0007, TA0001, TA0005, TA0011
04:36