Blog
-
Chinese APT Exploits BeyondTrust API Key to Access U.S. Treasury Systems and Documents
![U.S. Treasury Systems](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjnW4uIKY7rtNoiGYo8nyYHd5Q4GOBJE2Wl-_rkjIV_2niquf9XG2YrD4kttbb6OreSiIdxwiE4vBkrzzBm20bS190-_oo09qmwp2jeTEXnlDUEkw6ue-paA2vVRIH9oQsPo6L7jCfHEAPMgvHQVrhhtp2ROEJRBgypM1uBCb7IA6obfG5TMReQs9QOadE5/s728-rw-e365/chinesehackers.png ‘U.S. Treasury Systems’)The United States Treasury Department said it suffered a ‘major cybersecurity incident’ that allowed suspected…
-
Misconfigured Kubernetes RBAC in Azure Airflow Could Expose Entire Cluster to Exploitation
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjohomRDDjZyJfnjTusOWprpUGv8Yf_k2fgvGvfZqhXhusmUz1WWrkZB6yKdDXD1AOxuLmvoK4MJ88QpRBm0L_zRxNchQGVI0Ib3D3piR43BICNq823bHdXod7ADdFLWRfVlp8lChQjgZwNehps4hJf0atYyxanDBDDLLHQgfqLlXhtxbAQ-HyWs-KefebO/s728-rw-e365/main.png)Cybersecurity researchers have uncovered three security weaknesses in Microsoft’s Azure Data Factory [Apache Airflow](https://airflow.apache.org/) integration that, if successfully exploited, could…
-
China-linked actors hacked US Treasury Department
China-linked threat actors breached the U.S. Treasury Department by hacking a remote support platform used by the agency.————————————————————————————————————————-China-linked threat actors…
-
An X user claimed a 7-Zip zero-day vulnerability, but 7-Zip’s creator says is a fake
An X user using the handle @NSA_Employee39 disclosed a zero-day vulnerability in the open-source file archive software 7-Zip.—————————————————————————————————————————–A verified X…
-
More telcos confirm Salt Typhoon breaches as White House weighs in
#### [Cyber-crime](/security/cyber_crime/)**10** More telcos confirm Salt Typhoon breaches as White House weighs in==================================================================**10** The intrusions allowed Beijing to ‘geolocate millions…
-
Is nowhere safe from AI slop? (Lock and Code S05E27)
*This week on the Lock and Code podcast…*You can see it on X. You can see on Instagram. It’s flooding…
-
Massive healthcare breaches prompt US cybersecurity rules overhaul
![Hospital](https://www.bleepstatic.com/content/hl-images/2024/09/18/Hospital.jpg)The U.S. Department of Health and Human Services (HHS) has proposed updates to the Health Insurance Portability and Accountability Act…
-
US Treasury Department breached through remote support platform
![Treasury Department](https://www.bleepstatic.com/content/hl-images/2024/12/30/treasury-department-razors.jpg)Chinese state-sponsored threat actors hacked the U.S. Treasury Department after breaching a remote support platform used by the federal…
-
More details emerge about RIBridges data breach; Deloitte tells state threat actors have leaked data
Threat actors’ leak site unreachable due to DoS attack; DataBreaches given exclusive preview of leak Marc Fortier reports: The hackers…
-
Beijing-linked hackers penetrated Treasury systems
![treasury](https://cms.therecord.media/uploads/format_webp/small_getty_images_VK_Iknv_C_C_Yk_unsplash_9a26b1553d.jpg?w=3840)Image: Unsplash/Treasury [Martin Matishak](/author/martin-matishak)December 30th, 2024 Beijing-linked hackers penetrated Treasury systems==================================================A Chinese state-sponsored actor was responsible for a ‘major incident’…