LogoVulnerable U
Read
Watch
Jobs
Membership
Login
Subscribe

Archive

News

UnitedHealth: 100 Million Impacted By Change Ransomware Attack

Oct 25, 2024

•

3 min read

UnitedHealth: 100 Million Impacted By Change Ransomware Attack

This week, UnitedHealth confirmed that 100 million people had their personal and healthcare data compromised in the February Change Healthcare ransomware attack.

Newsroom
Newsroom
🎓️ Vulnerable U | #087

Oct 25, 2024

•

14 min read

🎓️ Vulnerable U | #087

Alert fatigue, government tracking via your phone, Fortinet bad times, SharePoint active exploitation, and more!

Matt Johansen
Matt Johansen
How Security Alert Fatigue is Burning Out Our Best Defenders

Oct 25, 2024

•

5 min read

How Security Alert Fatigue is Burning Out Our Best Defenders

Learn how to combat security alert fatigue, protect your mental health, and maintain vigilance. Practical tips for cybersecurity professionals facing alert overload.

Matt Johansen
Matt Johansen

Microsoft

+1

Attackers Exploiting CVE-2024-38094 in SharePoint

Oct 24, 2024

•

2 min read

Attackers Exploiting CVE-2024-38094 in SharePoint

Attackers are exploiting a Microsoft SharePoint vulnerability that the company disclosed–and patched–in July.

Newsroom
Newsroom

Vulnerability

+1

Fortinet: Critical FortiManager Flaw Exploited in Attacks

Oct 23, 2024

•

4 min read

Fortinet: Critical FortiManager Flaw Exploited in Attacks

Fortinet is warning of a critical flaw in FortiManager, which has been exploited.

Newsroom
Newsroom

News

SEC Fines Companies For ‘Misleading’ SolarWinds Incident Disclosures

Oct 22, 2024

•

3 min read

SEC Fines Companies For ‘Misleading’ SolarWinds Incident Disclosures

The SEC is cracking down on Unisys, Avaya, Check Point Software and Mimecast, saying their SolarWinds incident disclosures were too vague or downplayed the impact of the compromises.

Newsroom
Newsroom

News

+1

New Akira Ransomware Samples Point to Further Evolution

Oct 22, 2024

•

3 min read

New Akira Ransomware Samples Point to Further Evolution

The operators of the Akira ransomware-as-a-service group appear to be moving to a new encryptor.

Newsroom
Newsroom

News

Alabama Man Arrested in SEC Twitter Account Compromise

Oct 18, 2024

•

3 min read

Alabama Man Arrested in SEC Twitter Account Compromise

Eric Council Jr. allegedly performed a SIM swapping attack to pave the way for the SEC Twitter account compromise, leading to a Bitcoin price spike.

Newsroom
Newsroom

Newsletter

🎓️ Vulnerable U | #086

Oct 18, 2024

•

15 min read

🎓️ Vulnerable U | #086

Hacker behind National Public Data hack arrested, Fake North Korean IT workers are now extorting employers, Google TAG report on zero-day usage being up YoY, Russia and Iran active exploitation campaign details, and more!

Matt Johansen
Matt Johansen

News

Fake North Korean IT Workers Now Extort Employers

Oct 17, 2024

•

3 min read

Fake North Korean IT Workers Now Extort Employers

North Korean nationals using fake or stolen identities to obtain employment with companies, accessing confidential data, and demanding ransom payments from the employers.

Newsroom
Newsroom

News

Feds Indict Sudanese Men Who Allegedly Ran DDoS Ring

Oct 17, 2024

•

3 min read

Feds Indict Sudanese Men Who Allegedly Ran DDoS Ring

The Anonymous Sudan group targeted the FBI, DoD, Microsoft, and hospitals.

Newsroom
Newsroom

News

Iranian Actors Hit Critical Infrastructure Firms With Brute Force Attacks

Oct 16, 2024

•

3 min read

Iranian Actors Hit Critical Infrastructure Firms With Brute Force Attacks

CISA says that Iranian threat actors have targeted the healthcare, government, information technology, engineering, and energy sectors

Newsroom
Newsroom
Load more
Vulnerable U

Vulnerable U

Infosec's favorite weekly newsletter for news, tools, and tips with 38,000+ CISOs, founders, change-makers, and straight up hackers.


Home

Posts

Authors

Account

Upgrade

Sponsors

Sponsors