Tag: office
-
Week in review: MS Office flaw may leak NTLM hashes, malicious Chrome, Edge browser extensions
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Unpatched MS Office flaw may leak NTLM hashes to att… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/08/18/week-in-review-ms-office-flaw-may-leak-ntlm-hashes-malicious-chrome-edge-browser-extensions/
-
Russian Midnight Blizzard Breached UK Home Office via Microsoft
First seen on hackread.com Jump to article: hackread.com/russia-midnight-blizzard-breach-uk-home-office-microsoft/
-
Microsoft Security Update Summary (13. August 2024)
Am 13. August 2024 hat Microsoft Sicherheitsupdates für Windows-Clients und -Server, für Office sowie für weitere Produkte veröffentlicht. Die Sicher… First seen on borncity.com Jump to article: www.borncity.com/blog/2024/08/14/microsoft-security-update-summary-13-august-2024/
-
Kentucky county’s clerk’s office breached in RansomHub attack
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/kentucky-countys-clerks-office-breached-in-ransomhub-attack
-
Warnung vor Microsoft Office Spoofing-Schwachstelle CVE-2024-38200
Microsoft hat zum 8. August 2024 (mit Update vom 10. August 2024) eine Warnung von einer ungepatchten Spoofing-Schwachstelle CVE-2024-38200 veröffentl… First seen on borncity.com Jump to article: www.borncity.com/blog/2024/08/12/warnung-vor-microsoft-office-spoofing-schwachstelle-cve-2024-38200/
-
Telegram Bot Selling Phishing Tools to Bypass 2FA Hack Microsoft 365 Accounts
A newly discovered phishing marketplace, ONNX Store, empowers cybercriminals to launch sophisticated attacks against Microsoft 365 and Office 365 envi… First seen on gbhackers.com Jump to article: gbhackers.com/telegram-bot-selling-phishing-tools/
-
Unpatched MS Office flaw may leak NTLM hashes to attackers (CVE-2024-38200)
A new MS Office zero-day vulnerability (CVE-2024-38200) can be exploited by attackers to grab users’ NTLM hashes, Microsoft has shared late last week…. First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/08/12/cve-2024-38200/
-
Microsoft discloses unpatched Office flaw that exposes NTLM hashes
First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/microsoft-discloses-unpatched-office-flaw-that-exposes-ntlm-hashes/
-
Microsoft discloses Office zero-day, still working on a patch
First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/microsoft-discloses-office-zero-day-still-working-on-a-patch/
-
Microsoft 365 Vulnerability Let Hackers Bypass Anti-phishing Feature
A vulnerability in Microsoft 365 (formerly Office 365) has been found that allows malicious actors to bypass anti-phishing measures. One of the anti-p… First seen on gbhackers.com Jump to article: gbhackers.com/microsoft-365-phishing-bypass/
-
UK IT provider faces $7.7 million fine for 2022 ransomware breach
The UK’s Information Commissioner’s Office (ICO) has announced a provisional decision to impose a fine of £6.09M ($7.74 million) on Advanced Computer … First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/uk-it-provider-faces-77-million-fine-for-2022-ransomware-breach/
-
Implement MFA or Risk Non-Compliance With GDPR
The UK Information Commissioner’s Office announced its intention to fine Advanced Computer Software Group £6.09 million. The post Implement MFA or Ris… First seen on securityweek.com Jump to article: www.securityweek.com/implement-mfa-or-risk-non-compliance-with-gdpr/
-
Microsoft 365 anti-phishing feature can be bypassed with CSS
Researchers have demonstrated a method to bypass an anti-phishing measure in Microsoft 365 (formerly Office 365), elevating the risk of users opening … First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/microsoft-365-anti-phishing-feature-can-be-bypassed-with-css/
-
Chinese spies target vulnerable home office kit to run cyber attacks
China’s APT40 is ramping up targeting of victims using vulnerable small and home office networking kit as command and control infrastructure, accordin… First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366592858/Chinese-spies-target-vulnerable-home-office-kit-to-run-cyber-attacks
-
Datensicherung für M365 – Ein Backup von Office-365-Daten ist unverzichtbar
First seen on security-insider.de Jump to article: www.security-insider.de/sicheres-email-management-und-datensicherheit-a-63e602a5330b09e8db75c716ca8d3de9/
-
EPA Urged to Enhance Water Sector Cybersecurity in New GAO Report
The latest report from the Government Accountability Office (GAO) highlights a pressing need for the Environmental Protection Agency (EPA) to bolster … First seen on thecyberexpress.com Jump to article: thecyberexpress.com/water-sector-cybersecurity-measures/
-
Regulatory harmonization in OT-critical infrastructure faces hurdles
In an effort to enhance cyber resilience across critical infrastructure, the Office of the National Cyber Director (ONCD) has recently released a summ… First seen on securityintelligence.com Jump to article: securityintelligence.com/news/regulatory-harmonization-ot-critical-infrastructure-hurdles/
-
UK govt links 2021 Electoral Commission breach to Exchange server
The United Kingdom’s Information Commissioner’s Office (ICO) revealed today that the Electoral Commission was breached in August 2021 because it faile… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/uk-govt-links-2021-electoral-commission-breach-to-exchange-server/
-
Workaround für Office-Fehler 30088-27 – Probleme mit der Update-Funktion in Microsoft Office
First seen on security-insider.de Jump to article: www.security-insider.de/microsoft-office-update-fehler-behebung-a-448ade35c110256962a60d9876a6c658/
-
HHS audit finds serious gaps in cloud security at agency office
First seen on scmagazine.com Jump to article: www.scmagazine.com/news/hhs-audit-finds-serious-gaps-in-cloud-security-at-agency-office
-
Phishing Attacks Hit Guernsey: ODPA Calls for Enhanced Cybersecurity Measures
In response to a notable increase in cyberattacks on Guernsey, the Office of the Data Protection Authority (ODPA) has issued a stern advisory urging h… First seen on thecyberexpress.com Jump to article: thecyberexpress.com/cyberattacks-on-guernsey/
-
Sir Alan Bates hits out at Post Office ‘incompetence’ after data breach
First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366589422/Sir-Alan-Bates-hits-out-at-Post-Office-incompetence-after-data-breach
-
5 takeaways from the White House cybersecurity workforce discussion
The Office of the National Cyber Director (ONCD) recently hosted a 3-hour discussion on creating a strong cybersecurity workforce; the results are enl… First seen on securityintelligence.com Jump to article: securityintelligence.com/news/5-takeaways-white-house-cybersecurity-workforce-oncd/
-
DDoS Attacks against the French Government Raise Concerns
The French Prime Minister’s office declared on Monday that several government agencies had fallen victim to severe cyberattacks of >>intense
-
Google Is Piloting Face Recognition for Office Security
Plus: A cloud company says notorious Russian hacker group APT29 attacked it, Chinese hackers use ransomware to hide their espionage campaigns, and a b… First seen on wired.com Jump to article: www.wired.com/story/google-face-recognition-office-safety-security-roundup/
-
Microsoft Office Updates (9. Juli 2024)
Am 9. Juli 2024 (zweiter Dienstag im Monat, Microsoft Patchday) hat Microsoft mehrere sicherheitsrelevante Updates für Microsoft Office 2016, sowie d… First seen on borncity.com Jump to article: www.borncity.com/blog/2024/07/11/microsoft-office-updates-9-juli-2024/
-
The Emerging Role of AI in Open-Source Intelligence
Recently the Office of the Director of National Intelligence (ODNI) unveiled a new strategy for open-source intelligence (OSINT) and referred to OSINT… First seen on thehackernews.com Jump to article: thehackernews.com/2024/07/the-emerging-role-of-ai-in-open-source.html
-
Microsoft 365, Office users hit by wave of ‘30088-27’ update errors
First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-365-office-users-hit-by-wave-of-30088-27-update-errors/
-
Microsoft Security Update Summary (9. Juli 2024)
Am 9. Juli 2024 hat Microsoft Sicherheitsupdates für Windows-Clients und -Server, für Office sowie für weitere Produkte veröffentlicht. Die Sicherhei… First seen on borncity.com Jump to article: www.borncity.com/blog/2024/07/09/microsoft-security-update-summary-9-juli-2024/

