Okta reveals October security breach was much more damaging
#Breaches and Incidents
Initially estimated to affect less than 1% of users, the breach now encompasses all Okta customer support users, compromising their full names and email addresses.
CVE-2023-44302
#Vulnerabilities
Dell DM5500 5.14.0.0 and prior contain an improper authentication vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access of resources or functionality that could possibly lead to execute arbitrary code.
CVE-2023-40056
#Vulnerabilities
SQL Injection Remote Code Vulnerability was found in the SolarWinds Platform. This vulnerability can be exploited with a low privileged account.
Data breach at 23andMe, the genetic testing company, affects 6.9 million profiles
#Breaches and Incidents
Reused passwords on 23andMe allowed hackers to access personal data from millions of people, which in some cases included DNA information.
Malek Team, the Iran-linked hacker group, claims to have stolen a trove of 500GB of medical data from Ziv Medical Center
#Cyberwar
Within various Telegram posts, the group has started to publish documents, including alleged data from the Israeli Defense Forces (IDF).
The European Space Agency explores cybersecurity for space industry
#Space
ESA is developing a Space Cybersecurity Operations Centre (C-SOC) to detect and respond to emerging cyberattacks on space system infrastructures.