Marcel SIneM(S)US · @simsus
179 followers · 3286 posts · Server social.tchncs.de
C.H. ✅ · @c_th1
120 followers · 366 posts · Server digitalcourage.social

DOPPELTE Supply Chain Attacke!? Wie gehackt wurde.

piped.sp-codes.de/watch?v=do9K

#hackernews #3cx

Last updated 2 years ago

Redhotcyber · @redhotcyber
477 followers · 964 posts · Server mastodon.bida.im

3CX è stata hackerata da un doppio attacco alla supply chain

Ne avevamo parlato qualche tempo fa di questo . Ma da un’indagine più che ha colpito la il mese scorso, è stato rilevato che l’incidente è stato causato da un’altra compromissione della catena di .

3CX è uno sviluppatore di soluzioni VoIP il cui telefonico 3CX è utilizzato da più di 600.000 aziende in tutto il mondo, con più di 12.000.000 di utenti giornalieri.

redhotcyber.com/post/3cx-e-sta

#incidente #informatico #approfondita #3cx #approvvigionamento #sistema #redhotcyber #informationsecurity #ethicalhacking #dataprotection #hacking #cybersecurity #cybercrime #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #privacy #infosecurity

Last updated 2 years ago

Aida Akl · @AAKL
268 followers · 653 posts · Server noc.social

#cybersecurity #3cx

Last updated 2 years ago

Anonymous :anarchism: 🏴 · @YourAnonRiots
5513 followers · 33688 posts · Server mstdn.social

hackers demonstrate new levels of sophistication with the recent supply chain attack targeting . Researchers have revealed that it's the first time a software supply chain attack has led to another attack.

thehackernews.com/2023/04/nk-h

#InfoSec #CyberSecurity #3cx #NorthKorean

Last updated 2 years ago

🔓 hit by a groundbreaking double ! 😲 North Korean hackers target businesses via a compromised employee's PC. Stay vigilant and protect your systems! 💻🛡️ cyber-consult.org/3cx-voip-pro

#3cx #SupplyChainAttack #crypto #cybersecurity #voip #malware #gopurambackdoor

Last updated 2 years ago

dispatch · @dispatch
537 followers · 3059 posts · Server ioc.exchange
Marcel SIneM(S)US · @simsus
180 followers · 3172 posts · Server social.tchncs.de

This week's episode of Talos Takes has the latest advice from Talos Incident Response on how to prepare for cyber attacks. We're here to lend a helping hand to put together everything from a software bill of goods to tabletop exercises to help your organization prepare for the next time a or happens buzzsprout.com/2018149/1264991

#log4j #3cx #supplychain

Last updated 2 years ago

Vince · @VModifiedMind
194 followers · 2857 posts · Server know.me.uk

Another day, another compromised company. Credit to Affinity, they admitted it & clear how it happened etc. Other companies,lookong at you could learn something!

Unfortunately we have become aware that personal data relating to users of the Affinity Forums (forum.affinity.serif.com/) may have been accessed from outside the company following a cyber attack on 6 April 2023. It appears that an administrator’s account was compromised, allowing access to our forum members list.

#3cx #databreaches

Last updated 2 years ago

ottoto · @ottoto2017
24 followers · 171 posts · Server prattohome.com

「北朝鮮のハッカーが 3CX サプライ チェーン攻撃の首謀者であることが判明 」: The Hackernews

クラウドPBX(電話)の3CX のネットワークに侵入されたことが発端。広く使われるアプリのベンダーは気を引き締めなくては。

thehackernews.com/2023/04/laza

# prattohome # TheHackernews

#3cx #サプライチェーン攻撃

Last updated 2 years ago

Nils Weisensee · @nw
513 followers · 573 posts · Server ioc.exchange
Amethyst Basilisk · @amethyst
97 followers · 336 posts · Server haunted.computer

Man ya'll keep posting scripts to decrypt the URLs in the icons in the attack but don't post the icons! Where can I get the original icons? Anyone have any clue?

#3cx

Last updated 2 years ago

ITSEC News · @itsecbot
1235 followers · 34465 posts · Server schleuss.online

S3 Ep129: When spyware arrives from someone you trust - Scanning tools, supply-chain malware, Wi-Fi hacking, and why there should be TWO World Ba... nakedsecurity.sophos.com/2023/ -fi

#3cx #wi #privacy #podcast #malware #dataloss #supplychain #worldbackupday #nakedsecuritypodcast

Last updated 2 years ago

Nightfighter · @Optimus
25 followers · 1152 posts · Server social.tchncs.de
Marcel SIneM(S)US · @simsus
176 followers · 3023 posts · Server social.tchncs.de

NCSC advice following a security issue in the DesktopApp.

You may have seen reports that threat actors are actively exploiting a severe security issue in the 3CX DesktopApp.

Affected versions are:

18.12.407 and 18.12.416 for Windows platforms

18.11.1213, 18.12.402, 18.12.407 and 18.12.416 for MacOS

This correlates to Update 7 for Windows, and Updates 6 and 7 for MacOS.

The vendor 3CX has published a security alert which advises customers running affected versions to uninstall the software and use the browser-based web app (PWA) until a new version is available. Full instructions are provided.

The NCSC strongly advises all organisations running this software to consult the vendor advisory and take the recommended actions in it.

ncsc.gov.uk/news/3cx-desktopap

#3cx #security #vulnerabilty #exploit

Last updated 2 years ago

Sanesecurity · @sanesecurity
3 followers · 224 posts · Server fosstodon.org

Need a quick check for compromise... Use this database... github.com/Sanesecurity/bad3cx

#3cx

Last updated 2 years ago

Ultraviolet · @VioletSullivan
40 followers · 66 posts · Server risk.social

Looks like MAY actually be rainstorm … with much less damage than expected.

“Kaspersky has now found that the combed through the victims infected with its corrupted software to ultimately target fewer than 10 machines—at least as far as @Kaspersky could observe so far—and that they seemed to be focusing on firms with “surgical precision.””

wired.com/story/3cx-supply-cha

#3cxpocalypse #3cx #hackers #cryptocurrency

Last updated 2 years ago