Remove 12
article thumbnail

Google fixed the second actively exploited Chrome zero-day of 2023

Security Affairs

Google rolled out emergency fixes to address another actively exploited high-severity zero-day flaw, tracked as CVE-2023-2136 , in its Chrome web browser. The vulnerability is an Integer overflow in the Skia graphics library, the issue was reported by Clément Lecigne of Google’s Threat Analysis Group on April 12, 2023.

article thumbnail

Catches of the Month: Phishing Scams for November 2023

IT Governance

Welcome to our November 2023 catches of the month feature, which examines recent phishing scams and the tactics criminals use to trick people into compromising their data. According to JD Supra , Booking.com confirmed in a “limited statement” on 12 November that it was investigating the incident.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

The Week in Cyber Security and Data Privacy: 30 October – 5 November 2023

IT Governance

At the end of each month, these incidents – and any others that we find – will be used to inform our monthly analysis of data breaches and cyber attacks. Records breached: According to the library’s 4 November update , there is “no evidence that the personal information of our staff or customers has been compromised”.

article thumbnail

Introducing the DRM-Report Q1 2023: Unveiling the Current State of Ransomware

Security Affairs

DRM Dashboard Ransomware Monitor released the first quarterly report for the year 2023 about the activities of ransomware groups globally. DRM Dashboard Ransomware Monitor, an independent platform of cybersecurity monitoring, is pleased to release the quarterly the DRM-Report for the first quarter of 2023.

article thumbnail

51 Must-Know Phishing Statistics for 2023

IT Governance

It’s why, in this blog, we’ve collected the most crucial phishing statistics you need to understand the threat. Verizon’s 2023 DBIR found that 36% of all data breaches involved phishing. The same study discovered that links to bogus websites were less successful, with employees only following the link 12% of the time.

Phishing 111
article thumbnail

FCC Updated Data Breach Notification Rules Go into Effect Despite Challenges

Hunton Privacy

They were adopted in December 2023 pursuant to an FCC Report and Order (the “Order”). The Order was published in the Federal Register on February 12, 2024, and the petitions were filed shortly thereafter. Read our previous blog post to learn more about the Rules.

article thumbnail

CISA adds MinIO, PaperCut, and Chrome bugs to its Known Exploited Vulnerabilities catalog

Security Affairs

Cybersecurity and Infrastructure Security Agency (CISA) has added the following three new issues to its Known Exploited Vulnerabilities Catalog : CVE-2023-28432 (CVSS score – 7.5) – MinIO Information Disclosure Vulnerability. CVE-2023-2136 – Google Chrome Skia Integer Overflow Vulnerability.

IT 97