home.social

#credential-theft — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #credential-theft, aggregated by home.social.

fetched live
  1. 🚨 Oh no, another package bites the dust! The "LiteLLM" Python library reveals its true colors as a master of deception, stealing credentials faster than a ninja in a bank vault 🏴‍☠️. Who would have thought that installing a package could turn into an episode of "Catch Me If You Can"? 🎭
    github.com/BerriAI/litellm/iss #LiteLLM #PythonLibrary #CredentialTheft #CyberSecurity #SoftwareRisks #CatchMeIfYouCan #HackerNews #ngated

  2. #sicherheit geht uns alle an:
    Welche Punkte/Regelungen/Belohnungen erwartet ihr in der #responsibledisclosure Policy von einer Seite wie LinuxNews.de? Bin da aktuell etwas planlos…

    Hashtags damit wir volle Kanne in der #itsecurity Bubble einschlagen: #cybersecurity #cybersec #opsec #security #databreach #hackerangriff #hacker #itsec #credentialtheft #digitalsafety #digitalesicherheit #threatintelligence

  3. Malware on tap? Atroposia lets even novice hackers rent a toolkit that bypasses Windows defenses, steals credentials, and even targets crypto. How safe are we when cybercrime is just a subscription away?

    thedefendopsdiaries.com/atropo

    #atroposia
    #malwareasaservice
    #cybercrime
    #remotetrojan
    #credentialtheft

  4. Microsoft Teams users, beware – ransomware gangs are using ultra-smart phishing, bots, and loopholes in third-party apps to breach your defenses. Is your organization ready for this new wave of attacks?

    thedefendopsdiaries.com/ransom

    #ransomware
    #microsoftteams
    #cybersecurity
    #phishing
    #credentialtheft

  5. 🖥️ VNC might be convenient for legacy systems, but it's just as convenient for attackers...
     
    Unencrypted traffic makes it easy to intercept credentials. Some setups don’t require a password at all. And even when passwords are used, they’re often weakly stored and easily cracked.
     
    Attackers might not even need to log in, just sniff the traffic and capture screens or keystrokes without being noticed.
     
    To prove the point, our Kieran built a Python script (VncCrack.py) that cracks VNC passwords in plaintext using intercepted traffic.
     
    📌Check it out in action in our latest blog post: pentestpartners.com/security-b

    #CyberSecurity #PenTesting #VNC #LegacySecurity #DFIR #NetworkSecurity #CredentialTheft

  6. Microsoft 365 credential theft is evolving quickly!

    Attackers are no longer just stealing your login—they’re using your own AI tools like Microsoft Copilot to accelerate fraud from inside your environment.

    Our 4-minute video breaks down how threat actors are targeting Microsoft 365 accounts and weaponizing Copilot, Teams, SharePoint, and more to perform rapid reconnaissance, commit fraud, and exploit centralized trust systems.

    Watch now to learn:

    ▪ How Copilot can be used against you
    ▪ Real phishing tactics mimicking Microsoft 365, Adobe & DocuSign
    ▪ Why SSO, OAuth, and poor access controls can make attacks worse
    ▪ What your organization must do to stay ahead

    Watch the video! youtu.be/zaBwxy1Gjhc

    #Microsoft365 #CredentialTheft #Cybersecurity #CoPilot #ZeroTr #Cyberaware #Cyber #SMB #CEO #CISO #CIO #Phishing #CloudSecurity #AI #M365 #Riskmanageemnt

  7. Unauthorised network access remains a significant threat, especially for organisations lacking robust network security controls. Attackers can capture privileged credentials from automated tasks and vulnerability scanners if these tasks are configured with an excessive scope or are insufficiently protected by network or host controls...

    Read our latest blog, "Watch where you point that cred," by Tom Thomas-Litman, for insights and recommendations for securing internal networks: pentestpartners.com/security-b

    #CyberSecurity #Infosec #NetworkSecurity #VulnerabilityScanning #CredentialTheft #Honeypots #LeastPrivilege #RiskMitigation

  8. 🚨 Security Alert! 🚨 A recent attack has compromised 16 Chrome extensions, exposing over 600,000 users to data theft! 🛡️ Cyberhaven was among the first affected, with malicious code stealing sensitive information. This highlights the vulnerabilities of browser extensions. Stay safe and review your installed extensions! 🔍✨ #CyberSecurity #ChromeExtensions #DataProtection #PhishingAttack #CredentialTheft thehackernews.com/2024/12/16-c #newz