Latest Cybersecurity News and Articles


CISA Releases Decider Tool to Help with MITRE ATT&CK Mapping

03 March 2023
Decider makes the mapping process easier by asking the user a series of questions about the adversary’s activity in their network. The tool also provides search and filtering functionality, and allows users to export the results to common formats.

Over 50% of personal devices were exposed to a mobile phishing attack

03 March 2023
According to a recent report, mobile phishing is on the rise with 2022 having the highest percentage of mobile phishing encounter rates.

Vice Society publishes data stolen during Vesuvius ransomware attack

03 March 2023
The Vice Society ransomware gang has published on the dark web files that it stole from Vesuvius, one month after the company announced that it had suffered a “cyber incident.”

White House cyber security strategy shifts burden to providers

03 March 2023
EXECUTIVE SUMMARY: On Thursday, the White House released an ambitious and wide-ranging cyber security plan that calls for stronger security protections on behalf of critical sectors and that calls for making software firms legally accountable for product security. According to the strategy document, “all instruments of national power” will be used in order to pre-empt […] The post White House cyber security strategy shifts burden to providers appeared first on CyberTalk.

Hatch Bank Discloses Data Breach After GoAnywhere MFT Hack

03 March 2023
Fintech banking platform Hatch Bank has reported a data breach after hackers stole the personal information of almost 140,000 customers from the company's Fortra GoAnywhere MFT secure file-sharing platform.

Experts Identify Fully-Featured Info Stealer and Trojan in Python Package on PyPI

03 March 2023
The malware, besides performing defense evasion checks to determine if it's being executed in a sandbox, establishes persistence by means of a Visual Basic script and uses transfer[.]sh for data exfiltration.

Security leaders share thoughts on Biden's cyber strategy announcement

03 March 2023
Security leaders share thoughts on the National Cybersecurity Strategy released by the Biden Administration, designed to expand and improve standards.

Mustang Panda’s Latest 'MQsTTang' Backdoor Treads New Ground With Qt and MQTT

03 March 2023
This backdoor is part of an ongoing campaign that researchers can trace back to early January 2023. Unlike most of the group’s malware, MQsTTang doesn’t seem to be based on existing families or publicly available projects.

Poland Blames Russian Hackers for Cyberattack on Tax Service Website

03 March 2023
The distributed denial-of-service (DDoS) attack occurred on Tuesday, causing the website to crash for approximately one hour and blocking users’ access to the online tax filing system.

US Cybersecurity Strategy Shifts Liability Issues to Vendors

03 March 2023
A new federal strategy to make manufacturers liable for insecure software requires an attainable safe harbor policy and could be a disincentive for them in sharing important vulnerability info with the government, according to industry observers.

Cryptojacking Campaign Targets Insecure Deployments of Redis Servers

03 March 2023
Cado Labs researchers recently discovered a new cryptojacking campaign targeting insecure deployments of Redis database servers. Threat actors behind this campaign used the free and open source command line file transfer service transfer.sh.

Nigerian Citizen Gets 11-Year US Federal Sentence for Global BEC Scam

03 March 2023
A leader of an international crime network that attempted to launder more than $25 million in fraudulently obtained funds, including through business email compromise, received a sentence of more than a decade in prison.

Information of European Hotel Chain’s Customers Found on Unprotected Elasticsearch Server

03 March 2023
An analysis conducted by researcher Anurag Sen at CloudDefense.AI showed that the exposed Falkensteiner customer data was associated with Gustaffo, a company offering IT solutions for the hospitality industry.

Hackers Steal Gun Owners' Data From Firearm Auction Website

03 March 2023
The breach exposed reams of sensitive personal data for more than 550,000 users, including customers’ full names, home addresses, email addresses, plaintext passwords, and telephone numbers.

British Retail Chain WH Smith Says Data Stolen in Cyberattack

03 March 2023
Individuals confirmed to be impacted by the incident will be notified directly. WH Smith says that special measures to support them will be put in place. This presumably will include identity protection services.

White House Unveils New National Cybersecurity Strategy

03 March 2023
The new strategy has five pillars: Defend critical infrastructure; Target and disrupt threat actors; Use market forces to improve security and resilience; Invest in resilience; and Enhance international partnerships.

Unpatched, known vulnerabilities still key driver of cyberattacks

03 March 2023
Vulnerabilities associated with Microsoft Exchange Server and some virtual private networks, many of which were first disclosed in 2017, continue to be a popular route for hackers to exploit, a report from exposure management company Tenable found.

New Flaws in TPM 2.0 Library Pose Threat to Billions of IoT and Enterprise Devices

03 March 2023
A pair of serious security defects has been disclosed in the Trusted Platform Module (TPM) 2.0 reference library specification that could potentially lead to information disclosure or privilege escalation. One of the vulnerabilities, CVE-2023-1017, concerns an out-of-bounds write, while the other, CVE-2023-1018, is described as an out-of-bounds read. Credited with discovering and reporting the

Update: Chick-fil-A confirms accounts hacked in months-long "automated" attack

03 March 2023
American fast food chain Chick-fil-A has confirmed that customers' accounts were breached in a months-long credential stuffing attack, allowing threat actors to use stored rewards balances and access personal information.

Chinese Hackers Targeting European Entities with New MQsTTang Backdoor

03 March 2023
The China-aligned Mustang Panda actor has been observed using a hitherto unseen custom backdoor called MQsTTang as part of an ongoing social engineering campaign that commenced in January 2023. "Unlike most of the group's malware, MQsTTang doesn't seem to be based on existing families or publicly available projects," ESET researcher Alexandre Côté Cyr said in a new report. Attack chains