Latest Cybersecurity News and Articles


Software's 'intangible' nature raises insurance concerns in court ruling

09 February 2023
Seven Ohio justices unanimously ruled in the favor of Owners Insurance Company in a case filed against the insurer by EMOI, a medical billing software vendor in the healthcare space.

Schoolgirls across UK prepare to vie for crown of cyber security champion

09 February 2023
Girls prepare to go head-to-head at the finals of the 2023 CyberFirst Girls Competition, run by GCHQ’s National Cyber Security Centre.

New Report Reveals NikoWiper Malware That Targeted Ukraine Energy Sector

09 February 2023
The Russia-affiliated Sandworm used yet another wiper malware strain dubbed NikoWiper as part of an attack that took place in October 2022 targeting an energy sector company in Ukraine. "The NikoWiper is based on SDelete, a command line utility from Microsoft that is used for securely deleting files," cybersecurity company ESET revealed in its latest APT Activity Report shared with The Hacker

Researchers Uncover Packer Used by Several Malware to Evade Detection for 6 Years

09 February 2023
A shellcode-based packer dubbed TrickGate has been successfully operating without attracting notice for over six years, while enabling threat actors to deploy a wide range of malware such as TrickBot, Emotet, AZORult, Agent Tesla, FormBook, Cerber, Maze, and REvil over the years. "TrickGate managed to stay under the radar for years because it is transformative – it undergoes changes periodically

Schools don't pay, but ransomware attacks still increasing

09 February 2023
The COVID-19 pandemic incentivized the use of virtual platforms for students to attend school remotely, which broadened the attack surface and presented a goldmine of sensitive information belonging to educators and students.

Cybercriminals Impersonate LockBit to Target SMBs in Northern Europe

09 February 2023
In the wake of a significant rise in ransomware attacks, especially by the Lockbit locker group, a cybercriminals group was spotted targeting SMBs in Belgium and extorting by impersonating Lockbit. The incident highlights the threat of outdated software and systems, as extortion practices become increasingly popular even among less sophisticated criminals.

Hackers Use TrickGate Software to Deploy Emotet, REvil, Other Malware

09 February 2023
A malicious live software service named TrickGate has been used by numerous threat actors to bypass endpoint detection and response (EDR) protection software for over six years.

You Don't Know Where Your Secrets Are

09 February 2023
Do you know where your secrets are? If not, I can tell you: you are not alone. Hundreds of CISOs, CSOs, and security leaders, whether from small or large companies, don't know either. No matter the organization's size, the certifications, tools, people, and processes: secrets are not visible in 99% of cases. It might sound ridiculous at first: keeping secrets is an obvious first thought when

Cybercrime job ads on the dark web pay up to $20k per month

09 February 2023
Cybercrime groups are increasingly running their operations as a business, promoting jobs on the dark web that offer developers and hackers competitive monthly salaries, paid time off, and paid sick leaves.

Iranian and Russian Groups Target Organizations - Warns NCSC

09 February 2023
The NCSC-U.K warned against ongoing spear-phishing campaigns against government entities, NGOs, think tanks, academia, and others, by Russia-based SEABORGIUM and Iran-based TA453 threat actors. SEABORGIUM and TA453 spend time researching their targets' interests and contacts to create a convincing approach. The NCSC-U.K recommends reporting activity consistent with the techniques described.

New Versions of Prilex PoS Malware Blocking Contactless NFC Transactions

09 February 2023
Prilex is a highly advanced malware adopting a unique cryptographic scheme, doing real-time patching in target software, forcing protocol downgrades, manipulating cryptograms, doing GHOST transactions, and performing credit card fraud.

Russia blocks access to US ‘Rewards for Justice,’ FBI and CIA websites

09 February 2023
Russian telecommunications regulator Roskomnadzor blocked access to the U.S. State Department’s Rewards for Justice website on Friday, alongside the sites for the Central Intelligence Agency and the Federal Bureau of Investigation.

Nicholas Kathmann named LogicGate Chief Information Security Officer

09 February 2023
Nicholas Kathmann has been hired as LogicGate’s Chief Information Security Officer (CISO). Kathmann has over 20 years of security experience. 

Ransomware Attack on Indianapolis Housing Agency Leaks Sensitive Info on 200,000 Residents

09 February 2023
Security experts were hired to investigate the incident and it was revealed that names, addresses, dates of birth, and Social Security numbers were leaked during the attack.

Pro-Palestine Hackers Threaten Israeli Chemical Companies

09 February 2023
A group, named Electronic Quds Force, is threatening companies’ engineers and workers and is inviting them to resign from their positions. The attacks are retaliation against the Israeli government and its policy against Palestinians.

FTC order with ed tech provider Chegg for lax security finalized

09 February 2023
The Federal Trade Commission (FTC) finalized an order with Chegg citing careless data security practices that exposed student and staff information.

New Report Reveals NikoWiper Malware That Targeted Ukraine Energy Sector

09 February 2023
"The NikoWiper is based on SDelete, a command line utility from Microsoft that is used for securely deleting files," cybersecurity company ESET revealed in its latest APT Activity Report shared with The Hacker News.

Ukraine Targeted via New Waves of Data Wipers, Including SwiftSlicer

09 February 2023
A lot has happened on the cyber front in Ukraine and Russia ever since the war began. Joining the bandwagon, on the behalf of Russian Sandworm APT, is a pack of five wiper malware, including the new Golang-based SwiftSlicer. The new wiper has been added to the VirusTotal database recently (submitted on January 26).  Organizations are suggested to stay vigilant and implement an in-depth security strategy to keep their digital infrastructure protected.

Denial-of-Service Vulnerability Patched in Open5GS GTP Library

09 February 2023
Due to insufficient length validation in the Open5GS GTP library when parsing extension headers in GPRS tunneling protocol (GPTv1-U) messages, a protocol payload with any extension header length set to zero causes an infinite loop.

Saviynt Raises $205M; Founder Rejoins as CEO

09 February 2023
The latest funding brings the total raised by the California company to $375 million and provides a growth-mode runway for Saviynt to establish a foothold in a very competitive marketplace.