Latest Cybersecurity News and Articles


TrickGate is Alive and Kicking as a Preferred Payload Carrier

09 February 2023
Experts at Check Point Research laid bare the secrets of a shellcode-based packer, dubbed TrickGate, assisting threat actors in deploying a range of malware such as TrickBot, Emotet, FormBook, Cerber, AZORult, Agent Tesla, Maze, and REvil. The malware stayed under the hood for six years owing to its transformative nature of undergoing changes periodically.

Political scientist Thomas Rid and US cyber chief Jen Easterly among speakers confirmed for CYBERUK 2023

09 February 2023
The UK government's CYBERUK 2023 event takes place 19-20 April at the ICC Belfast.

Atlassian's Jira Software Found Vulnerable to Critical Authentication Vulnerability

09 February 2023
Atlassian has released fixes to resolve a critical security flaw in Jira Service Management Server and Data Center that could be abused by an attacker to pass off as another user and gain unauthorized access to susceptible instances.

Feds Smack Banner Health With $1.25 Million Fine in Breach

09 February 2023
Federal regulators hit multistate hospital system Banner Health with a $1.25 million HIPAA fine in the wake of a 2016 hacking breach that affected nearly 3 million individuals.

Update: Ransomware Gang Stole Customer Data, Arnold Clark Confirms

09 February 2023
Automobile retailer Arnold Clark, in an update to customers, now reports that ransomware-wielding attackers who hit it over the holidays didn't just lock its systems; they also stole data.

CISA Warns of Oracle E-Business Suite and SugarCRM Vulnerabilities Under Attack

09 February 2023
The first of the two vulnerabilities is CVE-2022-21587 (CVSS score: 9.8), a critical issue impacting versions 12.2.3 to 12.2.11 of the Oracle Web Applications Desktop Integrator product.

New Variants of Prilex Blocks Contactless NFC Transactions

09 February 2023
A New Prilex PoS malware variant has been observed blocking NFC-enabled contactless credit card transactions and forcing users to insert credit cards for transactions. In fact, an attacker can configure the malware to capture card data only if it is a Black/Infinite or Corporate card. Retailers are suggested to use the right security solution in place in PoS modules to stop malicious code from tampering with the transactions.

Truffle Security relaunches XSS Hunter tool with new features

09 February 2023
XSS Hunter is a popular open source tool for identifying cross-site scripting (XSS) bugs in websites. An online version was previously maintained by its creator Mandatory (Matthew Bryant).

After LockBit Red and LockBit Black, Operators Launch LockBit Green

09 February 2023
Operators of the LockBit ransomware rolled out a new version of their malware, dubbed LockBit Green. It is the modified version of the ESXI ransomware variant and is created to launch attacks against cloud-based services. Moreover, researchers highlighted that the new LockBit variant has a significant overlap with the Conti(v3) ransomware, whose source code was leaked last year.

Malvertising Attacks are Distributing .NET Malware Loaders

09 February 2023
The loaders, dubbed MalVirt, are implemented in .NET and use virtualization through the legitimate KoiVM virtualizing protector for .NET applications, according to threat researchers with SentinelOne's SentinelLabs.

Iranian OilRig Hackers Using New Backdoor to Exfiltrate Data from Govt. Organizations

09 February 2023
The Iranian nation-state hacking group known as OilRig has continued to target government organizations in the Middle East as part of a cyber espionage campaign that leverages a new backdoor to exfiltrate data. "The campaign abuses legitimate but compromised email accounts to send stolen data to external mail accounts controlled by the attackers," Trend Micro researchers Mohamed Fahmy, Sherif

The Pivot: How MSPs can Turn a Challenge Into a Once-in-a-Decade Opportunity

09 February 2023
Cybersecurity is quickly becoming one of the most significant growth drivers for Managed Service Providers (MSPs). That's the main insight from a recent study from Lumu: in North America, more than 80% of MSPs cite cybersecurity as a primary growth driver of their business. Service providers have a huge opportunity to expand their business and win new customers by developing their cybersecurity

Feds get guilty plea in Ubiquiti data extortion case

09 February 2023
A former employee of Ubiquiti pleaded guilty on Thursday in a Manhattan federal courtroom on charges related to perpetrating an audacious insider attack on his employer, in which he accessed a trove of confidential data before demanding a ransom.

TgToxic Malware’s Automated Framework Takes Aim at Android Users in Taiwan, Thailand, and Indonesia

09 February 2023
TgToxic has been targeting Android mobile users in Taiwan, Thailand, and Indonesia since July 2022. The malware steals users’ credentials and assets such as cryptocurrency from digital wallets, as well as money from bank and finance apps.

Rising ‘Firebrick Ostrich’ BEC Group Launches Industrial-Scale Cyberattacks

09 February 2023
Business email compromise (BEC) has become one of the most popular methods of financially motivated hacking. And over the past year, one group, in particular, has demonstrated just how quick, easy, and lucrative it really is.

HPE, NetApp warn of critical open-source bug

09 February 2023
HPE noted a use-after-free vulnerability in its OneView infrastructure management platform that allows remote attackers to execute arbitrary code on targeted systems, leak data, or create conditions ripe for a DoS attack.

Google Shells Out $600,000 for OSS-Fuzz Project Integrations

09 February 2023
Launched in 2016, OSS-Fuzz is meant to help identify vulnerabilities in open-source software through continuous fuzzing, with a declared goal of making common software infrastructure more secure.

Chaim Mazal appointed Gigamon Chief Security Officer

09 February 2023
Chaim Mazal has been named Chief Security Officer (CSO) at Gigamon and will take on a variety of responsibilities including IT and global security. 

IT Leaders Reveal Cyber Fears Around ChatGPT

09 February 2023
Despite its enormous potential, information security experts have raised concerns over the possible use of ChatGPT by threat actors to launch attacks, including malware development and convincing social engineering scams.

Threat Actors Use ClickFunnels to Bypass Security Services

09 February 2023
According to security researchers at Avanan, threat actors have been exploiting ClickFunnels' ability to create pages with malicious links and ultimately conduct credential-harvesting attacks.