Latest Cybersecurity News and Articles


British Steel Industry Supplier Vesuvius Suffers Cyber Incident

09 February 2023
The British manufacturer confirmed that the incident “involved unauthorized access to our systems,” although it did not provide further details on what the access was or what kind of cyber actor may have been responsible.

Encrypted Messaging App Exclu Used by Criminal Groups Cracked by Joint Law Enforcement

09 February 2023
A joint law enforcement operation conducted by Germany, the Netherlands, and Poland has cracked yet another encrypted messaging application named Exclu used by organized crime groups. Eurojust, in a press statement, said the February 3 exercise resulted in the arrests of 45 individuals across Belgium and the Netherlands, some of whom include users as well as the administrators and owners of the

FTC bars GoodRx from sharing consumer information for advertising

09 February 2023
FTC takes enforcement action against GoodRx and claims GoodRx failed to notify consumers of unauthorized disclosures of personal health information. 

Italy says ransomware hackers targeting server vulnerability

09 February 2023
EXECUTIVE SUMMARY: On Sunday, Italy’s National Cybersecurity Agency (ACN) revealed that computer servers in the country had been targets in a global ransomware attack. According to the General Director of Italy’s National Cybersecurity Agency, Roberto Baldoni, the attack occurred on a massive scale, affecting thousands of computer servers. However, the number of infected machines represents […] The post Italy says ransomware hackers targeting server vulnerability appeared first on CyberTalk.

KrebsOnSecurity in Upcoming Hulu Series on Ashley Madison Breach

09 February 2023
KrebsOnSecurity will likely have a decent amount of screen time in an upcoming Hulu documentary series about the 2015 megabreach at marital infidelity site Ashley Madison. While I can't predict what the producers will do with the video interviews we shot, it's fair to say the series will explore tantalizing new clues as to who may have been responsible for the attack.

What is cyber extortion?

09 February 2023
By Mazhar Hamayun, cyber security engineer and member of the Office of the CTO at Check Point. What is cyber extortion? When we talk about cyber threats, one term is in the news more often than others: Cyber extortion. Cyber extortion is a broad term that refers to situations where a malicious actor or malicious […] The post What is cyber extortion? appeared first on CyberTalk.

Cybersecurity trends for 2023 and what to expect

09 February 2023
The Vulcan Cyber’s Cyber Risk in 2022: A 360° View report outlines cyber threats in 2023, from cloud security to healthcare attacks.

CERT-UA Alerts Ukrainian State Authorities of Remcos Software-Fueled Cyber Attacks

09 February 2023
The Computer Emergency Response Team of Ukraine (CERT-UA) has issued an alert warning of cyber attacks against state authorities in the country that deploy a legitimate remote access software named Remcos. The mass phishing campaign has been attributed to a threat actor it tracks as UAC-0050, with the agency describing the activity as likely motivated by espionage given the toolset employed. The

Vulnerability Provided Access to Toyota Supplier Management Network

09 February 2023
The issue was identified by researcher Eaton Zveare in Toyota’s Global Supplier Preparation Information Management System (GSPIMS), a portal that gives employees and suppliers access to ongoing projects, surveys, information on purchases, and more.

ICS Cybersecurity Firm Opscura Launches With $9.4 Million in Series A Funding

09 February 2023
The Series A funding round, led by Anzu Partners with participation from Dreamit and Mundi Ventures, will be used for the company’s growth and expansion in the United States.

Russian Hacker Pleads Guilty to Money Laundering Linked to Ryuk Ransomware

09 February 2023
A Russian national on February 7, 2023, pleaded guilty in the U.S. to money laundering charges and for attempting to conceal the source of funds obtained in connection with Ryuk ransomware attacks. Denis Mihaqlovic Dubnikov, 30, was arrested in Amsterdam in November 2021 before he was extradited from the Netherlands in August 2022. He is awaiting sentencing on April 11, 2023. "Between at least

CISA releases recovery script for ESXiArgs ransomware victims

09 February 2023
While many devices were encrypted, the attack campaign was largely unsuccessful as the threat actors failed to encrypt flat files, where the data for virtual disks are stored.

Stalkerware Developer Hit with $400K Fine

09 February 2023
Although Patrick Hinchy promoted the software as legal, it required users to install it on other adults’ mobile devices, which breaks federal and New York state laws, according to attorney general Leticia James.

Russian man pleads guilty to laundering Ryuk ransomware money

09 February 2023
The money laundering group, including Denis Mihaqlovic Dubnikov, used various financial transactions, including international ones, to hide the origin, location, and identity of those who received the ransom payments.

PixPirate - Advanced Android Threat Targets Brazilian Financial Organizations

09 February 2023
A fresh Android banking trojan has emerged to target Brazilian financial institutions with the intention of defrauding them using the PIX payments system. Dubbed PixPirate by the Italian cybersecurity firm Cleafy, it pertains to the most recent generation of Android banking threats that allow a hacker to automatically insert a malicious money transfer over the payment network.

Build38 Raises $14M in Series A Funding

09 February 2023
The round was led by Tikehau Capital’s European Cybersecurity Growth Fund, with participation from existing investors eCAPITAL Entrepreneurial Partners and Caixa Capital Risc.

Backdoor in Dingo Cryptocurrency Allows Creator to Steal (Nearly) Everything

09 February 2023
While the documents describing the Dingo Token claimed that the scheme charged 10% per transaction, Check Point researchers found 47 transactions where the total fee per transaction had been increased to 99%.

Ransomware Attacks Target VMware ESXi Servers Worldwide

09 February 2023
Threats surrounding VMware ESXi servers have multiplied. At least two ransomware variants, including Royal Ransomware and ESXiArgs, were found launching attacks on the servers. The latter exploits an old VMware flaw, identified as CVE-2021-21974. With this, they has joined the likes of Black Basta, LockBit, BlackMatter, AvosLocker, REvil, HelloKitty, RansomEXX, and Hive to target Linux systems.

Russian Hackers Using Graphiron Malware to Steal Data from Ukraine

09 February 2023
A Russia-linked threat actor has been observed deploying a new information-stealing malware in cyber attacks targeting Ukraine. Dubbed Graphiron by Broadcom-owned Symantec, the malware is the handiwork of an espionage group known as Nodaria, which is tracked by the Computer Emergency Response Team of Ukraine (CERT-UA) as UAC-0056. "The malware is written in Go and is designed to harvest a wide

How to Think Like a Hacker and Stay Ahead of Threats

09 February 2023
To succeed as a cybersecurity analyst, you need to understand the traits, values, and thought processes of hackers, along with the tools they use to launch their attacks.  During a webinar called The Hacker Mindset, a Red Team Researcher shared how you can use some of these tools for your own detection and prevention of breaches. He also demonstrated how an attack takes place using the Follina