Latest Cybersecurity News and Articles


CyberVolk Ransomware: A New and Evolving Threat to Global Cybersecurity

07 September 2024
CyberVolk, infamous for DDoS attacks and data breaches, has gained particular notoriety for its ransomware, detected in July 2024, due to its advanced features and capabilities.

Security leaders respond to the White House's internet routing guide

06 September 2024
The White House Office of the National Cyber Director has released a guide to improve the security of the Border Gateway Protocol, and security leaders are sharing their thoughts.

SonicWall Urges Users to Patch Critical Firewall Flaw Amid Possible Exploitation

06 September 2024
SonicWall has revealed that a recently patched critical security flaw impacting SonicOS may have come under active exploitation, making it essential that users apply the patches as soon as possible. The vulnerability, tracked as CVE-2024-40766, carries a CVSS score of 9.3 out of a maximum of 10. "An improper access control vulnerability has been identified in the SonicWall SonicOS management

GeoServer Vulnerability Targeted by Hackers to Deliver Backdoors and Botnet Malware

06 September 2024
A recently disclosed security flaw in OSGeo GeoServer GeoTools has been exploited as part of multiple campaigns to deliver cryptocurrency miners, botnet malware such as Condi and JenX, and a known backdoor called SideWalk. The security vulnerability is a critical remote code execution bug (CVE-2024-36401, CVSS score: 9.8) that could allow malicious actors to take over susceptible instances. In

GitHub Actions Vulnerable to Typosquatting, Exposing Developers to Hidden Malicious Code

06 September 2024
Threat actors have long leveraged typosquatting as a means to trick unsuspecting users into visiting malicious websites or downloading booby-trapped software and packages. These attacks typically involve registering domains or packages with names slightly altered from their legitimate counterparts (e.g., goog1e.com vs. google.com). Adversaries targeting open-source repositories across

New Android SpyAgent Campaign Steals Crypto Credentials via Image Recognition

06 September 2024
A new mobile malware called SpyAgent has been uncovered by McAfee's Mobile Research Team. This malware targets mnemonic keys used for cryptocurrency wallets by scanning for images containing them on your device.

OpenStack Ironic Users Urged to Patch Critical Vulnerability

06 September 2024
The flaw, discovered by security researchers at Red Hat and G-Research, could lead to unauthorized access to sensitive data through mishandled images processed by qemu-img.

Sami Khoury, Head of Canada’s Cyber Agency, Starts New Role in Government

06 September 2024
Sami Khoury, the head of Canada's cyber agency, is moving to a new role as the government's senior official for cybersecurity after leading the Canadian Centre for Cyber Security (CCCS) since August 2021.

Report: 83% of Organizations Experienced at Least One Ransomware Attack in the Last Year

06 September 2024
According to Onapsis, 83% of organizations experienced a ransomware attack in the past year. Of those, 46% experienced four or more attacks, and 14% faced 10 or more. The attacks resulted in at least 24 hours of downtime for 61% of respondents.

MuddyWater Hijacks RMM Software for Espionage

06 September 2024
MuddyWater, an Iranian hacker group since 2017, has been using legitimate RMM software to target organizations globally, focusing on government, military, telecom, and oil sectors.

Critical Foreman Flaw Exposes Red Hat Satellite to Unauthorized Access

06 September 2024
This authentication bypass flaw, with a CVSS score of 9.8 (the highest severity rating), could enable unauthorized users to gain administrative access to Red Hat Satellite, a commercial offering built on Foreman.

Hackers Linked to Russia and Belarus Increasingly Target Latvian Websites, Officials Say

06 September 2024
Hackers from Russia and Belarus are increasingly targeting Latvian government and critical infrastructure websites in politically motivated cyberattacks, according to Latvian cybersecurity officials.

US Posts Indictments, Rewards in Russia’s WhisperGate Hacks Against Ukraine

06 September 2024
The US has indicted members of Russian military intelligence unit 29155 for cyber-operations including WhisperGate hacks against Ukraine, offering up to $10 million for information.

Malvertising Campaign Phishes Lowe's Employees

06 September 2024
The fake landing pages closely mimicked the real Lowe's portal, prompting employees to enter their sales numbers, passwords, and security question answers, which then were sent to attackers.

White House Launches Cybersecurity Hiring Sprint To Help Fill 500,000 Job Openings

06 September 2024
The White House has launched a cybersecurity hiring sprint to fill 500,000 job openings, part of a program to address the ongoing shortage in cyber, technology, and AI positions.

CVE-2024-26581 PoC Exploit Released: Linux Systems at Risk of Root Compromise

06 September 2024
The CVE-2024-26581 PoC exploit has been disclosed, posing a risk to Linux systems by allowing root compromise. The flaw exists in the nft_set_rbtree function within the Linux kernel, enabling attackers to access sensitive data on affected systems.

Respotter: Open-Source Responder Honeypot

06 September 2024
Respotter is an open-source honeypot designed to detect attackers when they launch Responder within your environment. This application identifies active instances of Responder by exploiting its behavior when responding to any DNS query.

New research shows 12% of CISOs faced budget declines in 2024

06 September 2024
Research reveals the impact the global economy is having on security budgets. 

Goffloader: In-Memory Execution, No Disk Required

06 September 2024
Praetorian has uncovered GoffLoader, an in-memory execution tool that allows security professionals to run BOF and unmanaged Cobalt Strike PE files directly in memory without writing to disk.

Use of Predator Spyware Rebounds After a Dip From Biden Sanctions, Researchers Say

06 September 2024
Despite facing sanctions, Predator has managed to attract new customers and has been detected in various countries, including the Democratic Republic of Congo and Angola.