Latest Cybersecurity News and Articles


Report: Software security awareness training is at an all-time low

14 January 2025
A recent report discovered only 51.2% of organizations are offering basic software security awareness training.

New proposals to counter ransomware: Have your say

14 January 2025
Help shape the proposals aimed at striking a significant blow to the ransomware criminal business model in the UK.

4 Reasons Your SaaS Attack Surface Can No Longer be Ignored

14 January 2025
What do identity risks, data security risks and third-party risks all have in common? They are all made much worse by SaaS sprawl. Every new SaaS account adds a new identity to secure, a new place where sensitive data can end up, and a new source of third party risk. Learn how you can protect this sprawling attack surface in 2025. What do identity risks, data security risks and third-party

Illicit HuiOne Telegram Market Surpasses Hydra, Hits $24 Billion in Crypto Transactions

14 January 2025
The Telegram-based online marketplace known as HuiOne Guarantee and its vendors have cumulatively received at least $24 billion in cryptocurrency, dwarfing the now-defunct Hydra to become the largest online illicit marketplace to have ever operated. The figures, released by blockchain analytics firm Elliptic, show that monthly inflows have increased by 51% since July 2024. Huione Guarantee, part

Zero-Day Vulnerability Suspected in Attacks on Fortinet Firewalls with Exposed Interfaces

14 January 2025
Threat hunters are calling attention to a new campaign that has targeted Fortinet FortiGate firewall devices with management interfaces exposed on the public internet. "The campaign involved unauthorized administrative logins on management interfaces of firewalls, creation of new accounts, SSL VPN authentication through those accounts, and various other configuration changes," cybersecurity firm

Russian-Linked Hackers Target Kazakhstan in Espionage Campaign with HATVIBE Malware

14 January 2025
Russia-linked threat actors have been attributed to an ongoing cyber espionage campaign targeting Kazakhstan as part of the Kremlin's efforts to gather economic and political intelligence in Central Asia. The campaign has been assessed to be the work of an intrusion set dubbed UAC-0063, which likely shares overlap with APT28, a nation-state group affiliated with Russia's General Staff Main

CISA Adds Second BeyondTrust Flaw to KEV Catalog Amid Active Attacks

13 January 2025
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a second security flaw impacting BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) products to the Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The vulnerability in question is CVE-2024-12686 (CVSS score: 6.6), a medium-severity bug that could

New advice helps organisations select secure operational technology products in face of rising cyber threat

13 January 2025
Guide aims to help operational technology (OT) owners and operators choose products and manufacturers that follow secure-by-design principles.

Hackers Exploit Aviatrix Controller Vulnerability to Deploy Backdoors and Crypto Miners

13 January 2025
A recently disclosed critical security flaw impacting the Aviatrix Controller cloud networking platform has come under active exploitation in the wild to deploy backdoors and cryptocurrency miners. Cloud security firm Wiz said it's currently responding to "multiple incidents" involving the weaponization of CVE-2024-50603 (CVSS score: 10.0), a maximum severity bug that could result in

⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [13 January]

13 January 2025
The cyber world’s been buzzing this week, and it’s all about staying ahead of the bad guys. From sneaky software bugs to advanced hacking tricks, the risks are real, but so are the ways to protect yourself. In this recap, we’ll break down what’s happening, why it matters, and what you can do to stay secure. Let’s turn awareness into action and keep one step ahead

Ransomware on ESXi: The mechanization of virtualized attacks

13 January 2025
In 2024, ransomware attacks targeting VMware ESXi servers reached alarming levels, with the average ransom demand skyrocketing to $5 million. With approximately 8,000 ESXi hosts exposed directly to the internet (according to Shodan), the operational and business impact of these attacks is profound. Most of the Ransomware strands that are attacking ESXi servers nowadays, are variants of the

Cybersecurity researchers discover malware targeting macOS users

13 January 2025
Cybersecurity researchers have discovered an information-stealing malware targeting macOS users. 

WordPress Skimmers Evade Detection by Injecting Themselves into Database Tables

13 January 2025
Cybersecurity researchers are warning of a new stealthy credit card skimmer campaign that targets WordPress e-commerce checkout pages by inserting malicious JavaScript code into a database table associated with the content management system (CMS). "This credit card skimmer malware targeting WordPress websites silently injects malicious JavaScript into database entries to steal sensitive payment

Expired Domains Allowed Control Over 4,000 Backdoors on Compromised Systems

13 January 2025
No less than 4,000 unique web backdoors previously deployed by various threat actors have been hijacked by taking control of abandoned and expired infrastructure for as little as $20 per domain. Cybersecurity company watchTowr Labs said it pulled off the operation by registering over 40 domain names that the backdoors had been designed to use for command-and-control (C2). In partnership with the

Large companies saw a rise in email-based cyberattacks

13 January 2025
The financial sector faces an increase in email attacks.

Microsoft Sues Hacking Group Exploiting Azure AI for Harmful Content Creation

11 January 2025
Microsoft has revealed that it's pursuing legal action against a "foreign-based threat–actor group" for operating a hacking-as-a-service infrastructure to intentionally get around the safety controls of its generative artificial intelligence (AI) services and produce offensive and harmful content. The tech giant's Digital Crimes Unit (DCU) said it has observed the threat actors "develop

DoJ Indicts Three Russians for Operating Crypto Mixers Used in Cybercrime Laundering

11 January 2025
The U.S. Department of Justice (DoJ) on Friday indicted three Russian nationals for their alleged involvement in operating the cryptocurrency mixing services Blender.io and Sinbad.io. Roman Vitalyevich Ostapenko and Alexander Evgenievich Oleynik were arrested on December 1, 2024, in coordination with the Netherlands' Financial Intelligence and Investigative Service, Finland's National Bureau of

AI and other top cybersecurity predictions for 2025

10 January 2025
The new year brings new opportunities, but also the potential for new challenges. Security leaders share some of their predictions for 2025.

Taking the Pain Out of Cybersecurity Reporting: A Practical Guide for MSPs

10 January 2025
Cybersecurity reporting is a critical yet often overlooked opportunity for service providers managing cybersecurity for their clients, and specifically for virtual Chief Information Security Officers (vCISOs). While reporting is seen as a requirement for tracking cybersecurity progress, it often becomes bogged down with technical jargon, complex data, and disconnected spreadsheets that fail to

AI-Driven Ransomware FunkSec Targets 85 Victims Using Double Extortion Tactics

10 January 2025
Cybersecurity researchers have shed light on a nascent artificial intelligence (AI) assisted ransomware family called FunkSec that sprang forth in late 2024, and has claimed more than 85 victims to date. "The group uses double extortion tactics, combining data theft with encryption to pressure victims into paying ransoms," Check Point Research said in a new report shared with The Hacker News. "