Latest Cybersecurity News and Articles


GitHub Vulnerability 'ArtiPACKED' Exposes Repositories to Potential Takeover

15 August 2024
A newly discovered attack vector in GitHub Actions artifacts dubbed ArtiPACKED could be exploited to take over repositories and gain access to organizations' cloud environments. "A combination of misconfigurations and security flaws can make artifacts leak tokens, both of third party cloud services and GitHub tokens, making them available for anyone with read access to the repository to consume,

New Cyber Threat Targets Azerbaijan and Israel Diplomats, Stealing Sensitive Data

15 August 2024
A previously unknown threat actor has been attributed to a spate of attacks targeting Azerbaijan and Israel with an aim to steal sensitive data. The attack campaign, detected by NSFOCUS on July 1, 2024, leveraged spear-phishing emails to single out Azerbaijani and Israeli diplomats. The activity is being tracked under the moniker Actor240524. "Actor240524 possesses the ability to steal secrets

New Gafgyt Botnet Variant Targets Weak SSH Passwords for GPU Crypto Mining

15 August 2024
Cybersecurity researchers have discovered a new variant of the Gafgyt botnet that's targeting machines with weak SSH passwords to ultimately mine cryptocurrency on compromised instances using their GPU computational power. This indicates that the "IoT botnet is targeting more robust servers running on cloud native environments," Aqua Security researcher Assaf Morag said in a Wednesday analysis.

Black Basta-Linked Attackers Target Users with SystemBC Malware

14 August 2024
An ongoing social engineering campaign with alleged links to the Black Basta ransomware group has been linked to "multiple intrusion attempts" with the goal of conducting credential theft and deploying a malware dropper called SystemBC. "The initial lure being utilized by the threat actors remains the same: an email bomb followed by an attempt to call impacted users and offer a fake solution,"

Update: New Windows SmartScreen Bypass Exploited as Zero-Day Since March

14 August 2024
A security loophole in Windows SmartScreen, known as CVE-2024-38213, was exploited by attackers as a zero-day to bypass protection. Microsoft patched this vulnerability during the June 2024 Patch Tuesday.

Prolific Malvertising Scammer Arrested and Extradited to US to Face Charges

14 August 2024
Maxim Silnikau, a Belarusian-Ukrainian cybercriminal dubbed one of the most prolific Russian-speaking hackers by the UK's NCA, has been arrested in Spain and extradited to the US.

Critical Flaw in Ivanti Virtual Traffic Manager Could Allow Rogue Admin Access

14 August 2024
Ivanti Virtual Traffic Manager has a critical flaw that could allow rogue admin access. A security update has been released for this vulnerability, tracked as CVE-2024-7593, with a CVSS score of 9.8.

NIST Formalizes World's First Post-Quantum Cryptography Standards

14 August 2024
The finalized post-quantum cryptography standards are Module-Lattice-Based Key-Encapsulation Mechanism Standard (FIPS 203), Module-Lattice-Based Digital Signature Standard (FIPS 204), and Stateless Hash-Based Digital Signature Standard (FIPS 205).

Microsoft Azure AI Health Bot Infected With Critical Vulnerabilities

14 August 2024
Multiple privilege escalation issues in Microsoft Azure's cloud-based Health Bot service opened the platform to server-side request forgery (SSRF) and could have allowed access to cross-tenant resources.

DARPA Awards $14m to Seven Teams in AI Cyber Challenge

14 August 2024
DARPA has awarded $14 million to seven teams in the AI Cyber Challenge (AIxCC) at DEFCON 32. The competition aims to find a cyber reasoning system to identify and fix vulnerabilities in open-source software.

Belarusian-Ukrainian Hacker Extradited to U.S. for Ransomware and Cybercrime Charges

14 August 2024
A coalition of law enforcement agencies coordinated by the U.K. National Crime Agency (NCA) has led to the arrest and extradition of a Belarussian and Ukrainian dual-national believed to be associated with Russian-speaking cybercrime groups. Maksim Silnikau (aka Maksym Silnikov), 38, went by the online monikers J.P. Morgan, xxx, and lansky. He was extradited to the U.S. from Poland on August 9,

75% of security leaders say threat intelligence is most valuable skill

14 August 2024
AI readiness was analyzed in a report by Pluralsight. The findings show that 56% of security professionals are concerned about AI-powered threats.

Phishing Campaign Poses as Ukraine's Security Service to Spread ANONVNC Malware

14 August 2024
Cybercriminals impersonated the Security Service of Ukraine (SSU) using malicious spam emails to target and infect the systems of Ukrainian government agencies. The attackers successfully distributed AnonVNC malware to over 100 computers.

How CIOs, CTOs, and CISOs View Cyber Risks Differently

14 August 2024
C-suite executives face the challenge of balancing technological innovation with cybersecurity resilience. A report by LevelBlue highlighted the complexities of their roles and the need for strategic cybersecurity approaches.

How to Augment Your Password Security with EASM

14 August 2024
Simply relying on traditional password security measures is no longer sufficient. When it comes to protecting your organization from credential-based attacks, it is essential to lock down the basics first. Securing your Active Directory should be a priority – it is like making sure a house has a locked front door before investing in a high-end alarm system. Once the fundamentals are covered,

Feds Seize Radar/Dispossessor Ransomware Gang Servers in US and Europe

14 August 2024
Federal authorities have seized servers belonging to the Radar/Dispossessor ransomware gang in the U.S. and Europe. The FBI dismantled dozens of servers linked to the group, which is believed to have ties to the LockBit ransomware enterprise.

Biden Administration Pledges $11 Million to Open Source Security Initiative

14 August 2024
The effort, known as the Open-Source Software Prevalence Initiative (OSSPI), aims to identify where open-source software components are being used in sectors like healthcare, transportation, and energy production to enhance national cybersecurity.

Microsoft Discloses 10 Zero-Day Bugs in Patch Tuesday Update

14 August 2024
Microsoft released its August 2024 Patch Tuesday updates, fixing 89 vulnerabilities, including nine zero-days. Among these, six zero-days were actively exploited, while three others were publicly disclosed. A tenth zero-day still remains unpatched.

Cybercriminal Duo Attracts FBI Notice by Spending Big & Living Large

14 August 2024
The FBI found that the cybercriminal duo was involved in Dark Web platforms like WWH Club, Skynetzone, and Opencard for buying, selling, and trading sensitive information and cybercriminal training.

Critical SAP Flaw Allows Remote Attackers to Bypass Authentication

14 August 2024
SAP has released a security patch package for August 2024, addressing 17 vulnerabilities, including a critical authentication bypass flaw (CVE-2024-41730) in the SAP BusinessObjects Business Intelligence Platform.