Latest Cybersecurity News and Articles


Ransomware Drill Targets Healthcare in Operation 911

09 August 2024
A ransomware drill focused on healthcare called Operation 911 was conducted at Black Hat USA 2024 by Las Vegas law enforcement, the FBI, and Semperis. During the drill, a simulated ransomware attack targeted a fictitious hospital.

Russia's Kursk Region Suffers ‘Massive’ DDoS Attack Amid Ukraine Offensive

09 August 2024
Kursk region in Russia was hit by a large-scale DDoS attack during Ukraine's cross-border incursion, affecting government, business websites, and critical services. NetBlocks reported disruptions in internet connectivity linked to the attacks.

RustScan: Open-Source Port Scanner

09 August 2024
RustScan is a fast and versatile open-source port scanner with Adaptive Learning for optimal performance. It can scan all 65,000 ports in 3 seconds and supports a scripting engine for customization.

Ireland's DPC Takes Twitter to Court Over AI User Data Concerns

09 August 2024
Ireland's Data Protection Commission (DPC) has taken Twitter to court over concerns regarding the use of AI user data. The DPC is specifically worried about the personal data of millions of European users being used to train AI systems for Grok.

OpenWrt Dominates, but Vulnerabilities Persist in OT/IoT Router Firmware

09 August 2024
A Forescont study showed that outdated software components in OT/IoT cellular routers and SOHO routers are linked to known vulnerabilities, with an average of 20 exploitable n-days affecting the kernel in widely used firmware images.

Ransomware Attack Costs loanDepot Almost $27 Million

09 August 2024
The $27 million in costs included insurance recoveries, investigation and remediation costs, customer notifications, legal fees, and settlement costs for a class-action lawsuit.

Researchers Unveil AWS Vulnerabilities, New 'Shadow Resource' Attack Vector

09 August 2024
The vulnerabilities were promptly patched by AWS after being reported by Aqua Security researchers. These flaws in services like CloudFormation, CodeStar, and Service Catalog could potentially lead to a full account takeover if exploited.

CISA Releases Guide to Enhance Software Security Evaluations

09 August 2024
CISA has released a guide to enhance how organizations evaluate software manufacturers' security practices, emphasizing product security over enterprise security measures for defending against cyber threats.

DOJ Charges Nashville Man for Helping North Koreans Get U.S. Tech Jobs

09 August 2024
The U.S. Department of Justice (DoJ) on Thursday charged a 38-year-old individual from Nashville, Tennessee, for allegedly running a "laptop farm" to help get North Koreans remote jobs with American and British companies. Matthew Isaac Knoot is charged with conspiracy to cause damage to protected computers, conspiracy to launder monetary instruments, conspiracy to commit wire fraud, intentional

CISA Warns of Hackers Exploiting Legacy Cisco Smart Install Feature

09 August 2024
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has disclosed that threat actors are abusing the legacy Cisco Smart Install (SMI) feature with the aim of accessing sensitive data. The agency said it has seen adversaries "acquire system configuration files by leveraging available protocols or software on devices, such as abusing the legacy Cisco Smart Install feature." It also

Security leaders respond to Olympic venue ransomware attack

08 August 2024
The Grand Palais exhibition hall in Paris experienced a ransomware attack, and security leaders are sharing their insights. 

University Professors Targeted by North Korean Cyber Espionage Group

08 August 2024
The North Korea-linked threat actor known as Kimsuky has been linked to a new set of attacks targeting university staff, researchers, and professors for intelligence gathering purposes. Cybersecurity firm Resilience said it identified the activity in late July 2024 after it observed an operation security (OPSEC) error made by the hackers. Kimsuky, also known by the names APT43, ARCHIPELAGO,

FTC approves lawsuit against TikTok for violating COPPA

08 August 2024
On behalf of the FTC, the Department of Justice sued video-sharing platform TikTok with violating the Children’s Online Privacy Protection Act.

Critical Progress WhatsUp Gold RCE Flaw Now Under Active Exploitation

08 August 2024
Threat actors are actively exploiting a critical remote code execution vulnerability in Progress WhatsUp Gold 23.1.2 and older versions, identified as CVE-2024-4885 with a CVSS v3 score of 9.8.

Alibaba's T-Head C910 RISC-V Chips Found Vulnerable to GhostWrite Attack

08 August 2024
Alibaba's T-Head C910 RISC-V CPUs have been found to have serious security flaws by computer security researchers at the CISPA Helmholtz Center for Information Security in Germany.

0.0.0.0 Day: 18-Year-Old Browser Vulnerability Impacts MacOS and Linux Devices

08 August 2024
Cybersecurity researchers have discovered a new "0.0.0.0 Day" impacting all major web browsers that malicious websites could take advantage of to breach local networks. The critical vulnerability "exposes a fundamental flaw in how browsers handle network requests, potentially granting malicious actors access to sensitive services running on local devices," Oligo Security researcher Avi Lumelsky

Cloud Storage From Microsoft, Google Used in Malware Attacks

08 August 2024
Symantec's Threat Hunter Team has observed various espionage operations utilizing cloud services, like the backdoors GoGra and Grager targeting organizations in South Asia, South East Asia, Taiwan, Hong Kong, and Vietnam.

FBI and CISA Uncover Updated TTPs and Activity of the BlackSuit Ransomware Group

08 August 2024
The BlackSuit ransomware group gains access through phishing campaigns, RDP, and vulnerability exploits, using tools like Chisel and Mimikatz for communication and credential theft.

Organizations face an average of 8 ransomware incidents per year

08 August 2024
A new report reveals an increase in ransomware incidents and shows security leaders deal with incidents an average of eight times each year. 

Ronin Network Hacked, $12 Million Returned by “White Hat” Hackers

08 August 2024
Ronin Network was hacked, resulting in the withdrawal of $12 million by "white hat" hackers who returned the stolen funds. The hackers exploited an undocumented vulnerability on the Ronin bridge, withdrawing 4,000 ETH and 2 million USDC.