Latest Cybersecurity News and Articles


Report: 17 Billion Personal Records Exposed in Data Breaches in 2023

01 April 2024
Reported data breach incidents rose by 34.5% in 2023, with over 17 billion personal records compromised throughout the year, according to Flashpoint’s 2024 Global Threat Intelligence Report.

KuCoin Charged with AML Violations That Let Cybercriminals Launder Billions

01 April 2024
In an indictment, the Department of Justice claimed that KuCoin knowingly allowed U.S.-based users to trade on its platform while fulfilling none of its AML obligations, as defined by U.S. laws and regulations.

Malicious Apps Caught Secretly Turning Android Phones into Proxies for Cybercriminals

01 April 2024
Several malicious Android apps that turn mobile devices running the operating system into residential proxies (RESIPs) for other threat actors have been observed on the Google Play Store. The findings come from HUMAN's Satori Threat Intelligence team, which said the cluster of VPN apps came fitted with a Golang library that transformed the user's device into a proxy node without their knowledge.

Pentagon Lays Out Strategy to Improve Defense Industrial Base Cybersecurity

01 April 2024
The strategy, which covers fiscal years 2024 through 2027, lays out four topline goals, such as improving best practices within the industrial base. Each goal contains a subset of objectives, such as being able to recover from a cyberattack.

NIST Unveils New Consortium to Operate the NVD

01 April 2024
It’s now official: the US National Institute of Standards and Technology (NIST) will hand over some aspects of the management of the world’s most widely used software vulnerability repository to an industry consortium.

Researchers Dissect Infostealer Malware Targeting macOS Users

01 April 2024
The ongoing infostealer attacks targeting macOS users may have adopted different methods to compromise victims' Macs, but operate with the end goal of stealing sensitive data, Jamf Threat Labs said in a report published Friday.

Update: AT&T Confirms Data for 73 Million Customers Leaked on Hacker Forum

01 April 2024
While the company continues to say there is no indication their systems were breached, it has now confirmed that the leaked data belongs to 73 million current and former customers.

Vultur Android Banking Trojan Returns with Upgraded Remote Control Capabilities

01 April 2024
The Android banking trojan known as Vultur has resurfaced with a suite of new features and improved anti-analysis and detection evasion techniques, enabling its operators to remotely interact with a mobile device and harvest sensitive data. "Vultur has also started masquerading more of its malicious activity by encrypting its C2 communication, using multiple encrypted payloads that are decrypted

Poland launches inquiry into previous government’s spyware use

01 April 2024
Poland launches inquiry into previous government’s spyware use Victims of Pegasus hacking will be notified and criminal proceedings could be brought against former officials Poland has launched an investigation into its previous government’s use of the controversial spyware Pegasus, with a parliamentary inquiry under way and the possibility of criminal charges being brought against former government officials in future.Adam Bodnar, Poland’s new justice minister, told the Guardian that in coming months the government would notify people who were targeted with Pegasus. Under Polish law, they would then have the possibility of seeking financial compensation, and becoming party to potential criminal proceedings. Continue reading...

Malicious Backdoor Spotted in Linux Compression Library XZ

30 March 2024
This supply-chain compromise may have been caught early enough to prevent widespread exploitation, and it may only mainly affect bleeding-edge distros that picked up the latest xz versions right away.

Hackers Target macOS Users with Malicious Ads Spreading Stealer Malware

30 March 2024
Malicious ads and bogus websites are acting as a conduit to deliver two different stealer malware, including Atomic Stealer, targeting Apple macOS users. The ongoing infostealer attacks targeting macOS users may have adopted different methods to compromise victims' Macs, but operate with the end goal of stealing sensitive data, Jamf Threat Labs said in a report published Friday. One

Prisma Finance Crypto Theft Caps Strange Week of Platform Breaches

30 March 2024
Two prominent crypto platforms were compromised this week, with millions worth of cryptocurrency stolen by hackers with confusing motives. The two platforms include the blockchain-based game Munchables and the DeFi platform Prisma Finance.

Easy Privilege Escalation Exploit Lands for Linux Kernels

30 March 2024
A Linux privilege-escalation proof-of-concept exploit has been published that, according to the bug hunter who developed it, typically works effortlessly on kernel versions between at least 5.14 and 6.6.14.

Over 100 Malicious Packages Target Popular ML PyPi Libraries

30 March 2024
Early on March 28, 2024, the Mend.io research team detected more than 100 malicious packages targeting the most popular machine learning (ML) libraries from the PyPi registry. Among those libraries are Pytorch, Matplotlib, and Selenium.

Urgent: Secret Backdoor Found in XZ Utils Library, Impacts Major Linux Distros

30 March 2024
RedHat on Friday released an "urgent security alert" warning that two versions of a popular data compression library called XZ Utils (previously LZMA Utils) have been backdoored with malicious code designed to allow unauthorized remote access. The software supply chain compromise, tracked as CVE-2024-3094, has a CVSS score of 10.0, indicating maximum severity. It impacts XZ Utils

Coro, Building Cybersecurity for SMBs, Locks Down $100M at a $750M Valuation

29 March 2024
The lead investor in this round is One Peak, the U.K. later-stage firm focusing on enterprise tech. Previous backers Energy Impact Partners and Balderton Capital are also participating.

Chinese Hackers Target Family Members to Surveil Hard Targets

29 March 2024
According to the indictment, between 2015 and 2024, the APT31 group, linked to China’s Ministry of State Security, targeted thousands of U.S. and Western politicians, foreign policy experts, academics, journalists, and democracy activists.

Cisco Warns of Password-Spraying Attacks Targeting Secure Firewall Devices

29 March 2024
The company published a document containing recommendations against password spray attacks aimed at Remote Access VPN (RAVPN) services. The IT giant pointed out that the attacks are also targeting third-party VPN concentrators.

Dormakaba Locks Used in Millions of Hotel Rooms Could Be Cracked in Seconds

29 March 2024
Security vulnerabilities discovered in Dormakaba's Saflok electronic RFID locks used in hotels could be weaponized by threat actors to forge keycards and stealthily slip into locked rooms. The shortcomings have been collectively named Unsaflok by researchers Lennert Wouters, Ian Carroll, rqu, BusesCanFly, Sam Curry, sshell, and Will Caruana. They were reported to the Zurich-based

PyPI Suspends New User Registration to Block Malware Campaign

29 March 2024
With thousands of packages available, the repository is an attractive target for threat actors, who often upload typosquatted or fake packages to compromise software developers and potential supply-chain attacks.