Latest Cybersecurity News and Articles


FTC Investigation Shuts Down Suspected Antivirus Scam

15 March 2024
Tech support businesses Restoro and Reimage settled with the FTC for $26 million after being accused of using scare tactics to swindle consumers out of money for unnecessary services.

Researchers Disclose Proof of Concept for New GhostRace Attack

15 March 2024
IBM and VU Amsterdam University researchers have published a study on the new GhostRace attack, which exploits Speculative Race Conditions (SRCs) and is tracked as CVE-2024-2193.

New DOD Cyber Policy Office Opening Soon, Sources Say

15 March 2024
The Pentagon is set to open its new Office of the Assistant Secretary of Defense for Cyber Policy on March 18. This office is a response to a congressionally mandated effort to elevate the military's focus on cybersecurity.

Cisco Fixed High-Severity Elevation of Privilege and DoS Bugs

15 March 2024
Cisco recently addressed several high-severity vulnerabilities in its IOS RX software. These vulnerabilities include three high-severity issues that can lead to privilege escalation and trigger denial-of-service (DoS) conditions.

New Report Suggests Surge in SaaS Assets, Employee Data Sharing

15 March 2024
Security researchers at DoControl observed a significant rise in software-as-a-service (SaaS) assets, with an average of 286,000 new assets generated weekly in 2023, representing an 189% surge from the previous year.

WEF Effort to Disrupt Cybercrime Moves Into Operations Phase

15 March 2024
The Cybercrime Atlas initiative, a collaborative effort involving law enforcement agencies, private-sector firms, and other organizations, aims to disrupt cybercriminals by mapping out relationships between criminal groups and their infrastructure.

SIM Swappers Hijacking Phone Numbers in eSIM Attacks

15 March 2024
Cybercriminals are bypassing traditional SIM swapping methods by exploiting vulnerabilities in eSIM activation processes and using stolen credentials to initiate the porting of phone numbers to their own devices.

Google Introduces Enhanced Real-Time URL Protection for Chrome Users

15 March 2024
Google on Thursday announced an enhanced version of Safe Browsing to provide real-time, privacy-preserving URL protection and safeguard users from visiting potentially malicious sites. “The Standard protection mode for Chrome on desktop and iOS will check sites against Google’s server-side list of known bad sites in real-time,” Google’s Jonathan Li and Jasika Bawa said. “If we

RedCurl Group Leverages Windows Component for Cyber Espionage

15 March 2024
The attack chain involves phishing emails with malicious attachments, the use of curl and Program Compatibility Assistant (PCA) in Windows to deliver and execute malicious payloads, and unauthorized command execution using Impacket.

Malicious Ads Targeting Chinese Users with Fake Notepad++ and VNote Installers

15 March 2024
Chinese users looking for legitimate software such as Notepad++ and VNote on search engines like Baidu are being targeted with malicious ads and bogus links to distribute trojanized versions of the software and ultimately deploy Geacon, a Golang-based implementation of Cobalt Strike. “The malicious site found in the notepad++ search is distributed through an advertisement block,” Kaspersky

CEO of Data Privacy Company Onerep.com Founded Dozens of People-Search Firms

14 March 2024
The data privacy company Onerep.com bills itself as a Virginia-based service for helping people remove their personal information from almost 200 people-search websites. However, an investigation into the history of onerep.com finds this company is operating out of Belarus and Cyprus, and that its founder has launched dozens of people-search services over the years.

Threat Actors Leverage Document Publishing Sites for Ongoing Credential and Session Token Theft

14 March 2024
Threat actors are exploiting legitimate digital document publishing (DDP) sites to host phishing lures, making it harder for traditional security controls to detect and block these attacks.

French Unemployment Agency Data Breach Impacts 43 Million People

14 March 2024
The stolen data includes sensitive personal details such as full name, date of birth, social security number, and contact information, posing a significant risk of identity theft and phishing.

White House Meets With UnitedHealth, Industry Groups on Change Healthcare Cyberattack Fallout

14 March 2024
The cyberattack on Change Healthcare, a UnitedHealth Group subsidiary, has underscored the growing cybersecurity challenge facing the healthcare sector. The outage has disrupted critical operations, impacting claims processing and patient records.

Report reveals 13,000 detected and blocked false investment domains

14 March 2024
Around 13,000 fraudulent investment domains were detected and blocked, revealing a continued trend in consumer fraud. 

JetBrains Vulnerability Exploitation Highlights Debate Over ‘Silent Patching'

14 March 2024
Rapid7's decision to release details on the vulnerabilities led to immediate exploitation by attackers, according to JetBrains. The dispute arose from Rapid7's objection to JetBrains' preference for private patch releases and silent patching.

The Effects of Law Enforcement Takedowns on the Ransomware Landscape

14 March 2024
Following the disruption of the Qakbot botnet in August 2023, ransomware affiliates have transitioned to exploiting vulnerabilities as the primary method of delivering malware.

Update: Nissan Oceania to Alert 100,000 People Affected by December 2023 Cyberattack

14 March 2024
The breach resulted in the theft of various sensitive information, including government identification like Medicare cards, driving licenses, passports, and tax file numbers.

Chinese Cybercrime: Discretion is the Better Part of Valor

14 March 2024
The Chinese cybercrime ecosystem lacks the typical features seen in Russian and English-speaking underground forums, with a focus on discreet communication and coded language to avoid drawing attention.

Kubernetes RCE Flaw Allows Full Takeover of Windows Nodes

14 March 2024
The vulnerability affects default installations of Kubernetes earlier than version 1.28.4 running on-prem deployments and Azure Kubernetes Service, highlighting the importance of patching.