Latest Cybersecurity News and Articles


Russian Independent Media Outlet Meduza Faces ‘Most Intense Cyber Campaign’ Ever

14 March 2024
The attacks on Meduza's systems include efforts to block mirror servers, launch DDoS attacks, compromise crowdfunding infrastructure, and target journalists with threats and spyware.

Ande Loader Malware Targets Manufacturing Sector in North America

14 March 2024
The threat actor known as Blind Eagle has been observed using a loader malware called Ande Loader to deliver remote access trojans (RATs) like Remcos RAT and NjRAT. The attacks, which take the form of phishing emails, targeted Spanish-speaking users in the manufacturing industry based in North America, eSentire said. Blind Eagle (aka APT-C-36) is a financially motivated threat actor&

DarkGate Malware Exploits Recently Patched Microsoft Flaw in Zero-Day Attack

14 March 2024
A DarkGate malware campaign observed in mid-January 2024 leveraged a recently patched security flaw in Microsoft Windows as a zero-day using bogus software installers. “During this campaign, users were lured using PDFs that contained Google DoubleClick Digital Marketing (DDM) open redirects that led unsuspecting victims to compromised sites hosting the Microsoft Windows SmartScreen bypass

Fortinet Warns of Severe SQLi Vulnerability in FortiClientEMS Software

14 March 2024
Fortinet has warned of a critical security flaw impacting its FortiClientEMS software that could allow attackers to achieve code execution on affected systems. "An improper neutralization of special elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiClientEMS may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted

Magnet Goblin Exploits 1-Day Bugs, Deploys Nerbian RAT

14 March 2024
The threat actor group Magnet Goblin is rapidly exploiting newly disclosed vulnerabilities to target public-facing servers and edge devices, warned Check Point. This particular instance was an Ivanti Connect Secure exploitation campaign that resulted in the deployment of a Linux version of a malware called NerbianRAT and a JavaScript credential stealer named WARPWIRE. Exploiting 1-day vulnerabilities, this group's attacks on public-facing servers underscore the critical importance of timely patching and continuous monitoring to protect against sophisticated cyber threats.

DDoS attacks reach critical levels in 14 seconds

13 March 2024
Distributed denial of service (DDoS) attacks were analyzed in a recent report by Link11, finding a 70% increase in DDoS attacks in the last year.

New Research Exposes Security Risks in ChatGPT Plugins

13 March 2024
These vulnerabilities could allow attackers to take control of organization accounts on third-party platforms and access sensitive user data, including Personal Identifiable Information (PII).

Cybercriminals Deploying VCURMS and STRRAT Trojans via AWS and GitHub

13 March 2024
The VCURMS RAT uses a Proton Mail email address for communicating with a command-and-control server and can extract and execute commands from specific subject lines in emails.

Billion-Dollar Boat Seller MarineMax Reports Cyberattack to SEC

13 March 2024
Although the boat-selling company initiated its incident response and business continuity protocols to contain the incident, there was some disruption to its business operations.

Report: Cloud Account Attacks Surged 16-Fold in 2023

13 March 2024
A report by Red Canary highlighted that cloud account compromises using the MITRE ATT&CK technique T1078.004 surged to the fourth most prevalent technique used by threat actors, impacting three times as many organizations compared to 2022.

Tweaks Stealer Targets Roblox Users Through YouTube and Discord

13 March 2024
The attackers leverage YouTube by enticing users to watch videos on "How to increase FPS" that contain links to their Discord groups. Once they join, the attackers provide them with links to malicious files disguised as game tweaks and modifications.

Spanish High Court Upholds Temporary Worldcoin Ban

13 March 2024
The Spanish High Court upheld a three-month ban on Worldcoin, a digital identity and cryptocurrency platform, due to privacy concerns raised by the country's data regulator.

QNAP systems announces patches for several vulnerabilities

13 March 2024
Patches have been released to address vulnerabilities that could possibly lead to security system breaches.  

FakeBat Delivered via Several Active Malvertising Campaigns

13 March 2024
The malvertising campaigns employed a new redirection chain, abusing legitimate websites to evade detection, with several campaigns impersonating brands such as OneNote, Epic Games, and the Braavos smart wallet application.

Demystifying a Common Cybersecurity Myth

13 March 2024
One of the most common misconceptions in file upload cybersecurity is that certain tools are “enough” on their own—this is simply not the case. In our latest whitepaper OPSWAT CEO and Founder, Benny Czarny, takes a comprehensive look at what it takes to prevent malware threats in today’s ever-evolving file upload security landscape, and a big part of that is understanding where the

Tor’s New WebTunnel Bridges Mimic HTTPS Traffic to Evade Censorship

13 March 2024
While some countries have found ways to detect and block traditional Tor connections, the Tor Project has developed WebTunnel to make it harder for censors to block connections by blending the traffic with HTTPS-encrypted web traffic.

Nozomi Networks Raises $100 Million to Help Secure Critical Infrastructure

13 March 2024
The investment, which includes contributions from Mitsubishi Electric and Schneider Electric, underscores the growing need for OEM-agnostic security solutions in the face of escalating attacks on critical infrastructure worldwide.

Over 2.3 Million Records of Family Entertainment Business Exposed in Data Leak

13 March 2024
Cybersecurity Researcher, Jeremiah Fowler, discovered a non-password protected database containing over 2.3 million documents belonging to Kids Empire, a US operator of recreational centers.

US Intelligence Predicts Upcoming Cyber Threats for 2024

13 March 2024
China poses the most persistent cyber threat to the US, engaging in cyber espionage and aggressive operations. Russia, Iran, and North Korea are expected to continue targeting the US through cyber capabilities and influence operations.

Ransomware Talent Surges to Akira After LockBit's Demise

13 March 2024
These skilled cybercriminals, referred to as "pentesters," specialize in exploiting vulnerabilities in Cisco devices, outdated VMware ESXi virtual machines, and tricking victims into installing remote monitoring and management software.