Latest Cybersecurity News and Articles
22 February 2024
A recent report reveals an increase in initial ransom demand amounts. Furthermore, vulnerabilities detected in 2022 are continuing to be exploited.
22 February 2024
On 16th January 2024, the Ubuntu security team released critical security updates addressing several FreeImage vulnerabilities in different Ubuntu releases, including Ubuntu 16.04 and Ubuntu 18.04.
22 February 2024
This activity is linked to actors from North Korea targeting Russia. The trojan is being distributed through backdoored software installers and is capable of file transfers and command execution.
22 February 2024
Apple has announced a new post-quantum cryptographic protocol called PQ3 that it said will be integrated into iMessage to secure the messaging platform against future attacks arising from the threat of a practical quantum computer.
"With compromise-resilient encryption and extensive defenses against even highly sophisticated quantum attacks, PQ3 is the first messaging protocol to reach
22 February 2024
The worm autonomously searches for SSH credentials, modifies itself to remain fileless, and uses a variety of methods to collect private keys, making it difficult to detect statically.
22 February 2024
The breach affected nearly 2.4 million patients and compromised sensitive information such as names, contact details, medical records, and in some cases, Social Security numbers and insurance information.
22 February 2024
Resilience, a cyber insurance startup, has acquired BreachQuest, a cybersecurity company specializing in incident response solutions, to enhance its cyber risk management software and incident management solution.
22 February 2024
Web application attacks were analyzed in a recent report by Edgio. The report found that the most prevalent attack mitigated was path traversal.
22 February 2024
The UK's National Crime Agency (NCA) has gained control of LockBit's site and has exposed the identities of the affiliates, disrupted the affiliate infrastructure, and destroyed the servers used for data exfiltration.
22 February 2024
1Password, a password management software developer, has acquired Kolide, an endpoint security platform, for an undisclosed amount. Kolide's device security and contextual access management solution will be integrated into 1Password's offerings.
22 February 2024
The botnet's campaign has evolved through three distinct phases, testing new infection routines and defense evasion techniques before potentially launching a broader attack.
22 February 2024
A new data leak that appears to have come from one of China's top private cybersecurity firms provides a rare glimpse into the commercial side of China's many state-sponsored hacking groups. Experts say the leak illustrates how Chinese government agencies increasingly are contracting out foreign espionage campaigns to the nation's burgeoning and highly competitive cybersecurity industry.
22 February 2024
FixedFloat, a non-KYC crypto exchange, was hacked for $26 million worth of Bitcoin and Ethereum due to vulnerabilities and insufficient security measures, leading to frozen transactions and missing funds.
22 February 2024
The company confirmed that no credit/debit card numbers were compromised and assured that customer accounts are protected by multifactor authentication, ensuring security from unauthorized access.
22 February 2024
Confidence in biometric technology and the security of organizations that store biometric data is declining, according to a new report.
22 February 2024
The incident disrupted patient payments and prescription processing, affecting a significant portion of the U.S. healthcare system due to Change Healthcare's extensive reach and role in handling healthcare transactions.
22 February 2024
The IBM X-Force Threat Intelligence Index report found that valid account compromises were the most common way for cyber attackers to gain access in 2023, with a 71% increase in such attacks.
22 February 2024
The DOPLUGS malware acts as a downloader and supports four backdoor commands, including the ability to download a generic version of the PlugX malware, and it utilizes the KillSomeOne module to support USB worm capability.
22 February 2024
A new report by Veracode revealed the prevalence of security debt in applications and organizations, with 42% of applications and 71% of organizations having unfixed flaws.
22 February 2024
In the past 2 years, we have observed a significant surge in hacktivism activity due to ongoing wars and geopolitical conflicts in various regions. Since the war against Ukraine began, we have witnessed a notable mobilization of non-state and state-backed actors alike, forming new groups or joining existing hacker collectives.
We understand hacktivism as a form of computer hacking that is