Latest Cybersecurity News and Articles
13 February 2024

Exclusive: Whistleblowers say Paula Vennells agreed to move archive, which risked destroying data that could clear operatorsThe former Post Office boss Paula Vennells gave Fujitsu a bonus contract in 2013 to take over an archive of branch data, despite warnings such a move would destroy evidence that might clear operators, whistleblowers have said.Transaction information was “replatformed” on cost grounds from a “gold standard” external storage system known as Centera to one owned by the Japanese software company running the Post Office’s Horizon IT network. Continue reading...
12 February 2024
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a medium-severity security flaw impacting Roundcube email software to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation.
The issue, tracked as CVE-2023-43770 (CVSS score: 6.1), relates to a cross-site scripting (XSS) flaw that stems from the handling of
12 February 2024

Federal police warn they will track down alleged criminals using Warzone trojan softwareFollow our Australia news live blog for latest updatesGet our morning and afternoon news emails, free app or daily news podcastA man has been arrested as part of an international operation to shut down a global cybercrime network targeting Australians as Australian federal police warn they will track down other people alleged to be involved in the use of the malicious software.Daniel Meli, 27, was arrested in Malta on 7 February for allegedly selling and training criminals in the use of Warzone, a remote access trojan software that bypasses security systems and remotely accesses computers without the victims’ knowledge.Sign up for Guardian Australia’s free morning and afternoon email newsletters for your daily news roundup Continue reading...
12 February 2024
The United States Department of State is offering monetary rewards for those who can aid in the location and apprehension of Hive ransomware members.
12 February 2024
Threat actors are targeting Microsoft Azure corporate clouds with sophisticated and tailored phishing attacks, compromising a wide range of user accounts for activities such as data exfiltration and financial fraud.
12 February 2024
Files encrypted by Rhysida ransomware can be successfully decrypted, due to a implementation vulnerability discovered by Korean researchers and leveraged to create a decryptor.
12 February 2024
The deal will result in the formation of a separate company called DataCo to handle Veritas' remaining assets, while Cohesity will follow a "no customer left behind" approach.
12 February 2024
This initiative aligns with CISA's Open Source Software Security Roadmap's objective of collaborating with relevant working groups to develop security principles for package managers.
12 February 2024
The Hipocrate Information System (HIS) used by hospitals to manage medical activity and patient data was targeted over the weekend and is now offline after its database was encrypted.
12 February 2024
The United Nations is investigating 58 suspected cyberattacks by North Korea, totaling around $3 billion, which are believed to be funding the country's development of weapons of mass destruction.
12 February 2024
The Federal Trade Commission (FTC) released data revealing that consumers lost over $10 billion to fraud in 2023, at 14% increase from 2022.
12 February 2024
National Cyber Director Harry Coker emphasized the need for a collaborative effort between the government and industry to address cyber threats, harmonize regulations, and build a diverse cybersecurity workforce.
12 February 2024
Cybersecurity researchers have uncovered an "implementation vulnerability" that has made it possible to reconstruct encryption keys and decrypt data locked by Rhysida ransomware.
The findings were published last week by a group of researchers from Kookmin University and the Korea Internet and Security Agency (KISA).
"Through a comprehensive analysis of Rhysida Ransomware, we identified an
12 February 2024
According to a recent report, the global AI cybersecurity market is expected to pass $133 billion from 2023 to 2030.
12 February 2024
The partial Facebook Marketplace database was allegedly leaked by a threat actor, exposing sensitive personal information of approximately 200,000 users, including full names, Facebook IDs, phone numbers, physical IDs, and email addresses.
12 February 2024
Email attacks using QR codes, known as "quishing," have surged, especially targeting corporate executives and managers, highlighting the need for enhanced digital protections for business leadership.
12 February 2024
CISA published a cybersecurity advisory alongside other agencies due to malicious activity by a PRC state-sponsored cyber actor known as Volt Typhoon.
12 February 2024
The Cybersecurity and Infrastructure Security Agency (CISA) partnered with the NFL to promote cybersecurity awareness during the Super Bowl, aiming to encourage strong passwords, multifactor authentication, and phishing reporting.
12 February 2024
CISA confirmed active exploitation of a critical remote code execution (RCE) bug in Fortinet's FortiOS, urging immediate security updates or SSL VPN disabling to mitigate the risk.
12 February 2024
When it comes to access security, one recommendation stands out above the rest: multi-factor authentication (MFA). With passwords alone being simple work for hackers, MFA provides an essential layer of protection against breaches. However, it's important to remember that MFA isn't foolproof. It can be bypassed, and it often is.
If a password is compromised, there are several options