Latest Cybersecurity News and Articles


ApateWeb: Large-Scale Campaign Delivers Scareware and PUPs

02 February 2024
Researchers at Unit 42 have identified a large-scale campaign named ApateWeb that employs over 130,000 domains to distribute scareware, PUPs, and other scam pages. The campaign involves adware programs, a rogue browser, and various browser extensions. User awareness and the use of advanced cybersecurity measures like URL filtering and DNS security are crucial to to defend against such threats.

Crime Bosses Behind Myanmar Cyber ‘Fraud Dens’ Handed Over to Chinese Government

02 February 2024
The crime families in the Kokang region of Myanmar have been running large-scale cyber fraud and illicit enterprises, including casinos, and have been involved in human trafficking and money laundering.

Exposed Docker APIs Under Attack in 'Commando Cat' Cryptojacking Campaign

02 February 2024
The attackers use evasion techniques such as using memory-backed temporary file stores and Base64-encoded scripts to make forensics harder and eliminate competing miner processes on infected machines.

Cybercriminals Replace Familiar Tactics to Exfiltrate Sensitive Data

02 February 2024
Cybercriminals have shifted tactics, moving away from email-based attacks and targeting cloud and compromised applications to remain undetected longer and gain continuous access to systems and data.

PurpleFox Malware Infects Thousands of Computers in Ukraine

02 February 2024
PurpleFox is a modular Windows botnet malware with rootkit capabilities, allowing it to hide and persist on infected devices, and it can be used for activities like introducing more potent payloads and launching DDoS attacks.

US Announces Another Arrest in BTC-e Cybercrime Case

02 February 2024
The U.S. Department of Justice has announced that Aliaksandr Klimenka, a Belarusian and Cypriot national allegedly linked to the cryptocurrency exchange BTC-e, is in U.S. custody and faces charges related to money laundering.

Former CIA Engineer Sentenced to 40 Years for Leaking Classified Documents

02 February 2024
A former software engineer with the U.S. Central Intelligence Agency (CIA) has been sentenced to 40 years in prison by the Southern District of New York (SDNY) for transmitting classified documents to WikiLeaks and for possessing child pornographic material. Joshua Adam Schulte, 35, was originally charged in June 2018. He was found guilty in July 2022. On September 13, 2023, he was&

Cloudzy Elevates Cybersecurity: Integrating Insights from Recorded Future to Revolutionize Cloud Security

02 February 2024
Cloudzy, a prominent cloud infrastructure provider, proudly announces a significant enhancement in its cybersecurity landscape. This breakthrough has been achieved through a recent consultation with Recorded Future, a leader in providing real-time threat intelligence and cybersecurity analytics. This initiative, coupled with an overhaul of Cloudzy's cybersecurity strategies, represents a major

INTERPOL Arrests 31 in Global Operation, Identifies 1,900+ Ransomware-Linked IPs

02 February 2024
An INTERPOL-led collaborative operation targeting phishing, banking malware, and ransomware attacks has led to the identification of 1,300 suspicious IP addresses and URLs. The law enforcement effort, codenamed Synergia, took place between September and November 2023 in an attempt to blunt the "growth, escalation and professionalization of transnational cybercrime." Involving 60 law

White House Seeks Ideas on Boosting AI Privacy

02 February 2024
The Office of Management and Budget is soliciting feedback on how federal agencies should identify and mitigate privacy risks related to AI and commercially available information.

India-Linked Hackers Target Pakistan With Spyware in New Campaign

02 February 2024
The campaign, attributed to the Patchwork APT group, targeted mostly Pakistani users through a honey-trap romance scam, with some apps reaching over 1,400 installs on Google Play and revealing 148 compromised devices in Pakistan and India.

FBI and DOJ Disrupt Chinese Hacking Operation

02 February 2024
The hacking group's activities included compromising vulnerable Cisco routers and using Netgear ProSafe firewalls as relay nodes for networks compromised by Chinese state hackers.

Russian Spies Impersonating Western Researchers in Ongoing Hacking Campaign

02 February 2024
The hackers, believed to be state-sponsored, have successfully compromised researchers by using sophisticated techniques to solicit feedback on academic articles and harvest credentials through fake Google Drive links.

FTC Blasts Blackbaud's 'Shoddy' Practices in Ransomware Hack

02 February 2024
Blackbaud's lax security practices allowed a hacker to access and steal massive amounts of unencrypted consumer data, including personal, financial, and medical information, leading to regulatory actions from multiple government agencies.

Cloudflare Hacked Using Authentication Tokens Stolen in Okta Attack

02 February 2024
Cloudflare's internal Atlassian server was breached by a suspected nation-state attacker in November 2023. The attacker gained access to Confluence, Jira, and Bitbucket systems, using stolen credentials from Okta's breach.

Multiple Malware Used in Attacks Exploiting Ivanti VPn Flaws

02 February 2024
The attackers exploit known vulnerabilities to execute arbitrary commands and have been observed using various malware, including a custom web shell and open-source tools for post-exploitation activities.

Update: December Cyberattack on Chicago Community Hospital Claimed by LockBit Gang

02 February 2024
Saint Anthony Hospital in Chicago experienced a cyberattack by the LockBit ransomware gang, with patient information being copied from the network. The gang demanded a $900,000 ransom, but the hospital refused to pay, prioritizing patient care.

DarkGate Malware Delivered via Microsoft Teams

02 February 2024
Threat actors have been spotted exploiting Microsoft Teams’ external access feature—enabled by default—allowing users to add external members to Teams chats. An AT&T customer identified an unsolicited Teams chat from an external user, suspected to be a phishing lure. It is recommended to disable External Access in Microsoft Teams unless it is necessary for daily business use.

Cloudflare Breach: Nation-State Hackers Access Source Code and Internal Docs

02 February 2024
Cloudflare has revealed that it was the target of a likely nation-state attack in which the threat actor leveraged stolen credentials to gain unauthorized access to its Atlassian server and ultimately access some documentation and a limited amount of source code. The intrusion, which took place between November 14 and 24, 2023, and detected on November 23, was carried out "with the goal of

UK: City Cyber Task Force Launches to Secure Corporate Finance

01 February 2024
The Institute of Chartered Accountants in England and Wales (ICAEW) and the National Cyber Security Centre (NCSC) are leading a task force with other organizations to improve the security of corporate finance deals.