Latest Cybersecurity News and Articles


SimSpace raises $45M to simulate tech stacks for cyber training

21 December 2023
Cybersecurity training startup SimSpace has raised $45 million in a funding round led by L2 Point Management, bringing its total raised to $70 million. It creates digital replicas of organizations' tech and networking stacks for training purposes.

Hackers Exploiting Old MS Excel Vulnerability to Spread Agent Tesla Malware

21 December 2023
Attackers are weaponizing an old Microsoft Office vulnerability as part of phishing campaigns to distribute a strain of malware called Agent Tesla. The infection chains leverage decoy Excel documents attached in invoice-themed messages to trick potential targets into opening them and activate the exploitation of CVE-2017-11882 (CVSS score: 7.8), a memory corruption vulnerability in Office's

Behind the Scenes of Matveev's Ransomware Empire: Tactics and Team

21 December 2023
Matveev and his team demonstrate a significant disregard for ethical values in their cyber operations, engaging in tactics such as threatening to leak sensitive files and retaining files even after the ransom is paid.

Urgent: New Chrome Zero-Day Vulnerability Exploited in the Wild - Update ASAP

20 December 2023
Google has rolled out security updates for the Chrome web browser to address a high-severity zero-day flaw that it said has been exploited in the wild. The vulnerability, assigned the CVE identifier CVE-2023-7024, has been described as a heap-based buffer overflow bug in the WebRTC framework that could be exploited to result in program crashes or arbitrary code execution. Clément

FTC bans Rite Aid from using AI facial recognition

20 December 2023
The Federal Trade Commission (FTC) banned Rite Aid from using facial recognition technology for surveillance purposes for the next five years.

Malware Leveraging Public Infrastructure Like GitGub on the Rise

20 December 2023
Public services like GitHub provide a convenient and less suspicious platform for malware authors to operate their C2 infrastructure, eliminating the need for maintaining their own servers.

Decrypting the Sidewinder Cyber Intrusion Tactics

20 December 2023
The Sidewinder group, a sophisticated APT group originating from South Asia, is behind a highly targeted cyber threat campaign involving a malicious Word document with an embedded macro, potentially targeting Nepalese government officials.

Update: Israel Blames Iran for Hospital Data Breach

20 December 2023
Israel has identified Iran and Hezbollah as the perpetrators of a cyberattack on the Ziv Medical Center. The attack, which occurred last month, resulted in the theft of 500GB of medical data.

Top cybersecurity predictions of 2024

20 December 2023
As another year comes to a close, cybersecurity leaders are not only looking back and reviewing the top trends of 2023, but considering what the future holds for 2024.

Global Law Enforcement Seizes $300 Million, Arrests 3,500 Involved in Transnational Cybercrime Operation

20 December 2023
The operation targeted various online scams, including voice phishing, romance scams, investment fraud, and e-commerce fraud, highlighting the significant financial incentives driving the growth of organized cybercrime.

Global Malspam Targets Hotels, Spreading Redline and Vidar Stealers

20 December 2023
The hospitality industry is being targeted by a sophisticated malspam campaign that uses social engineering tactics to trick hotel representatives into opening password-protected archives containing malware.

Remote Encryption Attacks Surge: How One Vulnerable Device Can Spell Disaster

20 December 2023
Ransomware groups are increasingly switching to remote encryption in their attacks, marking a new escalation in tactics adopted by financially motivated actors to ensure the success of their campaigns. "Companies can have thousands of computers connected to their network, and with remote ransomware, all it takes is one underprotected device to compromise the entire network," Mark Loman, vice

Smishing Triad Targets UAE Residents in Identity Theft Campaign

20 December 2023
Security researchers have observed a new fraudulent campaign orchestrated by the Smishing Triad gang and impersonating the United Arab Emirates Federal Authority for Identity and Citizenship.

New Web Injections Campaign Steals Banking Data From 50,000 People

20 December 2023
The attackers infect victims' devices and then inject a script onto the victim's browser to modify webpage content. This new approach makes the attacks more stealthy and harder to detect.

Iranian APT Group Targets Telecom Organizations in North and East Africa

20 December 2023
Seedworm (aka Muddywater) continues to use a combination of living-off-the-land and publicly available tools, but has also developed its own custom tools, such as a custom build of Venom Proxy and a custom keylogger.

‘No Evidence’ of Foreign Election Interference in 2022 US Midterms, Spy Agencies Say

20 December 2023
The U.S. intelligence community has stated that Russia and China attempted to influence the 2022 U.S. midterms, but were unsuccessful in hacking the election infrastructure or disrupting voting.

Product Explained: Memcyco's Real-Time Defense Against Website Spoofing

20 December 2023
Hands-On Review: Memcyco’s Threat Intelligence Solution Website impersonation, also known as brandjacking or website spoofing, has emerged as a significant threat to online businesses. Malicious actors clone legitimate websites to trick customers, leading to financial scams and data theft causing reputation damage and financial losses for both organizations and customers. The Growing Threat of

Authorities Claim Seizure of Notorious ALPHV Ransomware Gang’s Dark Web Leak Site

20 December 2023
The FBI has released a decryption tool that has helped over 500 ALPHV ransomware victims restore their systems, saving them from paying approximately $68 million in ransom demands.

Threat Actors Exploit CVE-2017-11882 to Deliver Agent Tesla

20 December 2023
The Agent Tesla malware uses obfuscated VBS files and steganography techniques to download a Base64-encoded DLL, which is then decoded and loaded to carry out malicious procedures.

Alert: Chinese-Speaking Hackers Pose as UAE Authority in Latest Smishing Wave

20 December 2023
The Chinese-speaking threat actors behind Smishing Triad have been observed masquerading as the United Arab Emirates Federal Authority for Identity and Citizenship to send malicious SMS messages with the ultimate goal of gathering sensitive information from residents and foreigners in the country. "These criminals send malicious links to their victims' mobile devices through SMS or