Latest Cybersecurity News and Articles


Anti-Ransomware Startup Halcyon Lands Fresh $40M Tranche

20 December 2023
The oversubscribed Series B funding round was led by Bain Capital Ventures. The company aims to use the funds to expand its product lines, enhance its services, and strengthen its sales and marketing efforts.

Terrapin Attacks can Downgrade Security of OpenSSH Connections

20 December 2023
The attack exploits weaknesses in the SSH transport layer protocol and encryption modes used by a majority of current implementations, making it a significant concern for the cybersecurity community.

Ransomware Trends and Recovery Strategies Companies Should Know

20 December 2023
Ransomware activity continues to rise, and organizations expect to increase spending on ransomware preparedness. Ransomware groups are continually using new vulnerabilities and coercive tactics to extort payments.

JaskaGO’s Coordinated Strike on macOS and Windows

20 December 2023
The malware utilizes extensive commands from its C2 server, enabling it to exfiltrate valuable user information, including browser credentials and cryptocurrency wallet details.

3,500 Arrested in Global Operation HAECHI-IV Targeting Financial Criminals

20 December 2023
A six-month-long international police operation codenamed HAECHI-IV has resulted in the arrests of nearly 3,500 individuals and seizures worth $300 million across 34 countries. The exercise, which took place from July through December 2023, took aim at various types of financial crimes such as voice phishing, romance scams, online sextortion, investment fraud, money laundering

New MetaStealer Malvertising Campaigns Spotted

20 December 2023
MetaStealer is a popular piece of malware that has been observed in recent malicious ad campaigns. The developers of MetaStealer have announced that they are releasing a new and improved version of the malware.

New Go-Based JaskaGO Malware Targeting Windows and macOS Systems

20 December 2023
A new Go-based information stealer malware called JaskaGO has emerged as the latest cross-platform threat to infiltrate both Windows and Apple macOS systems. AT&T Alien Labs, which made the discovery, said the malware is "equipped with an extensive array of commands from its command-and-control (C&C) server." Artifacts designed for macOS were first observed in July

Okta Acquiring Cybersecurity Startup Spera for Over $100 Million

20 December 2023
American identity and access management company Okta is acquiring Israeli cybersecurity company Spera for approximately $100-130 million, marking Okta's first acquisition in Israel and highlighting the strength of the Israeli cyber industry.

Healthcare Cybersecurity Proposal Stirs Industry Opposition

20 December 2023
Lobbyists for U.S. hospitals are opposing a proposal by the Biden administration for mandatory cybersecurity requirements and potential financial penalties for organizations that fail to meet them.

Report: Insurer’s UK Honeypots Attacked 17 Million Times Per Day

20 December 2023
Legacy vulnerabilities and Remote Desktop Protocol (RDP) endpoints are being singled out by attackers, according to new data based on billions of recorded cyberattacks in 2023 by insurer Coalition.

BlackCat Ransomware Raises Ante After FBI Disruption

19 December 2023
The U.S. Federal Bureau of Investigation (FBI) disclosed today that it infiltrated the world's second most prolific ransomware gang, a Russia-based criminal group known as ALPHV and BlackCat. The FBI said it seized the gang's darknet website, and released a decryption tool that hundreds of victim companies can use to recover systems. Meanwhile, BlackCat responded by briefly "unseizing" its darknet site with a message promising 90 percent commissions for affiliates who continue to work with the crime group, and open season on everything from hospitals to nuclear power plants.

Microsoft Discovers Critical RCE Flaw in Perforce Helix Core Server

19 December 2023
Four vulnerabilities, including a critical one, have been discovered in the widely used Perforce Helix Core Server, posing a significant risk to organizations in the gaming, government, military, and technology sectors.

New Scam Involving Remote Jobs on Social Media Platforms

19 December 2023
Researchers at Bitdefender Labs have uncovered a new scam involving remote jobs on social media platforms. Scammers are promising payment for simply liking YouTube videos.

CISA Releases Key Risk and Vulnerability Findings for Healthcare and Public Health Sector

19 December 2023
CISA recently published a cybersecurity advisory which details the agency’s key findings and activities during a Risk and Vulnerability Assessment conducted at a healthcare and public health organization in early 2023.

FBI, CISA, and ACSC Release Joint Advisory on Play Ransomware

19 December 2023
The Play ransomware group has been targeting businesses and critical infrastructure in North America, South America, and Europe since June 2022. They use a double-extortion model, encrypting systems after exfiltrating data.

FBI Takes Down BlackCat Ransomware, Releases Free Decryption Tool

19 December 2023
The U.S. Justice Department (DoJ) has officially announced the disruption of the BlackCat ransomware operation and released a decryption tool that victims can use to regain access to files locked by the malware. Court documents show that the U.S. Federal Bureau of Investigation (FBI) enlisted the help of a confidential human source (CHS) to act as an affiliate for the BlackCat and gain

Behind the Scenes of Matveev's Ransomware Empire: Tactics and Team

19 December 2023
Cybersecurity researchers have shed light on the inner workings of the ransomware operation led by Mikhail Pavlovich Matveev, a Russian national who was indicted by the U.S. government earlier this year for his alleged role in launching thousands of attacks across the world. Matveev, who resides in Saint Petersburg and is known by the aliases Wazawaka, m1x, Boriselcin, Uhodiransomwar,

Ransomware Attack on Westpole Disrupted Digital Services for Italian Public Administration

19 December 2023
One of Westpole's customers, PA Digitale, which serves 1300 public administrations including 540 municipalities, was targeted. The incident has led to manual operations for some services and may affect salary payments.

CISA releases Play ransomware guidelines

19 December 2023
CISA has partnered with federal U.S. and Australian organizations to release a joint cybersecurity advisory (CSA) about Play ransomware.

77% of financial organizations detected a cyberattack in the last year

19 December 2023
According to a recent Netwrix report, 77% of financial organizations detected a cyberattack in the last year, compared to 68% in other industries.