Latest Cybersecurity News and Articles


Researchers Unmask Sandman APT's Hidden Link to China-Based KEYPLUG Backdoor

11 December 2023
Tactical and targeting overlaps have been discovered between the enigmatic advanced persistent threat (APT) called Sandman and a China-based threat cluster that's known to use a backdoor known as KEYPLUG. The assessment comes jointly from SentinelOne, PwC, and the Microsoft Threat Intelligence team based on the fact that the adversary's Lua-based malware LuaDream and KEYPLUG have been

Lack of encryption the primary reason for sensitive data loss

11 December 2023
New study reveals that organizations appear to struggle in their ability to assess and remediate data encryption risks and policy violations.

CISA and ENISA Signed a Working Arrangement to Enhance Cooperation

11 December 2023
The collaboration aims to strengthen cybersecurity, safeguard critical infrastructure, and reinforce the resilience of digital products in the face of increasing cyber threats.

Lazarus Group Using Log4j Exploits to Deploy Remote Access Trojans

11 December 2023
The Lazarus Group, a North Korea-linked threat actor, has been conducting a global campaign called Operation Blacksmith. They are exploiting security flaws in Log4j to deploy remote access trojans (RATs) on compromised hosts.

UK Sanctions Nine Linked to Cyber Trafficking in Southeast Asia

11 December 2023
The United Kingdom has imposed sanctions on individuals and entities involved in Southeast Asia's online scamming industry, targeting both human traffickers and companies connected to scam operations.

Lazarus Group Using Log4j Exploits to Deploy Remote Access Trojans

11 December 2023
The notorious North Korea-linked threat actor known as the Lazarus Group has been attributed to a new global campaign that involves the opportunistic exploitation of security flaws in Log4j to deploy previously undocumented remote access trojans (RATs) on compromised hosts. Cisco Talos is tracking the activity under the name Operation Blacksmith, noting the use of three DLang-based

Researcher Discovered a New Lock Screen Bypass Bug for Android 14 and 13

11 December 2023
The vulnerability allows threat actors physical access to a device, exposing sensitive data in users' Google accounts. Google has been aware of this issue for at least six months but has not yet addressed it, according to researcher Jose Rodriguez.

Aim for a Modern Data Security Approach

11 December 2023
Organizations must shift their data security approach to safeguard sensitive workloads from the moment they enter the data pipeline, rather than relying on securing data only in the cloud data warehouse.

FBI Explains How Companies can Delay SEC Cyber Incident Disclosures

11 December 2023
Companies are advised to establish a relationship with their local FBI field office and contact them soon after a cyber incident is discovered to assist with the FBI's review and determine if a disclosure delay is necessary.

Playbook: Your First 100 Days as a vCISO - 5 Steps to Success

11 December 2023
In an increasingly digital world, no organization is spared from cyber threats. Yet, not every organization has the luxury of hiring a full-time, in-house CISO. This gap in cybersecurity leadership is where you, as a vCISO, come in. You are the person who will establish, develop, and solidify the organization's cybersecurity infrastructure, blending strategic guidance with actionable

Love for Sports Could Lead to Poor Password Practices

11 December 2023
As per a recent study by Bitwarden, approximately one-third of Americans use sports-related terms in their passwords, with professional sports teams being twice as likely to inspire these passwords compared to college sports teams.

Researchers Unveil GuLoader Malware's Latest Anti-Analysis Techniques

11 December 2023
The malware is typically spread through phishing campaigns, and its creators have continuously improved its ability to bypass security features. One recent change involves an enhancement to its Vectored Exception Handling (VEH) capability.

Webinar — Psychology of Social Engineering: Decoding the Mind of a Cyber Attacker

11 December 2023
In the ever-evolving cybersecurity landscape, one method stands out for its chilling effectiveness – social engineering. But why does it work so well? The answer lies in the intricate dance between the attacker's mind and human psychology. Our upcoming webinar, "Think Like a Hacker, Defend Like a Pro," highlights this alarming trend. We delve deep into social engineering, exploring its

Log4j Vulnerability Still Haunts the Security Community

11 December 2023
According to a report from Veracode, two years after the disclosure of a critical vulnerability in Apache Log4j, nearly 2 in 5 applications are still using vulnerable versions, highlighting the persistence of security risks in software development.

Data Breaches Fallout Reach New Heights as the Number of Exposed Records Soars

11 December 2023
According to an Apple-commissioned study conducted by a professor at MIT, ransomware attacks have seen a steep rise, with a nearly 70% increase in such attacks in the first nine months of 2023, primarily targeting organizations with sensitive data.

ALPHV Ransomware Site Outage Rumored to be Caused by Law Enforcement

11 December 2023
Law enforcement is suspected to be behind the recent outage of ALPHV ransomware gang's websites. The negotiation and data leak sites, as well as the Tor negotiation URLs, have been down for over 30 hours.

CISA Adds Qlik Bugs to Exploited Vulnerabilities Catalog

11 December 2023
Both bugs were found this summer in Qlik Sense — a data analytics tool used widely among government organizations and large businesses. The vulnerabilities provide hackers with an entry point into systems and allow them to elevate their privileges.

North Korea's Kimsuky Targeting South Korean Research Institutes with Backdoor Attacks

11 December 2023
The North Korean threat group uses a backdoor to steal information and execute commands on compromised systems. Kimsuky has expanded its attacks to include Europe, Russia, and the US.

Mobile Password Managers Might Be Exposing Credentials Due to New ‘Autospill’ Vulnerability

11 December 2023
The vulnerability occurs when password managers get disoriented and mistakenly autofill credentials into the native fields of the underlying app instead of the intended login page.

Akira Ransomware Strikes Again: Compass Group Italia and Aqualectra Utility Hit by Data Breach

11 December 2023
The Akira ransomware group has targeted two more victims, one in Italy and another in Curaçao, compromising sensitive data and posing a threat to the integrity and security of the affected companies.