Latest Cybersecurity News and Articles


Update: DP World Confirms Data Stolen in Cyberattack, No Ransomware Used

29 November 2023
DP World Australia's investigation has confirmed that the incident was confined to the Australian operations and did not impact any other markets where DP World operates.

Google Will Start Deleting ‘Inactive’ Accounts in December. Here’s What You Need to Know

29 November 2023
The easiest way to keep your Google account active (and thus prevent it from being deleted) is to sign in at least once every two years. The post Google Will Start Deleting ‘Inactive’ Accounts in December. Here’s What You Need to Know appeared first on SecurityWeek.

Zero-Day Alert: Google Chrome Under Active Attack, Exploiting New Vulnerability

29 November 2023
Users are recommended to upgrade to Chrome version 119.0.6045.199/.200 for Windows and 119.0.6045.199 for macOS and Linux to mitigate potential threats. Users of Chromium-based browsers are also advised to apply the fixes.

200+ Malicious Apps on Iranian Android Store Installed by Millions of Banking Users

29 November 2023
An Android malware campaign targeting Iranian banks has expanded its capabilities and incorporated additional evasion tactics to fly under the radar. That's according to a new report from Zimperium, which discovered more than 200 malicious apps associated with the malicious operation, with the threat actor also observed carrying out phishing attacks against the targeted financial institutions.

Malware Analysis Report: Stealc Stealer

29 November 2023
It steals browsers' databases and attempts all Chromium-based browsers that share the same structure of databases and also will explore Mozilla-based web engines and “Thunderbird” mail client which is based on Mozilla.

Discover Why Proactive Web Security Outsmarts Traditional Antivirus Solutions

29 November 2023
In a rapidly evolving digital landscape, it's crucial to reevaluate how we secure web environments. Traditional antivirus-approach solutions have their merits, but they're reactive. A new report delves into the reasons for embracing proactive web security solutions, ensuring you stay ahead of emerging threats.  To learn more, download the full report here. The New Paradigm If you’ve been relying

Okta Discloses Broader Impact Linked to October 2023 Support System Breach

29 November 2023
Identity services provider Okta has disclosed that it detected "additional threat actor activity" in connection with the October 2023 breach of its support case management system. "The threat actor downloaded the names and email addresses of all Okta customer support system users," the company said in a statement shared with The Hacker News. "All Okta Workforce Identity Cloud (WIC) and Customer

DJVU Ransomware's Latest Variant 'Xaro' Disguised as Cracked Software

29 November 2023
A variant of a ransomware strain known as DJVU has been observed to be distributed in the form of cracked software. "While this attack pattern is not new, incidents involving a DJVU variant that appends the .xaro extension to affected files and demanding ransom for a decryptor have been observed infecting systems alongside a host of various commodity loaders and infostealers," Cybereason

GoTitan Botnet Spotted Exploiting Recent Apache ActiveMQ Vulnerability

29 November 2023
The recently disclosed critical security flaw impacting Apache ActiveMQ is being actively exploited by threat actors to distribute a new Go-based botnet called GoTitan as well as a .NET program known as PrCtrl Rat that's capable of remotely commandeering the infected hosts. The attacks involve the exploitation of a remote code execution bug (CVE-2023-46604, CVSS score: 10.0) that has been 

Zero-Day Alert: Google Chrome Under Active Attack, Exploiting New Vulnerability

28 November 2023
Google has rolled out security updates to fix seven security issues in its Chrome browser, including a zero-day that has come under active exploitation in the wild. Tracked as CVE-2023-6345, the high-severity vulnerability has been described as an integer overflow bug in Skia, an open source 2D graphics library. Benoît Sevens and Clément Lecigne of Google's Threat Analysis Group (TAG) have been

Bots make up 30% of internet traffic

28 November 2023
According to a recent DataDome report, 68% of U.S. websites are unprotected against bot attacks and traditional CAPTCHAs are no longer effective.

Critical Vulnerability Found in Ray AI Framework

28 November 2023
CVE-2023-48023 is rooted in the fact that, in its default configuration, Ray does not enforce authentication, and does not appear to support any type of authorization model.

IMPERIAL KITTEN Deploys Novel Malware Families

28 November 2023
Between early 2022 and 2023, CrowdStrike Intelligence observed IMPERIAL KITTEN conduct SWC operations with a focus on targeting organizations in the transportation, logistics, and technology sectors.

GoTitan Botnet - Ongoing Exploitation on Apache ActiveMQ

28 November 2023
The attacker initiates a connection to ActiveMQ through the OpenWire protocol, typically on port 61616. By transmitting a crafted packet, the attacker triggers the system to unmarshal a class under their control.

Phishing makes up 43% of email attacks

28 November 2023
According to a recent cybersecurity report by Hornetsecurity, there was a 144% increase in email attacks, with phishing making up 43% of attacks.

Critics of Serbia’s government targeted with ‘military-grade spyware’

28 November 2023
The Serbians had been targeted about a minute apart from each other on or about 16 August 2023. Researchers discovered traces of the attempted attack, which sought to take advantage of a possible vulnerability in iPhone’s HomeKit application.

Healthcare Giant Henry Schein Hit Twice by BlackCat

28 November 2023
The BlackCat ransomware gang added Henry Schein to its dark web leak site, saying it breached the company's network and allegedly stole 35 terabytes of sensitive data. It re-encrypted the company's devices after negotiations faltered.

Hackers Spent Over Two Years Stealing Secrets of Chipmaker NXP

28 November 2023
The breach wasn’t uncovered until Chimera intruders were detected in a separate company network that connected to compromised NXP systems on several occasions. Details of the breach remained a closely guarded secret until now.

DeleFriend: Severe Design Flaw in Domain-Wide Delegation Could Leave Google Workspace Vulnerable to Takeover

28 November 2023
The vulnerability is rooted in the fact that a domain delegation configuration is determined by the service account resource identifier (OAuth ID), and not the specific private keys associated with the service account identity object.

Hospital Chain Hit With Ransomware Attack

28 November 2023
Ardent proactively took its network offline, suspending all user access. Some facilities are rescheduling non-emergent, elective procedures and diverting some emergency room patients to other area hospitals until systems are back online.