Latest Cybersecurity News and Articles


Hacker Conversations: Chris Wysopal, AKA Weld Pond

14 November 2023
Chris Wysopal is the founder and CTO of Veracode. Two decades ago, he was better known as Weld Pond, a member of the hacker collective L0pht Heavy Industries. The post Hacker Conversations: Chris Wysopal, AKA Weld Pond appeared first on SecurityWeek.

Google Suing Cybercriminals Who Delivered Malware via Fake Bard Downloads

14 November 2023
Google files a lawsuit against cybercriminals who delivered account-hijacking malware by offering fake Bard AI downloads.  The post Google Suing Cybercriminals Who Delivered Malware via Fake Bard Downloads appeared first on SecurityWeek.

Webinar Today: Using Governance and Privilege to Gain Control Over Third-Party Access

14 November 2023
Learn how to create more trust in your third party relationships by adding sustainable processes and tools that enable you to control access. The post Webinar Today: Using Governance and Privilege to Gain Control Over Third-Party Access appeared first on SecurityWeek.

Top 10 API Security Threats for Q3 2023

14 November 2023
New report provides a detailed look into the ever-changing threats targeting APIs. The post Top 10 API Security Threats for Q3 2023 appeared first on SecurityWeek.

Ethereum Feature Abused to Steal $60 Million From 99,000 Victims

14 November 2023
Malicious actors have been exploiting Ethereum's 'Create2' function to bypass wallet security alerts and steal millions of dollars worth of cryptocurrency from unsuspecting victims.

The Importance of Continuous Security Monitoring for a Robust Cybersecurity Strategy

14 November 2023
In 2023, the global average cost of a data breach reached $4.45 million. Beyond the immediate financial loss, there are long-term consequences like diminished customer trust, weakened brand value, and derailed business operations. In a world where the frequency and cost of data breaches are skyrocketing, organizations are coming face-to-face with a harsh reality: traditional cybersecurity

Alert: OracleIV DDoS Botnet Targets Public Docker Engine APIs to Hijack Containers

14 November 2023
Publicly-accessible Docker Engine API instances are being targeted by threat actors as part of a campaign designed to co-opt the machines into a distributed denial-of-service (DDoS) botnet dubbed OracleIV. "Attackers are exploiting this misconfiguration to deliver a malicious Docker container, built from an image named 'oracleiv_latest' and containing Python malware compiled as an ELF executable

Ransomware Attack on Ohio City Impacts Multiple Services

14 November 2023
The ransomware attack on the city of Huber Heights, Ohio, affected various city divisions but not public safety services. City services are expected to be down for at least a week, and residents are advised to check the city website for updates.

PyPI Packages Found to Expose Thousands of Secrets

14 November 2023
GitGuardian discovered roughly 4,000 secrets in nearly 3,000 PyPI packages, including Azure, AWS, and GitHub keys. The post PyPI Packages Found to Expose Thousands of Secrets appeared first on SecurityWeek.

CI/CD Risks: Protecting Your Software Development Pipelines

14 November 2023
Have you heard about Dependabot? If not, just ask any developer around you, and they'll likely rave about how it has revolutionized the tedious task of checking and updating outdated dependencies in software projects.  Dependabot not only takes care of the checks for you, but also provides suggestions for modifications that can be approved with just a single click. Although Dependabot is limited

US Agencies Warn Royal Ransomware Gang May Rebrand as ‘BlackSuit’

14 November 2023
There are indications that Royal may be preparing for a re-branding effort and/or a spinoff variant. Blacksuit ransomware shares a number of identified coding characteristics similar to Royal.

22 Energy Firms Hacked in Largest Coordinated Attack on Denmark’s Critical Infrastructure

14 November 2023
Denmark’s SektorCERT association shares details on a coordinated attack against the country’s energy sector. The post 22 Energy Firms Hacked in Largest Coordinated Attack on Denmark’s Critical Infrastructure appeared first on SecurityWeek.

Python Malware Poses DDoS Threat via Docker API Misconfiguration

14 November 2023
Attackers exploit misconfigurations to deploy a malicious Docker container with Python malware. This malware functions as a DDoS bot agent and carries out various attack methods.

New Campaign Targets Middle East Governments with IronWind Malware

14 November 2023
Government entities in the Middle East are the target of new phishing campaigns that are designed to deliver a new initial access downloader dubbed IronWind. The activity, detected between July and October 2023, has been attributed by Proofpoint to a threat actor it tracks under the name TA402, which is also known as Molerats, Gaza Cyber Gang, and shares tactical overlaps with a pro-Hamas

Passive SSH Server Private Key Leakage is Real but Limited

14 November 2023
Certain devices' SSH connections can be snooped on, allowing attackers to impersonate the equipment and observe users' login details and activities. The vulnerability is caused by errors in signature generation.

Intel Faces 'Downfall' Bug Lawsuit

14 November 2023
The complaint alleges that Intel knew about the faulty instructions that led to the recent "Downfall" bug years before it released a fix. The lawsuit raises questions about whether Intel's negligence could be considered a legal offense.

Update: Israel Warns of BiBi Wiper Attacks Targeting Linux and Windows

14 November 2023
The data wiping malware overwrites files, deletes system snapshots, and disables recovery options, making data recovery difficult and rendering affected systems unusable.

Dragos Says No Evidence of Breach After Ransomware Gang Claims Hack via Third Party

14 November 2023
This is not the first time false claims have been made against Dragos by ransomware groups. In May, Dragos confirmed a limited data breach, but the extortion scheme failed.

Crooks Leverage Google Quiz Messages as Part of Crypto Scam

14 November 2023
A recent cryptocurrency scam used Google Forms quizzes to direct recipients to a fake website, where they were instructed to pay an "exchange fee" in Bitcoin to claim a large sum of money.

Vietnamese Hackers Using New Delphi-Powered Malware to Target Indian Marketers

14 November 2023
The Vietnamese threat actors behind the Ducktail stealer malware have been linked to a new campaign that ran between March and early October 2023, targeting marketing professionals in India with an aim to hijack Facebook business accounts. "An important feature that sets it apart is that, unlike previous campaigns, which relied on .NET applications, this one used Delphi as the programming