Latest Cybersecurity News and Articles


Kansas Court System Down Nearly 2 Weeks in ‘Security Incident’ That Has Hallmarks of Ransomware

26 October 2023
Kansas is calling a massive computer outage that’s kept most of the state’s courts offline for 2 weeks a “security incident” and experts say it's likely ransomware. The post Kansas Court System Down Nearly 2 Weeks in ‘Security Incident’ That Has Hallmarks of Ransomware appeared first on SecurityWeek.

Citrix Bleed Exploit Lets Hackers Hijack Netscaler Accounts

26 October 2023
The vulnerability arises from an unauthenticated buffer-related flaw in Citrix devices, which can be exploited to gain unrestricted access to the appliances and potentially hijack user accounts.

CISA, HHS Release Cybersecurity Healthcare Toolkit

26 October 2023
CISA and the HHS have released resources for healthcare and public health organizations to improve their security. The post CISA, HHS Release Cybersecurity Healthcare Toolkit appeared first on SecurityWeek.

UK Parliament Opens Inquiry into Cyber-Resilience

26 October 2023
The Science, Innovation and Technology Committee will oversee the inquiry, alarmed at the proliferation of state and non-state actors using offensive cyber capabilities against UK organizations.

iLeakage Attack Exploits Safari to Steal Sensitive Data From Macs, iPhones

26 October 2023
New iLeakage side-channel speculative execution attack exploits Safari to steal sensitive information from Macs and iPhones. The post iLeakage Attack Exploits Safari to Steal Sensitive Data From Macs, iPhones appeared first on SecurityWeek.

Critical Flaw in NextGen's Mirth Connect Could Expose Healthcare Data

26 October 2023
The vulnerability (CVE-2023-43208) is a patch bypass for a critical remote command execution vulnerability (CVE-2023-37679), and all instances of Mirth Connect are susceptible to it.

Seiko Discloses Data Breach Resulting From BlackCat Ransomware Attack

26 October 2023
Seiko Group Corporation (SGC) has confirmed a data breach that occurred in July 2023. The breach resulted in unauthorized access to 60,000 records, including customer data, contact details, employment applicant information, and personnel details.

Apple Ships Major iOS, macOS Security Updates

26 October 2023
The updates cover fixes for a range of components including Contacts, WebKit, and kernel, among others, and aim to fix code execution flaws and privilege escalation issues.

The holiday season leads to a rise in business payment fraud

26 October 2023
A payment security report found that three-fourths of business leaders are more concerned about business payment fraud during the holiday season.

Redcliffe Labs Database with Over 12 Million Patient Records Exposed

26 October 2023
The diagnostic service left 7 terabytes of sensitive data vulnerable, including medical diagnostic scans, test results, patient information, and even the names of attending doctors.

Winter Vivern APT Resurfaces to Target European Entities

26 October 2023
The Winter Vivern espionage group targeted European government entities and a think tank using a zero-day vulnerability in Roundcube Webmail, enabling email exfiltration with minimal interaction. The payload used in the campaign worked even on fully patched Roundcube instances. Despite the low sophistication of the group’s toolset, Winter Vivern remains a significant threat to organizations in Europe.

Google Announces Bug Bounty Program and Other Initiatives to Secure AI

26 October 2023
Google announces a bug bounty program and other initiatives for increasing the safety and security of AI. The post Google Announces Bug Bounty Program and Other Initiatives to Secure AI appeared first on SecurityWeek.

Microsoft Warns as Scattered Spider Expands from SIM Swaps to Ransomware

26 October 2023
The prolific threat actor known as Scattered Spider has been observed impersonating newly hired employees in targeted firms as a ploy to blend into normal on-hire processes and takeover accounts and breach organizations across the world. Microsoft, which disclosed the activities of the financially motivated hacking crew, described the adversary as "one of the most dangerous financial criminal

Japanese Watchmaking Giant Seiko Confirms Personal Data Stolen in Ransomware Attack

26 October 2023
Japanese watchmaking giant Seiko has confirmed that personal information was stolen in a recent ransomware attack. The post Japanese Watchmaking Giant Seiko Confirms Personal Data Stolen in Ransomware Attack appeared first on SecurityWeek.

Octo Tempest aka 0ktapus has Become 'One of the Most Dangerous Financial' Hacker Groups

26 October 2023
The group gains initial access through social engineering tactics, including impersonating victims and using fake login portals, to target a wide range of industries for extortion.

Weapons Systems Provide Valuable Lessons for ICS/OT Security

26 October 2023
Cybersecurity techniques and penetration testing used in the field of weapons systems can provide valuable lessons for ICS/OT security. The post Weapons Systems Provide Valuable Lessons for ICS/OT Security appeared first on SecurityWeek.

Record-Breaking 100 Million RPS DDoS Attack Exploits HTTP/2 Rapid Reset Flaw

26 October 2023
Cloudflare on Thursday said it mitigated thousands of hyper-volumetric HTTP distributed denial-of-service (DDoS) attacks that exploited a recently disclosed flaw called HTTP/2 Rapid Reset, 89 of which exceeded 100 million requests per second (RPS). "The campaign contributed to an overall increase of 65% in HTTP DDoS attack traffic in Q3 compared to the previous quarter," the web infrastructure

Amazon Rolls Out Independent Cloud for Europe to Address Stricter Privacy Standards

26 October 2023
Amazon is rolling out an independent cloud for Europe as it looks to address strict regulations that companies and those in the public sector face in the European Union. The post Amazon Rolls Out Independent Cloud for Europe to Address Stricter Privacy Standards appeared first on SecurityWeek.

Iranian Group Tortoiseshell Launches New Wave of IMAPLoader Malware Attacks

26 October 2023
The attacks primarily target the maritime, shipping, and logistics sectors in the Mediterranean region, with high-value targets being subjected to the deployment of IMAPLoader.

Day 3 of SecurityWeek’s 2023 ICS Cybersecurity Conference — Challenges and Solutions

26 October 2023
SecurityWeek’s 2023 ICS Cybersecurity Conference continues in Atlanta, with challenges and solutions the focus of Day 3. The post Day 3 of SecurityWeek’s 2023 ICS Cybersecurity Conference — Challenges and Solutions appeared first on SecurityWeek.