Latest Cybersecurity News and Articles


Unraveling the CACTUS Ransomware Group’s Recent Exploits

28 September 2023
The CACTUS ransomware group employs unique encryption techniques, including hiding the decryption key within a file named ntuser.dat, to evade detection by anti-virus software.

Misconfigured TeslaMate Instances Put Tesla Car Owners at Risk

28 September 2023
Improper configuration of third-party software like TeslaMate can result in privacy breaches, compromising the owner's daily routine and posing risks such as planned robberies.

GitHub Repositories Hit by Password-Stealing Commits Disguised as Dependabot Contributions

28 September 2023
A new malicious campaign has been observed hijacking GitHub accounts and committing malicious code disguised as Dependabot contributions with an aim to steal passwords from developers. "The malicious code exfiltrates the GitHub project's defined secrets to a malicious C2 server and modify any existing javascript files in the attacked project with a web-form password-stealer malware code

Are Developers Giving Enough Thought to Prompt Injection Threats When Building Code?

28 September 2023
Prompt injection attacks manipulate LLMs by introducing malicious commands into free text inputs, posing a significant threat to cybersecurity and potentially leading to unauthorized activities or data leaks.

Millions of Files With Potentially Sensitive Information Exposed Online, Researchers Say

28 September 2023
A recent analysis by Censys has uncovered about 314,000 internet-connected devices and web servers that are exposing millions of files, potentially containing sensitive data.

CISA Rolls Dice on Public Service Campaign to Raise Cyber Awareness

28 September 2023
The Cybersecurity and Infrastructure Security Agency (CISA) has launched a national public service campaign called "Secure our World" to raise awareness of cybersecurity in local communities.

SSH Keys Stolen by Stream of Malicious PyPI and npm Packages

28 September 2023
The attackers utilized typosquatting and code modifications to trick developers into installing malicious packages and continuously refined their techniques to evade detection.

Caesars Entertainment Faces Class Action Lawsuits Following Rewards Database Hack

28 September 2023
At least four separate plaintiffs allege the company was negligent for allowing their sensitive personal data to be stolen in a social engineering attack by criminal threat groups.

Russian Hackers Target Ukrainian Government Systems Involved in War Crimes Investigations

28 September 2023
Ukrainian cybersecurity officials have reported that the recent espionage campaigns targeted entities involved in investigating war crimes, such as the prosecutor general's office and courts.

China's BlackTech Hacking Group Exploited Routers to Target U.S. and Japanese Companies

28 September 2023
Cybersecurity agencies from Japan and the U.S. have warned of attacks mounted by a state-backed hacking group from China to stealthily tamper with branch routers and use them as jumping-off points to access the networks of various companies in the two countries. The attacks have been tied to a malicious cyber actor dubbed BlackTech by the U.S. National Security Agency (NSA), Federal Bureau of

Swan Retail Cyberattack Woes Continue for Independent UK Retailers

28 September 2023
The attacks have caused significant problems for retailers, with issues such as inventory management and order fulfillment still not resolved. Retailers have reported glitches and loss of sales due to the cyberattack.

Campbell Soup Says Summer Cyberattack Caused Limited Business Impact

28 September 2023
The incident did not affect systems that connect with customers or suppliers, and the company is working with its insurer to make claims under its cyber insurance coverage.

Amid MGM, Caesars Incidents, Attackers Focus on Luxury Hotels

28 September 2023
The campaign targets luxury resorts and hotel chains, using reconnaissance emails and instant messages to trick employees into responding and downloading malicious files from trusted cloud domains.

Cybersecurity firm Lumu raises $30M to detect network intrusions

28 September 2023
Ricardo Villadiego, Lumu’s founder and CEO, says that the new cash will be put toward growing Lumu’s sales team in the U.S., supporting its go-to-market strategy, and increasing the startup’s investments in R&D.

Cannot Depend on Dependabot: Found Contributing Malicious Code

28 September 2023
Threat actors meticulously fabricated commit messages to mimic Dependabot's automated contributions to mask the malevolent activities they were indulging in. Between July 8 and July 11, an unidentified threat actor began compromising a multitude of GitHub repositories, affecting both public and private sectors, with a significant number of victims originating from Indonesia. The attackers skillfully manipulated commit messages, leading developers to believe that the real Dependabot had made these contributions.

US businesses see cyberattacks decrease; Still too high to sustain

28 September 2023
A recent security report reveals a drop in phishing and ransomware attacks, but fallout from the Las Vegas attacks underscores the massive social engineering vulnerabilities still plaguing businesses.

New Marvin Attack Impacts 25-Year-Old PKCS#1 v1.5 Padding Scheme for RSA Key Exchange

28 September 2023
The encryption method, known as PKCS#1 v1.5 padding scheme, was previously thought to be immune to attacks, but a new paper reveals that many software implementations of the scheme are actually vulnerable.

Department of Defense overhauls cyber strategy: Experts weigh in

28 September 2023
Security leaders discuss recently released unclassified summary of the Department of Defense's classified 2023 Cyber Strategy.

DHS to Host Latin American Cyber Summit as Region Faces an Onslaught of Digital Attacks

28 September 2023
The conference will discuss topics such as protecting critical infrastructure, ransomware, and the U.S. national cyber strategy, aiming to establish a long-lasting relationship with the region on cyber issues.

Chinese State-Sponsored BlackTech Hackers Caught Hiding in Cisco Router Firmware

28 September 2023
A Chinese state-sponsored APT called BlackTech has been caught hacking into network edge devices and using firmware implants to stay hidden and silently hop around the corporate networks of U.S. and Japanese multinational companies.