Latest Cybersecurity News and Articles


Chinese Hackers Stole Emails From US State Department in Microsoft Breach, Senate Staffer Says

28 September 2023
Chinese hackers breached Microsoft's email platform and stole tens of thousands of emails from U.S. State Department accounts, including those of officials working on Indo-Pacific diplomacy efforts.

The Dark Side of Browser Isolation – and the Next Generation Browser Security Technologies

28 September 2023
The landscape of browser security has undergone significant changes over the past decade. While Browser Isolation was once considered the gold standard for protecting against browser exploits and malware downloads, it has become increasingly inadequate and insecure in today's SaaS-centric world. The limitations of Browser Isolation, such as degraded browser performance and inability to tackle

Building Automation Giant Johnson Controls Hit by Dark Angels Ransomware Attack

28 September 2023
The ransomware gang, known as Dark Angels, has demanded a $51 million ransom and claimed to have stolen over 27 TB of corporate data from the network of Johnson Controls.

‘Snatch’ Ransom Group Exposes Visitor IP Addresses

28 September 2023
The leaked data from Snatch's victim shaming site reveals that the group's darknet site attracts a significant number of visitors from Russia, potentially indicating their source of victims.

macOS 14 Sonoma Patches 60 Vulnerabilities

28 September 2023
While some of these vulnerabilities can be exploited remotely by getting the targeted user to access a specially crafted website, a majority require the presence of a malicious app on the targeted device.

China-Linked Budworm Targeting Middle Eastern Telco and Asian Government Agencies

28 September 2023
Government and telecom entities have been subjected to a new wave of attacks by a China-linked threat actor tracked as Budworm using an updated malware toolset. The intrusions, targeting a Middle Eastern telecommunications organization and an Asian government, took place in August 2023, with the adversary deploying an improved version of its SysUpdate toolkit, the Symantec Threat Hunter Team,

RICO Class-Action Data Privacy Lawsuit Filed Against H&R Block, Google, Meta

28 September 2023
The suit claims that the companies violated data privacy laws by sharing customer tax return data without adequate disclosure, potentially creating targeted advertising dossiers.

Simple Membership Plugin Flaws Expose WordPress Sites

28 September 2023
Two new security flaws in the popular Simple Membership plugin for WordPress, affecting versions 4.3.4 and below, have been identified, leading to potential privilege escalation issues.

Network Flight Simulator: Open-Source Adversary Simulation Tool

28 September 2023
The tool simulates various malicious traffic patterns, including DNS tunneling, DGA traffic, and requests to known active C2 destinations, to quantify and measure the coverage of existing detection tools.

Google Releases Patch for Actively Exploited Zero-Day Vulnerability in Chrome

28 September 2023
Tracked as CVE-2023-5217, the high-severity vulnerability has been described as a heap-based buffer overflow in the VP8 compression format in libvpx, a free software video codec library from Google and the Alliance for Open Media (AOMedia).

Threat Actors Exploit the Tensions Between Azerbaijan and Armenia

28 September 2023
A spearphishing campaign targeting management teams associated with an Azerbaijanian company exploits the conflict between Azerbaijan and Armenia, using malware disguised as an infected memo to gather basic computer information from its targets.

Researchers Release Details of New RCE Exploit Chain for SharePoint

28 September 2023
Attackers can exploit a couple of vulnerabilities, tracked as CVE-2023-29357 and CVE-2023-24955, to gain admin privileges, execute arbitrary code, and potentially cause denial of service attacks or compromise sensitive data.

Firefox 118 Patches High-Severity Vulnerabilities

28 September 2023
The vulnerabilities in Firefox include out-of-bounds write issues, memory leaks, use-after-free conditions, and memory corruption, which could potentially allow attackers to execute arbitrary code or cause crashes.

Gem Security Raises $23M for Its Cloud Security Platform

28 September 2023
The cloud security company raised $23 million in a Series A funding round led by GGV Capital, with participation from IBM Ventures, Team8, and Silicon Valley CISO Investments.

Update Chrome Now: Google Releases Patch for Actively Exploited Zero-Day Vulnerability

27 September 2023
Google on Wednesday rolled out fixes to address a new actively exploited zero-day in the Chrome browser. Tracked as CVE-2023-5217, the high-severity vulnerability has been described as a heap-based buffer overflow in the VP8 compression format in libvpx, a free software video codec library from Google and the Alliance for Open Media (AOMedia). Exploitation of such buffer overflow flaws can

Github Repositories Bombarded by Info-Stealing Commits Masked as Dependabot

27 September 2023
The attack involves creating fake commit messages titled "fix" to introduce malware that extracts secrets from targeted repositories and steals passwords from web-form submissions.

ShadowSyndicate: New RaaS Connected to Multiple Ransomware Families

27 September 2023
Researchers have discovered the infrastructure linked to a threat group called ShadowSyndicate, believed to have launched attacks using seven distinct ransomware families in the last year. ShadowSyndicate has been identified as using a consistent SSH fingerprint across 85 servers.

Newly Discovered ZenRAT Malware Targets Windows Users

27 September 2023
A new malware strain called ZenRAT has emerged in the wild to steal information from Windows systems. It was initially discovered on a website pretending to be associated with the open-source password manager Bitwarden. People should be wary of ads in search engine results as they remain a major driver of malware infection.

Creating an impactful culture in remote work environment

27 September 2023
Jim Barkdoll, CEO at Axiomatics, discusses what initiatives or strategies organizations can utilize to build or maintain an impactful culture in a remote work environment, and more.

Red Cross-Themed Phishing Attacks Distributing DangerAds and AtlasAgent Backdoors

27 September 2023
A new threat actor known as AtlasCross has been observed leveraging Red Cross-themed phishing lures to deliver two previously undocumented backdoors named DangerAds and AtlasAgent. NSFOCUS Security Labs described the adversary as having a "high technical level and cautious attack attitude," adding that "the phishing attack activity captured this time is part of the attacker's targeted strike on