Latest Cybersecurity News and Articles


China Accuses U.S. of Decade-Long Cyber Espionage Campaign Against Huawei Servers

21 September 2023
China's Ministry of State Security (MSS) has accused the U.S. of breaking into Huawei's servers, stealing critical data, and implanting backdoors since 2009, amid mounting geopolitical tensions between the two countries. In a message posted on WeChat, the government authority said U.S. intelligence agencies have "done everything possible" to conduct surveillance, secret theft, and intrusions on

T-Mobile App Glitch Let Users See Other People’s Account Info

21 September 2023
According to user reports on social media, the exposed information included customers' names, phone numbers, addresses, account balances, and credit card details like the expiration dates and the last four digits.

Australia to Build ‘Six Cyber Shields’ to Defend Nation

21 September 2023
Australia is rolling out a six-pillar cyber security strategy to safeguard its digital interests, covering education, technology safety, threat-sharing, infrastructure protection, infosec capability, and global coordination.

Cyber Group 'Gold Melody' Selling Compromised Access to Ransomware Attackers

21 September 2023
A financially motivated threat actor has been outed as an initial access broker (IAB) that sells access to compromised organizations for other adversaries to conduct follow-on attacks such as ransomware. SecureWorks Counter Threat Unit (CTU) has dubbed the e-crime group Gold Melody, which is also known by the names Prophet Spider (CrowdStrike) and UNC961 (Mandiant). "This financially motivated

Update: Transunion Denies it Was Hacked, Links Leaked Data to Third Party

21 September 2023
The investigation into the claims found that the information leaked by USDoD was likely obtained from another organization's systems, given that the data and its formatting are different than TransUnion's.

Ukrainian Hacker Suspected to be Behind "Free Download Manager" Malware Attack

21 September 2023
The maintainers of Free Download Manager (FDM) have acknowledged a security incident dating back to 2020 that led to its website being used to distribute malicious Linux software. "It appears that a specific web page on our site was compromised by a Ukrainian hacker group, exploiting it to distribute malicious software," it said in an alert last week. "Only a small subset of users, specifically

CIO Accuses Penn State of Faking Cybersecurity Compliance

21 September 2023
Pennsylvania State University (Penn State) is facing a lawsuit filed by a former chief information officer (CIO) who alleges that the university falsified government security compliance reports.

White House Grapples With Harmonizing Thicket of Cybersecurity Rules

21 September 2023
Recently, the White House has begun streamlining the myriad of cybersecurity regulations and technical standards that corporations and critical infrastructure must follow.

Another $40m Dispersed to Western Union Fraud Victims

21 September 2023
The new $40m tranche of money was forfeited by the Colorado-headquartered financial services giant to the Department of Justice (DoJ) to reimburse 25,000 victims in the US and abroad.

Fake CVE-2023-40477 Proof of Concept Leads to VenomRAT

21 September 2023
Threat actors are repurposing older proof of concept code to create fake PoCs for newly released vulnerabilities, aiming to compromise other miscreants rather than specifically targeting researchers.

AMBERSQUID Cryptojacking Operation: Unusual AWS Services Under Attack

21 September 2023
The AMBERSQUID cryptojacking operation targets obscure AWS services like AWS Amplify, AWS Fargate, and Amazon SageMaker, effectively bypassing AWS's resource approval process to mine cryptocurrency covertly. If AMBERSQUID were to expand its scope to target all AWS regions, it could potentially lead to daily losses exceeding $10,000. To counter such threats, organizations must intensify vigilance, deploy robust monitoring systems, and enforce strict access controls. 

Beware: Fake Exploit for WinRAR Vulnerability on GitHub Infects Users with VenomRAT

21 September 2023
A malicious actor released a fake proof-of-concept (PoC) exploit for a recently disclosed WinRAR vulnerability on GitHub with an aim to infect users who downloaded the code with VenomRAT malware. "The fake PoC meant to exploit this WinRAR vulnerability was based on a publicly available PoC script that exploited a SQL injection vulnerability in an application called GeoServer, which is tracked as

Ransomware cyber insurance claims rose by 27%

20 September 2023
Cyber insurance claims and trends were analyzed in a recent report finding a 12% increase in cyber claims over the first six months of the year.

Atos Unify Vulnerabilities Could Allow Hackers to Backdoor Systems

20 September 2023
The flaws were found in the unified communications and collaboration solution by researchers at SEC Consult, an Austria-based cybersecurity consulting firm that is part of the Atos Group’s Eviden business.

Critical Security Flaws Exposed in Nagios XI Network Monitoring Software

20 September 2023
The four security vulnerabilities, tracked as CVE-2023-40931 through CVE-2023-40934, impact Nagios XI versions 5.11.1 and lower. Following disclosure on August 4, They have been patched as of September 11, with the release of version 5.11.2.

Data Breach at Pizza Hut Australia Exposes Customer Information and Order Details

20 September 2023
In an email to customers on Wednesday, Pizza Hut Australia’s chief executive, Phil Reed, said the company became aware in early September that there had been “unauthorised third party” access to some of the company’s data.

DHS: Ransomware attackers headed for second most profitable year

20 September 2023
Ransomware attackers remain a major threat to the United States and are on pace to have their second most profitable year ever, the Department of Homeland Security said in an annual report.

55% of insider threats come from a negligent or mistaken insider

20 September 2023
The causes and costs of insider threats were analyzed in a recent report that found that the average annual cost of an insider risk has increased 40%.

CrowdStrike to Buy AppSec Startup Bionic for Reported $350M

20 September 2023
CrowdStrike plans to purchase a Silicon Valley application security startup founded by two Israel Defense Forces veterans in a bid to expand risk visibility and protection across entire cloud computing environments.

Chinese-Language Speakers Targeted with Sainbox RAT, ValleyRAT, and Gh0stRAT

20 September 2023
The increase in activity suggests increased availability or ease of access to payloads and target lists, as well as potentially increased activity by Chinese-speaking cybercrime operators.