Latest Cybersecurity News and Articles
11 September 2023
According to the API security company Traceable, in collaboration with the Ponemon Institute, 60% of organizations surveyed reported at least one breach within the past two years, with 74% experiencing three or more incidents.
11 September 2023
HijackLoader has been observed loading various malware families such as Danabot, SystemBC, and RedLine Stealer. The malware uses syscalls to evade security solutions, has anti-analysis techniques, and delays code execution at different stages.
11 September 2023
The UK government appears to have pulled back on a controversial clause in its forthcoming Online Safety Bill that would have forced tech companies to snoop on users’ messages.
11 September 2023
These scams now impersonate security providers like McAfee and Avast and use pirated movie streaming websites and social media platforms like X (formerly Twitter) to direct users to fraudulent tech-support pages.
11 September 2023
The San Francisco-based company plans to invest in artificial intelligence (AI) that converts text-based policies into controlled workflows integrated with third-party tools.
11 September 2023
The vulnerability allows attackers to conduct password spraying and brute-force attacks, potentially leading to the identification of valid credentials and unauthorized remote access VPN sessions.
11 September 2023
The vulnerability allows attackers to conduct password spraying and brute-force attacks, potentially leading to the identification of valid credentials and unauthorized remote access VPN sessions.
11 September 2023
Researchers have claimed that an individual employed by a Washington DC-based organization with international offices was targeted with the Pegasus spyware, raising new concerns about the proliferation of spyware that can infect Apple devices.
11 September 2023
The attack against the company, detected last week, peaked at 633.7 gigabits of traffic per second. According to the cloud computing company Gcore, as of this year, DDoS attacks can reach as high as 800 Gbps.
11 September 2023
A new cyber attack campaign is leveraging the PowerShell script associated with a legitimate red teaming tool to plunder NTLMv2 hashes from compromised Windows systems primarily located in Australia, Poland, and Belgium.
The activity has been codenamed Steal-It by Zscaler ThreatLabz.
"In this campaign, the threat actors steal and exfiltrate NTLMv2 hashes using customized versions of Nishang's
11 September 2023
A new malware loader called HijackLoader is gaining traction among the cybercriminal community to deliver various payloads such as DanaBot, SystemBC, and RedLine Stealer.
"Even though HijackLoader does not contain advanced features, it is capable of using a variety of modules for code injection and execution since it uses a modular architecture, a feature that most loaders do not have," Zscaler
11 September 2023
W3LL, an initially obscure threat group, has transformed into a significant player in the cyber underworld, selling a phishing kit called W3LL Panel and 16 specialized tools for BEC attacks. Group-IB identified close to 850 unique phishing websites attributed to the W3LL Panel. Phishing kits remain a potential threat in today’s dynamic threat landscape, which emphasizes the importance of staying up-to-date about changing TTPs used by threat actors.
11 September 2023
Cybercriminals were observed exploiting Google Looker Studio to create counterfeit cryptocurrency phishing websites. Through this, attackers aim to deceive recipients into revealing their crypto wallet login details. Check Point recommends implementing a comprehensive security posture with document and file scanning abilities and deploying a solid URL protection system.
11 September 2023
In this edition of Security’s Top 5 from Security magazine, we showcase the top stories and new developments from across the security industry throughout August.
10 September 2023
Joint white paper from the NCSC and NCA details how organised criminal groups have evolved as ransomware and extortion attacks have grown.
09 September 2023
The CISA added CVE-2023-33246 to its Known Exploited Vulnerabilities Catalog. It means government agencies have until September 27 to apply a vendor patch to affected systems, although private enterprises are encouraged to follow suit.
09 September 2023
As part of the observed attacks, threat actors are using Google Looker Studio to create fake crypto pages that are then delivered to the intended victims in emails sent from the legitimate tool itself.
09 September 2023
Notepad++ version 8.5.7 has been released with fixes for multiple buffer overflow zero-days, with one marked as potentially leading to code execution by tricking users into opening specially crafted files.
09 September 2023
Spyware masquerading as modified versions of Telegram have been spotted in the Google Play Store that’s designed to harvest sensitive information from compromised Android devices.
According to Kaspersky security researcher Igor Golovin, the apps come with nefarious features to capture and exfiltrate names, user IDs, contacts, phone numbers, and chat messages to an actor-controlled server.
The
09 September 2023
The individuals targeted by the sanctions “include key actors involved in management and procurement for the Trickbot group, which has ties to Russian intelligence services,” according to the U.S. Treasury.