Latest Cybersecurity News and Articles


Met police on high alert after ‘staggering IT security’ breach

26 August 2023
Met police on high alert after ‘staggering IT security’ breach Potential leaked data from system with access to names, ranks and photos of officers could do ‘incalculable damage in the wrong hands’The Metropolitan police is on high alert after a security breach involving the IT system of one of its suppliers, the force said.Scotland Yard is working with the company to understand the scale of the incident but said on Saturday evening that any leaked data could do “incalculable damage” in the wrong hands. Continue reading...

LockBit 3.0 Ransomware Builder Leak Gives Rise to Hundreds of New Variants

26 August 2023
The leak of the LockBit 3.0 ransomware builder last year has led to threat actors abusing the tool to spawn new variants. Russian cybersecurity company Kaspersky said it detected a ransomware intrusion that deployed a version of LockBit but with a markedly different ransom demand procedure. "The attacker behind this incident decided to use a different ransom note with a headline related to a

UK: Teens Found Responsible for Lapsus$ Cyberattacks

26 August 2023
Arion Kurtaj, 18, was deemed by psychiatrists to be unfit to stand trial. Though he could not be found “guilty” of committing the acts with criminal intent, a jury at Southwark Crown Court determined that he was at least the one who carried them out.

UnitedHealthcare Fined $80K for Six-Month Records Access Delay

26 August 2023
The HHS' Office for Civil Rights said UnitedHealthcare had agreed to settle a case involving potential HIPAA violations related to allegations that the company took six months to fulfill a health plan member's request to access his PHI.

The Three Malware Loaders Behind 80% of Incidents

26 August 2023
QakBot, SocGholish, and Raspberry Robin are the most prevalent malware loaders causing havoc for security teams, with QakBot being the most versatile and persistent threat.

DOJ Charged Tornado Cash Founders With Laundering More Than $1 Billion

26 August 2023
The duo operated the Tornado Cash cryptocurrency mixer that facilitated more than $1 billion in money laundering transactions and laundered hundreds of millions of dollars for the Lazarus APT group.

Adversary On The Defense: ANTIBOT.PW

26 August 2023
The Antibot web traffic filtering service, originally a GitHub project, has evolved into a commercial platform for malicious actors, offering features like cloaking to evade analysis and prolong phishing and malware campaigns.

Malwarebytes Announces Acquisition of Online Privacy Company Cyrus

26 August 2023
This strategic acquisition reinforces Malwarebytes' commitment to privacy by giving users more control over their information, no matter where or how they choose to browse and interact online.

Update: Prospect Medical Stolen Data Listed for Sale by Emerging Ransomware Group

26 August 2023
The Rhysida ransomware group claimed responsibility for a ransomware attack against Prospect Medical Holdings that forced multiple hospital closures earlier this month and continues to impact operations.

Cypago Raises $13 Million for GRC Automation Platform

26 August 2023
The new investment will allow Cypago to expand its research and development, product, and go-to-market teams, and grow its presence in the North American and European markets.

Thousands of SSNs Leaked After Ransomware Attack on Ohio State Archive Organization

26 August 2023
One of the oldest historical societies in the state of Ohio was hit with a ransomware attack that leaked the sensitive information of thousands, according to a statement the organization released this week.

Update: Discord Notifies Users of Data Breach Impacting 180 Accounts

26 August 2023
The breach, which was publicly acknowledged by Discord in May 2023, impacted a total of 180 accounts, according to a data breach notification filed with the Office of the Maine Attorney General.

Kroll Suffers Data Breach: Employee Falls Victim to SIM Swapping Attack

26 August 2023
Risk and financial advisory solutions provider Kroll on Friday disclosed that one of its employees fell victim to a "highly sophisticated" SIM swapping attack. The incident, which took place on August 19, 2023, targeted the employee's T-Mobile account, the company said. "Specifically, T-Mobile, without any authority from or contact with Kroll or its employee, transferred that employee's phone

There was a 387% increase in attack activity from Q1 to Q2 2023

25 August 2023
Global Distributed Denial of Service (DDoS) attacks during the first half of 2023 were analyzed in a recent report by Zayo Group Holdings.

Bankrupt Crypto Platforms FTX and BlockFi Warn Customers of Data Breach

25 August 2023
FTX learned that Kroll, the claims agent in the bankruptcy, experienced a cybersecurity incident that compromised non-sensitive customer data of certain claimants in the pending bankruptcy case.

32% of security leaders struggle with prioritizing improvements

25 August 2023
According to a Cloud Security Alliance report, 32% of respondents disclosed that they're struggling with prioritizing security improvements.

Kroll Employee SIM-Swapped for Crypto Investor Data

25 August 2023
Security consulting giant Kroll disclosed today that a SIM-swapping attack against one of its employees led to the theft of user information for multiple cryptocurrency platforms that are relying on Kroll services in their ongoing bankruptcy proceedings. And there are indications that fraudsters may already be exploiting the stolen data in phishing attacks. Cryptocurrency lender BlockFi and the now-collapsed crypto trading platform FTX each disclosed data breaches this week thanks to a recent SIM-swapping attack targeting an employee of Kroll -- the company handling both firms' bankruptcy restructuring.

Cisco NX-OS Software TACACS+ or RADIUS Remote Authentication Directed Request Denial of Service Vulnerability

25 August 2023
This vulnerability can only be exploited over Telnet, which is disabled by default, or over the console management connection. This vulnerability cannot be exploited over SSH connections to the device.

Ransomware With an Identity Crisis Targets Small Businesses, Individuals

25 August 2023
A key reason it was so tricky for researchers to identify TZW as a spinoff of Adhubllka is because of the small ransom demands the group typically makes. At such a level, victims often pay attackers and the attackers continue to fly under the radar.

Gary Perkins hired as Chief Information Security Officer at CISO Global

25 August 2023
Gary Perkins has been hired as CISO at CISO Global. In his new role, Perkins will spearhead cybersecurity strategies and risk management initiatives.