Latest Cybersecurity News and Articles


Redline Stealer Demonstrates a Low-Barrier-to-Entry Threat

24 August 2023
Variants analyzed can target multiple browsers, including Firefox, Edge, Chrome, and Brave. It can log keystrokes, target Coinomi crypto-wallets, and provide thorough fingerprinting of the local system.

Brazil’s Top Escort Service Exposes Millions of Escort and Client Data

24 August 2023
The exposed data encompassed a vast array of information from the logging database containing around 14.7 million records, totalling a size of approximately 19.17 GB, to the AWS cloud storage which held over 3.5 million files.

Thousands of Unpatched Openfire XMPP Servers Still Exposed to High-Severity Flaw

24 August 2023
Thousands of Openfire XMPP servers are unpatched against a recently disclosed high-severity flaw and are susceptible to a new exploit, according to a new report from VulnCheck. Tracked as CVE-2023-32315 (CVSS score: 7.5), the vulnerability relates to a path traversal vulnerability in Openfire's administrative console that could permit an unauthenticated attacker to access otherwise restricted

Tornado Cash Founders Charged in Billion-Dollar Crypto Laundering Scandal

24 August 2023
The U.S. Justice Department (DoJ) on Wednesday unsealed an indictment against two founders of the now-sanctioned Tornado Cash cryptocurrency mixer service, charging them with laundering more than $1 billion in criminal proceeds. Both the individuals, Roman Storm and Roman Semenov, have been charged with conspiracy to commit money laundering, conspiracy to commit sanctions violations, and

Threat Actors Leverage LLMs-related Facebook Ads to Steal Credentials

24 August 2023
Threat actors were seen exploiting paid Facebook promotions to disseminate malicious code, aiming to deploy a harmful browser add-on for credential theft. Going by the keywords and variables noticed within the malicious script, researchers believe that Vietnamese threat actors could be behind the attack. To prevent falling victim to the ongoing attack campaign, Facebook users are advised to exercise caution when interacting with advertisements.

Security leaders report misalignment of investments and risk reduction

23 August 2023
Sixty-seven percent of organizations experienced a breach requiring attention within the last two years according to a recent Critical Start report.

Thoma Bravo Merges ForgeRock with Ping Identity

23 August 2023
Private equity powerhouse Thoma Bravo on Wednesday announced plans to merge the just-acquired ForgeRock with Ping Identity, combining two of the biggest names in the enterprise identity and access management market.

FBI Says North Korea’s Lazarus Hackers Behind Recent Crypto Heists

23 August 2023
June saw three headline-grabbing incidents involving cryptocurrency companies: a $100 million hack of Atomic Wallet on June 2, as well as two June 22 attacks in which cybercriminals stole $60 million from Alphapo and $37 million from CoinsPaid.

3,000 Openfire Servers Exposed to Attacks Targeting Recent Vulnerability

23 August 2023
Tracked as CVE-2023-32315, the high-severity flaw was discovered in Openfire’s administration console and is described as a path traversal bug via the setup environment that allows unauthenticated attackers to access restricted pages.

University of Minnesota Investigates Alleged Data Breach Involving Seven Million Alumni

23 August 2023
The University of Minnesota has contacted law enforcement and launched an investigation into a data breach that could impact millions of alumni. A hacker claimed to have collected 7 million Social Security numbers in July.

CISA Prioritizing On-Site K-12 Cybersecurity Reviews This School Year

23 August 2023
The assessments can encompass a wide range of individualized reviews and actions, from preventing cyber-enabled fraud schemes to combating ransomware attacks and other digital intrusions.

First Weekly Chrome Security Update Patches High-Severity Vulnerabilities

23 August 2023
Google this week announced a Chrome 116 security update that patches five memory safety vulnerabilities reported by external researchers, including four issues rated ‘high severity’.

Healthcare delivery organizations report concern over malware

23 August 2023
Healthcare delivery organizations' (HDOs) cybersecurity was analyzed in a recent report by Asimily, finding concerns over ransomware and malware.

Report: Ransomware Attackers' Dwell Time Shrinks

23 August 2023
Ransomware-wielding hackers are moving faster than ever to pull the trigger on malicious encryption - but they could be bumping up against the limits of how fast they can go, said security researchers from Sophos.

Ransomware Intrusion Impacts All Servers of Danish Cloud Provider

23 August 2023
The attack occurred on August 18, and since then, efforts have been made to restore the data, but it has proved difficult. CloudNordic has stated that it will not pay the ransom demanded by the hackers.

Supply Chain Attack: Carderbee APT Strikes Hong Kong Organizations

23 August 2023
Undocumented threat cluster Carderbee was observed targeting organizations in Hong Kong and other Asian regions via a trojanized version of the legitimate software EsafeNet Cobra DocGuard Client to deliver the PlugX backdoor and gain access to victim networks. Strengthening supply chain security through thorough vendor assessments and continuous monitoring is essential.

Defense Contractor Belcan Leaks Admin Password With a List of Flaws

23 August 2023
On May 15th, the Cybernews research team discovered an open Kibana instance containing sensitive information regarding Belcan, their employees, and internal infrastructure.

Cybercriminals Turn to AI to Bypass Modern Email Security Measures

23 August 2023
Cybercriminals employ AI to create complex email threats like phishing and business email compromise (BEC) attacks, while modern email security systems use AI to counter these attacks, according to Perception Point and Osterman Research.

Scarab Ransomware Deployed Worldwide via Spacecolon Toolset

23 August 2023
According to an advisory published by ESET, the toolset is believed to gain entry into victim organizations by exploiting vulnerable web servers or leveraging brute-force attacks on Remote Desktop Protocol (RDP) credentials.

North Korean Affiliates Suspected in $40M Cryptocurrency Heist, FBI Warns

23 August 2023
The U.S. Federal Bureau of Investigation (FBI) on Tuesday warned that threat actors affiliated with North Korea may attempt to cash out stolen cryptocurrency worth more than $40 million. The law enforcement agency attributed the blockchain activity to an adversary the U.S. government tracks as TraderTraitor, which is also known by the name Jade Sleet. An investigation undertaken by the FBI found