Latest Cybersecurity News and Articles


US Internet Hosting Company Appears to Facilitate Global Cybercrime, Researchers Say

02 August 2023
A little-known American internet hosting company appears to be partially enabling a “wide range” of cybercrime, nation-state hackers and a sanctioned spyware vendor, researchers alleged Tuesday.

Threat Actors Abuse Google AMP for Evasive Phishing Attacks

02 August 2023
The idea behind using Google AMP URLs embedded in phishing emails is to make sure that email protection technology does not flag messages as malicious or suspicious due to Google’s good reputation.

Socket Lands $20M Investment to Help Companies Secure Open Source Software

02 August 2023
The round was led by Andreessen Horowitz (a16z), along with participation from Abstract Ventures, Wndrco, Unusual Ventures, and a high-profile list of angel investors, including the co-founders of Box, Figma, Okta, Vercel, and Eventbrite.

New Infostealer Uncovered in Phishing Scam Targeting Facebook Business Accounts

02 August 2023
This novel campaign, believed to be perpetrated by a threat actor of Vietnamese origin, is part of a growing trend of attackers targeting Facebook business accounts for advertising fraud and other purposes in the past year.

Forgepoint Capital Places $15M Series A Bet on Converge Insurance

02 August 2023
“This funding will enable us to expand our outreach and grow our bench of in-house experts while accelerating the availability of the Converge platform worldwide,” the newly appointed CEO, Tom Kang, said.

Meow Attack Campaign Evolves to Target Jupyter Notebooks

02 August 2023
Aquasec researchers have discovered cybercriminals targeting unsecured Jupyter notebooks in the new Meow attack campaign, which is currently affecting hundreds of publicly accessible databases online. These criminals have wiped out data from over 4,000 databases, including Cassandra, CouchDB, Redis, Hadoop, Jenkins, and Apache ZooKeeper. Databases at organizations must be scrutinized to identify any security gaps.

Iranian Company Cloudzy Accused of Aiding Cybercriminals and Nation-State Hackers

02 August 2023
Services offered by an obscure Iranian company known as Cloudzy are being leveraged by multiple threat actors, including cybercrime groups and nation-state crews. "Although Cloudzy is incorporated in the United States, it almost certainly operates out of Tehran, Iran – in possible violation of U.S. sanctions – under the direction of someone  going by the name Hassan Nozari," Halcyon said in a

CISA and NCSC-NO Release Joint Cybersecurity Advisory on Threat Actors Exploiting Ivanti EPMM Vulnerabilities

02 August 2023
CISA and NCSC-NO recommend administrators use the CISA developed nuclei templates to determine if their system has these vulnerabilities and use the NCSC-NO developed checklist to identify signs of compromise.

UK: NHS Staff Reprimanded for WhatsApp Data Sharing

02 August 2023
Some 26 staff at NHS Lanarkshire accessed the WhatsApp group between April 2020 and April 2022, entering sensitive patient data including names, phone numbers, addresses, images, videos, screenshots, and clinical information, according to the UK ICO.

Norwegian Entities Targeted in Ongoing Attacks Exploiting Ivanti EPMM Vulnerability

01 August 2023
Advanced persistent threat (APT) actors exploited a recently disclosed critical flaw impacting Ivanti Endpoint Manager Mobile (EPMM) as a zero-day since at least April 2023 in attacks directed against Norwegian entities, including a government network. The disclosure comes as part of a new joint advisory released by the Cybersecurity and Infrastructure Security Agency (CISA) and the Norwegian

MacOS malware discovered on Russian dark web forum

01 August 2023
Hidden virtual network computing (hVNC) malware specifically targeting macOS was identified by Guardz on the Russian dark web forum Exploit.

New NodeStealer Targeting Facebook Business Accounts and Crypto Wallets

01 August 2023
Cybersecurity researchers have unearthed a Python variant of a stealer malware NodeStealer that's equipped to fully take over Facebook business accounts as well as siphon cryptocurrency. Palo Alto Network Unit 42 said it detected the previously undocumented strain as part of a campaign that commenced in December 2022. NodeStealer was first exposed by Meta in May 2023, describing it as a stealer

Dynatrace Acquires Cloud-Native Debugging Platform Rookout

01 August 2023
Observability and security platform Dynatrace today announced that it plans to acquire Rookout, a Tel Aviv-based observability startup that focuses on helping developers troubleshoot and debug their code in production.

10% of expired certificates on the internet pose a security threat

01 August 2023
A  survey found that nearly 80% of transport layer security (TLS) certificates on the Internet are vulnerable to Man in the Middle (MiM) attacks.

Hackers Steal Signal, Whatsapp User Data With Fake Android Chat App

01 August 2023
The Android spyware is suspected to be a variant of "Coverlm," which steals data from communication apps such as Telegram, Signal, WhatsApp, Viber, and Facebook Messenger.

Iranian Hackers Posed as Israelis in Targeted LinkedIn Phishing Attack

01 August 2023
During the conversation, the malicious actors would send seemingly harmless attachments, such as invitations to conferences or files related to the targets’ professional interests, such as studies or articles.

Researchers Expose Space Pirates' Cyber Campaign Across Russia and Serbia

01 August 2023
"The cybercriminals' main goals are still espionage and theft of confidential information, but the group has expanded its interests and the geography of its attacks," Positive Technologies said in a deep dive report published last week.

Stremio Vulnerability Exposes Millions to Attack

01 August 2023
CyFox researchers have discovered a DLL planting/hijacking vulnerability in popular media center application Stremio, which could be exploited by attackers to execute code on the victim’s system, steal information, and more.

Meow Campaign Reaches Misconfigured Jupyter Notebook Instances

01 August 2023
The "Meow" campaign, targeting unsecured databases, has resurfaced, with the threat actor using misconfigured Jupyter Notebook instances to gather information and delete databases.

Report finds 164% increase in cyber threats targeting brands

01 August 2023
A new report reveals an increase in key personnel and corporate social media impersonation accounts, among other threats targeting brands.