Latest Cybersecurity News and Articles


HotRat as Hidden Script in Cracked Software

21 July 2023
In a recent encounter, security researchers stumbled across a HotRat malware distribution campaign that cybercriminals were offering bundled as cracked programs and games. HotRat is an offshoot of the open-source AsyncRAT framework. Implement strict software policies, regularly update and patch systems, and educate users about the risks of using cracked software.

HotRat: New Variant of AsyncRAT Malware Spreading Through Pirated Software

21 July 2023
A new variant of AsyncRAT malware dubbed HotRat is being distributed via free, pirated versions of popular software and utilities such as video games, image and sound editing software, and Microsoft Office.

FI$Cal names Benson as new Chief of Information Security

21 July 2023
The Department of Financial Information System for California (FISCal) has hired Jennifer Benson as the new Chief of the Information Security Office.

Azure AD Token Forging Technique in Microsoft Attack Extends Beyond Outlook, Wiz Reports

21 July 2023
The recent attack against Microsoft's email infrastructure by a Chinese nation-state actor referred to as Storm-0558 is said to have a broader scope than previously thought. According to cloud security company Wiz, the inactive Microsoft account (MSA) consumer signing key used to forge Azure Active Directory (Azure AD or AAD) tokens to gain illicit access to Outlook Web Access (OWA) and

HotRat: New Variant of AsyncRAT Malware Spreading Through Pirated Software

21 July 2023
A new variant of AsyncRAT malware dubbed HotRat is being distributed via free, pirated versions of popular software and utilities such as video games, image and sound editing software, and Microsoft Office. "HotRat malware equips attackers with a wide array of capabilities, such as stealing login credentials, cryptocurrency wallets, screen capturing, keylogging, installing more malware, and

Android SpyNote Attacks Electric and Water Public Utility Users in Japan

21 July 2023
A smishing campaign is targeting Japanese Android users by posing as a power and water infrastructure company and luring victims to a phishing website to download the SpyNote malware.

Apache OpenMeetings Web Conferencing Tool Exposed to Critical Vulnerabilities

21 July 2023
Multiple security flaws have been disclosed in Apache OpenMeetings, a web conferencing solution, that could be potentially exploited by malicious actors to seize control of admin accounts and run malicious code on susceptible servers.

Mallox Ransomware Activity Surges by 174%

21 July 2023
Mallox ransomware activity surged by nearly 174% in 2023, using the new variant Xollam, employing the double extortion tactic to demand ransom from victims. The development is also being perceived as more affiliate groups coming together in this mission. Organizations must remain vigilant and adapt security measures to stay one step ahead of such threats.

Amazon Agrees to $25 Million Fine for Alexa Children Privacy Violations

21 July 2023
The U.S. Justice Department and the Federal Trade Commission (FTC) announced that Amazon has agreed to pay a $25 million fine to settle alleged children's privacy laws violations related to the company's Alexa voice assistant service.

Sophisticated BundleBot Malware Disguised as Google AI Chatbot and Utilities

21 July 2023
A new malware strain known as BundleBot has been stealthily operating under the radar by taking advantage of .NET single-file deployment techniques, enabling threat actors to capture sensitive information from compromised hosts.

Pro-Russian Hacktivists Attributed to the Surge in DDoS Attacks in Q2

21 July 2023
Sophisticated DDoS attacks worldwide reached 5.4 trillion in Q2 2023. This represents a 15% increase compared to the number of attacks observed in Q1 2023. One of the factors associated with the pro-Russia hacker groups REvil, Killnet, and Anonymous Sudan targeting Western websites amid the war in Ukraine. Enabling firewalls, and having good internet security solutions are recommended to ensure safer internet browsing.

Update: Chinese Hackers Breached Ambassador’s Email According to New Report

21 July 2023
A Chinese cyber-espionage campaign revealed by Microsoft last week compromised the government email account of the US ambassador to China and other officials, a new report has claimed.

Suzuki Dealership Websites in Brazil and Bahrain Leave Credentials, Secret Tokens Exposed

21 July 2023
The exposed data included passwords, secret tokens, and credentials, which could have been used by malicious actors to carry out attacks such as phishing campaigns and website manipulation.

Sophisticated BundleBot Malware Disguised as Google AI Chatbot and Utilities

21 July 2023
A new malware strain known as BundleBot has been stealthily operating under the radar by taking advantage of .NET single-file deployment techniques, enabling threat actors to capture sensitive information from compromised hosts. "BundleBot is abusing the dotnet bundle (single-file), self-contained format that results in very low or no static detection at all," Check Point said in a report

Citrix Zero-Day Exploited Against Critical Infrastructure Organization

21 July 2023
The US Cybersecurity and Infrastructure Security Agency (CISA) revealed on Thursday that the recently disclosed Citrix zero-day vulnerability tracked as CVE-2023-3519 has been exploited against a critical infrastructure organization.

Android Spyware WyrmSpy and DragonEgg Attributed to APT41

21 July 2023
The Chinese nation-state group APT41 has been associated with two new Android spyware strains, named WyrmSpy and DragonEgg. The initial infection vector for the mobile surveillanceware campaign remains uncertain, but social engineering is suspected. Users should avoid downloading apps from untrusted third-party sources or download apps with credibility.

Exploring the Macro Shifts in Enterprise Security

21 July 2023
The number of successful ransomware attacks and data breach attempts fell by 30% over the last year, the number of reported security incident types at organizations increased, according to the 2023 Cybersecurity Perspectives Survey by Scale.

Local Governments Targeted for Ransomware – How to Prevent Falling Victim

21 July 2023
Regardless of the country, local government is essential in most citizens' lives. It provides many day-to-day services and handles various issues. Therefore, their effects can be far-reaching and deeply felt when security failures occur. In early 2023, Oakland, California, fell victim to a ransomware attack. Although city officials have not disclosed how the attack occurred, experts suspect a

Threat Group Assessment: Mallox Ransomware

21 July 2023
Mallox ransomware is a strain of ransomware that targets Microsoft Windows systems. It has been active since June 2021 and has recently seen an increase in activity, with a 174% rise in attacks compared to the previous year.

LLMs and AI positioned to dominate the AppSec world

21 July 2023
As modern software trends toward distributed architectures, microservices, and extensive use of third-party and open-source components, dependency management only gets harder, according to Endor Labs.