Latest Cybersecurity News and Articles


Job Scams Using Bioscience Lures Target Universities

20 July 2023
The threat actors used email lures, posing as bioscience and health organizations, to entice recipients. The emails contained attached PDFs with information about the organization and the job, as well as salary and equipment specifications.

Two Jira Plugin Vulnerabilities in Attacker Crosshairs

20 July 2023
Attackers are apparently trying to exploit two path traversal vulnerabilities in the ‘Stagil navigation for Jira – Menus & Themes’ plugin, the SANS Internet Storm Center warns.

Threat Actors Enhance Phishing Tactics with Zip Domains

20 July 2023
Researchers have discovered a rising trend of .zip domains in phishing campaigns that criminals are utilizing to boost their phishing attacks and improve their effectiveness. Many anti-phishing solutions are designed to scan URLs for suspicious keywords or patterns, but they may not adequately detect zip domains. Stay informed about evolving phishing tactics and invest in robust anti-phishing solutions.

New P2PInfect Worm Targeting Redis Servers on Linux and Windows Systems

20 July 2023
Cybersecurity researchers have uncovered a new cloud targeting, peer-to-peer (P2P) worm called P2PInfect that targets vulnerable Redis instances for follow-on exploitation. "P2PInfect exploits Redis servers running on both Linux and Windows Operating Systems making it more scalable and potent than other worms," Palo Alto Networks Unit 42 researchers William Gamazo and Nathaniel Quist said. "This

Microsoft Expands Cloud Logging to Counter Rising Nation-State Cyber Threats

20 July 2023
Microsoft on Wednesday announced that it's expanding cloud logging capabilities to help organizations investigate cybersecurity incidents and gain more visibility after facing criticism in the wake of a recent espionage attack campaign aimed at its email infrastructure. The tech giant said it's making the change in direct response to increasing frequency and evolution of nation-state cyber

Adobe Rolls Out New Patches for Actively Exploited ColdFusion Vulnerability

19 July 2023
Adobe has released a fresh round of updates to address an incomplete fix for a recently disclosed ColdFusion flaw that has come under active exploitation in the wild. The critical shortcoming, tracked as CVE-2023-38205 (CVSS score: 7.5), has been described as an instance of improper access control that could result in a security bypass. It impacts the following versions: ColdFusion 2023 (Update

Banks reveal concern over insider threats

19 July 2023
A report highlights the most prominent threats visible on the dark web including posts on dark web forums, insider threats and supply chain attacks.

Tech Support Scams Now Use Shipping Companies to Collect Cash

19 July 2023
FBI warns of a surge in tech support scams targeting the elderly across the United States and urging victims to dispatch cash concealed within magazines or similar items through shipping firms.

Legislators say HHS is failing to adequately protect health records from law enforcement

19 July 2023
Lawmakers are demanding the Department of Health and Human Services (HHS) to prevent law enforcement from accessing reproductive and other health records without a warrant.

DangerousPassword Attacks Targeting Developers’ Windows, macOS, and Linux Environments

19 July 2023
The targeted attack group DangerousPassword has been continuously attacking cryptocurrency exchange developers since June 2019, using malware that infects Windows, macOS, and Linux environments with Python and Node.js installed.

New Attack Campaign Enters the 'FakeUpdates' Arena to Deliver NetSupport RAT

19 July 2023
A new campaign called FakeSG, similar to SocGholish, is using hacked WordPress websites to distribute the NetSupport RAT and deliver additional payloads. FakeSG utilizes different layers of obfuscation and delivery techniques.

Norwegian Mining and Recycling Company TOMRA Experiences Disruptive Cyberattack

19 July 2023
The cyberattack on TOMRA highlights the ongoing threat to companies involved in critical infrastructure, with potential significant financial and social damage if operations are disrupted.

Critical infrastructure workers more likely to detect, report phishing

19 July 2023
A new report reveals that two thirds of critical infrastructure employees report a real malicious email attack within first year of training.

Chinese APT41 Hackers Target Mobile Devices with New WyrmSpy and DragonEgg Spyware

19 July 2023
APT41, also known as Axiom, Blackfly, Brass Typhoon (formerly Barium), Bronze Atlas, HOODOO, Wicked Panda, and Winnti, is known to be operational since at least 2007, targeting a wide range of industries to conduct intellectual property theft.

2022 ransomware attacks declined in number but grew in sophistication

19 July 2023
A recent report finds that state, local and educational organizations, despite having lower profiles, are still at risk of a cyberattack.

Trends in Ransomware-as-a-Service and Cryptocurrency to Monitor

19 July 2023
To defend against RaaS groups, organizations need a holistic, defense-in-depth approach that includes measures like multi-factor authentication, email security, patch management, and comprehensive asset management.

Cybersecurity Firm Sophos Impersonated by New SophosEncrypt Ransomware

19 July 2023
Discovered yesterday by MalwareHunterTeam, the ransomware was initially thought to be part of a red team exercise by Sophos. However, the Sophos X-Ops team tweeted that they did not create the encryptor and that they are investigating its launch.

Ukraine Police Bust Another Bot Farm Accused of Pro-Russia Propaganda, Internet Fraud

19 July 2023
Ukraine's Cyber Police shut down yet another bot farm that was reportedly spreading disinformation about the war in Ukraine on social media, just one month after a similar illicit operation was raided in west-central Ukraine.

How to Manage Your Attack Surface?

19 July 2023
Attack surfaces are growing faster than security teams can keep up. To stay ahead, you need to know what's exposed and where attackers are most likely to strike. With cloud migration dramatically increasing the number of internal and external targets, prioritizing threats and managing your attack surface from an attacker's perspective has never been more important. Let's look at why it's growing

CISA and NSA Issue New Guidance to Strengthen 5G Network Slicing Against Threats

19 July 2023
U.S. cybersecurity and intelligence agencies have released a set of recommendations to address security concerns with 5G standalone network slicing and harden them against possible threats. "The threat landscape in 5G is dynamic; due to this, advanced monitoring, auditing, and other analytical capabilities are required to meet certain levels of network slicing service level requirements over