Latest Cybersecurity News and Articles


Cybersecurity Agencies Sound Alarm on Rising TrueBot Malware Attacks

07 July 2023
Cybersecurity agencies have warned about the emergence of new variants of the TrueBot malware. This enhanced threat is now targeting companies in the U.S. and Canada with the intention of extracting confidential data from infiltrated systems. These sophisticated attacks exploit a critical vulnerability (CVE-2022-31199) in the widely used Netwrix Auditor server and its associated agents. This

Iranian Hackers' Sophisticated Malware Targets Windows and macOS Users

06 July 2023
The Iranian nation-state actor known as TA453 has been linked to a new set of spear-phishing attacks that infect both Windows and macOS operating systems with malware. "TA453 eventually used a variety of cloud hosting providers to deliver a novel infection chain that deploys the newly identified PowerShell backdoor GorjolEcho," Proofpoint said in a new report. "When given the opportunity, TA453

Experts discuss cyberattack at Japan's largest port

06 July 2023
Operations came to a halt after Japan’s largest port, Port of Nagoy, was hit with a ransomware attack earlier this week.

Experts discuss cyber attack at Japan's largest port

06 July 2023
Operations came to a halt after Japan’s largest port, Port of Nagoy, was hit with a ransomware attack earlier this week.

TeamsPhisher Tool Exploits Microsoft Teams to Deploy Malware

06 July 2023
A new tool available on GitHub can enable attackers to misuse a recently disclosed vulnerability in Microsoft Teams and automatically deliver malicious files to users' systems.

Android July security updates fix three actively exploited bugs

06 July 2023
“There are indications that the following [vulnerabilities] may be under limited, targeted exploitation,” reads Google’s bulletin, highlighting CVE-2023-26083, CVE-2021-29256, and CVE-2023-2136.

RedEnergy: New Stealer-as-a-Ransomware Out in the Wild

06 July 2023
The recent detection of RedEnergy stealer-as-a-ransomware represents an advanced threat that combines stealthy data theft and encryption techniques to cause significant damage and seize control over its targets. 

28,000 Employees Impacted by Data Breach at Pepsi Bottling Ventures

06 July 2023
Discovered on January 10, the data breach occurred between December 23, 2022, and January 19, 2023, and resulted in the personal, financial, and health information of the company’s employees being accessed by an unauthorized party.

Crysis Threat Actors Use RDP Connections to Distribute Venus Ransomware

06 July 2023
ASEC recently discovered that Crysis ransomware attackers were scanning the internet, via brute force or dictionary attacks, for vulnerable RDP endpoints to install Venus ransomware on systems.

Cisco warns of bug that lets attackers break traffic encryption

06 July 2023
Tracked as CVE-2023-20185, the flaw was found during internal security testing in the ACI Multi-Site CloudSec encryption feature of data center Cisco Nexus 9000 Series Fabric Switches.

AI and machine learning have been added to financial crime programs

06 July 2023
A report found that 69% of global executives and risk professionals worldwide expect financial crime risks to increase over the next 12 months. 

Node4 acquires ThreeTwoFour to strengthen its security capabilities

06 July 2023
The acquisition is Node4’s third significant growth purchase in the last 18 months, having also bought risual, an IT managed services and solutions provider and Tisski, a leading UK-based independent Microsoft Business applications partner.

Small organizations face security threats on a limited budget

06 July 2023
Small organizations face the same security threats as organizations overall but have fewer resources to address them, according to Netwrix. The most common security incidents are phishing, ransomware, and user account compromise.

Large Indian Tech Retailer Exposes Employee and Customer Data

06 July 2023
The tech retailer Poorvika had a non-password-protected data breach exposing sensitive employee and customer data. The breach included a vast number of records, including personal information, email addresses, tax invoices, and payment receipts.

Instagram's Twitter Alternative 'Threads' Launch Halted in Europe Over Privacy Concerns

06 July 2023
The development was reported by the Irish Independent, which said the Irish Data Protection Commission (DPC) has been in contact with the social media giant about the new product and confirmed the release won't extend to the EU "at this point."

Russian Railway Site Allegedly Taken Down by Ukrainian Hackers

06 July 2023
The Russian state-owned railway company RZD said Wednesday that its website and mobile app were down for several hours due to a “massive” cyberattack, forcing passengers to only buy tickets at railway stations.

Suspected OPERA1ER crime boss cuffed in Côte d'Ivoire

06 July 2023
International cops have arrested a suspected "key figure" of a cybercrime group dubbed OPERA1ER that has stolen as much as $30 million from more than 30 banks and financial organizations across 15 countries.

New Hacking Tool Exploits Microsoft Teams Bug to Send Malware to Users

06 July 2023
A member of the US Navy's red team has published a tool called TeamsPhisher that leverages an unresolved security issue in Microsoft Teams to bypass restrictions for incoming files from users outside of a targeted organization (external tenants).

Surviving the 800 Gbps Storm: Gain Insights from Gcore's 2023 DDoS Attack Statistics

06 July 2023
Gcore Radar is a quarterly report prepared by Gcore that provides insights into the current state of the DDoS protection market and cybersecurity trends. This report offers you an understanding of the evolving threat landscape and highlights the measures required to protect against attacks effectively. It serves as an insight for businesses and individuals seeking to stay informed about the

Swedish Data Protection Authority Warns Companies Against Google Analytics Use

06 July 2023
The development comes in the aftermath of an audit initiated by the Swedish Authority for Privacy Protection (IMY) against four companies CDON, Coop, Dagens Industri, and Tele2.