Latest Cybersecurity News and Articles


Newly Uncovered ThirdEye Windows-Based Malware Steals Sensitive Data

29 June 2023
A previously undocumented Windows-based information stealer called ThirdEye has been discovered in the wild with capabilities to harvest sensitive data from infected hosts. Fortinet FortiGuard Labs, which made the discovery, said it found the malware in an executable that masqueraded as a PDF file with a Russian name "CMK Правила оформления больничных листов.pdf.exe," which translates to "CMK

Infectious NPM and PyPI Packages Raise Fresh Supply Chain Concerns

28 June 2023
Security researchers have laid bare an ongoing attack campaign that specifically targets the npm ecosystem via a pair of malicious packages. Meanwhile, another researcher group reported seven malicious PyPI packages. Developers, package maintainers, and users must remain diligent in verifying the integrity and authenticity of packages before installation.

Numerous Devices Discovered Violating CISA's BOD

28 June 2023
Censys has recently analyzed the attack surfaces of over 50 FCEB organizations and detected several hundred devices to be publicly exposed to a variety of cybersecurity threats. They are not secured according to CISA’s latest Binding Operational Directive (BOD). Moreover, software programs such as MOVEit Transfer, GoAnywhere MFT, and SolarWinds Serv-U managed file transfer were hosted across exposed servers.

Security leaders discuss NSA guide to mitigate BlackLotus threat

28 June 2023
The National Security Agency (NSA) is warning of a known vulnerability in the Microsoft Windows secure startup process that malicious actors could use to bypass Secure Boot protection and execute BlackLotus malware.

Alert: New Electromagnetic Attacks on Drones Could Let Attackers Take Control

28 June 2023
Drones that don't have any known security weaknesses could be the target of electromagnetic fault injection (EMFI) attacks, potentially enabling a threat actor to achieve arbitrary code execution and compromise their functionality and safety. The research comes from IOActive, which found that it is "feasible to compromise the targeted device by injecting a specific EM glitch at the right time

Las Vegas makes cybersecurity updates

28 June 2023
Las Vegas is updating its cybersecurity and will switch to a hybrid multi-cloud environment to protect sensitive data and critical infrastructure.

CryptosLabs Scam Ring Targets French-Speaking Investors, Rakes in €480 Million

28 June 2023
Cybersecurity researchers have exposed the workings of a scam ring called CryptosLabs that's estimated to have made €480 million in illegal profits by targeting users in French-speaking individuals in France, Belgium, and Luxembourg since April 2018. The syndicate's massive fake investment schemes primarily involve impersonating 40 well-known banks, fin-techs, asset management firms, and crypto

Astrix Security, which uses ML to secure app integrations, raises $25M

28 June 2023
Astrix Security, a platform that helps companies manage and secure third-party app integrations, today announced that it closed a $25 million Series A funding round led by CRV with participation from Bessemer Venture Partners and F2 Venture Capital.

NPM Registry Found to be Vulnerable to 'Manifest Confusion' Abuse

28 June 2023
The npm Public Registry, a database of JavaScript packages, fails to compare npm package manifest data with the archive of files that data describes, creating an opportunity for the installation and execution of malicious files.

Research reveals rise in sophisticated attacks against mobile devices

28 June 2023
Research finds 187% increase in the number of compromised devices that were fully exploited, highlighting growing risks posed to mobile-powered businesses

Ukraine Cracks Down on Investment Scams, Raids Call Centers

28 June 2023
Ukrainian cyber police raided and closed over a dozen fraudulent call centers last week, saying the operations were running fake investment scams that involved stealing cryptocurrency and payment card details from European and Central Asian citizens.

Victim Count in Ransomware Attack at Maryland Healthcare Provider Jumps Fivefold to 137,000

28 June 2023
A Berlin, Maryland-based hospital recently told regulators that a ransomware breach discovered in January had compromised the sensitive information of nearly 137,000 patients, about five times the number of people originally estimated to be affected.

Cyera Raises $100M to Bring Data Protection to Hybrid Cloud

28 June 2023
The startup, founded by longtime Israeli Military Intelligence leaders, landed the Accel-led $100 million Series B funding to support the cloud and on-premises data protection needs of hybrid organizations.

8Base Ransomware Spikes in Activity, Threatens U.S. and Brazilian Businesses

28 June 2023
VMware said 8Base is "strikingly" similar to that of another data extortion group tracked as RansomHouse, citing overlaps in the ransom notes dropped on compromised machines and the language used in the respective data leak portals.

Financial fraud prevention strategies

28 June 2023
Michael Jabbara, Vice President, Head of Global Fraud Services at Visa, covers the evolution of the financial fraud landscape and more in this episode of The Security Podcast.

SolarWinds says SEC investigation ‘progressing to charges’

28 June 2023
SolarWinds — the technology firm at the center of a December 2020 hack that affected multiple U.S. government agencies — said its executives may soon face charges from the Securities and Exchange Commission (SEC) for its response to the incident.

UAE, Israel create ‘Crystal Ball’ platform to fight hackers

28 June 2023
The mission is to “design, deploy and enable regional intelligence enhancement” through collaboration and knowledge-sharing to combat national-level cyberthreats, according to a presentation by Mohamed Al Kuwaiti, UAE head of cybersecurity.

State and local governments grapple to mitigate cyber risks

28 June 2023
State and local governments face increased challenges amid a rising threat landscape due to malicious ransomware attacks and sophisticated nation-state threat actors, according to a report released Monday from Moody’s Investors Service.

5 Things CISOs Need to Know About Securing OT Environments

28 June 2023
For too long the cybersecurity world focused exclusively on information technology (IT), leaving operational technology (OT) to fend for itself. Traditionally, few industrial enterprises had dedicated cybersecurity leaders. Any security decisions that arose fell to the plant and factory managers, who are highly skilled technical experts in other areas but often lack cybersecurity training or

Update: MOVEit vulnerability ensnares more victims

28 June 2023
At least 108 organizations, including seven U.S. universities, have been listed by Clop or disclosed as having been impacted thus far, according to Brett Callow, a threat analyst at Emsisoft.