Latest Cybersecurity News and Articles


New Malware Campaign Leveraging Satacom Downloader to Steal Cryptocurrency

06 June 2023
A recent malware campaign has been found to leverage Satacom downloader as a conduit to deploy stealthy malware capable of siphoning cryptocurrency using a rogue extension for Chromium-based browsers. "The main purpose of the malware that is dropped by the Satacom downloader is to steal BTC from the victim's account by performing web injections into targeted cryptocurrency websites," Kaspersky

Update: Augusta not in contact with ransomware group behind attack, mayor says

06 June 2023
In a statement on Friday, the office of Augusta Mayor Garnett Johnson said it has continued to work with the city’s IT team and outside security specialists to address the cyberattack that started on May 21.

Security leaders implement third-party security measures

06 June 2023
IT professionals and navigating the threat landscape was analyzed in a recent report by Ironscales and Enterprise Security Group (ESG).

North Korea Makes 50% of Income from Cyber-Attacks: Report

06 June 2023
A senior official from the Biden administration told Nikkei that attacks directed by the hermit nation had risen sharply since 2018, in lockstep with its nuclear and missile programs.

What security leaders can learn from Smashing Pumpkins hacker attack

06 June 2023
While stealing music from a band might not be equal to obtaining and releasing customer personal information, there are still lessons to learn from this incident.

Over 60K Adware Apps Posing as Cracked Versions of Popular Apps Target Android Devices

06 June 2023
These apps aren't distributed through the Google Play Store. Instead, users searching for apps like Netflix, PDF viewers, security software, and cracked versions of YouTube on a search engine are redirected to an ad page hosting the malware.

Cybercriminals target C-suite, family members with sophisticated attacks

06 June 2023
Senior corporate executives are increasingly being targeted by sophisticated cyberattacks that target their corporate and home office environments and even extend to family members, according to a study from BlackCloak and Ponemon Institute.

Android security update fixes Mali GPU flaw exploited by spyware

06 June 2023
Google has released the monthly security update for the Android platform, adding fixes for 56 vulnerabilities, five of them with a critical severity rating and one exploited since at least last December.

Verizon 2023 DBIR: Human Error Involved in Many Breaches, Ransomware Cost Surges

06 June 2023
Ransomware accounted for 24% of cybersecurity incidents analyzed by Verizon. The company saw the number of ransomware attacks being higher in the past two years than in the previous five years combined.

Impulse Team Ran Years-Long Mostly-Undetected Cryptocurrency Scam

06 June 2023
The scam works via an advanced fee fraud, tricking victims into believing they've won cryptocurrency rewards but requiring them to pay a small activation fee to access their rewards.

NATO: Military cyber defenders need to be present on networks during peacetime

06 June 2023
David van Weel, NATO’s assistant secretary general for emerging security challenges, told the 15th annual International Conference on Cyber Conflict (CyCon) that NATO members will begin recognizing cyberspace as “a permanently contested environment.”

SpinOk Android Malware Found in More Apps With 30 Million Installs

06 June 2023
CloudSEK used the IoCs provided in Dr. Web’s report to uncover more SpinOk infections, extending the list of bad apps to 193 after discovering an additional 92 apps. Roughly half of those were available on Google Play.

Over 60K Adware Apps Posing as Cracked Versions of Popular Apps Target Android Devices

06 June 2023
Thousands of adware apps for Android have been found to masquerade as cracks or modded versions of popular apps to redirect users to serve unwanted ads to users as part of a campaign ongoing since October 2022. "The campaign is designed to aggressively push adware to Android devices with the purpose to drive revenue," Bitdefender said in a technical report shared with The Hacker News. "However,

Zero-Day Alert: Google Issues Patch for New Chrome Vulnerability - Update Now!

06 June 2023
Tracked as CVE-2023-3079, the vulnerability has been described as a type confusion bug in the V8 JavaScript engine. Clement Lecigne of Google's Threat Analysis Group (TAG) has been credited with reporting the issue on June 1, 2023.

Brazilian Threat Actor Targets Spanish and Portuguese Speaking Users

06 June 2023
A financially motivated Brazil threat actor is allegedly targeting individuals who speak Spanish or Portuguese. The primary objective of these attacks is to steal online banking credentials from the victims. The threat actors used CMD-based scripts, Autolt scripts, and LOLBaS to avoid detection by traditional security measures. 

Cyclops Ransomware Gang Offers GoLang-Based Info-Stealer to Cybercriminals

06 June 2023
Cyclops ransomware is notable for targeting all major desktop operating systems, including Windows, macOS, and Linux. It's also designed to terminate any potential processes that could interfere with encryption.

Virtual claims raise alarms among insurance carriers and customers

06 June 2023
As the digital revolution changes the claims process, both carriers and customers are increasingly concerned about data privacy, according to a report by LexisNexis Risk Solutions.

5 Reasons Why IT Security Tools Don't Work For OT

06 June 2023
Attacks on critical infrastructure and other OT systems are on the rise as digital transformation and OT/IT convergence continue to accelerate. Water treatment facilities, energy providers, factories, and chemical plants — the infrastructure that undergirds our daily lives could all be at risk. Disrupting or manipulating OT systems stands to pose real physical harm to citizens, environments, and

British Airways, BBC and Boots Were Impacted the by Zellis Data Breach

06 June 2023
“We have been informed that we are one of the companies impacted by Zellis’ cybersecurity incident, which occurred via one of their third-party suppliers called MOVEit,” reads a statement issued by British Airways.

UK Closes CCP Cyber Certification Scheme

06 June 2023
Although CCP certifications will remain valid until they expire at the latest on December 31, 2026, the move is being made to make way for the launch of new chartered titles in late July this year.