Latest Cybersecurity News and Articles


MOVEit Transfer Exploit Connected to Ransomware Group

06 June 2023
The recent MOVEit Transfer zero-day attacks have been linked to a known ransomware group that has exploited a critical SQL injection vulnerability to steal data from dozens of organizations. While Microsoft linked it to the Cl0p ransomware group, Mandiant attributed the attacks to UNC4857. Either update the software or, if updating is not feasible for your organization, it is recommended to disable HTTP(s) traffic to MOVEit Transfer.

How defense contractors can move from cybersecurity to cyber resilience

06 June 2023
For defense contractors, who work with some of the country’s most sensitive information, establishing effective cybersecurity protocols takes on an added layer of importance due to the national security concern.

Zero-Day Alert: Google Issues Patch for New Chrome Vulnerability - Update Now!

06 June 2023
Google on Monday released security updates to patch a high-severity flaw in its Chrome web browser that it said is being actively exploited in the wild. Tracked as CVE-2023-3079, the vulnerability has been described as a type confusion bug in the V8 JavaScript engine. Clement Lecigne of Google's Threat Analysis Group (TAG) has been credited with reporting the issue on June 1, 2023. "Type

Caribbean island of Martinique dealing with cyberattack that disrupted government services

06 June 2023
The Caribbean island is dealing with a cyberattack that has disrupted internet access and other infrastructure for weeks. It has a population of about 360,000 and is controlled by France, serving as the outermost region of the European Union.

Deepfakes are adding an insidious edge to some sextortion schemes, FBI says

06 June 2023
There was a time when sextortion schemes typically involved digital material that was either coerced or stolen from a victim. The FBI is warning now that deepfakes are changing the nature of the crime.

Surveilling your employees? You could be putting your company at risk of attack

06 June 2023
Even though these tools can provide what appear to be helpful insights to organizations, there are major downsides. The first – and the reason many companies choose not to use it – is that most employees aren’t fond of it.

War crimes committed through cyberspace must not escape international justice, says Estonian president

06 June 2023
The International Criminal Court should not allow those who commit war crimes or crimes against humanity in cyberspace to escape international justice, said President of Estonia Alar Karis at a conference on cyber conflict last week.

Update: Clop ransomware claims responsibility for MOVEit extortion attacks

06 June 2023
While Clop would not share the number of organizations breached in the MOVEit Transfer attacks, they said that victims would be displayed on their data leak site if a ransom was not paid.

Microsoft Sets Aside $425M for Anticipated GDPR Fine

06 June 2023
Microsoft is warning investors it may receive a fine from European privacy regulators adding up to at least hundreds of millions of dollars over targeted advertising on its LinkedIn social network.

KeePass fixed the bug that allows the extraction of the cleartext master password

06 June 2023
KeePass has addressed the CVE-2023-32784 vulnerability, which allowed the retrieval of the clear-text master password from the client’s memory. The company fixed the bug with the release of KeePass version 2.54.

Cyclops Ransomware Gang Offers Go-Based Info Stealer to Cybercriminals

06 June 2023
Threat actors associated with the Cyclops ransomware have been observed offering an information stealer malware that's designed to capture sensitive data from infected hosts. "The threat actor behind this [ransomware-as-a-service] promotes its offering on forums," Uptycs said in a new report. "There it requests a share of profits from those engaging in malicious activities using its malware."

Chinese PostalFurious Gang Strikes UAE Users with Sneaky SMS Phishing Scheme

06 June 2023
A Chinese-speaking phishing gang dubbed PostalFurious has been linked to a new SMS campaign that's targeting users in the U.A.E. by masquerading as postal services and toll operators, per Group-IB. The fraudulent scheme entails sending users bogus text messages asking them to pay a vehicle trip fee to avoid additional fines. The messages also contain a shortened URL to conceal the actual

Zyxel Firewalls Under Attack! Urgent Patching Required

06 June 2023
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday placed two recently disclosed flaws in Zyxel firewalls to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation. The vulnerabilities, tracked as CVE-2023-33009 and CVE-2023-33010, are buffer overflow vulnerabilities that could enable an unauthenticated attacker to cause a

49% of organizations proactively invest in identity protection

05 June 2023
A new report reveals that 89% of businesses are somewhat or very concerned that new privacy regulations will impact identity security at their organization.

Security leaders plan for changing IT roles

05 June 2023
IT professionals find themselves in hybrid roles that combine traditional development with tasks formerly associated with operations professionals.

Scrubs & Beyond Leaks 400GB of User PII and Card Data in Plain Text

05 June 2023
The database was exposed on May 16, 2023. Researchers identified the exposure on May 25, 2023, and since then, the information has remained exposed. Currently, the server holds over 100,000 customer records, totaling 400 GB in size.

66% of organizations have increased their investment in SaaS apps

05 June 2023
According to a survey, 58% of organizations estimate their current SaaS security solutions only cover 50% or less of their SaaS applications.

Windows 11 to require SMB signing to prevent NTLM relay attacks

05 June 2023
Microsoft says SMB signing (aka security signatures) will be required by default for all connections to defend against NTLM relay attacks, starting with today's Windows build (Enterprise edition) rolling out to Insiders in the Canary Channel.

Gigabyte Rolls Out BIOS Updates to Remove Backdoor From Motherboards

05 June 2023
The issue, disclosed last week by firmware and hardware security company Eclypsium, is that the firmware of more than 270 Gigabyte motherboards drops a Windows binary that is executed at boot-up to fetch and execute a payload from Gigabyte’s servers.

Online sellers targeted by new information-stealing malware campaign

05 June 2023
Online sellers are being targeted in a new campaign launched this week to push the Vidar information-stealing malware, allowing threat actors to steal credentials for more damaging attacks.