Latest Cybersecurity News and Articles
23 May 2023
Applications in scope for the Mobile VRP include those developed by Google LLC, Developed with Google, Research at Google, Red Hot Labs, Google Samples, Fitbit LLC, Nest Labs Inc, Waymo LLC, and Waze.
23 May 2023
Clarke County Hospital on Wednesday disclosed that it suffered a data breach, one month after the Royal ransomware gang claimed responsibility for the attack and used a brazen extortion tactic.
23 May 2023
About 30% of adults have fallen victim or know someone who has fallen victim to an online scam while trying to save money when booking travel, according to a new report by McAfee.
23 May 2023
Rheinmetall’s spokesperson stressed that the incident, which was detected on April 14, only affected the company’s civilian business, which operated using “strictly separated IT infrastructure.”
23 May 2023
ReversingLabs laid bare two malicious npm packages—nodejs-encrypt-agent and nodejs-cookie-proxy-agent—harboring an open-source information-stealing malware known as TurkoRat. The packages were collectively downloaded around 1,200 times and remained accessible to users for over two months. The malware can gather sensitive data, including login credentials, crypto wallets, and website cookies.
23 May 2023
Micron CFO Mark Murphy on Monday said at a conference that China's Cyberspace Administration (CAC), which on Sunday announced the chipmaker had failed a security review, has offered no reason for that opinion.
23 May 2023
Security experts are raising concerns about the increasing interest of threat actors in voice cloning-as-a-service (VCaaS) platforms available on the dark web. to manipulate and impersonate voices for malicious purposes. Some of these automated voice cloning platforms are being offered for free, while others cost a minimal amount of money. The best defense is to educate users, customers, and employees about these emerging attack tactics.
23 May 2023
During their threat-hunting process in early February, Fortinet researchers encountered a kernel driver that used the Donut tool. The driver is called WinTapix.sys and is believed to be used in targeted attacks against countries in the Middle East.
23 May 2023
The US announced it commenced over 4,000 legal actions in three months — mostly harshly worded letters — to rein in "money mules" involved in romance scams, business email compromise, and other fraudulent schemes.
23 May 2023
These flaws allow attackers to escape the browser sandbox, access sensitive information on the compromised device, and achieve arbitrary code execution following successful exploitation.
23 May 2023
China has banned U.S. chip maker Micron from selling its products to Chinese companies working on key infrastructure projects, citing national security risks.
The development comes nearly two months after the country's cybersecurity authority initiated a probe in late March 2023 to assess potential network security risks.
"The purpose of this network security review of Micron's products is to
22 May 2023
Social networks are constantly battling inauthentic bot accounts that send direct messages to users promoting scam cryptocurrency investment platforms. What follows is an interview with a Russian hacker responsible for a series of aggressive crypto spam campaigns that recently prompted several large Mastodon communities to temporarily halt new registrations. According to the hacker, their spam software has been in private use until the last few weeks, when it was released as open source code.
22 May 2023
The Lemon Group gained control over millions of smartphones globally through the preinstallation of a malware called Guerrilla, reported Trend Micro. The campaign has been active since 2018. Lemon Group conducts business for marketing and advertising companies and utilizes big data. This highlights the risk to users' privacy posed by copycat brands of premium devices.
22 May 2023
With summer approaching, travel safety was analyzed in a report by McAfee Corp. Security leaders should take extra steps to ensure safe work travel.
22 May 2023
The use of consumer data was analyzed in a recent survey by Near Intelligence examining how consumer behavior data is used to make business decisions.
22 May 2023
A new US Government Accountability Office (GAO) report shows that the Departments of Agriculture, Homeland Security (DHS), Labor, and the Treasury have not fully implemented six key cloud security practices for their systems.
22 May 2023
Security industry leaders share thoughts on the takedown of sophisticated Snake malware & discuss what organizations can learn and apply to cybersecurity moving forward.
22 May 2023
Facebook's parent company Meta has been fined a record $1.3 billion by European Union data protection regulators for transferring the personal data of users in the region to the U.S.
In a binding decision taken by the European Data Protection Board (EDPB), the social media giant has been ordered to bring its data transfers into compliance with the GDPR and delete unlawfully stored and processed
22 May 2023
The majority of organizations use six or more communication tools, across channels, with email remaining the channel seen as the most vulnerable to attacks (38%), according to Armorblox.
22 May 2023
The ransomware attack against Dallas entered a new and all-too-common phase Friday as Royal, the threat actor behind the attack, listed the city on its leak site almost three weeks after the city was first made aware of the attack.