Latest Cybersecurity News and Articles


These ransomware victims are paying more to recover data

18 May 2023
The number of organizations that experienced ransomware attacks over the past year has remained the same, but the average cost of data recovery has increased -- whether it is in ransomware payment or restoring lost data.

Infostealer Malware Surges: Stolen Logs Up 670% on Russian Market

18 May 2023
Described in a report called “The Growing Threat From Infostealers,” the new findings from Secureworks shed light on the thriving infostealer market, which plays a pivotal role in facilitating cybercrime activities such as ransomware attacks.

OilAlpha: A Covert Faction Targeting Entities Across the Arabian Peninsula

18 May 2023
A hacking group known as OilAlpha has been identified in connection with a cyber espionage campaign that specifically targets development, humanitarian, media, and non-governmental organizations in the Arabian peninsula. The group employed remote access tools, such as SpyNote and SpyMax, to install mobile spyware.

KeePass flaw allows retrieval of master password, PoC is public (CVE-2023-32784)

18 May 2023
A vulnerability (CVE-2023-32784) in the open-source password manager KeePass can be exploited to retrieve the master password from the software’s memory, says the researcher who unearthed the flaw.

Feds Hit Vendor With $350K Settlement in FTP Server Breach

18 May 2023
Patient information left exposed in the MedEvolve incident included names, billing addresses, telephone numbers, primary health insurer and doctor's office account numbers, and some Social Security numbers, HHS OCR said.

Critical Flaws in Cisco Small Business Switches Could Allow Remote Attacks

18 May 2023
"These vulnerabilities are due to improper validation of requests that are sent to the web interface," Cisco said, crediting an unnamed external researcher for reporting the issues.

Keeping a competitive edge in the cybersecurity ‘game’

18 May 2023
Staying ahead of adversaries essentially comes down to three elements: visibility, capabilities, and governance, and all are tied to the impact of TI on your security posture.

Attack automation becomes a prevalent threat against APIs

18 May 2023
H2 2022 marked a turning point in the security landscape. In several high-profile incidents, APIs emerged as a primary attack vector, posing a new and significant threat to organizations’ security posture, according to Cequence Security.

Darknet Carding Kingpin Pleads Guilty: Sold Financial Info of Tens of Thousands

18 May 2023
A U.S. national has pleaded guilty in a Missouri court to operating a darknet carding site and selling financial information belonging to tens of thousands of victims in the country. Michael D. Mihalo, aka Dale Michael Mihalo Jr. and ggmccloud1, has been accused of setting up a carding site called Skynet Market that specialized in the trafficking of credit and debit card data. Mihalo and his

Apple Thwarts $2 Billion in App Store Fraud, Rejects 1.7 Million App Submissions

18 May 2023
Apple has announced that it prevented over $2 billion in potentially fraudulent transactions and rejected roughly 1.7 million app submissions for privacy and security violations in 2022. The computing giant said it terminated 428,000 developer accounts for potential fraudulent activity, blocked 105,000 fake developer account creations, and deactivated 282 million bogus customer accounts. It

Critical Flaws in Cisco Small Business Switches Could Allow Remote Attacks

18 May 2023
Cisco has released updates to address a set of nine security flaws in its Small Business Series Switches that could be exploited by an unauthenticated, remote attacker to run arbitrary code or cause a denial-of-service (DoS) condition. "These vulnerabilities are due to improper validation of requests that are sent to the web interface," Cisco said, crediting an unnamed external researcher for

Social media was 72% of non-government or financial account abuse

17 May 2023
A report found identity thieves are better at using social engineering to convince people to share personal, financial and business information.

32% of organizations say they're effective at mitigating cyber threats

17 May 2023
A report reveals an increase in cyberattacks and evolving threat landscape are resulting in more organizations building long-term cyber resilience.

ESXi Servers Face New Threats From MichaelKors RaaS Affiliates

17 May 2023
Group-IB infiltrated the infrastructure of MichaelKors RaaS to divulge never-before-heard secrets of its affiliate nexus, which would often target critical sector entities. For instance, affiliates take back 80-85% of the ransomware payments. The common attack tactics used by MichaelKors include phishing emails having malicious links embedded in them.

Report: Carpet bomb DDoS attacks rise 300% in 2022

17 May 2023
A new report released by Corero Network Security reveals carpet bomb distributed denial of service (DDoS) attacks increased 300% in 2022.

Lancefly APT Group Uses 'Merdoor' In Espionage Campaign

17 May 2023
The Lancefly APT group is targeting government, aviation, education, and telecom sectors in South and Southeast Asia using a powerful backdoor called Merdoor for intelligence gathering. The exact initial intrusion vector is not clear at present, though attackers are believed to have used SSH brute-forcing or phishing lures.

Serious Unpatched Vulnerability Uncovered in Popular Belkin Wemo Smart Plugs

17 May 2023
The issue, assigned the identifier CVE-2023-27217, was discovered and reported to Belkin on January 9, 2023, by Israeli IoT security company Sternum, which reverse-engineered the device and gained firmware access.

Justice and Commerce Department 'strike force' target theft of quantum, autonomous technologies

17 May 2023
The newly formed Justice and Commerce Department’s joint Disruptive Technology Strike Force announced five coordinated enforcement actions taking aim at individuals seeking to help China, Russia and Iran gain access to sensitive U.S. technologies.

Chrome 113 Security Update Patches Critical Vulnerability

17 May 2023
Google this week announced the release of a Chrome 113 security update that resolves a total of 12 vulnerabilities, including one rated ‘critical’. Six of the flaws were reported by external researchers.

Skynet Carder Market Founder Pleads Guilty

17 May 2023
An Illinois man pleaded guilty Monday to eight criminal counts stemming from the three years he spent leading a conspiracy to sell stolen financial information on darknet markets.