Latest Cybersecurity News and Articles


Uintah Basin Healthcare Data Breach Affects Over 100,000 Patients

15 May 2023
A rural Utah healthcare provider is notifying more than one hundred thousand individuals of a hacking incident involving the health information of individuals who received care for over a decade.

Why High Tech Companies Struggle with SaaS Security

15 May 2023
It's easy to think high-tech companies have a security advantage over other older, more mature industries. Most are unburdened by 40 years of legacy systems and software. They draw some of the world’s youngest, brightest digital natives to their ranks, all of whom consider cybersecurity issues their entire lives. Perhaps it is due to their familiarity with technology that causes them to overlook

Executive Fired From TikTok’s Chinese Owner Says Beijing Had Access to App Data in Termination Suit

15 May 2023
The allegations were made in a complaint by Yintao Yu, the head of engineering for ByteDance’s U.S. operations from August 2017 to November 2018, as part of a wrongful termination lawsuit filed earlier this month in San Francisco Superior Court.

South Korea alleges spies messaged North Korean handlers via YouTube comments

15 May 2023
South Korea has charged four trade union leaders with spying for North Korea in a plot that involved the accused allegedly communicating with their handlers by leaving coded comments on obscure YouTube videos.

Researchers Uncover Powerful Backdoor and Custom Implant in Year-Long Cyber Campaign

15 May 2023
Government, aviation, education, and telecom sectors located in South and Southeast Asia have come under the radar of a new hacking group as part of a highly-targeted campaign that commenced in mid-2022 and continued into the first quarter of 2023. Symantec, by Broadcom Software, is tracking the activity under its insect-themed moniker Lancefly, with the attacks making use of a "powerful"

Hackers target Wordpress plugin flaw after PoC exploit released

15 May 2023
Hackers are actively exploiting a recently fixed vulnerability in the WordPress Advanced Custom Fields plugin roughly 24 hours after a proof-of-concept (PoC) exploit was made public.

New 'MichaelKors' Ransomware-as-a-Service Targeting Linux and VMware ESXi Systems

15 May 2023
A new ransomware-as-service (RaaS) operation called MichaelKors has become the latest file-encrypting malware to target Linux and VMware ESXi systems as of April 2023. The development points to cybercriminal actors increasingly setting their eyes on the ESXi, cybersecurity firm CrowdStrike said in a report shared with The Hacker News. "This trend is especially noteworthy given the fact that ESXi

Fake Windows Update Campaign Drops Aurora Stealer

15 May 2023
Cybercriminals were found distributing Aurora information-stealing malware via a simulated Windows update within the browser, in a malvertising campaign. Researchers identified more than a dozen domains used in the campaigns, several posing as adult websites. Technical analysis of the malware, its behavior, and IOCs have been released.

Arm confident Cortex-M is secure after side-channel attack

15 May 2023
Arm issued a statement last Friday declaring that a successful side attack on its TrustZone-enabled Cortex-M-based systems was "not a failure of the protection offered by the architecture."

Ransomware corrupts data, making restoration harder

15 May 2023
Ransomware actors aim to spend the shortest amount of time possible inside your systems, and that means the encryption they employ is shoddy and often corrupts your data.

Ransomware Roundup - Maori

15 May 2023
The entire contents of each affected file are encrypted, rather than just enough of the contents to render them unusable. As a result, files end up slightly larger than the original.

CLR SqlShell Malware Targets MS SQL Servers for Crypto Mining and Ransomware

15 May 2023
Poorly managed Microsoft SQL (MS SQL) servers are the target of a new campaign that's designed to propagate a category of malware called CLR SqlShell that ultimately facilitates the deployment of cryptocurrency miners and ransomware. "Similar to web shell, which can be installed on web servers, SqlShell is a malware strain that supports various features after being installed on an MS SQL server,

Former Ubiquiti Employee Gets 6 Years in Jail for $2 Million Crypto Extortion Case

15 May 2023
A former employee of Ubiquiti has been sentenced to six years in jail after he pleaded guilty to posing as an anonymous hacker and a whistleblower in an attempt to extort almost $2 million worth of cryptocurrency while working at the company. Nickolas Sharp, 37, was arrested in December 2021 for using his insider access as a senior developer to steal confidential data and sending an anonymous

CISA warns of critical Ruckus bug used to infect Wi-Fi access points

13 May 2023
While this security bug (CVE-2023-25717) was addressed in early February, many owners are likely yet to patch their Wi-Fi access points. Furthermore, no patch is available for those who own end-of-life models affected by this issue.

WordPress Plugin Vulnerability Exposed Ferrari Website to Hackers

13 May 2023
Security researchers noticed that the ‘media.ferrari.com’ domain is powered by WordPress and it was running a very old version of W3 Total Cache, a plugin installed on more than a million websites.

Discord discloses data breach after support agent got hacked

13 May 2023
The security breach exposed a third-party support agent's ticket queue, which contained user email addresses, messages exchanged with Discord support, and any attachments sent as part of the tickets.

XWorm Malware Exploits Follina Vulnerability in New Wave of Attacks

13 May 2023
Securonix, which is tracking the activity cluster under the name MEME#4CHAN, said some of the attacks have primarily targeted manufacturing firms and healthcare clinics located in Germany.

New Phishing-as-a-Service Platform Lets Cybercriminals Generate Convincing Phishing Pages

13 May 2023
A new phishing-as-a-service (PhaaS or PaaS) platform named Greatness has been leveraged by cybercriminals to target business users of the Microsoft 365 cloud service since at least mid-2022, effectively lowering the bar to entry for phishing attacks. "Greatness, for now, is only focused on Microsoft 365 phishing pages, providing its affiliates with an attachment and link builder that creates

Data of 237,000 US government employees breached

13 May 2023
The personal information of 237,000 current and former federal government employees has been exposed in a data breach at the U.S. Transportation Department (USDOT), sources briefed on the matter said on Friday.

Car location data of 2 million Toyota customers exposed for ten years

13 May 2023
Toyota Motor Corporation disclosed a data breach on its cloud environment that exposed the car-location information of 2,150,000 customers for ten years, between November 6, 2013, and April 17, 2023.