Latest Cybersecurity News and Articles
12 May 2023
Senators are pushing to improve the cybersecurity of the national 988 Suicide & Crisis Lifeline and election infrastructure, after passing a bill to upgrade the resiliency of the aviation sector’s notification system for flight hazards.
12 May 2023
A cyberattack campaign was observed against foreign government institutions in Kazakhstan and Afghanistan using decoy documents that impersonate real diplomats. Attackers used a new malware family dubbed DownEx by Bitdefender Labs. It can move laterally to traverse local and network drives to extract a wide range of files from various formats, including Word, Excel, and PowerPoint documents, videos, images, PDFs, and compressed files.
12 May 2023
In recent GULoader campaigns, researchers witnessed a rise in NSIS-based installers delivered via email as malspam that use plugin libraries to execute the GU shellcode on the victim system.
12 May 2023
The tech giant's latest initiatives are aimed at protecting its users from cyber threats, including phishing attacks and malicious websites, while providing more control and transparency over their personal data.
12 May 2023
CERT-UA has issued a cautionary statement regarding an ongoing phishing operation that employs invoice-related tactics to spread the SmokeLoader malware. The attached ZIP archive is a polyglot file, meaning it is a single file that can be interpreted as multiple file formats.
12 May 2023
By the end of March 2023, Sucuri researchers started noticing a new wave of SocGholish injections that used the intermediary xjquery[.]com domain. It appeared to be another evolution of the same malware.
12 May 2023
Founded in 2020 and hosted by the Linux Foundation, OpenSSF is a cross-industry organization focused on improving the security of the open-source software supply chain through collaboration between tech companies.
12 May 2023
Industrial and IoT cybersecurity firm Claroty on Thursday disclosed the details of five vulnerabilities that can be chained in an exploit potentially allowing threat actors to hack certain Netgear routers.
12 May 2023
U.S. cybersecurity and intelligence agencies have warned of attacks carried out by a threat actor known as the Bl00dy Ransomware Gang that attempt to exploit vulnerable PaperCut servers against the education facilities sector in the country.
The attacks took place in early May 2023, the Federal Bureau of Investigation (FBI) and Cybersecurity and Infrastructure Security Agency (CISA) said in a
12 May 2023
ESET tracked a series of attacks, dubbed Operation ChattyGoblin, against Southeast Asian gambling companies. The operation has been ongoing since October 2021 and leverages chat apps. The campaign is believed to be used to target organizations in the industrial, technology, healthcare, insurance, manufacturing, and telecom sectors in Europe and North America.
12 May 2023
A security vulnerability has been disclosed in the popular WordPress plugin Essential Addons for Elementor that could be potentially exploited to achieve elevated privileges on affected sites.
The issue, tracked as CVE-2023-32243, has been addressed by the plugin maintainers in version 5.7.2 that was shipped on May 11, 2023. Essential Addons for Elementor has over one million active
11 May 2023
The Huron-Superior Catholic District School Board has sent letters to students and former students informing them their personal information was compromised in a cyber attack that was first announced on December 15, 2022.
11 May 2023
The confidential drug and alcohol test results of graduate paramedics were available for every Ambulance Victoria staff member to view under a significant breach that is set to be reported to the state’s privacy watchdog.
11 May 2023
Under the terms of the Arrangement Agreement, Absolute shareholders will receive $11.50 per Common Share in cash on completion of the Acquisition, corresponding to an enterprise value of approximately $870 million, inclusive of the debt.
11 May 2023
About 24,000 customers of broadband service provider WhizComms, or roughly half its customer base, had their personal information stolen by an external party in a data breach incident detected on April 21.
11 May 2023
Twitter is officially beginning to roll out support for encrypted direct messages (DMs) on the platform, more than six months after its chief executive Elon Musk confirmed plans for the feature in November 2022.
11 May 2023
A new report reveals that in 2022, 47.4% of all internet traffic came from bots, a 5.1% increase over the previous year.
11 May 2023
The Korean National Police Agency (KNPA) warned that North Korean hackers had breached the network of one of the country's largest hospitals, Seoul National University Hospital (SNUH), to steal sensitive medical information and personal details.
11 May 2023
Ransomware remains one of the biggest cyber threats for private organizations and governments. However, hackers are engineering new ways to extract ransom from their victims as organizations take a conscious call to decline ransom payment demands.
11 May 2023
A previously undetected advanced persistent threat (APT) actor dubbed Red Stinger has been linked to attacks targeting Eastern Europe since 2020.
"Military, transportation, and critical infrastructure were some of the entities being targeted, as well as some involved in the September East Ukraine referendums," Malwarebytes disclosed in a report published today.
"Depending on the campaign,