Latest Cybersecurity News and Articles


Universal Data Permissions Scanner: Open-source tool to overcome data authorization blindspots

08 May 2023
Satori released the free, open-source tool that enables companies to understand which employees have access to what data, reducing the risks associated with overprivileged or unauthorized users and streamlining compliance reporting.

Your voice could be your biggest vulnerability

08 May 2023
McAfee surveyed 7,054 people from seven countries and found that a quarter of adults had previously experienced some kind of AI voice scam, with 1 in 10 targeted personally and 15% saying it happened to someone they know.

Update: San Bernardino County Sheriff’s Department paid a $1.1M ransom

08 May 2023
The ransomware attack forced the Police department to temporarily shut down some of its systems to prevent the threat from spreading. Impacted systems include email, in-car computers, and some law enforcement databases.

Ukrainian Forces Shutter Bot Farms and Illicit VPN Provider

08 May 2023
Ukrainian law enforcement agencies dismantled more than half a dozen bot farms and a virtual private network infrastructure spreading disinformation and fake Russian propaganda.

Update: Western Digital says hackers stole customer data in March cyberattack

08 May 2023
Western Digital has taken its store offline and sent customers data breach notifications after confirming that hackers stole sensitive personal information in a March cyberattack.

CERT-UA Warns of SmokeLoader and RoarBAT Malware Attacks Against Ukraine

08 May 2023
An ongoing phishing campaign with invoice-themed lures is being used to distribute the SmokeLoader malware in the form of a polyglot file, according to the Computer Emergency Response Team of Ukraine (CERT-UA). The emails, per the agency, are sent using compromised accounts and come with a ZIP archive that, in reality, is a polyglot file containing a decoy document and a JavaScript file. The

Kimsuky Enhances its BabyShark Recon Tool in a Global Campaign

06 May 2023
North Korean hacking group Kimsuky is distributing a new version of its reconnaissance malware called ReconShark. The cyberespionage campaign involves sending emails containing a link to a password-protected doc hosted on Microsoft OneDrive. The malware can steal sensitive data from the infected system, including running processes, connected batteries, and endpoint threat detection mechanisms.

Drone Goggles Maker Orqa Hit with 'Time-bomb' Ransomware Attack

06 May 2023
Orqa, a maker of FPV drone racing goggles, claimed that a contractor introduced code into the firmware of the devices, designed to brick them as a time bomb. Findings say that the contractor had been in business relations with Orqa for several years and had waited for the code bomb to detonate. Orqa has issued a warning, urging users not to install the unofficial firmware version, as it may be another piece of malicious code.

Russian actor Uses WinRAR and DD Command to Destroy Ukrainian Data

06 May 2023
CERT-UA confirmed the discovery of a malicious script dubbed RoarBat that is most probably being used by the Russian threat group Sandworm to wipe off data from Ukrainian state networks. The script uses the WinRaR application for archiving and compressing applications and then deleting specific files. However, Ukrainian defenders attributed the attack to Sandworm with moderate confidence.

Dragon Breath APT Group Using Double-Clean-App Technique to Target Gambling Industry

06 May 2023
An advanced persistent threat (APT) actor known as Dragon Breath has been observed adding new layers of complexity to its attacks by adopting a novel DLL side-loading mechanism. "The attack is based on a classic side-loading attack, consisting of a clean application, a malicious loader, and an encrypted payload, with various modifications made to these components over time," Sophos researcher

Twitter admits to ‘security incident’ involving Circles tweets

06 May 2023
Twitter admits to ‘security incident’ involving Circles tweets Feature allows users to set a list of friends and post tweets that only they are supposed to be able to readA privacy breach at Twitter published tweets that were never supposed to be seen by anyone but the poster’s closest friends to the site at large, the company has admitted after weeks of stonewalling reports.The site’s Circles feature allows users to set an exclusive list of friends and post tweets that only they can read. Similar to Instagram’s Close Friends setting, it allows users to share private thoughts, explicit images or unprofessional statements without risking sharing them with their wider network. Continue reading...

"Kekw" Malware in Python Packages Could Steal Data and Hijack Crypto

06 May 2023
According to new data by Cyble Research and Intelligence Labs (CRIL), Kekw malware can steal sensitive information from infected systems and perform clipper activities that can hijack cryptocurrency transactions.

Meta Cracks Down on South Asian Cyberespionage Groups

06 May 2023
Social media giant Meta took down hundreds of fake Facebook and Instagram accounts used by South Asia advanced persistent threat groups to glean sensitive information and coax users into installing malware.

ALPHV gang claims ransomware attack on Constellation Software

06 May 2023
Canadian diversified software company Constellation Software confirmed on Thursday that some of its systems were breached by threat actors who also stole personal information and business data.

New Vulnerability in Popular WordPress Plugin Exposes Over 2 Million Sites to Cyberattacks

06 May 2023
Users of Advanced Custom Fields plugin for WordPress are being urged to update version 6.1.6 following the discovery of a security flaw. The issue, assigned the identifier CVE-2023-30777, relates to a case of reflected cross-site scripting (XSS) that could be abused to inject arbitrary executable scripts into otherwise benign websites. The plugin, which is available both as a free and pro

Ransomware gang hijacks university’s emergency alert system, threatens students

05 May 2023
EXECUTIVE SUMMARY: On May 1st, a group of cyber criminals hacked into and gained control over a U.S. university’s emergency alert system. Students at Bluefield University received the following unexpected message: “Hello students of Bluefield University! We’re Avoslocker Ransomwar. We hacked the university network to exfiltrate 1.2 TB files…We have admissions data from thousands of […] The post Ransomware gang hijacks university’s emergency alert system, threatens students appeared first on CyberTalk.

White House officials discuss AI concerns with security organizations

05 May 2023
Vice President Harris and other White House officials met with security leaders to address risks associated with artificial intelligence (AI). 

Virginia school offers cybersecurity education program

05 May 2023
A tech industry adult education program is being offered by Virginia Commonwealth University and the Institute of Data to help fill the talent gap.

WordPress custom field plugin bug exposes over 1M sites to XSS attacks

05 May 2023
Security researchers warn that the 'Advanced Custom Fields' and 'Advanced Custom Fields Pro' WordPress plugins, with millions of installs, are vulnerable to cross-site scripting attacks (XSS).

Pro-Russian Hackers Claim Downing of French Senate Website

05 May 2023
“Access to the site has been disrupted since this morning,” the upper house of Parliament said on Twitter shortly before midday, saying a team was busy fixing the problem.