Latest Cybersecurity News and Articles
28 April 2023
While there have been many laudable applications of these technologies in healthcare, education, and even art, it’s essential to understand the broader way in which these technologies could be used and the potential risks they pose.
28 April 2023
The company revealed in its "bad apps" yearly report that it also prevented almost 1.5 million apps linked to various policy violations from reaching the Google Play Store.
28 April 2023
A Veeam Backup process was seen carrying out a shell command to download and implement a PowerShell script abusing the Veeam Backup & Replication vulnerability, CVE-2023-27532. Further analysis revealed that the script was in fact the Powertrash in-memory dropper, a tool that has been previously used by FIN7. Consequently, the group deployed Diceloader, a backdoor also referred to as Lizar.
28 April 2023
According to a study by MyCena Security Solutions, there is an opportunity for businesses to learn how to eradicate password resets from their processes to improve both their security and bottom line.
28 April 2023
South Korean education, construction, diplomatic, and political institutions are at the receiving end of new attacks perpetrated by a China-aligned threat actor known as the Tonto Team.
28 April 2023
An ongoing Magecart campaign has attracted the attention of cybersecurity researchers for leveraging realistic-looking fake payment screens to capture sensitive data entered by unsuspecting users.
"The threat actor used original logos from the compromised store and customized a web element known as a modal to perfectly hijack the checkout page," Jérôme Segura, director of threat intelligence at
28 April 2023
Olympia Community Unit School District 16 - the largest school district in Illinois - realized on February 26, 2023, that it had suffered a ransomware attack, after being targeted by an affiliate of the notorious LockBit ransomware group.
28 April 2023
South Korean education, construction, diplomatic, and political institutions are at the receiving end of new attacks perpetrated by a China-aligned threat actor known as the Tonto Team.
"Recent cases have revealed that the group is using a file related to anti-malware products to ultimately execute their malicious attacks," the AhnLab Security Emergency Response Center (ASEC) said in a report
27 April 2023
A shocking number of organizations -- including banks and healthcare providers -- are leaking private and sensitive information from their public Salesforce Community websites, KrebsOnSecurity has learned. The data exposures all stem from a misconfiguration in Salesforce Community that allows an unauthenticated user to access records that should only be available after logging in.
27 April 2023
EXECUTIVE SUMMARY: If you expected OpenAI to further develop ChatGPT’s ‘neural network’ in order to enhance the bot’s performance, allowing it to perform an even wider range of tasks with unprecedented accuracy and efficiency, you might find yourself disappointed. OpenAI’s CEO, Sam Altman, warns that the research strategy used to create the bot has already […]
The post The age of giant AI models, already over? appeared first on CyberTalk.
27 April 2023
A new incident response report analyzing data breach statistics found that the number of incidents was almost identical in 2022 and 2021.
27 April 2023
Cindi Carter is a Field CISO for the Americas region at Check Point. Navigate the fast-moving world of artificial intelligence (AI) and ChatGPT with agility and confidence, leveraging impactful cyber security expertise. In this interview, Cindi Carter, Field CISO Americas for Check Point, provides comprehensive insights into relevant privacy, security and governance concerns. Explore unique […]
The post AI, ChatGPT and separating fact from fiction appeared first on CyberTalk.
27 April 2023
A new macOS information-stealing malware named 'Atomic' (aka 'AMOS') is being sold to cybercriminals via private Telegram channels for a subscription of $1,000 per month.
27 April 2023
NCR is making progress restoring services after a ransomware attack led to a data center outage that impacted its Aloha cloud-based services and Counterpoint applications.
27 April 2023
Google has made available a new tool for Google Workspace admins and security teams to make an assessment of the risk different Chrome extensions may present to their users: Spin.AI App Risk Assessment.
27 April 2023
A little-known Russian-speaking cyber-espionage group has been linked to a new politically-motivated surveillance campaign targeting high-ranking government officials, telecom services, and public service infrastructures in Tajikistan.
27 April 2023
Google on Wednesday said it obtained a temporary court order in the U.S. to disrupt the distribution of a Windows-based information-stealing malware called CryptBot and "decelerate" its growth.
The tech giant's Mike Trinh and Pierre-Marc Bureau said the efforts are part of steps it takes to "not only hold criminal operators of malware accountable, but also those who profit from its distribution.
27 April 2023
To trick unsuspecting users into downloading malware onto their systems, threat actors often used the Google advertisements platform to promote fake websites on legit software and application updates.
27 April 2023
While those working in InfoSec and GRC have high levels of confidence in their cyber/IT risk management systems, persistent problems may be making them less effective than perceived, according to RiskOptics.
27 April 2023
The increase in reported ransomware victims across Q1 2023 reflects the continued prevalence of ransomware as a worldwide, industry-agnostic threat, according to GuidePoint Security.