Latest Cybersecurity News and Articles


UK and US issue warning about APT28 actors exploiting poorly maintained Cisco routers

17 April 2023
Joint advisory calls on organisations to secure devices to prevent network attacks.

Collaboration only way to respond to cyber threats says renowned tech entrepreneur

17 April 2023
The interview with Hermann Hauser will be aired later this week at the NCSC's cyber security conference CYBERUK, held in Belfast.

7 tips for tackling cyber security technical debt

17 April 2023
EXECUTIVE SUMMARY: The cyber risk landscape is evolving. Novel attack types are appearing at an unprecedented rate. Cyber criminals are constantly seeking new ways to infiltrate networks, paralyze systems, steal data and drive their own financial gains. As organizations race to keep up with emerging threats, it’s all-too-common for security leaders to ignore the growing […] The post 7 tips for tackling cyber security technical debt appeared first on CyberTalk.

Understanding the Threat of Titan Stealer Malware

17 April 2023
The malware spreads through methods like phishing, malicious ads, and cracked software. It also uses a technique called process hollowing to inject the malicious code into a legitimate process called AppLaunch.exe.

China-linked APT41 group spotted using open-source red teaming tool GC2

17 April 2023
In October 2022, threat actors sent phishing emails that contained links to a password-protected file hosted in Drive. The final payload was the Go-written GC2 tool that gets commands from Google Sheets and exfiltrates data to Google Drive.

ZeroFox to Acquire Threat Intelligence Firm LookingGlass for $26 Million

17 April 2023
ZeroFox (ZFOX), which advertises itself as an external cybersecurity solutions provider, on Monday, announced that it’s in the process of acquiring threat intelligence and attack surface management company LookingGlass.

New Captcha Protected Phishing Attack Targets Access to Payroll Files

17 April 2023
The phishing attack is hosted on a landing page at payroll-microsoft365-access-panel-2023[.]softr[.]app/ which redirects to azaleastays[.]com/devr365web2023/ once a button is clicked.

Twitter no longer exists, it’s just X Corp. now

17 April 2023
EXECUTIVE SUMMARY: In a move sparking intense speculation, Twitter technically “no longer exists” after a merge with X Corp., according to a document submitted to a California court earlier this month. What the change means for Twitter is unclear. In the past, Twitter’s owner, Elon Musk, suggested that purchasing the company would accelerate plans to […] The post Twitter no longer exists, it’s just X Corp. now appeared first on CyberTalk.

Cybersecurity leaders reflect on Samsung, ChatGPT incidents

17 April 2023
After it was discovered that three Samsung employees shared company information with ChatGPT, cybersecurity leaders are sharing their thoughts. 

FIN7 and Ex-Conti Cybercrime Gangs Join Forces in Domino Malware Attacks

17 April 2023
The latest intrusion wave, spotted by IBM Security X-Force two months ago, involves the use of Dave Loader, a crypter previously attributed to the Conti group (aka Gold Blackburn, ITG23, or Wizard Spider), to deploy the Domino backdoor.

Israeli Spyware Vendor QuaDream to Shut Down Following Citizen Lab and Microsoft Expose

17 April 2023
Israeli spyware vendor QuaDream is allegedly shutting down its operations in the coming days, less than a week after its hacking toolset was exposed by Citizen Lab and Microsoft. The development was reported by the Israeli business newspaper Calcalist, citing unnamed sources, adding the company "hasn't been fully active for a while" and that it "has been in a difficult situation for several

Qbot Banking Trojan Increasingly Delivered Via Business Emails

17 April 2023
Discovered by security researchers at Kaspersky, the malicious campaign relied on messages written in different languages, including English, German, Italian, and French.

Cenlar appoints Theodore Mugnier Director of Information Security

17 April 2023
Theodore Mugnier was hired as Director of Information Security for Cenlar FSB. Mugnier is a former Marine with two decades of intelligence experience.

New QBot Banking Trojan Campaign Hijacks Business Emails to Spread Malware

17 April 2023
A new QBot malware campaign is leveraging hijacked business correspondence to trick unsuspecting victims into installing the malware, new findings from Kaspersky reveal. The latest activity, which commenced on April 4, 2023, has primarily targeted users in Germany, Argentina, Italy, Algeria, Spain, the U.S., Russia, France, the U.K., and Morocco. QBot (aka Qakbot or Pinkslipbot) is a banking

Vixen Panda APT Group suspected of targeting foreign ministry in cyberattack

17 April 2023
A Chinese hacker group, Vixen Panda, is suspected of targeting the Foreign Ministry in a recent cyberattack. As per a new report by Euractiv, the hackers showed a keen interest in policy documents.

German Arms Manufacturer Rheinmetall Targeted in Cyberattack

17 April 2023
Over the weekend, Rheinmetall, a leading German armaments and technology company, was the victim of a cyberattack that targeted all three of its divisions. However, company officials have stated that the attack did not impact operations.

FIN7 and Ex-Conti Cybercrime Gangs Join Forces in Domino Malware Attacks

17 April 2023
A new strain of malware developed by threat actors likely affiliated with the FIN7 cybercrime group has been put to use by the members of the now-defunct Conti ransomware gang, indicating collaboration between the two crews. The malware, dubbed Domino, is primarily designed to facilitate follow-on exploitation on compromised systems, including delivering a lesser-known information stealer that

NCR Says it was hit by BlackCat Ransomware Attack

17 April 2023
NCR is suffering an outage on its Aloha point of sale (PoS) platform since Wednesday after it was hit by a ransomware attack conducted by the BlackCat/ALPHV ransomware group.

What's the Difference Between CSPM & SSPM?

17 April 2023
Cloud Security Posture Management (CSPM) and SaaS Security Posture Management (SSPM) are frequently confused. The similarity of the acronyms notwithstanding, both security solutions focus on securing data in the cloud. In a world where the terms cloud and SaaS are used interchangeably, this confusion is understandable. This confusion, though, is dangerous to organizations that need to secure

US extradites Nigerian charged over $6m email fraud scam

17 April 2023
They used a technique dubbed Business Email Compromise (BEC). As part of this, it's claimed, the fraudsters broke into people's email accounts, too, and chatted via mobile apps to organize their crimes.