Latest Cybersecurity News and Articles


KFC, Pizza Hut Owner Discloses Data Breach After Ransomware Attack

11 April 2023
In the breach notification letters sent to affected people, Yum! Brands revealed that it has now found out the attackers stole some individuals' personal information, including names, driver's license numbers, and other ID card numbers.

Pay $20k and infect Android devices via Google Play store

11 April 2023
This comes after Kaspersky studied nine dark-web markets between 2019 and 2023, and found a slew of code and services for sale to infect and hijack the phones and tablets of Google Play users.

Evotec SE Provides Update on Cyberattack

11 April 2023
Evotec SE announced an update on the cyberattack that was detected on April 6, 2023. Evotec noticed unusual activity in one of the company's IT systems and immediately took steps to maintain IT security and remediate the impact.

Check Point’s President on her journey, vision and growth strategy

10 April 2023
EXECUTIVE SUMMARY: In this powerful and engaging interview, Check Point’s President Rupal Hollenbeck dynamically describes how the company’s innovation is redefining real-world potentialities, she shows how smart storytelling is a success benchmark, she provides candid insights into an unwavering commitment to diversity and inclusion, and she shares a key message… Read this interview to discover […] The post Check Point’s President on her journey, vision and growth strategy appeared first on CyberTalk.

New Darknet Market Styx Offers a Variety of Frauds and Services

10 April 2023
A new dark web marketplace identified as Styx is gaining popularity among cybercriminals for providing access to a wide range of illegal services such as DDoS attacks, banking trojans, stolen IDs, and 2FA/MFA bypass solutions. It uses Telegram channels where various automated bots interact with buyers.

Inside the sting operation to catch North Korean crypto hackers

10 April 2023
In late January, the hackers moved a fraction of their loot to a crypto account pegged to the dollar, temporarily relinquishing control of it. The investigators pounced, flagging the transaction to U.S. law enforcement officials to freeze the money.

How LockBit Changed Cybersecurity Forever

10 April 2023
Operating as a Ransomware-as-a-Service, the group consists of a central team that crafts the malware and manages its website. Meanwhile, the group also grants access to its code to affiliates who help execute the cyberattacks.

Biden cyber officials see auto, food safety as models for security overhaul

10 April 2023
The blueprint for holding the technology industry accountable for product security is based on similar efforts that resulted in the automobile industry creating safer cars, Acting National Cyber Director Kemba Walden said last week.

CISA orders government agencies to update iPhones, Macs by May 1st

10 April 2023
Apple addressed the two zero-day vulnerabilities in iOS 16.4.1, iPadOS 16.4.1, macOS Ventura 13.3.1, and Safari 16.4.1 by improving input validation and memory management.

Leftover data lurks across the enterprise, creating a business risk

10 April 2023
Cloud computing makes data storage scalable and readily accessible. More than 85% of companies store some or all of their data in the cloud, according to a Blancco study.

Data breach at Elmbrook School District exposes personal information about former and current employees

10 April 2023
Once it learned of the breach, the district investigated, with the help of cybersecurity professionals. The initial group of employees affected was informed in late September and October 2022, Chief Strategy Officer Chris Thompson said.

SD Worx Shuts Down UK Payroll, HR Services After Cyberattack

10 April 2023
Belgian HR and payroll giant SD Worx has suffered a cyberattack causing them to shut down all IT systems for its UK and Ireland services. The company's login portals for other European countries remain operational.

Rochester Public Schools to close Monday after possible cyberattack

10 April 2023
The school district detected "unusual activity on the district’s network," Thursday, and responded by shutting down the network and "almost all core technology systems," while staff began an investigation, as per an update posted on its website.

The new & dangerous way Log4j is being exploited

10 April 2023
EXECUTIVE SUMMARY: The Log4j vulnerability posed a multi-faceted challenge for organizations and management teams worldwide. Leading cyber security authorities have urged organizations to remain acutely aware of the persistent dangers posed by Log4j threats. In the eyes of some experts, Log4j represented one of the most dangerous flaws disclosed in recent years. Upon its discovery, […] The post The new & dangerous way Log4j is being exploited appeared first on CyberTalk.

Samsung employees unwittingly leaked company's secret data by using ChatGPT

10 April 2023
Samsung Electronics is warning its employees of the potential risks associated with the use of ChatGPT, explaining that there is no way to prevent the leak of the data provided to OpenAI’s chatbot service.

Army Sergeant Behind Data Breach Affecting 55 Million Thai Citizens Identified

10 April 2023
In the 9near.org website, which is now blocked, the hacker threatened to release all the information to the public unless the breached state agency contacted him within a deadline.

Cyberattacks on credentials & permissions affect 82% of organizations

10 April 2023
The State of Exposure Management report by XM Cyber and Centia Institute found that 75% of security exposures do not put critical assets at risk.

Update: Ransomware Gang Leaked 600GB of Data Stolen From Oakland City Servers

10 April 2023
Play, the threat group responsible for the ransomware attack, posted the second leak on their site, following up with their first data dump at the beginning of March, with Oakland’s data sizing up to 10 gigabytes.

International Law Firm Proskauer Exposed Clients' Confidential M&A Data

10 April 2023
A person with knowledge of the incident told TechCrunch that data from Proskauer’s merger and acquisitions business was left on an unsecured Microsoft Azure cloud server.

Estonian National Charged in U.S. for Acquiring Electronics and Metasploit Pro for Russian Military

10 April 2023
An Estonian national has been charged in the U.S. for purchasing U.S.-made electronics on behalf of the Russian government and military. The 45-year-old individual, Andrey Shevlyakov, was arrested on March 28, 2023, in Tallinn. He has been indicted with 18 counts of conspiracy and other charges. If found guilty, he faces up to 20 years in prison. Court documents allege that Shevlyakov operated