Latest Cybersecurity News and Articles
05 April 2023
Researchers at Sysdig highlight that the new Proxyjacking attack, which is much like cryptojacking, is abusing the infamous Log4j vulnerability to gain initial access to victims’ systems. On a broader scale, researchers note that a modest compromise of 100 IPs can enable attackers to make a profit of nearly $1,000 per month.
05 April 2023
A new ransomware strain, named Rorschach, was unveiled by Check Point Research. The ransomware boasts an advanced level of customization and fast encryption, which sets it apart from other strains. Furthermore, an in-depth examination of Rorschach's source code indicates similarities with the Babuk ransomware family. Its attacks have been reported in Asia, Europe, and the Middle East.
05 April 2023
A security vulnerability in the Elementor Pro website builder plugin for WordPress is under active exploitation by a threat actor. An authenticated user can take advantage of this to take full control over a WordPress site having WooCommerce enabled. The bug in the plugin, roughly deployed on over 12 million sites, impacts versions 3.11.6 and earlier.
05 April 2023
EXECUTIVE SUMMARY: Small businesses are facing an increasing number of demands, and need innovative solutions to stay competitive in today’s fast-paced digital landscape. Technological advancements, like those in the field of artificial intelligence (AI), are providing small businesses with the tools that they need to tackle tough challenges. Artificial intelligence-based tools and technologies can streamline […]
The post Supercharge your small business with these 15 AI tools appeared first on CyberTalk.
05 April 2023
It has been more than a year since Apache released details on a critical vulnerability in Log4j, however threat actors are still exploiting it.
05 April 2023
It has been more than a year since Apache released details on a critical vulnerability in Log4j, however threat actors are still exploiting it.
05 April 2023
Western Digital announced that a third party had accessed some of its systems at the end of March and has implemented incident response efforts.
05 April 2023
A security researcher found a series of vulnerabilities with the Nexx brand of smart garage openers. He says he could remotely find garages to target, and then open them across the internet.
05 April 2023
Tallahassee Memorial HealthCare says its investigation into the February incident determined that an "unauthorized person" had gained access to its computer network and obtained certain files from its systems between January 26 and February 2.
05 April 2023
The STYX marketplace was launched at the beginning of 2023. This discovery illustrates the post-pandemic menace of cyber-enabled financial crime and the threat it poses to financial institutions and their customers.
05 April 2023
The hacker is considered to be responsible for multiple high-profile cyberattacks and for creating a search engine called Udyat (the eye of Horus) dedicated to selling stolen sensitive information in large numbers.
05 April 2023
The FBI-led effort known as “Operation Cookie Monster” took down a notorious cybercrime marketplace known for selling compromised credentials and biometric data for digital fraudsters to carry out attacks or commit identity theft.
05 April 2023
TAFE South Australia has revealed a data breach that was discovered when SA Police seized “devices containing electronic scanned copies of TAFE SA student identification forms”.
05 April 2023
CISA kicks off Emergency Communications Month to highlight the critical role emergency communications plays in keeping connected during a disaster.
05 April 2023
In its disclosure, the companies confirmed their use of website trackers, which are small snippets of code that share with tech giants information about visitors to their websites and are often used for analytics and advertising.
05 April 2023
Portuguese users are being targeted by a new malware codenamed CryptoClippy that's capable of stealing cryptocurrency as part of a malvertising campaign.
The activity leverages SEO poisoning techniques to entice users searching for "WhatsApp web" to rogue domains hosting the malware, Palo Alto Networks Unit 42 said in a new report published today.
CryptoClippy, a C-based executable, is a type
05 April 2023
In Episode 15 of the Cybersecurity & Geopolitical Podcast from Security magazine, hosts Ian Thornton-Trump and Philip Ingram discuss current developments in the Russian invasion of Ukraine, geopolitical shifts in global intelligence, and app-based data collection.
05 April 2023
Typhon Reborn V2 includes significant updates to its codebase and improved capabilities. The new version features additional anti-analysis and anti-virtual machine (VM) capabilities to evade detection and make analysis more difficult.
05 April 2023
Trace3’s acquisition of Set Solutions is a continuation of the company’s strategic expansion plan. The investment allows the combined companies to deepen cybersecurity capabilities to drive success for commercial and enterprise clients.
05 April 2023
Security experts have urged the npm registry to deploy anti-bot technology after revealing that the open-source repository has suffered intermittent denial of service (DoS) outages over the past month.