Latest Cybersecurity News and Articles


3CX DesktopApp security issue

04 April 2023
NCSC advice following a security issue in the 3CX DesktopApp.

FBI Seizes Bot Shop ‘Genesis Market’ Amid Arrests Targeting Operators, Suppliers

04 April 2023
Several domain names tied to Genesis Market, a bustling cybercrime store that sold access to passwords and other data stolen from millions of computers infected with malicious software, were seized by the Federal Bureau of Investigation (FBI) today. Sources tell KrebsOnsecurity the domain seizures coincided with "dozens" of arrests in the United States and abroad targeting those who allegedly operated the service, as well as suppliers who continuously fed Genesis Market with freshly-stolen data.

Ensuring safe AI: Policy conundrums for a responsible future

04 April 2023
Check Point Software’s cyber security evangelist Ashwin Ram shares insights into artificial intelligence, policy development and cyber security. It is clear that the utilization of Generative Artificial Intelligence (AI) technology, such as ChatGPT, has countless applications aimed at improving the way we live and work. It is also clear that there are concerns about the […] The post Ensuring safe AI: Policy conundrums for a responsible future appeared first on CyberTalk.

ALPHV ransomware exploits Veritas Backup Exec bugs for initial access

04 April 2023
The ALPHV ransomware operation emerged in December 2021 and is considered to be run by former members of the Darkside and Blackmatter programs that shut down abruptly to escape law enforcement pressure.

Britain's data watchdog fines TikTok $15.9 million for alleged misuse of children's data

04 April 2023
The ICO estimated the app allowed up to 1.4 million U.K. children under 13 to use the platform in 2020. The regulator accused TikTok of failing to take the necessary steps to verify user identity and remove children under 13 from the platform.

Zimbra Flaw Exploited by Russia Against NATO Countries Added to CISA ‘Must Patch’ List

04 April 2023
Because of this issue, an endpoint URL may accept parameters without sanitization, which could allow an unauthenticated attacker to provide crafted request parameters leading to the execution of arbitrary web scripts or HTML code.

Cybereason Raises $100 Million, Appoints New CEO

04 April 2023
The new funding, Cybereason says, will help it advance its XDR, EDR, and EPP solutions and support global growth. In addition to the investment, Cybereason also announced that SoftBank’s executive vice president, Eric Gan, will become its new CEO.

6G for executives: What will the business impact look like?

04 April 2023
EXECUTIVE SUMMARY: The next generation of connectivity is on the horizon. It’s expected to be 100X faster than 5G. Possibly 1,000X faster. But it’s not just about connectivity speed… Active use of 6G is likely to have powerful, game-changing business implications. Experts expect that 6G will enable businesses to significantly enhance productivity, foster strategic agility, […] The post 6G for executives: What will the business impact look like? appeared first on CyberTalk.

Websites of Israeli Universities and Cybersecurity Company Briefly Taken Down in Cyberattack

04 April 2023
Among the websites affected were Tel Aviv University, the Hebrew University of Jerusalem, Ben-Gurion University of the Negev, Haifa University, Weizmann Institute of Science, Open University of Israel, and Reichman University.

China to probe Micron over cybersecurity, in chip war’s latest battle

04 April 2023
A statement by Chinese government said that the review is being undertaken to ensure the security of the key information infrastructure supply chain, prevent network security risks caused by hidden product problems, and maintain national security.

Rilide Stealer Delivered via Malicious Browser Extension to Siphon Cryptocurrency

04 April 2023
Trustwave SpiderLabs uncovered a new strain of malware that it dubbed Rilide, which targets Chromium-based browsers such as Google Chrome, Microsoft Edge, Brave, and Opera.

ChatGPT, the AI Revolution, and the Security, Privacy and Ethical Implications

04 April 2023
For AI, security is a two-way street: It can be used by malicious actors to abuse victims, while its own security can be abused by those same malicious actors. ChatGPT has already suffered at least one breach that is known.

Australia takes its turn to kick TikTok off government kit

04 April 2023
Australia has joined the growing list of nations that have decided TikTok represents an unacceptable risk when running on government-owned devices, so has decided not to allow it onto those machines.

Unapproved Apps Used By 32% of Remote Workers

04 April 2023
Roughly one in three (32%) remote and hybrid workers use apps or software not approved by IT, and 92% of remote workers use a personal tablet or smartphone device to do work tasks.

Rorschach Ransomware Emerges With Advanced Evasion Strategies

04 April 2023
Check Point Research said it observed the ransomware deployed against an unnamed U.S.-based company, adding it found no branding or overlaps that connect it to any previously known ransomware actors.

58% of organizations claim high or critical OT security risk levels

04 April 2023
OT security strategies are an increasing concern according to a recent survey of 200 C-level executives and directors in the U.S. and Canada.

Sorting Through Haystacks to Find CTI Needles

04 April 2023
Clouded vision CTI systems are confronted with some major issues ranging from the size of the collection networks to their diversity, which ultimately influence the degree of confidence they can put on their signals. Are they fresh enough and sufficiently reliable to avoid any false positives or any poisoning? Do I risk acting on outdated data? This difference is major since a piece of

Rorschach Ransomware Emerges: Experts Warn of Advanced Evasion Strategies

04 April 2023
Cybersecurity researchers have taken the wraps off a previously undocumented ransomware strain called Rorschach that's both sophisticated and fast. "What makes Rorschach stand out from other ransomware strains is its high level of customization and its technically unique features that have not been seen before in ransomware," Check Point Research said in a new report. "In fact, Rorschach is one

Mantis Cyberespionage Group Deploys New Tooling in Attacks Against Palestinian Targets

04 April 2023
The Mantis cyber-espionage group (aka Arid Viper, Desert Falcon, APT-C-23) is believed to be operating out of the Palestinian territories. It continues to mount attacks with a refreshed toolset and maintains persistence on targeted networks.

New Rilide Malware Targeting Chromium-Based Browsers to Steal Cryptocurrency

04 April 2023
Chromium-based web browsers are the target of a new malware called Rilide that masquerades itself as a seemingly legitimate extension to harvest sensitive data and siphon cryptocurrency. "Rilide malware is disguised as a legitimate Google Drive extension and enables threat actors to carry out a broad spectrum of malicious activities, including monitoring  browsing history, taking screenshots,