Latest Cybersecurity News and Articles
30 March 2023
AlienFox is a modular toolset comprising various custom tools and modified open-source utilities created by different authors. Threat actors use AlienFox to collect lists of misconfigured cloud endpoints from security scanning platforms.
30 March 2023
The number of credential phishing emails sent spiked by 478%. Emotet and QakBot are the top malware families observed. For the eighth consecutive year, business email compromise (BEC) ranked as the top cybercrime.
30 March 2023
Multi-cloud data storage, once merely a byproduct of the great cloud migration, has now become a strategy for data management. "Multi-cloud by design," and its companion the supercloud, is an ecosystem in which several cloud systems work together to provide many organizational benefits, including increased scale and overall resiliency.And now, even security teams who have long been the holdout
30 March 2023
A majority of organizations reported that global geopolitical instability has influenced their cyber strategy “moderately” or “substantially”. Their biggest concerns regarding cyberattacks are business continuity (67%) and reputational damage (65%).
30 March 2023
Successful exploitation on unpatched devices using Sudo versions 1.8.0 through 1.9.12p1 could enable attackers to escalate privileges by editing unauthorized files after appending arbitrary entries to the list of files to process.
30 March 2023
While CrowdStrike suspects a North Korean state-backed hacking group it tracks as Labyrinth Collima is behind this attack, Sophos' researchers say they "cannot verify this attribution with high confidence."
30 March 2023
Mandiant identified a North Korean threat actor, named APT43, conducting cyberespionage campaigns against government organizations in the U.S. and South Korea. Besides its own, APT43 leverages its own set of custom malware, such as Pencildown, Venombite, Pendown, Laptop, Hangman backdoor, and others, not used by other attackers.
30 March 2023
The company’s founders argue that an organization’s identity surface is now the number one attack vector, yet as companies increasingly rely on an ever-growing number of third-party services, that’s also becoming increasingly hard to manage.
30 March 2023
A new "comprehensive toolset" called AlienFox is being distributed on Telegram as a way for threat actors to harvest credentials from API keys and secrets from popular cloud service providers.
"The spread of AlienFox represents an unreported trend towards attacking more minimal cloud services, unsuitable for crypto mining, in order to enable and expand subsequent campaigns," SentinelOne security
30 March 2023
Over the past few months, threat actors have been spreading ShellBot and Moobot malware on exploitable servers. Compromised victims can be controlled and used as DDoS bots after receiving a command from a C2 server.
30 March 2023
A researcher was able to bypass OpenAI’s fix for the original account takeover issue, using a new payload, and discovered that all ChatGPT APIs were vulnerable to the bypass.
30 March 2023
A recent update introduced a new SafeMoon smart contract function that burns tokens. Unfortunately, the function was mistakenly set to the public without restrictions, allowing anyone to execute it as they wished.
30 March 2023
3CX said it's working on a software update for its desktop app after multiple cybersecurity vendors sounded the alarm on what appears to be an active supply chain attack that's using digitally signed and rigged installers of the popular voice and video conferencing software to target downstream customers.
"The trojanized 3CX desktop app is the first stage in a multi-stage attack chain that pulls
29 March 2023
NCSC CEO Lindy Cameron reflects on the importance of Board-level engagement with cyber security.
29 March 2023
Refreshed guidance from the NCSC will support board members govern online risk.
29 March 2023
EXECUTIVE SUMMARY: In today’s fast-paced financial services industry, banks and other financial institutions are looking for new ways to improve efficiency, reduce costs and enhance the customer experience. One emerging technology that’s quickly gaining traction is ChatGPT, a sophisticated chatbot powered by artificial intelligence. ChatGPT can be integrated into existing systems and applications to help […]
The post 10 ways ChatGPT is disrupting the financial services industry appeared first on CyberTalk.
29 March 2023
By Devin Partida, Editor-in-Chief, Rehack.com. There’s no question that cyber security is becoming a top concern for virtually every company, regardless of industry. Both small businesses and large corporations must prioritize their cyber security strategies in such a way as to to protect their assets in the increasingly threatening landscape. Despite the growing importance surrounding […]
The post Promoting company success with AI-based talent recruitment appeared first on CyberTalk.
29 March 2023
The nuclear energy sector of China is reportedly facing threats from Bitter, a South Asian APT. The group specializes in using Excel exploits, Windows Installer (MSI) files, and Microsoft Compiled HTML Help (CHM) files. Besides, the group is infamous for targeting energy and government organizations in Bangladesh, Pakistan, China, and Saudi Arabia.
29 March 2023
In this exclusive interview, Senior Vice President of Business Development and Security Strategy at TD SYNNEX, Jessica McDowell, shares a bit about her role leading go-to-market programs and supporting the success of more than 100 vendors. She also provides insights into how she reached the executive-level and how others can follow a similar path, emphasizing […]
The post Exclusive interview: TD SYNNEX SVP in honor of Women’s History Month appeared first on CyberTalk.
29 March 2023
MacStealer is a new information-stealing malware threat attempting to pilfer sensitive information from compromised macOS devices. The malware uses Telegram as its C2 channel and specifically affects devices running Catalina and later versions on M1 and M2 CPUs. It can harvest documents, browser cookies, and login information from individuals.