Latest Cybersecurity News and Articles


US Government Warns Organizations of LockBit 3.0 Ransomware Attacks

18 March 2023
Also referred to as LockBit Black, LockBit 3.0 has a more modular architecture compared to its previous variants, and supports various arguments that modify its behavior after deployment.

Chinese Hackers Targeting Security and Network Appliances With Custom Backdoors

18 March 2023
Chinese hackers exploited a critical Fortinet bug and used custom networking malware to steal credentials and maintain network access, according to Mandiant. Victims include defense, telecom, and technology firms, as well as government agencies.

New GoLang-Based HinataBot Exploiting Router and Server Flaws for DDoS Attacks

18 March 2023
"The malware binaries appear to have been named by the malware author after a character from the popular anime series, Naruto, with file name structures such as 'Hinata--,'" Akamai said in a technical report.

Bee-Ware of Trigona, An Emerging Ransomware Strain

18 March 2023
By analyzing Trigona ransomware binaries and ransom notes from VirusTotal, as well as information from incident response, Unit 42 determined that Trigona was very active during December 2022, with at least 15 potential victims being compromised.

Pompompurin Unmasked: Infamous BreachForums Mastermind Arrested in New York

18 March 2023
U.S. law enforcement authorities have arrested a New York man in connection with running the infamous BreachForums hacking forum under the online alias "Pompompurin." The development, first reported by Bloomberg Law, comes after News 12 Westchester, earlier this week, said that federal investigators "spent hours inside and outside of a home in Peekskill." "At one point, investigators were seen

LockBit 3.0 Ransomware: Inside the Cyberthreat That's Costing Millions

18 March 2023
U.S. government agencies have released a joint cybersecurity advisory detailing the indicators of compromise (IoCs) and tactics, techniques, and procedures (TTPs) associated with the notorious LockBit 3.0 ransomware. "The LockBit 3.0 ransomware operations function as a Ransomware-as-a-Service (RaaS) model and is a continuation of previous versions of the ransomware, LockBit 2.0, and LockBit,"

Feds Charge NY Man as BreachForums Boss “Pompompurin”

17 March 2023
The U.S. Federal Bureau of Investigation (FBI) this week arrested a New York man on suspicion of running BreachForums, a popular English-language cybercrime forum where some of the world biggest hacked databases routinely first show up for sale. The forum's administrator "Pompompurin" has been a thorn in the side of the FBI for years, and BreachForums is widely considered a reincarnation of RaidForums, a remarkably similar crime forum that the FBI infiltrated and dismantled in 2022.

2023 Power 100 honorees highlight women’s leadership in tech

17 March 2023
EXECUTIVE SUMMARY: In a world that’s constantly changing, it’s important to recognize those who are making an impact in their field. That’s why it’s so exciting to hear that Rupal Hollenbeck and Nisha Holt have been named 2023 Power 100 honorees. These two women are at the forefront of the security industry, and their contributions […] The post 2023 Power 100 honorees highlight women’s leadership in tech appeared first on CyberTalk.

FakeCalls Vishing Malware Targets South Korean Users via Popular Financial Apps

17 March 2023
An Android voice phishing (aka vishing) malware campaign known as FakeCalls has reared its head once again to target South Korean users under the guise of over 20 popular financial apps. "FakeCalls malware possesses the functionality of a Swiss army knife, able not only to conduct its primary aim but also to extract private data from the victim's device," cybersecurity firm Check Point said.

China-based Tick APT Deploys Custom Malware and Use Other Tools

17 March 2023
ESET researchers found that the Tick cyberespionage group compromised an East Asian Data-Loss Prevention (DLP) company in 2021 and used a wide range of tools in similar attacks. In one of its campaigns, it used a tampered version of a legitimate app called Q-Dir to drop an open-source VBScript backdoor named ReVBShell.

Is Russia regrouping for renewed cyberwar?

17 March 2023
As of late November 2022, Microsoft and other security firms identified a new form of ransomware, called “Sullivan”, deployed against Ukrainian targets, in addition to the “Prestige” ransomware Russia deployed in Ukraine and Poland in October 2022.

SVB account holders targeted with phishing, scams

17 March 2023
After news broke late last week about Silicon Valley Bank’s bank run and collapse, security researchers started warning SVB account holders about incoming SVB-related scams and phishing attempts.

Why is TikTok banned from government phones – and should rest of us be worried?

17 March 2023
Why is TikTok banned from government phones – and should rest of us be worried? UK has removed app over concerns data can be monitored by Chinese state, but public remain vulnerableTikTok is wildly popular, with more than 1 billion people consuming its short video posts around the world. But the app is less favoured by politicians in key markets such as the US and UK, where it has been banned from government-issued phones over security fears. We answer your questions about why TikTok has become a lightning rod for suspicion of Chinese state espionage – and whether nationwide bans are likely. Continue reading...

Microsoft shares script to fix WinRE BitLocker bypass flaw

17 March 2023
This PowerShell script (KB5025175) simplifies the process of securing WinRE images against attempts to exploit the CVE-2022-41099 flaw that enables attackers to bypass the BitLocker Device Encryption feature system storage devices.

Cryptojacking Group TeamTNT Suspected of Using Decoy Miner to Conceal Data Exfiltration

17 March 2023
The cryptojacking group known as TeamTNT is suspected to be behind a previously undiscovered strain of malware used to mine Monero cryptocurrency on compromised systems, according to Cado Security.

Will AI replace humans in phishing attacks?

17 March 2023
Recent research from Hoxhunt analyzed effectiveness of ChatGPT-generated phishing attacks showing people are still better at deceiving other people.

Data Breach at Tuscaloosa's NorthStar Paramedic Services Could Impact 82,000 Patients

17 March 2023
On Tuesday, NorthStar Emergency Paramedic Services took to its website to report the problem and mailed physical letters to patients who may have been impacted by the breach. The company said they became aware of the potential intrusion in September.

Meta Develops New Kill Chain Thesis

17 March 2023
The Meta approach starts from the assumption that despite the asynchronous nature of attacks, there are still meaningful commonalities, especially where those commonalities can be abstracted from the platform or hardware being attacked.

Trojanized WhatsApp and Telegram Apps Go After Victims' Cryptocurrency Wallets

17 March 2023
Threat actors are going after victims’ cryptocurrency funds using trojanized Telegram and WhatsApp applications for Android and Windows. The malware can switch cryptocurrency wallet addresses sent in chat messages with attackers' wallet addresses.

Senators write letter to CISA over drone manufacturer concerns

17 March 2023
A group of senators led a bipartisan effort to urge CISA to assess the potential national security risks associated with a drone manufacturer.