Latest Cybersecurity News and Articles


Warning: AI-generated YouTube Video Tutorials Spreading Infostealer Malware

13 March 2023
Threat actors have been increasingly observed using AI-generated YouTube Videos to spread a variety of stealer malware such as Raccoon, RedLine, and Vidar. "The videos lure users by pretending to be tutorials on how to download cracked versions of software such as Photoshop, Premiere Pro, Autodesk 3ds Max, AutoCAD, and other products that are licensed products available only to paid users,"

Report: Increased Remote Work for Many Governments Also Raises Cyber Risks

13 March 2023
Given the increase in virtual and hybrid work, government employees’ increasing reliance on out-of-office technologies presents new challenges when it comes to cyber resilience.

CASPER Attack Steals Data Using Air-Gapped Computer's Internal Speaker

13 March 2023
Researchers at the School of Cyber Security at Korea University, Seoul, have presented a new covert channel attack named CASPER can leak data from air-gapped computers to a nearby smartphone at a rate of 20bits/sec.

New UNC2970 Espionage Campaign Targets Media and Tech Companies

13 March 2023
Mandiant reports that since June 2022, the North Korean cyberespionage organization UNC2970 has been focusing on media and tech firms in the United States and Europe. Crims specifically targets security researchers of an enterprise using a job recruitment theme. Organizations are suggested to leverage the available IOCs and deploy actionable and context-rich threat intelligence-sharing solutions to detect and contain such incidents.

Stolen credentials increasingly empower the cybercrime underground

13 March 2023
"Last year, 4,518 data breaches were reported," researchers from Flashpoint said in a new report. "Threat actors exposed or stole 22.62 billion credentials and personal records, ranging from account and financial information to emails and SSNs."

CISA warns of actively exploited Plex bug after LastPass breach

13 March 2023
Tracked as CVE-2020-5741, this security flaw allows threat actors with admin privileges to execute arbitrary Python code remotely in low-complexity attacks that don't require user interaction.

‘Pig Butchering’ Scams Are Now a $3 Billion Threat

13 March 2023
IC3 reported that BEC—in which attackers trick businesses into making bogus payments or intercept legitimate payments—resulted in nearly $2.4 billion worth of losses in 2021 and $2.7 billion in 2022.

Telehealth startup Cerebral shared millions of patients' data with advertisers

13 March 2023
Cerebral has revealed it shared the private health information, including mental health assessments, of more than 3.1 million patients in the United States with advertisers and social media giants like Facebook, Google, and TikTok.

Security researchers targeted with new malware via job offers on LinkedIn

13 March 2023
Mandiant says the particular group has previously targeted tech firms, media groups, and entities in the defense industry. Its latest campaign shows it has evolved its targeting scope and adapted its capabilities.

PeopleGrove security lapse exposed users' personal information

13 March 2023
The database contained gigabytes of personal information, including email addresses, phone numbers, addresses, details of university achievements and scores, and resumes containing detailed work histories and employment details.

Blackbaud to pay $3M for misleading ransomware attack disclosure

13 March 2023
The organizations impacted by the incident include many entities, such as charities, foundations, non-profits, and universities worldwide, from the U.S., Canada, the U.K., and the Netherlands.

Belgium bans TikTok from government phones after US, EU

13 March 2023
The Chinese-owned video-sharing app will be temporarily prohibited from devices owned or paid for by Belgium's federal government for at least six months, according to a post on Alexander de Croo's website.

Researchers Uncover Over a Dozen Security Flaws in Akuvox E11 Smart Intercom

13 March 2023
More than a dozen security flaws have been disclosed in E11, a smart intercom product made by Chinese company Akuvox. "The vulnerabilities could allow attackers to execute code remotely in order to activate and control the device's camera and microphone, steal video and images, or gain a network foothold," Claroty security researcher Vera Mens said in a technical write-up. Akuvox E11 is

KamiKakaBot Malware Used in Latest Dark Pink APT Attacks on Southeast Asian Targets

13 March 2023
The Dark Pink advanced persistent threat (APT) actor has been linked to a fresh set of attacks targeting government and military entities in Southeast Asian countries with a malware called KamiKakaBot. Dark Pink, also called Saaiwc, was first profiled by Group-IB earlier this year, describing its use of custom tools such as TelePowerBot and KamiKakaBot to run arbitrary commands and exfiltrate

New Email Threats by Exotic Lily

12 March 2023
ReliaQuest has laid bare the detail of a phishing campaign by IAB Exotic Lily wherein its members pretend to be a potential business opportunity. The attackers follow a well-established procedure that typically commences with initiating an open conversation with the victim. ReliaQuest advises blocking unsanctioned file sharing, torrent, and peer-to-peer sites. 

8220 Gang Uses New ScrubCrypt Crypter to Evade Detection

12 March 2023
Chinese 8220 Gang deployed the new ScrubCrypt payload exploiting an Oracle Weblogic Server in a specific URI between January and February 2023, revealed security experts at Fortinet. The ScrubCrypt crypter allows a hacker to secure applications with a unique BAT packing technique. It was found to be available for sale on dark web forums.

BATLOADER Malware Uses Google Ads to Deliver Vidar Stealer and Ursnif Payloads

11 March 2023
The malware downloader known as BATLOADER has been observed abusing Google Ads to deliver secondary payloads like Vidar Stealer and Ursnif. According to cybersecurity company eSentire, malicious ads are used to spoof a wide range of legitimate apps and services such as Adobe, OpenAPI's ChatGPT, Spotify, Tableau, and Zoom. BATLOADER, as the name suggests, is a loader that's responsible for

White House Allocates $3.1bn to Cybersecurity in New Budget

10 March 2023
The White House has allocated a total of $3.1bn to cybersecurity infrastructure in its latest budget report. The document shows $145m of this figure will go toward making the CISA “more resilient and defensible.”

GoBruteforcer: Golang-Based Botnet Actively Harvests Web Servers

10 March 2023
Go programming language is a newer language that’s becoming more popular with malware programmers. It has proven to be versatile enough to develop all kinds of malware, including ransomware, stealers or remote access trojans (RATs).

Unpatched Akuvox Smart Intercom Vulnerabilities Can Be Exploited for Spying

10 March 2023
A smart intercom product made by Chinese company Akuvox is affected by more than a dozen vulnerabilities, including potentially serious flaws that can be exploited for spying.