Latest Cybersecurity News and Articles


Crypto Scam App Disguised as WalletConnect Steals $70K in Five-Month Campaign

28 September 2024
Cybersecurity researchers have discovered a malicious Android app on the Google Play Store that enabled the threat actors behind it to steal approximately $70,000 in cryptocurrency from victims over a period of nearly five months. The dodgy app, identified by Check Point, masqueraded as the legitimate WalletConnect open-source protocol to trick unsuspecting users into downloading it. "Fake

HPE Patches Three Critical Security Holes in Aruba PAPI

28 September 2024
HPE has released patches for three critical security vulnerabilities in Aruba's networking access points, which could allow attackers to run code on the systems by sending specially crafted packets to UDP port 8211.

BBTok Targeting Brazil Using the AppDomain Manager Injection Technique

28 September 2024
The Brazilian-targeted threat BBTok has a complex infection chain that starts with an email containing an ISO image. The malware compiles C# code directly on the infected machine and uses the AppDomain Manager Injection technique.

Critical RCE Vulnerability Found in OpenPLC

28 September 2024
The most severe issue is a stack-based buffer overflow vulnerability (CVE-2024-34026) that allows an attacker to execute remote code. Users are advised to update to the latest version of OpenPLC to protect against these security risks.

Kia Dealer Portal Flaw Could Let Attackers Hack Millions of Cars

28 September 2024
The vulnerabilities could be exploited to remotely control Kia vehicles equipped with remote hardware in under 30 seconds, exposing the sensitive personal information of car owners.

China-linked APT group Salt Typhoon compromised some US ISPs

28 September 2024
Experts are investigating whether the hackers gained access to Cisco Systems routers, a key component of ISP infrastructures, but Cisco has not found any indication of router involvement.

U.S. Charges Three Iranian Nationals for Election Interference and Cybercrimes

28 September 2024
U.S. federal prosecutors on Friday unsealed criminal charges against three Iranian nationals who are allegedly employed with the Islamic Revolutionary Guard Corps (IRGC) for their targeting of current and former officials to steal sensitive data. The Department of Justice (DoJ) accused Masoud Jalili, 36, Seyyed Ali Aghamiri, 34, and Yasar (Yaser) Balaghi, 37, of participating in a conspiracy

Cloudflare Warns of India-Linked Hackers Targeting South and East Asian Entities

28 September 2024
SloppyLemming has been active since at least July 2021 and has targeted the government, law enforcement, energy, education, telecommunications, and technology sectors in countries such as Pakistan, Sri Lanka, Bangladesh, China, Nepal, and Indonesia.

Hackers Deploy AI-Written Malware in Targeted Attacks

28 September 2024
Hackers are now using AI-generated malware in targeted attacks. In a recent email campaign in France, researchers found malicious code crafted with the help of generative AI to distribute the AsyncRAT malware.

ChatGPT macOS Flaw Could've Enabled Long-Term Spyware via Memory Function

28 September 2024
A security flaw in OpenAI's ChatGPT app for macOS, now patched, could have allowed attackers to implant persistent spyware into the AI tool's memory. This could lead to continuous data exfiltration of user information across chat sessions.

UK and US issue alert over cyber actors working on behalf of Iranian state

27 September 2024
Joint advisory encourages individuals at higher risk of targeted phishing to follow mitigation advice and sign up for NCSC's cyber defence services.

Progress Software Releases Patches for 6 Flaws in WhatsUp Gold – Patch Now

27 September 2024
Progress Software has released another round of updates to address six security flaws in WhatsUp Gold, including two critical vulnerabilities. The issues, the company said, have been resolved in version 24.0.1 released on September 20, 2024. The company has yet to release any details about what the flaws are other than listing their CVE identifiers - CVE-2024-46905 (CVSS score: 8.8) 

Critical Vulnerabilities Discovered in Automated Tank Gauge Systems From Multiple Vendors

27 September 2024
Security researchers at Bitsight discovered critical vulnerabilities in Automated Tank Gauge (ATG) systems, including Maglink LX, Maglink LX4, OPW SiteSentinel, Proteus OEL8000, Alisonic Sibylla, and Franklin TS-550.

Critical Flaw in HashiCorp Vault Enables Unrestricted SSH Access, Threatens System Security

27 September 2024
HashiCorp has released updated versions (1.17.6, 1.16.10, 1.15.15) to fix the flaw, along with a new configuration option to enhance security. Users are advised to upgrade or adjust their configurations to protect against exploitation.

CISA Warns of Hackers Targeting Industrial Systems Using “Unsophisticated Methods”

27 September 2024
The CISA has issued a warning about hackers using basic techniques to target industrial systems, particularly OT and ICS devices in critical infrastructure, water, and wastewater systems.

Critical Linux CUPS Printing System Flaws Could Allow Remote Command Execution

27 September 2024
A new set of security vulnerabilities has been disclosed in the OpenPrinting Common Unix Printing System (CUPS) on Linux systems that could permit remote command execution under certain conditions. "A remote unauthenticated attacker can silently replace existing printers' (or install new ones) IPP urls with a malicious one, resulting in arbitrary command execution (on the computer) when a print

Critical WhatsUp Gold Vulnerabilities Demand Immediate Action

27 September 2024
The six vulnerabilities, with high severity scores, could lead to unauthorized access and control over network infrastructure. Progress Software advises all WhatsUp Gold users to upgrade to version 24.0.1 to mitigate these vulnerabilities.

Phishing-as-a-Service Platform Sniper Dz Used to Create 140,000 Phishing Sites in One Year

27 September 2024
Cybersecurity researchers at Palo Alto Networks' Unit 42 have discovered a prolific Phishing-as-a-Service platform called Sniper Dz, responsible for creating over 140,000 phishing websites in just one year.

Critical Flaws Discovered in Jupiter X Core WordPress Plugin Affecting Over 90,000 Sites

27 September 2024
Security researchers have found critical flaws in the Jupiter X Core WordPress plugin, affecting over 90,000 websites. The vulnerabilities could allow attackers to take control of websites or hijack user accounts, including admin accounts.

How to Plan and Prepare for Penetration Testing

27 September 2024
As security technology and threat awareness among organizations improves so do the adversaries who are adopting and relying on new techniques to maximize speed and impact while evading detection. Ransomware and malware continue to be the method of choice by big game hunting (BGH) cyber criminals, and the increased use of hands-on or “interactive intrusion” techniques is especially alarming.