Latest Cybersecurity News and Articles
06 March 2023
Tracking devices are a boon to organizations with vast logistical operations and anyone who has ever lost a set of car keys. But trackers can also be a nightmare for cybersecurity, opening up a whole new world of opportunity for intruders.
06 March 2023
While there was a reduction in the widespread exploitation of new vulnerabilities in 2022, the risk remains significant as broad and opportunistic attacks continue to pose a threat, according to Rapid7.
06 March 2023
Keith Anderson has been named CISO at JetBlue. Anderson will work to ensure the company’s data, systems and other assets remain protected.
06 March 2023
Municipal CISOs grapple with challenges as they become targets for nation-state threat actors, cope with regulations, and pursue funding from resource-constrained governments.
06 March 2023
The new hacking campaign, which started in July 2022 and is still ongoing, relies on three components: a malicious bash script, a malware named "HiatusRAT," and the legitimate 'tcpdump,' used to capture network traffic flowing over the router.
06 March 2023
A global threat report analyzed the trends and behaviors of recent cyberattacks finding that attacks had increased in both number and complexity.
06 March 2023
There were 311 vulnerabilities in the catalog at the beginning of 2022 and it reached 868 by the end of the year. On average, more than ten exploited flaws were added to the KEV list every week in 2022.
06 March 2023
EXECUTIVE SUMMARY: In this edited interview excerpt from CRN, a media brand of The Channel Company, Check Point CEO Gil Shwed discusses emerging cyber threats, corporate technological advancement strategies, and Check Point’s innovation around security products. Don’t miss this. And if you like what you read, please be sure to read the full interview. What is […]
The post Check Point CEO talks emerging cyber threats & advancement strategies (2023) appeared first on CyberTalk.
06 March 2023
92% of the most popular banking and financial services apps contain easy-to-extract secrets and vulnerabilities that can let attackers steal consumer data and finances, according to Approov.
06 March 2023
The operation consisted in raiding multiple locations in the two countries in February and was the result of a coordinated effort that also involved Europol, the FBI, and the Dutch Police.
06 March 2023
Online counseling service BetterHelp has received a proposed order from the FTC banning the company from sharing users' private health information.
06 March 2023
Last month, Flutterwave, Africa’s largest startup by private valuation, was involved in a hack that resulted in over ?2.9 billion (~$4.2 million) missing from its accounts, according to local tech publication Techpoint Africa.
06 March 2023
A never-before-seen complex malware is targeting business-grade routers to covertly spy on victims in Latin America, Europe, and North America at least since July 2022.
The elusive campaign, dubbed Hiatus by Lumen Black Lotus Labs, has been found to deploy two malicious binaries, a remote access trojan dubbed HiatusRAT and a variant of tcpdump that makes it possible to capture packet capture on
06 March 2023
Deep fakes are expected to become a more prominent attack vector. Here's how to identify them.
What are Deep Fakes?
A deep fake is the act of maliciously replacing real images and videos with fabricated ones to perform information manipulation. To create images, video and audio that are high quality enough to be used in deep fakes, AI and ML are required. Such use of AI, ML and image replacement
06 March 2023
A PoC exploit for CVE-2023-21716, a critical RCE vulnerability in Microsoft Word that can be exploited when the user previews a specially crafted RTF document, is now publicly available.
06 March 2023
Personal information belonging to some 15,000 Denver Public Schools (DPS) employees was stolen in what the district is calling a "cybersecurity incident" that went on for a month.
06 March 2023
As well as the $7.8m fine, BetterHelp will be banned from sharing any more consumer health data, including information on mental health issues, for the purposes of advertising, according to the terms of the order.
06 March 2023
Sysdig discovered a sophisticated operation, named SCARLETEEL, targeting public-facing web apps running in a self-managed Kubernetes cluster hosted on AWS to steal proprietary data. Cybercriminals camouflage their campaigns as cryptojacking operations, however, their agenda is to steal sensitive data and credentials from targeted systems. Organizations and individuals are suggested to adopt extra measures, such as conducting frequent audits and securing vulnerable applications to reduce the potential attack surface.
06 March 2023
Modesto confirmed that the February 3 breach of its Police Department's digital network was a ransomware attack and said that a number of people's personal information, including Social Security and driver's license numbers, may have been accessed.
06 March 2023
Law enforcement authorities from Germany and Ukraine have targeted suspected core members of a cybercrime group that has been behind large-scale attacks using DoppelPaymer ransomware.
The operation, which took place on February 28, 2023, was carried out with support from the Dutch National Police (Politie) and the U.S. Federal Bureau of Investigation (FBI), according to Europol.
This encompassed