Latest Cybersecurity News and Articles


Experts Discover Flaw in U.S. Govt's Chosen Quantum-Resistant Encryption Algorithm

06 March 2023
A group of researchers has revealed what it says is a vulnerability in a specific implementation of CRYSTALS-Kyber, one of the encryption algorithms chosen by the U.S. government as quantum-resistant last year.

Experts Reveal Google Cloud Platform's Blind Spot for Data Exfiltration Attacks

06 March 2023
Malicious actors can take advantage of "insufficient" forensic visibility into Google Cloud Platform (GCP) to exfiltrate sensitive data, a new research has found. "Unfortunately, GCP does not provide the level of visibility in its storage logs that is needed to allow any effective forensic investigation, making organizations blind to potential data exfiltration attacks," cloud incident response

New PlugX Sample Evades Detection via Legitimate Windows Debugger Tool

06 March 2023
Trend Micro found PlugX RAT masquerading as an open-source Windows debugger tool, dubbed x32dbg, with an aim to evade security controls and gain control over the target system. Attackers use DLL side-loading to execute malicious code via the DLLs of the debugger tool, allowing attackers to bypass security restrictions and escalate privileges.

New 'FiXS' Malware is Targeting Mexican Banks to Drain Money Out of ATMs

06 March 2023
The experts have yet to determine the initial attack vector, they reported that FiXS utilizes an external keyboard (similar to Ploutus). It instructs the ATM to dispense money 30 minutes after the last ATM reboot.

Polish mayor targeted by Pegasus spyware-media

06 March 2023
An opposition-linked Polish mayor had his phone hacked using Pegasus spyware, Gazeta Wyborcza daily reported on Friday, amid allegations that the country's special services have used the technology against government opponents.

Critical Vulnerabilities Allow Hackers to Take Full Control of Wago PLCs

06 March 2023
During the analysis of Wago PLCs, a researcher discovered several vulnerabilities in the web-based management interface designed for administering, commissioning and updating devices.

PayPal Sued Over Data Breach that Impacted 35,000 users

06 March 2023
It is worth noting that, on January 19, PayPal began contacting nearly 35,000 users with a data breach notification, explaining that their accounts had been hacked between December 6th and 8th, 2022.

At Least 30% of "Cyber-Criminals" Are Women: Report

06 March 2023
Trend Micro used machine learning web service Gender Analyzer V5 to analyze text written by 50 random users of the Russian-language XSS forum and 50 users of the English-language Hackforums site.

Spear-Phishing Campaign Targets Hospitality Industry Using RedLine Stealer

06 March 2023
The email copy contained text composed to lure targets, mostly hotel staff, into clicking a Dropbox link that dropped malware. Also used were Bitly-shortened URLs that redirected to Dropbox links that contained malicious files.

US introduces new rules to protect water systems from hackers

06 March 2023
The new EPA memo requires state governments to audit the cybersecurity practices of public water systems — and then use state regulatory authorities to force water systems to add security measures if existing ones are deemed insufficient.

Experts Discover Flaw in U.S. Govt's Chosen Quantum-Resistant Encryption Algorithm

06 March 2023
A group of researchers has revealed what it says is a vulnerability in a specific implementation of CRYSTALS-Kyber, one of the encryption algorithms chosen by the U.S. government as quantum-resistant last year. The exploit relates to "side-channel attacks on up to the fifth-order masked implementations of CRYSTALS-Kyber in ARM Cortex-M4 CPU," Elena Dubrova, Kalle Ngo, and Joel Gärtner of KTH

Phishing Campaign Targets Job Seekers, Employers

06 March 2023
Threat actors are exploiting the ongoing economic downturn using job-themed phishing and malware campaigns to target job seekers and employers to steal sensitive information and hack company recruiters.

Security and IT Teams No Longer Need To Pay For SaaS-Shadow IT Discovery

04 March 2023
This past January, a SaaS Security Posture Management (SSPM) company named Wing Security (Wing) made waves with the launch of its free SaaS-Shadow IT discovery solution. Cloud-based companies were invited to gain insight into their employees' SaaS usage through a completely free, self-service product that operates on a "freemium" model. If a user is impressed with the solution and wants to gain

New FiXS ATM Malware Targeting Mexican Banks

04 March 2023
A new ATM malware strain dubbed FiXS has been observed targeting Mexican banks since the start of February 2023. "The ATM malware is hidden inside another not-malicious-looking program," Latin American cybersecurity firm Metabase Q said in a report shared with The Hacker News. Besides requiring interaction via an external keyboard, the Windows-based ATM malware is also vendor-agnostic and is

Thousands of Websites Hijacked Using Compromised FTP Credentials

04 March 2023
In many cases, the attackers managed to obtain highly secure auto-generated FTP credentials and used them to hijack the victim websites to redirect visitors to adult-themed content.

Microsoft releases Windows security updates for Intel CPU flaws

04 March 2023
The Mapped I/O side-channel vulnerabilities were initially disclosed by Intel on June 14th, 2022, warning that the flaws could allow processes running in a virtual machine to access data from another virtual machine.

Southeastern Louisiana University 'Likely' Suffered Cyber Attack

04 March 2023
Southeastern Louisiana University suffered a week-long outage of its website, email, or system for submitting assignments after a "potential incident" last week caused the university to shut down its network.

The U.S. CISA and FBI warn of Royal ransomware operation

04 March 2023
The FBI and the CISA released a joint Cybersecurity Advisory to provide organizations, tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) associated with this ransomware family.

Play ransomware claims disruptive attack on City of Oakland

04 March 2023
The city’s authorities informed the public it had been targeted by a ransomware attack on February 10, 2023. It impacted all network systems except 911 dispatch, fire emergency services, and the city’s financial systems.

CISA Releases Decider Tool to Help with MITRE ATT&CK Mapping

03 March 2023
Decider makes the mapping process easier by asking the user a series of questions about the adversary’s activity in their network. The tool also provides search and filtering functionality, and allows users to export the results to common formats.