-
"CISA Finalizes Microsoft 365 Secure Configuration Baselines"The US Cybersecurity and Infrastructure Security Agency (CISA) has announced the release of Version 1.0 of its Secure Configuration Baselines for Microsoft 365 (M365), along with its ScubaGear tool that helps organizations quickly assess their M3
-
"Cybercrooks Book a Stay in Hotel Email Inboxes to Trick Staff Into Spilling Credentials"Sophos researchers have detailed a new malware campaign targeting hotels that involves sending emails that play on employees' emotions while putting them under time pressure to trick them into downloading and running password-stealing Windows malware.
-
"Nissan Australia Cyberattack Claimed by Akira Ransomware Gang"The Akira ransomware gang recently claimed it breached the network of Nissan Australia, the Australian division of Japanese car maker Nissan.
-
"OpenAI Rolls Out Imperfect Fix for ChatGPT Data Leak Flaw"OpenAI has addressed a ChatGPT data exfiltration bug that could leak conversation details to an external URL. However, the mitigation is not perfect, according to security researcher Johann Rehberger, who discovered the flaw.
-
"UAC-0099 Using WinRAR Exploit to Target Ukrainian Firms with LONEPAGE Malware"A threat actor called UAC-0099 has been linked to attacks against Ukraine, some of which exploit a high-severity flaw contained by WinRAR software to deliver the LONEPAGE malware strain.
-
"'BattleRoyal' Hackers Deliver DarkGate RAT Using Every Trick"An unidentified threat actor conducted various social engineering campaigns against American and Canadian organizations in different industries to infect them with the multifaceted DarkGate malware.
-
"86% Of Cyberattacks Are Delivered Over Encrypted Channels"According to Zscaler, threats over HTTPS have increased by 24 percent since 2022, highlighting the sophistication of cybercriminal tactics that target encrypted channels.
-
"Ubisoft Says It's Investigating Reports of a New Security Breach"Ubisoft just started investigating whether it suffered a breach after images of the company's internal software and developer tools were leaked online.
-
"Europol warns 443 online shops infected with credit card stealers"Europol has recently notified over 400 websites that their online shops have been hacked with malicious scripts that steal debit and credit cards from customers making purchases.
-
"SMS Scams Set to Peak on Saturday in UK"UK telco EE has recently warned customers they could be deluged with millions of scam SMS messages on December 23 as fraudsters look to capitalize on last-minute Christmas shopping.
-
"Inmate, Staff Information Stolen in Rhode Island Prison Data Breach"The Donald W. Wyatt Detention Facility in Rhode Island has recently disclosed a data breach impacting the personal information of roughly 2,000 inmates, staff, and vendors.
-
"NIST Releases 2 Draft Guides to Prepare for Post-Quantum Migration"The National Institute of Standards and Technology (NIST) released two draft publications aimed at helping organizations transition from traditional encryption schemes to ones that can withstand attacks from a potential quantum computer.
News