-
"Phishers Use Encrypted File Attachments to Steal Microsoft 365 Account Credentials"Attackers are using encrypted restricted-permission messages (.rpmsg) attached to phishing emails in order to steal Microsoft 365 account credentials. According to researchers from Trustwave, the campaigns are low-volume, targeted, and use trusted cloud…
-
"Lazarus Group Striking Vulnerable Windows IIS Web Servers"The North Korea-backed threat actor Lazarus Group has made changes to its ongoing espionage campaign by exploiting known vulnerabilities in unpatched Windows IIS Web servers to launch its reconnaissance malware. AhnLab Security Response Center (ASEC)…
-
"The Challenge of Adversarial Machine Learning"Researchers at Carnegie Mellon University's (CMU) Software Engineering Institute (SEI) have published a blog post explaining the concept of adversarial Machine Learning (ML) as well as examining the motivations of adversaries and what researchers are…
-
"Researchers Uncover Russia-Linked Malware That Could Immobilize Electric Grids"Researchers have discovered new malware for Industrial Control Systems (ICS), dubbed "CosmicEnergy," which could be used to disrupt critical infrastructure systems and electric grids. CosmicEnergy was discovered by researchers at Mandiant, who compared…
-
"More APTs Eye Managed Service Providers in Supply Chain Attacks"Sophisticated threat groups are increasingly compromising Managed Service Providers (MSPs) and launching supply chain attacks against their small and medium-sized downstream customers. The analysis of data from more than 200,000 small and medium-sized…
-
"Telegram Emerges as Criminals' Top Choice for Handling Stolen Information"In 2022, the cybersecurity firm Group-IB identified nearly 3,700 different phishing kits, a 25 percent increase from 2021. A phishing kit is a collection of tools used to execute widespread phishing campaigns. Typically, threat actors manage stolen data…
-
"Delaware Taps Artificial Intelligence to Evacuate Crowded Beaches When Floods Hit"Delaware's transportation department, which controls more than 90% of roads in a state with the lowest average elevation in the country, is tasked with implementing evacuation plans during high water, which is a bureaucratic nightmare considering how…
-
"API Bug in OAuth Dev Tool Opened Websites, Apps to Account Hijacking"A critical Application Programming Interface (API) vulnerability in the Expo open source framework enabled the harvesting of auth credentials via the Open Authorization (OAuth) protocol. According to researchers at Salt Labs, the vulnerability, while…
-
"GitLab Security Update Patches Critical Vulnerability"DevOps platform GitLab recently resolved a critical-severity vulnerability impacting both GitLab Community Edition (CE) and Enterprise Edition (EE). An open source end-to-end software development platform, GitLab helps developers and organizations…
-
"CyLab Faculty Earn Two 'Test of Time' Awards at IEEE Symposium on Security and Privacy"During the 44th Symposium on Security and Privacy, the Institute of Electrical and Electronics Engineers (IEEE) gave two "Test of Time" awards to papers co-authored by faculty members at Carnegie Mellon University's (CMU) CyLab Security and Privacy…
-
"GUAC 0.1 Beta: Google's Breakthrough Framework for Secure Software Supply Chains"Google has announced the 0.1 Beta version of GUAC, which stands for Graph for Understanding Artifact Composition. It will help organizations secure their software supply chains. The search giant is making the open source framework available as an…
-
"New Buhti Ransomware Gang Uses Leaked Windows, Linux Encryptors"A new ransomware operation, "Buhti," targets Windows and Linux systems using leaked code from the LockBit and Babuk ransomware families. Although the threat actors behind Buhti, now tracked as "Blacktail," have not developed their own ransomware strain,…
News