News
-
"Qilin Caught Red-Handed Stealing Credentials in Google Chrome"After breaching a target's network, "Qilin," the ransomware group suspected to have been behind the recent Synnovis attack, stole credentials stored in Google Chrome.
-
"New macOS Malware TodoSwift Linked to North Korean Hacking Groups"Researchers have discovered a new macOS malware strain called "TodoSwift" that resembles the known malicious software used by North Korean hacking groups.
-
"Oil Giant Halliburton Confirms Cyber Incident, Details Scarce"US oil giant Halliburton recently confirmed its computer systems were hit by a cyberattack that continues to affect operations at its Houston, Texas, offices.
-
"GenAI Models Are Easily Compromised"Lakera reports that 95 percent of cybersecurity experts have low confidence in Generative Artificial Intelligence (GenAI) security. In addition, red team data suggests that anyone can easily hack GenAI models.
-
"NSA Joins Allies in Releasing Best Practices for Event Logging"The National Security Agency (NSA), together with the Australian Signals Directorate's Australian Cyber Security Centre (ASD ACSC) and international co-authors, has released a Cybersecurity Information Sheet (CSI) titled "Best Practices for Event Loggi
-
"Microsoft Copilot Studio Exploit Leaks Sensitive Cloud Data"Researchers at Tenable have exploited a vulnerability in Microsoft's Copilot Studio tool to make external HTTP requests that could access sensitive information on internal services within a cloud environment, potentially affecting multiple tenants.
-
"China-Linked 'Velvet Ant' Hackers Exploited Zero-Day to Deploy Malware on Cisco Nexus Switches""Velvet Ant," a skilled China-linked espionage group, has compromised edge devices and network appliances to improve stealth and persistence.
-
"Novel Android Malware Steals Card NFC Data For ATM Withdrawals"A new Android malware phishes card details and sends them to an attacker for ATM withdrawals. According to researchers at ESET, the crimeware campaign has targeted customers at three Czech banks.
-
"Two Years On, Log4Shell Vulnerability Still Being Exploited to Deploy Malware"Over two years after the Log4j zero-day caused global chaos, organizations still face exploits that push cryptocurrency miners and malicious backdoor scripts.
-
"Cthulhu Stealer Malware Targets macOS With Deceptive Tactics""Cthulhu Stealer," a recently discovered malware, has been targeting macOS users, posing another significant cybersecurity threat to Apple's operating system.
-
"Cisco Patches High-Severity Vulnerability Reported by NSA"Cisco recently announced patches for multiple vulnerabilities across its products, including a high-severity bug in its enterprise collaboration solutions.
-
"FAA Admits Gaps in Aircraft Cybersecurity Rules: New Regulation Proposed"New cybersecurity rules have been proposed by the Federal Aviation Administration (FAA) to mitigate vulnerabilities caused by the interconnectedness of modern aircraft.