News
  • "Target Active and Passive Eavesdropping for Improving Communications Security"
    A team of researchers from China and the UK has developed an Intelligent Reflecting Surface (IRS) method to bolster the security of communications systems. Their IRS-aided technique can be used to increase the security of communication in scenarios…
  • "IP Cameras Being Used by Cyberspies to Install Backdoors, Harvest Exchange Emails"
    A new Advanced Persistent Threat (APT) organization, now known as UNC3524, has been compromising business networks to obtain Exchange (on-premise and online) emails from personnel who are involved in mergers, acquisitions, and other corporate…
  • "New NetDooka Malware Spreads via Poisoned Search Results"
    NetDooka is a new malware framework that has been observed being spread through the PrivateLoader pay-per-install (PPI) malware distribution service, which allows malicious actors to gain full access to an infected device. The malware framework contains…
  • "NHS Inboxes Hijacked to Send 1000+ Malicious Emails"
    Security researchers at email security firm Inky have discovered that more than 1000 phishing emails were sent from compromised National Health Service (NHS) inboxes over a six-month period.  The researchers noted that the campaign started around…
  • "South Korea Admitted to NATO Cyber Defense Center"
    South Korea has become the first Asian nation to join NATO’s Cooperative Cyber Defense Centre of Excellence (CCDCOE).  The country’s National Intelligence Service (NIS) made the announcement today.  NIS will represent South Korea in the center’…
  • "Vulnerabilities Allow Hijacking of Most Ransomware to Prevent File Encryption"
    A researcher named John Page has shown how a type of vulnerability affecting many ransomware families can be exploited to control the malware and terminate it before it can encrypt files on compromised systems. The researcher has been running a project…
  • "Attackers Use Event Logs to Hide Fileless Malware"
    A never-before-seen technique has been discovered in a malicious campaign that plants fileless malware on target machines. The technique involves the injection of shellcode directly into Windows event logs, which allows malicious actors to use the event…
  • "Pro-Ukrainian DoS Attack Compromises Docker Engine Honeypots to Target Russian, Belarusian Websites"
    Cybersecurity researchers from CrowdStrike have detected a Denial-of-Service (DoS) attack that has been compromising Docker Engine honeypots to take down Russian and Belarusian websites amid the Russia-Ukraine war. The researchers discovered that the…
  • "Cisco Issues Fresh Warning Over Counterfeit Switches"
    Cisco has recently issued a "field notice" to advise customers of its Catalyst 2960X/2960XR switches to upgrade the IOS software on their devices to ensure that they are not counterfeit.  Counterfeiters often replicate Cisco equipment due to their…
  • "Ransomware Attack Closes Michigan College"
    Kellogg Community College is located in Michigan and has closed its campuses and canceled classes after falling victim to a cyberattack.  Kellogg Community College serves approximately 7000 students annually and was targeted with ransomware on…
  • "Phishers Exploit Google's SMTP Relay Service to Deliver Spoofed Emails"
    Researchers have observed phishers exploiting a flaw contained by Google's SMTP relay service to deliver malicious emails that spoof popular brands. There has been a significant surge in SMTP relay service exploit attacks in the wild since April 2022.…
  • "Many IoT Devices Exposed to Attacks Due to Unpatched Flaw in uClibc Library"
    Nozomi Networks, a firm specialized in securing operational technology (OT) and IoT systems, has recently disclosed a potentially severe vulnerability affecting a C standard library used by several major companies.  The affected library is uClibc,…