News
-
"Expect 'AI Versus AI' Cyber Activity Between US and Adversaries, Pentagon Official Says"According to researchers and officials, Artificial Intelligence (AI) will ignite the next phase of cyber warfare, bringing in new methods to execute traditional cyberattacks and develop new hacking tools.
-
"Majority of Organizations Pay Up After Ransomware Attack"According to a new Barracuda Networks report, cyber incidents cost organizations millions. Attacks are also becoming much more sophisticated, raising concerns about the impact of Artificial Intelligence (AI).
-
"iPhone Apps Abuse iOS Push Notifications to Collect User Data"According to mobile researcher Mysk, many iOS apps collect user data about devices through background processes triggered by push notifications, potentially enabling the creation of fingerprinting profiles for tracking.
-
"LODEINFO Fileless Malware Evolves with Anti-Analysis and Remote Code Tricks"Researchers have discovered an updated version of the LODEINFO backdoor, which is distributed via spear-phishing attacks.
-
"Data Privacy Week: US Data Breaches Surge, 2023 Sees 78% Increase in Compromises"According to the Identity Theft Resource Center (ITRC), the number of reported data compromises in the US in 2023 increased by 78% compared to 2022, reaching 3205. The number of victims of these data breaches reached 353,027,892.
-
NSA 2023 Cybersecurity Year in ReviewThe National Security Agency has published their 2023 Cybersecurity Year in Review!
-
"ORNL Wins Five Federal Laboratory Consortium Awards"Researchers, staff, and licensees from the Department of Energy's Oak Ridge National Laboratory (ORNL) were honored in the Federal Laboratory Consortium's (FLC) annual awards competition.
-
"Government Security Vulnerabilities Surge By 151%, Report Finds"According to security researchers at Bugcrowd, the government sector has witnessed the most significant growth in crowdsourced security in 2023, marking a 151% increase in vulnerability submissions and a substantial 58% rise in Priority 1 (P1) rewards
-
"Blackwood APT Delivers Malware by Hijacking Legitimate Software Update Requests"ESET researchers have uncovered NSPX30, an implant used by the China-aligned Advanced Persistent Threat (APT) group called Blackwood. Blackwood has conducted cyber espionage operations against individuals and organizations in China, Japan, and the UK.
-
"Atlassian Tightens API After Hacker Scrapes 15M Trello Profiles"Millions of names, usernames, and emails associated with public Trello boards have been made available for sale on the dark web, potentially leading to Account Takeover (ATO) and spear-phishing attacks.
-
"HPE Says Russian Government Hackers Had Access to Emails for 6 Months"In a recent SEC filing, Hewlett Packard Enterprise (HPE) revealed that its cloud email environment was targeted by hackers believed to be sponsored by the Russian government.
-
"Firefox 122 Patches 15 Vulnerabilities"Mozilla recently announced security updates for both Firefox and Thunderbird to patch 15 vulnerabilities, including five rated "high severity." The first high-severity flaw is an out-of-bounds write in ANGLE (Almost Native Graphics Layer Engine), the o