News
-
"Russian Spies Brute Force Senior Microsoft Staff Accounts"Russian state hackers recently managed to compromise the email accounts of some of Microsoft’s senior leadership team members using basic brute-force techniques.
-
"Owner of Cybercrime Website BreachForums Sentenced to Supervised Release"Conor Brian Fitzpatrick, the owner of the infamous cybercrime website BreachForums, was recently sentenced to time served and 20 years of supervised release.
-
"LoanDepot Breach: 16.6 Million People Impacted"Lending giant LoanDepot recently announced that roughly 16.6 million individuals were impacted by a ransomware attack disclosed earlier this month.
-
"Encryption Boost for Cross-Border E-commerce - 'Privacy Information Encryption for Cross-Border E-commerce Users Based on Social Network Analysis'"A team of researchers in China has introduced a novel approach to improving privacy for cross-border e-commerce users.
-
"US Charges Russian Involved in 2013 Hacking of Neiman Marcus, Michaels"The US Justice Department recently announced separate charges against two Russian nationals accused of being involved in cybercriminal activities, including a man allegedly involved in the 2013 hacking of retailers Michaels and Neiman Marcus.
-
"CISA Issues Emergency Directive Requiring Federal Agencies to Mitigate Ivanti Connect Secure and Policy Secure Vulnerabilities"The Cybersecurity and Infrastructure Security Agency (CISA) has issued Emergency Directive 24-01 in response to the widespread and active exploitation of vulnerabilities in Ivanti Connect Secure and Ivanti Policy Secure appliances.
-
"Google: Russia's ColdRiver APT Unleashes Custom 'Spica' Malware"The Russia-backed Advanced Persistent Threat (APT) group ColdRiver, also known as Blue Charlie, Callisto, Star Blizzard, or UNC4057, has unleashed custom malware called Spica.
-
"VMware Confirms Critical vCenter Flaw Now Exploited in Attacks"VMware has confirmed the active exploitation of a critical vCenter Server Remote Code Execution (RCE) that was patched in October 2023.
-
"US Gov Publishes Cybersecurity Guidance for Water and Wastewater Utilities"The US government recently published new guidance aimed at helping organizations in the water and wastewater (WWS) sector improve their cyber resilience and incident response capabilities.
-
"Protect AI Finds Vulnerabilities in Open-Source AI and Machine Learning Tools"Protect AI has released a new report highlighting vulnerabilities recently discovered in open-source Artificial Intelligence (AI) and Machine Learning (ML) tools by its bug bounty program.
-
"New Docker Malware Steals CPU for Crypto and Drives Fake Website Traffic"A novel campaign is targeting vulnerable Docker services, with threat actors deploying both the XMRig cryptocurrency miner and the 9Hits Viewer software as part of a multi-pronged monetization strategy.