News
-
"NCCoE 5G Cybersecurity: Connecting the Dots Between IT and Teleco Cybersecurity Capabilities in 5G Systems"The National Cybersecurity Center of Excellence (NCCoE) 5G Cybersecurity project aims to deliver cybersecurity guidance that will help consumers and operators of 5G networks adopt, deploy, and use 5G technology in a more secure and privacy-enhancing wa
-
"Large Language Models Validate Misinformation, Research Finds"A new study conducted by researchers at the University of Waterloo reveals that Large Language Models (LLMs) repeat conspiracy theories, harmful stereotypes, and other types of misinformation.
-
"Vanderbilt Team Leads $6.89 Million DARPA Grant to Train Cyber Agents Against Attacks"Daniel Balasubramanian, a senior research scientist at Vanderbilt's Institute for Software Integrated Systems, will lead a four-year Defense Advanced Research Projects Agency (DARPA) grant to create realistic network environments for training cyber age
-
"Google Accounts May Be Vulnerable to New Hack, Changing Password Won't Help"According to CloudSEK researchers, a threat actor known as PRISMA boasted a powerful zero-day exploit and developed a sophisticated solution for generating persistent Google cookies by manipulating a token.
-
"Barracuda Gateways Hit by Another Vulnerability"A zero-day vulnerability impacting Barracuda Networks' Email Security Gateway (ESG) enables hackers to install backdoors. The vulnerability exists in Spreadsheet::ParseExcel, an open-source library for processing Excel files.
-
"New Version of Meduza Stealer Released in Dark Web"The Resecurity's HUNTER unit discovered a new version of the Meduza stealer that supports more software clients, including browser-based cryptocurrency wallets. Meduza 2.2 also has an improved credit card grabber.
-
"API Security in 2024: Predictions and Trends"The complexity of Application Programming Interface (API) security continues to grow as technology advances.
-
"CERT-UA Uncovers New Malware Wave Distributing OCEANMAP, MASEPIE, STEELHOOK"The Computer Emergency Response Team of Ukraine (CERT-UA) has detailed a new phishing campaign launched by the Russia-linked APT28 group to steal sensitive information.
-
"Content Credentials Will Fight Deepfakes in the 2024 Elections"The shift toward content credentials comes as interest in automated deepfake-detection systems wanes.
-
"Microsoft Disables MSIX Protocol Handler Abused in Malware Attacks"Multiple financially motivated threat groups have abused the MSIX ms-appinstaller protocol handler to infect Windows users with malware, prompting Microsoft to disable it again.
-
"Crooks Push Holiday Misery With 'Leaksmas' Release of 50M PII Records"Cybercriminals have released 50 million stolen consumer records, including credit card data and Personally Identifiable Information (PII), as a "Free Leaksmas" gift.
-
"Pentagon Wants Feedback on Revised Cybersecurity Maturity Model Certification Program"The US Department of Defense recently published a proposed rule and requested public feedback for the Cybersecurity Maturity Model Certification (CMMC) program.