News
-
"Android Malware Chameleon Disables Fingerprint Unlock to Steal Pins"The Chameleon Android banking trojan has resurfaced with a new version that disables fingerprint and face unlock in order to steal device PINs and take over devices.
-
"Inside Bugcrowd's Plans to 'Demystify' AI Security With New Vulnerability Reporting Scheme"Bugcrowd, the crowdsourced security platform, has updated its Vulnerability Rating Taxonomy (VRT) to include vulnerabilities in Large Language Models (LLMs).
-
"ESET Patches High-Severity Vulnerability in Secure Traffic Scanning Feature"ESET has recently released patches for several of its endpoint and server security products to address a high-severity vulnerability that could have been exploited to cause web browsers to trust sites that should not be trusted.
-
"Google Rushes to Patch Eighth Chrome Zero-Day This Year"Google recently announced emergency patches for a Chrome vulnerability that is under active exploitation. This is the eighth zero-day documented this year.
-
"OTORIO Researchers Uncover Critical Vulnerabilities in Building Security Systems"Researchers at OTORIO have highlighted cybersecurity risks associated with modern Physical Access Control Systems (PACS).
-
"NDAA Provision Looks to Close Cybersecurity Gaps in Nuclear Weapons Systems"A bipartisan proposal in the recently passed defense policy bill will form a working group to address previously identified cybersecurity gaps in the nation's nuclear weapons systems.
-
"CISA Issues Request For Information on Secure by Design Software Whitepaper"As part of its global Secure by Design campaign, the US Cybersecurity and Infrastructure Security Agency (CISA) has issued a Request for Information (RFI) on the whitepaper titled "Shifting the Balance of Cybersecurity Risk: Principles and Approaches f
-
"ALPHV/BlackCat Dangles Threat to Critical Infrastructure After Allegedly 'Unseizing' Site From FBI"The ransomware gang ALPHV/BlackCat has announced that its network of affiliates can now target nuclear power plants, hospitals, and critical infrastructure. The move is a response to recent FBI enforcement activity.
-
"EMS Software Hack Exposes 2.7 Million People"A ransomware attack on ESO, a provider of Emergency Medical Services (EMS) software, involves the sensitive details of millions of people, including their healthcare data.
-
"Sophisticated JaskaGO Infostealer Targets macOS and Windows"AT&T Alien Labs researchers discovered JaskaGO, a previously undetected Go-based information stealer that targets Windows and macOS systems. JaskaGO supports a wide range of commands and maintains persistence in various ways.
-
"NSA Blocked 10 Billion Connections to Malicious and Suspicious Domains"The National Security Agency (NSA) recently published its annual report detailing its efforts in cybersecurity and its work with government partners, foreign partners, and defense industrial base (DIB) entities to improve national security.
-
"Behind the Scenes of Matveev's Ransomware Empire: Tactics and Team"Cybersecurity researchers at PRODAFT have detailed the inner workings of the ransomware operation led by Mikhail Pavlovich Matveev, a Russian national indicted earlier this year by the US government for his alleged role in executing thousands of attack