News
-
"Attackers Exploit 6-Year-Old Microsoft Office Bug to Spread Spyware"In an email campaign characterized by sophisticated evasion tactics, attackers are exploiting a 6-year-old Microsoft Office Remote Code Execution (RCE) flaw to deliver spyware.
-
"Mozilla Patches Firefox Vulnerability Allowing Remote Code Execution, Sandbox Escape"Mozilla recently announced security updates for Firefox and Thunderbird to address 20 vulnerabilities, including several memory safety issues.
-
"8220 Gang Exploits Old Oracle WebLogic Vulnerability to Deliver Infostealers, Cryptominers"According to the Imperva Threat Research team, the 8220 gang has been exploiting an old Oracle WebLogic Server vulnerability, tracked as CVE-2020-14883, to spread malware.
-
"German Police Takes Down Kingdom Market Cybercrime Marketplace"The Federal Criminal Police Office in Germany and the Internet crime-combating unit of Frankfurt have announced the shutdown of a dark web marketplace called Kingdom Market that distributed cybercrime tools, fake government IDs, and more.
-
"Cyber-Incident Costs Surge 11% as Budgets Remain Muted"According to security researchers at S-RM, the average direct cost of a serious cybersecurity incident increased by 11% year-on-year to reach $1.7m in 2023.
-
"3,500 Arrested, $300 Million Seized in International Crackdown on Online Fraud"Interpol recently announced that as part of an international effort to tackle online financial fraud, authorities in 34 countries have arrested approximately 3,500 suspects and seized roughly $300 million worth of assets.
-
"A Study From IMDEA Software Researchers Reveals Hidden Fortunes and Surprising Overestimations in Cybercrime Revenue"It was unclear how methodological limitations and incomplete data affected revenue estimates of cybercriminal groups using the Bitcoin blockchain.
-
"Web Injections Are Back on the Rise: 40+ Banks Affected by New Malware Campaign"Web injections, a popular technique used by various banking trojans, remain a threat. Malicious injections allow cybercriminals to manipulate data exchanges between users and web browsers, potentially compromising sensitive data.
-
"Generative AI Making It Harder to Spot Fraudulent Emails"Cybercriminals are using generative Artificial Intelligence (AI) to evade email security solutions and deceive employees. According to Mike Britton, CISO of Abnormal Security, generative AI makes detecting email attacks more difficult.
-
"2023 Sees Surge in Mobile Banking Heists Targeting Global Financial Apps"According to a new report from the mobile security platform provider Zimperium, mobile banking heists increased in 2023, with researchers discovering 29 malware families that targeted 1,800 banking apps across 61 countries.
-
"Telecom Organizations in Africa Targeted by Iran-Linked Hackers"According to researchers, MuddyWater, a cyber espionage group linked to Iran's intelligence service has been targeting telecommunications companies in Egypt, Sudan, and Tanzania.
-
"Smishing Triad Targets UAE Residents in Identity Theft Campaign"Security researchers at Resecurity have recently observed a new fraudulent campaign orchestrated by the Smishing Triad gang and, impersonating the United Arab Emirates Federal Authority for Identity and Citizenship.