News
-
"DHS Cybersecurity and Infrastructure Security Agency Releases Roadmap for Artificial Intelligence"The US Cybersecurity and Infrastructure Security Agency (CISA) has released its first Roadmap for Artificial Intelligence (AI), adding to the Department of Homeland Security (DHS) and broader whole-of-government initiative to ensure the se
-
"Molerats Group Wields Custom Cybertool to Steal Secrets in the Middle East"TA402, also known as Molerats and Frankenstein, a pro-Palestinian cyber espionage group focused on compromising government targets in the Middle East, is using a sophisticated initial access downloader.
-
"Juniper Networking Devices Under Attack"The US Cybersecurity and Infrastructure Security Agency (CISA) requires US federal agencies to patch five vulnerabilities exploited by attackers to compromise Juniper networking devices.
-
"Meet the Unique New 'Hacking' Group: AlphaLock"Researchers have discovered a new hacking group named "AlphaLock," which presents itself as a "pentesting training organization" that provides training to hackers and then monetizes their services through a dedicated affiliate program.
-
"OracleIV DDoS Botnet Targets Public Docker Engine APIs to Hijack Containers"Threat actors are targeting publicly accessible Docker Engine Application Programming Interface (API) instances as part of a campaign to co-opt the machines into the OracleIV Distributed Denial-of-Service (DDoS) botnet.
-
"Royal Ransomware Possibly Rebranding After Targeting 350 Organizations Worldwide"Since its inception, the Royal ransomware gang has targeted at least 350 organizations worldwide, with ransom demands exceeding $275 million.
-
"In a First, Cryptographic Keys Protecting SSH Connections Stolen in New Attack"Researchers have demonstrated for the first time that a large portion of the cryptographic keys used to protect data in computer-to-server SSH traffic are vulnerable to complete compromise when natural computational errors happen during the establishin
-
"Gone Phishing: Hackers Leverage Automation to Launch MFA Attacks and SEO Poisoning"With new automation tools, cybercriminals can now exploit users in many new ways, but at least two stand out as particularly concerning this year: Multi-Factor Authentication (MFA) attacks and Search Engine Optimization (SEO) poisoning.
-
"AI Can Help Agencies Enhance Their Cyber Defense, Study Finds"According to a recent survey of federal agencies' defensive cyber operations, Artificial Intelligence (AI) tools can help the government better identify and defend against various cyber threats.
-
"Major Canadian Fintech Moneris Claimed by Medusa Ransomware"Moneris, a payment processing company with clients including Starbucks and IKEA, has been listed on the Medusa ransomware gang's dark web blog. Several samples of the data allegedly stolen in the attack against Moneris are included in the post.
-
"Infostealers and the High Value of Stolen Data"Trend Micro researchers created a risk matrix by comparing the 16 most active infostealer malware variants across Russian Market and 2easy.shop, two dark web marketplaces.
-
"North Korea-Linked APT Sapphire Sleet Targets IT Job Seekers With Bogus Skills Assessment Portals"Sapphire Sleet, also known as APT38, BlueNoroff, CageyChameleon, and CryptoCore, is a subgroup of the Lazarus Advanced Persistent Threat (APT) group. The APT group has targeted cryptocurrency exchanges, venture capital firms, and banks.