News
-
"AI Chatbots Pose Risk for Business Operations, Warn UK Cyber Authorities"Britain's National Cyber Security Centre (NCSC) is bringing further attention to the increased security risk posed by Artificial Intelligence (AI) chatbots such as OpenAI's ChatGPT and Google's Bard to business operations. According to the NCSC, research…
-
"Ransomware Comic Looks to Bring Detective Noir to the Computer Age"Johnny Dollar is a fictional private detective turned insurance investigator whose old-school crime-fighting adventures are being rebooted decades into the future to combat digital extortion, one of the digital age's most pressing and disruptive crimes.…
-
"Gamaredon Hackers Target Ukrainian Military Orgs Amid Counteroffensive Efforts"According to a new report published by Ukraine's National Coordination Center for Cybersecurity (NCCC), Gamaredon, the Moscow-backed hacking group, is intensifying its attacks against Ukraine's military and government agencies. Gamaredon works from the…
-
"Vulnerability in WordPress Migration Plugin Exposes Websites to Attacks"Security researchers at Patchstack have discovered a vulnerability in several extensions for the All-in-One WP Migration plugin, potentially exposing WordPress websites to attacks leading to sensitive information disclosure. With more than five…
-
"SapphireStealer Malware: A Gateway to Espionage and Ransomware Operations"Multiple entities are enhancing the capabilities of SapphireStealer, an open-source .NET-based information stealer malware, and spawning their own custom variants. According to Cisco Talos researcher Edmund Brumaghin, information-stealing malware such as…
-
"Classiscam Fraud-As-A-Service Expands, Now Targets Banks and 251 Brands"The "Classiscam" Fraud-as-a-Service (FaaS) operation has expanded its global reach, targeting a greater number of brands, countries, and industries, and causing more significant financial harm than before. This Telegram-based operation, similar to…
-
"Apple Offers Security Researchers Specialized iPhones to Tinker With"Apple encourages security researchers to apply for its Security Research Device Program (SRDP) to identify vulnerabilities and earn bug bounties. Apple launched its Apple SRDP in 2019. Participating researchers have identified 130 critical security flaws…
-
"Cyberattackers Swarm Openfire Cloud Servers With Takeover Barrage"The cybercriminal group Kinsing has returned, exploiting a previously disclosed path traversal vulnerability in the Openfire enterprise messaging application to create unauthenticated admin users. They can then upload malware and a Monero cryptominer to…
-
"Government Agencies Report New Russian Malware Targets Ukrainian Military"US federal agencies and international partners have issued a report warning of a new malware campaign called Sandworm that Russian military cyber actors carry out. The objective of the joint guidance is to facilitate the detection and mitigation of this…
-
"Energy Department Offering $9M in Cybersecurity Competition for Small Electric Utilities"The US Department of Energy recently announced a competition that can help smaller electric utilities obtain funding and technical assistance for improving their cybersecurity posture. The competition, named the Advanced Cybersecurity Technology (…
-
"500k Impacted by Data Breach at Fashion Retailer Forever 21"Fashion retailer Forever 21 has recently started informing more than 500,000 individuals that their personal information was compromised in a data breach earlier this year. The fashion retailer revealed that, on March 20, 2023, it identified a…
-
"Splunk Patches High-Severity Flaws in Enterprise, IT Service Intelligence"Splunk recently announced patches for multiple high-severity vulnerabilities in Splunk Enterprise and IT Service Intelligence, including flaws in third-party packages. The most severe of the bugs resolved in Splunk Enterprise this month is CVE-2023…