News
-
"GitHub Enterprise Server Gets New Security Capabilities"GitHub recently announced the general availability of Enterprise Server 3.10 with new security capabilities, including support for custom deployment rules. GitHub noted that with the new release, GitHub Projects is now generally available in…
-
"Barracuda ESG Hacks Focused On China's 'High Priority Targets'"According to researchers at Mandiant, the hackers responsible for a recent campaign targeting Barracuda Email Security Gateway (ESG) devices have conducted follow-up attacks against compromised organizations considered "high priority targets" by the…
-
"Abnormal Security: Microsoft Tops List of Most-Impersonated Brands in Phishing Exploits"According to a new study by Abnormal Security, which analyzed brand impersonation and credential phishing trends in the first half of 2023, Microsoft was the most commonly abused brand for phishing exploits. Microsoft's name was used in approximately 650…
-
SoS Musings #76 - Side-Channel Attacks Continue EmergingSoS Musings #76 - Side-Channel Attacks Continue Emerging
-
Cyber Scene #83 - AI Abounding: Worldwide Regulation, Home and AbroadCyber Scene #83 - AI Abounding: Worldwide Regulation, Home and Abroad
-
"Iran Spyware Breached and Exposed by GhostSec"The GhostSec hacktivist group claims to have compromised the FANAP Behnama software, exposing 20GB of data, including face recognition and motion detection systems the Iranian government allegedly uses to monitor and track its citizens. GhostSec is…
-
"US, European Agencies Dismantle Qakbot Network Used for Ransomware and Scams"Multiple law enforcement agencies worldwide have dismantled Qakbot, one of the most prolific and persistent botnets. The FBI and US Department of Justice (DOJ), together with agencies in France, Germany, the Netherlands, the UK, Romania, and Latvia,…
-
"UN Warns Hundreds of Thousands in Southeast Asia Roped Into Online Scams"The U.N. human rights office recently announced that criminal gangs have forced hundreds of thousands of people in Southeast Asia into participating in unlawful online scam operations, including false romantic ploys, bogus investment pitches, and illegal…
-
"DarkGate Malware Activity Spikes as Developer Rents Out Malware to Affiliates"A new malspam campaign has been observed deploying DarkGate, an off-the-shelf malware. The current increase in DarkGate malware activity is likely given that the malware's developer has recently begun renting it out to a limited number of affiliates,…
-
"MalDoc in PDFs: Hiding Malicious Word Docs in PDF Files"Japan's Computer Emergency Response Team (JPCERT) reveals a new "MalDoc in PDF" attack discovered in July 2023 that evades detection by embedding malicious Word documents within PDFs. The file sampled by JPCERT is a polyglot recognized as a PDF by most…
-
"Addressing Cybersecurity's Talent Shortage & Its Impact on CISOs"Recent research from ISC2 shows that the cybersecurity industry continues to face a severe talent shortage as the threat landscape evolves and the skills gap grows. The organization discovered that there is still a need for more than 3.4 million security…