News
-
"Open Redirect Flaws Increasingly Exploited by Phishers"According to Kroll's Cyber Threat Intelligence (CTI) team, phishing attacks involving the exploitation of open redirect flaws are increasing again. Therefore, organizations should consider retraining their employees on how to spot them. Open redirect…
-
"More Than Half of Browser Extensions Pose Security Risks"A new study found that many of the browser extensions organizations allow employees to use when working with Software-as-a-Service (SaaS) apps like Google Workspace and Microsoft 365 have access to high levels of content and pose risks such as data theft…
-
"Using Quantum Computing to Protect AI From Attack"Machine Learning (ML)-based frameworks remain highly vulnerable to adversarial attacks, which involve malicious data tampering that causes them to fail in unexpected ways, despite their successes and increased adoption. A study by researchers at the…
-
"Cyber Fire Puzzles Presents Real-Life Cyber Security Challenges to Develop Students' Cyber Defense Skills"On August 19-20, nearly 60 students were presented with cybersecurity challenges through puzzles to develop skills essential to practitioners. Cyber Fire Puzzles is hosted by the Auburn University/Los Alamos National Laboratory (LANL) Cyber Security…
-
"Crypto Botnet on X Is Powered by ChatGPT"In May of this year, researchers at Indiana University Bloomington discovered a ChatGPT-powered botnet operating on X, formerly known as Twitter. The researchers named the botnet Fox8 due to its connection to cryptocurrency websites with variations of…
-
"Critical Insight Report: 15% Drop in Breaches, 31% Surge in Victims"Critical Insight has recently unveiled its 2023 H1 Healthcare Data Breach Report, offering insights into the cybersecurity landscape of the healthcare sector. The researchers analyzed data breaches from healthcare organizations to the US Department…
-
"HHS Launches Digital Health Security Project to Protect Healthcare Infrastructure"The Advanced Research Projects Agency for Health (ARPA-H), a division of the US Department of Health and Human Services (HHS), has announced the formation of the Digital Health Security (DIGIHEALS) project, which aims to protect the electronic…
-
"How to Stop Leaky Forms From Putting Ecommerce Customer Data at Risk"Compliance with data privacy regulations is an ongoing responsibility for online retailers, with most being vigilant in ensuring that their systems protect customers' information. Ultimately, no retailer wants to lose their customers' trust or be subject…
-
"US Military Targeted in Recent HiatusRAT Attack"According to security researchers at Lumen, a recent HiatusRAT campaign has been targeting a US military procurement system for reconnaissance. Initially observed at the beginning of the year, HiatusRAT has been targeting high-bandwidth routers…
-
"Australian Energy Software Firm Energy One Hit by Cyberattack"Energy One, an Australian company that provides software products and services to the energy sector, has recently been hit by a cyberattack. In a statement issued on Monday, the company said the incident was detected on August 18, impacting some…
-
"Juniper Networks Fixes Flaws Leading To RCE in Firewalls and Switches"Juniper Networks has patched four vulnerabilities, tracked as CVE-2023-36844, CVE-2023-36845, CVE-2023-36846, and CVE-2023-36847, in Junos OS that, if chained, could enable Remote Code Execution (RCE) on the company's SRX firewalls and EX switches. Junos…
-
"New Variant of XLoader macOS Malware Disguised as 'OfficeNote' Productivity App"A new variant of the macOS malware XLoader has emerged, masking its malicious capabilities with the office productivity app OfficeNote. The new version of XLoader is packaged within a standard Apple disk image named "OfficeNote[.]dmg," according to an…