News
-
"Researchers Show Ways to Abuse Microsoft Teams Accounts for Lateral Movement"Proofpoint researchers explored how attackers could abuse access to a Microsoft Teams account and discovered attack vectors that could allow hackers to move laterally by launching additional phishing attacks or tricking users into downloading malicious…
-
"MalasLocker Ransomware Targets Zimbra Servers, Demands Charity Donation"A new ransomware operation is attempting to infiltrate Zimbra servers in order to steal emails and encrypt files. Instead of a ransom payment, the threat actors demand a charity donation to provide an encryptor and not leak data. The MalasLocker…
-
"8220 Gang Exploiting Oracle WebLogic Flaw to Hijack Servers and Mine Cryptocurrency"The 8220 Gang, a cryptojacking group, has been observed weaponizing a six-year-old security vulnerability in Oracle WebLogic servers to pull vulnerable instances into a botnet and spread cryptocurrency mining malware. The flaw, tracked as CVE-2017-3506…
-
"Organizations' Cyber Resilience Efforts Fail to Keep Up With Evolving Threats"According to Immersive Labs, a continuous increase in cyberattacks and changing threat landscape are causing more organizations to focus on creating long-term cyber resilience, but many of these programs fail to demonstrate teams' real-world cyber…
-
"Lemon Group Uses Millions of Pre-Infected Android Phones to Enable Cybercrime Enterprise"Millions of Android phone owners worldwide unknowingly contribute to the financial upkeep of the Lemon Group. The Lemon Group operators infected their devices before they purchased them. Now, they steal and sell SMS messages and one-time passwords (OTPs…
-
"Quantum Random Number Generator Operates Securely and Independently of Source Devices"Quantum Random Number Generators (QRNGs) produce true randomization using the inherent unpredictability of quantum mechanics. Therefore, they have important applications in tasks involving quantum information processing and computation. In practice, any…
-
"Oil and Gas Sector Lags Behind Other Industries in Gathering Dark Web Intel"According to new research by Searchlight Cyber, 27 percent of CISOs at oil and gas companies believe that dark web activity has no impact on their business, even though it is common for threat actors to hold auctions on the dark web to sell access to…
-
"Rutgers Researchers Find Flaws in Using Source Reputation for Training Automatic Misinformation Detection Algorithms"Researchers from Rutgers University have discovered a significant flaw in how algorithms designed to detect "fake news" assess the credibility of online news stories. According to the researchers, most of these algorithms rely on a credibility score for…
-
"Carpet Bomb DDoS Attacks Rise 300 Percent"According to a new report from Corero Network Security, 'carpet bomb' Distributed Denial-of-Service (DDoS) attacks increased by 300 percent in 2022 compared to 2021. Carpet bomb attacks, also referred to as spread-spectrum or spray attacks, distribute…
-
"4 Countries Join NATO Cyber Defense Center"The NATO Cooperative Cyber Defence Centre of Excellence (CCDCOE) recently announced that four countries have joined as members: Ukraine, Ireland, Japan, and Iceland. The announcement was made on the cybersecurity center’s 15th anniversary. …
-
"Report Finds Just One Unpatched Vulnerability Increases the Risk of a Cyber Insurance Claim by 33%"The cybersecurity and cyber insurance company Coalition has discovered that policyholders with even one unresolved critical vulnerability are more likely to experience a claim. According to Coalition's 2023 Cyber Claims Report, having even a single…
-
"US Offers $10m Reward For Alleged Prolific Ransomware Actor"A Russian national has recently been unmasked as a key player in the “development and deployment” of the Hive, LockBit, and Babuk ransomware strains. Mikhail Pavlovich Matveev (aka Wazawaka/m1x/Boriselcin/Uhodiransomwar) was recently charged with…