News
-
"Cyberattack Hits Major Hospital in Spanish City of Barcelona"A ransomware attack on one of Barcelona’s main hospitals recently crippled the center’s computer system and forced the cancellation of 150 nonurgent operations and up to 3,000 patient checkups. The attack happened Sunday at the Hospital Clinic de…
-
"Sandbox Blockchain Game Breached to Send Emails Linking to Malware"The Sandbox blockchain game company warns its community that a security breach resulted in some players receiving malicious emails spoofing the game and attempting to infect them with malware. The Sandbox is a blockchain-based open-world multiplayer game…
-
"China-Aligned APT Is Exploring New Technology Stacks for Malicious Tools"Researchers at ESET have analyzed MQsTTang, a custom backdoor they attribute to the China-aligned Advanced Persistent Threat (APT) group Mustang Panda. This backdoor is a component of an ongoing campaign that ESET researchers can trace back to early…
-
"Shein Shopping App Glitch Copies Android Clipboard Contents"According to Microsoft, a version of the Shein shopping app with more than 100 million downloads from the Google Play store had a feature that accessed clipboard information on users' Android devices, posing a security threat. The software company stated…
-
"New HiatusRAT Malware Targets Business-Grade Routers to Covertly Spy on Victims"At least since July 2022, a never-before-seen malware has been targeting business-grade routers to eavesdrop on victims in Latin America, Europe, and North America. The campaign, dubbed Hiatus by Lumen Black Lotus Labs, distributes two malicious binaries…
-
"Zero Trust in Zero Trust"In May of 2021, President Biden issued an executive order launching a government-wide initiative to strengthen its cybersecurity practices. The mandate required agencies to implement zero trust architectures and a cloud-based infrastructure by 2024 in…
-
"Researchers Discover 'Kill Switch' in Starlink Terminals"In December 2022, Starlink shipped software that patched a "kill switch" in its user terminals. A team of Oxford University academics and a researcher from Switzerland's Federal Office for Defense Procurement discovered the kill switch. The researchers…
-
"GAO: State Should Fully Evaluate International Partners' Capacity to Combat Cybercrime"Globally, cybercrime, including online identity theft, credit card fraud, and ransomware attacks, is increasing in number and scale. More than 840,000 cybercrime complaints were received by the FBI in 2021, with losses estimated to have reached $6.9…
-
"Four Years Later: The Impacts of Ghidra's Public Release"The National Security Agency (NSA) released Ghidra at the 2019 RSA Conference four years ago. Ghidra is a framework for software reverse engineering developed by Computer and Analytic Sciences Research. With hundreds of thousands of downloads and…
-
"Unkillable UEFI Malware Bypassing Secure Boot Enabled by Unpatchable Windows Flaw"Researchers at the security company ESET have reported the discovery of the first known case of real-world malware that can take over a computer's boot process even when Secure Boot and other advanced defenses are active and running on fully updated…
-
"557 CVEs Added to CISA’s Known Exploited Vulnerabilities Catalog in 2022"There are nearly 900 vulnerabilities in the Known Exploited Vulnerabilities (KEV) catalog maintained by the US Cybersecurity and Infrastructure Security Agency (CISA). According to researchers at VulnCheck, of the 900 vulnerabilities, 557 CVEs were…
-
"Cybercrime Marketplace Leaks Over 2.1 Million Payment Cards"Notorious carding marketplace BidenCash recently released information on more than 2.1 million credit and debit cards. Carding marketplaces also referred to as card shops, are cybercrime websites that facilitate the trading and unauthorized use of…