News
-
"Crooks 'Jackpot' ATMs in Latin America with New FiXS Malware"In a series of attacks across Mexico, cybercriminals have been withdrawing cash on demand through the use of FiXS, an advanced ATM malware. According to a report released by researchers at Metabase Q, the attacks employ similar methods as earlier ATM…
-
"BetterHelp Shared Users’ Sensitive Health Data, FTC Says"The online counseling service BetterHelp has recently agreed to return $7.8 million to customers to settle with the Federal Trade Commission for sharing health data it had promised to keep private, including information about mental health challenges…
-
"Critical Vulnerabilities Allow Hackers to Take Full Control of Wago PLCs"German industrial automation solutions provider Wago has recently released patches for several of its programmable logic controllers (PLCs) to address four vulnerabilities, including ones that can be exploited to take full control of the targeted device…
-
"Hatch Bank Becomes the Second Data Breach Victim after GoAnywhere MFT Hack"Hatch Bank, a Financial Technology (FinTech) banking platform, revealed that it faced a data breach caused by the attack on the Fortra GoAnywhere MFT file-sharing platform when the data of almost 140,000 customers was stolen. Hatch Bank discovered that…
-
"EV Charging Infrastructure Offers an Electric Cyberattack Opportunity"Cyberattackers and security researchers have begun focusing on Electric Vehicle (EV) charging infrastructure security vulnerabilities. Researchers from the energy-network cybersecurity company Saiflow uncovered two vulnerabilities in the Open Charge…
-
"Ransomware Gang Leaks Data Stolen from City of Oakland"The Play ransomware group is leaking data stolen from a recent cyberattack against the City of Oakland, California. The initial data leak consisted of a 10GB RAR archive with multiple parts that contained private documents, employee details, passports,…
-
"Law Enforcement Teams Score Major Win against DoppelPaymer Ransomware Gang"On February 28, 2023, the German Regional Police, Ukrainian National Police, Europol, Dutch Police, and FBI joined forces to bring down the actors behind the criminal group known for launching attacks using the DoppelPaymer ransomware. In 2019,…
-
"Experts Reveal Google Cloud Platform's Blind Spot for Data Exfiltration Attacks"New research demonstrates that malicious actors can use "insufficient" forensic visibility into Google Cloud Platform (GCP) to exfiltrate sensitive data. The cloud incident response company Mitiga stated that GCP lacks the visibility in its storage logs…
-
"Thought You'd Opted Out of Online Tracking? Think Again"Websites often offer visitors the option to opt out of data collection. However, according to a team of privacy researchers, opting out is not always effective, as visitor data collection can still occur. Europe's General Data Protection Regulation (GDPR…
-
"Financial Apps Tested from Google Play Store Leaked Sensitive API Data under Testing Conditions"Over 90 percent of the 650 financial apps hosted on the Google Play App Store contain data that can be extracted, such as Application Programming Interface (API) keys. Approov's Mobile Threat Lab reverse-engineered the code of financial service apps and…
-
"Auto Cyberattacks Becoming More Widespread"As cars grow in intelligence, sophistication, and connectivity, they become more vulnerable to cyberattacks. The current challenge is to stay ahead of hackers who are constantly looking for new methods for attacking car software and hardware. In 2022,…
-
"Hundreds of Thousands of Websites Hacked as Part of Redirection Campaign"According to the cybersecurity company Wiz, since early September 2022, threat actors have been infiltrating tens of thousands of websites targeting East Asian audiences in order to redirect their users to adult-themed content. The threat actors gained…