News
-
"Chinese Threat Group Leaks Hacking Secrets in Failed Attack"Group-IB's analysis of an intercepted spear-phishing email provides further insight into the hacking techniques of the Chinese state-sponsored espionage threat actor known as Tonto Team. According to the security firm, a spear-phishing attempt against…
-
"Community Health Systems Data Breach Caused by GoAnywhere MFT Hack"Community Health Systems (CHS) is one of the leading healthcare providers in the US. CHS operates 79 acute-care hospitals and over 1,000 other care locations, including physician practices, urgent care centers, freestanding emergency departments,…
-
"SAS App and Website Hit as Attacks Target Swedish Firms"Scandinavian airline SAS was hit by a cyberattack yesterday that reportedly downed its website and app and may have leaked customer information for a brief time. Customers were urged to refrain from using the airline's mobile app as they may be…
-
"Malicious DDoS Attacks up by 150 Percent"Globally, the number of Distributed Denial-of-Service (DDoS) attacks increased by 150 percent in 2022 compared to the previous year, while the number of attacks in the Americas increased by 212 percent compared to 2021. The 2022 Global Threat Analysis…
-
"Dozens of Vulnerabilities Patched in Intel Products"Intel recently announced patches for dozens of vulnerabilities across its product portfolio, including critical and high-severity issues. The most severe of these flaws is CVE-2021-39296 (CVSS score of 10), which impacts the Integrated Baseboard…
-
"Tonga Is the Latest Pacific Island Nation Hit With Ransomware"A ransomware attack has targeted Tonga's state-owned telecommunications company. Tonga Communications Corporation (TCC), one of the country's two telecommunications companies, announced that the attack could slow down administrative operations. The…
-
"India-Linked Group Used Telegram to Mastermind Cyberattacks Across Asia, Says Analyst"In 2021, SideWinder, also known as Hardcore Nationalist (HN2), targeted more than 60 organizations in Afghanistan, Bhutan, Myanmar, Nepal, and Sri Lanka, according to Group-IB. By a wide margin, government agencies were the most heavily attacked, with 44…
-
"Hyundai, Kia Issue Software Security Fix to Deter TikTok Thefts"Kia and parent company Hyundai confirmed recently that the Korean automakers are releasing new anti-theft software at no cost to vehicle owners. According to the National Highway Traffic Safety Administration (NHTSA), the free software fix applies…
-
"High-Severity DLP Flaw Impacts Trellix for Windows"Trellix, the leading Data Loss Prevention (DLP) vendor, is urging customers to patch a high-severity vulnerability that allows local attackers to circumvent restrictions and exfiltrate sensitive data. The vulnerability, tracked as CVE-2023-0400, affects…
-
"Vulnerabilities Open Korenix JetWave Industrial Networking Devices to Attack"CyberDanube researchers have discovered three vulnerabilities in various Korenix JetWave industrial access points and LTE cellular gateways that could enable attackers to disrupt their operation or use them as a foothold for future attacks. According to…
-
"OT Network Security Myths Busted in a Pair of Hacks"Two recently released studies highlight the hidden dangers to physical operations in today's Operational Technology (OT) networks posed by wireless devices, cloud-based applications, and nested networks of Programmable Logic Controllers (PLCs),…
-
"RedEyes Hackers Use New Malware to Steal Data From Windows, Phones"The APT37 threat group, also known as 'RedEyes' or 'ScarCruft,' targets individuals for intelligence collection using the new evasive malware called M2RAT and steganography. APT37 is a North Korean hacker group suspected to be government-supported. In…