News
-
"Refund and Invoice Scams Surge in Q4"Researchers at Avast have recently warned consumers to be on their guard after revealing an increase in scams using phishing emails and vishing fraud to steal their money. The researchers recorded an increase in refund and invoice fraud of 14%…
-
"Fifth of ICS Bugs Have No Patch Available"According to security researchers at SynSaber, the number of published industrial control system (ICS) vulnerabilities has grown by almost 70% in the past three years, with over a fifth still not patched by manufacturers. The researchers analyzed…
-
"Android Mobile Devices From Top Vendors in China Have Pre-installed Malware"A new study conducted by a team of researchers from the University of Edinburgh and Trinity College Dublin discovered that high-end Android devices sold in China are shipped with spyware. Using static and dynamic code analysis techniques, the researchers…
-
"Malicious Google Ads Sneak AWS Phishing Sites Into Search Results"A new phishing campaign is targeting Amazon Web Services (AWS) logins. The campaign abuses Google Ads to sneak phishing sites into Google Search in order to steal login information. Sentinel Labs discovered the campaign on January 30, 2023, when its…
-
"Reddit Admits Security Breach"A sophisticated and highly targeted phishing attack compromised the systems of the popular social media website Reddit. According to the company, the malicious actors behind the attack gained access to internal documents, code, and business systems.…
-
"North Korea Targets US, South Korean Hospitals With Ransomware to Fund Further Cyber Operations"US and South Korean agencies have issued a joint cybersecurity advisory describing the tactics, techniques, and procedures (TTPs) used by North Korean hackers to deploy "state-sponsored" ransomware against hospitals and other organizations considered to…
-
"Critical Infrastructure at Risk from New Vulnerabilities Found in Wireless IIoT Devices"A total of 38 security flaws were discovered in wireless Industrial Internet of Things (IIoT) devices from four different vendors, which presents an attack surface for threat actors seeking to exploit Operational Technology (OT) systems. Threat actors…
-
"NewsPenguin Goes Phishing for Maritime & Military Secrets"Using an advanced malware tool, a novel threat actor dubbed "NewsPenguin" by researchers has been conducting an espionage campaign against Pakistan's military-industrial complex for months. Blackberry researchers disclosed how this gang organized a…
-
"By 2025 the Worldwide Cost of Cyberattacks Will Have Tripled Compared to 2015"The growth and democratization of Internet of Things (IoT) devices have increased the number of data-sharing devices, thus raising the number of threats that users face. Estimates indicate that if the current rate of growth continues, the cost of damages…
-
"The Cloud's Growing Impact on Cybersecurity"The average organization uses 1,427 cloud services, while the average employee uses up to 36 cloud services, such as collaboration and file-sharing platforms. In 2023, 70 percent of all enterprise workloads will be hosted in the cloud, up from 40 percent…
-
"Geotargeting Tools Are Allowing Phishing Campaigns to Home in on Potential Victims"According to researchers at the security company Avanan, hackers are using geotargeting tools to customize phishing attacks to specific geographic regions. They discovered evidence of phishing actors using Geo Targetly, which is a tool used by businesses…
-
"LockBit Reaches New Lows by Targeting an IDD Clinic"The Arc of Essex County, a New Jersey-based organization for children with Intellectual and Developmental Disabilities (IDD), has appeared on LockBit's blog, an underground website where the gang posts its victims. The countdown clock implies that the…