News
-
"Two Men Plead Guilty to Hacking Law Enforcement Database for Doxing"Two men from New York and Rhode Island have recently pleaded guilty to hacking into a database maintained by a US federal law enforcement agency and using stolen personal information to extort people.
-
"X-Force Discovers New Vulnerabilities in Smart Treadmill"Due to the many features of Internet-connected gym machines, IBM X-Force Red researchers decided to explore their user data security and whether there was any risk to users' physical safety.
-
"UNC3886 Uses Fortinet, VMware 0-Days and Stealth Tactics in Long-Term Spying"The cyber espionage actor "UNC3866," linked to the zero-day exploitation of Fortinet, Ivanti, and VMware security flaws, uses multiple persistence mechanisms to maintain access to compromised environments.
-
"Researchers Exploit Kraken Exchange Bug, Steal $3 Million in Crypto"The cryptocurrency exchange Kraken has revealed that alleged security researchers stole $3 million in cryptocurrency using a zero-day website bug.
-
"Critical VMware Bugs Open Swaths of VMs to RCE, Data Theft"Broadcom has addressed three VMware vCenter vulnerabilities, two of which are critical and enable Remote Code Execution (RCE). Hackers continue to target Virtual Machines (VMs) due to their rich repositories of sensitive data and applications.
-
"CIISec Urges Employers to Target Young Talent in Gaming Centers"New guidance from the Chartered Institute of Information Security (CIISec) advises employers to reach candidates outside traditional channels.
-
"AMD Investigating Breach Claims After Hacker Offers to Sell Data"AMD has launched an investigation after a well-known hacker announced the sale of sensitive data that allegedly belonged to the company.
-
"Clever macOS Malware Delivery Campaign Targets Cryptocurrency Users"Researchers at Recorded Future warn that cryptocurrency users are being targeted with legitimate-looking but fake apps that deliver information-stealing malware.
-
"US, Indonesia Hold Port-Focused Cybersecurity Exercise"The US and Indonesia recently conducted their first port-focused cybersecurity tabletop exercise to improve responses to cyberattacks on critical maritime infrastructure.
-
"G7 to Develop Cybersecurity Framework for Energy Sector"G7 nations will develop a cybersecurity framework for operational technologies in energy systems, with the intended users being manufacturers and operators.
-
"US, Allies Publish Guidance on Securing Network Access"Government agencies in the US, New Zealand, and Canada have released new guidance, titled "Modern Approaches to Network Access Security," for organizations to use stronger security solutions and improve network activity visibility.
-
"Quishing Campaign Targets Chinese Citizens via Fake Official Documents"According to new research by Cyble Research and Intelligence Labs (CRIL), a QR code-based phishing campaign has targeted individuals in China, tricking victims by using QR codes in fake official documents.