News
-
"North Korean Group Kimsuky Exploits DMARC and Web Beacons"Researchers have discovered new tactics associated with the threat actor "Kimsuky." The group, believed to be linked to North Korea's Reconnaissance General Bureau, has been conducting email phishing campaigns aimed at experts to gain insights in
-
"Food and Agriculture Sector Hit with More Than 160 Ransomware Attacks Last Year"According to the Food and Agriculture-Information Sharing and Analysis Center's (Food and Ag-ISAC) first annual report, the US food and agriculture sector faced at least 167 ransomware attacks in 2023.
-
"Multiple Botnets Exploiting One-Year-Old TP-Link Flaw to Hack Routers"At least six different botnet malware operations are seeking TP-Link Archer AX21 (AX1800) routers that are vulnerable to a command injection security flaw.
-
"'Sandworm' Group Is Russia's Primary Cyberattack Unit in Ukraine"According to an investigation conducted by Google Cloud's Mandiant security group, over the past two years, the "Sandworm" hacker group has played a major role in supporting Russian military objectives in Ukraine.
-
"Chrome 124, Firefox 125 Patch High-Severity Vulnerabilities"Google and Mozilla recently announced security updates that address more than 35 vulnerabilities in their browsers, including a dozen high-severity flaws.
-
"Microsoft's 'AI Watchdog' Defends Against New LLM Jailbreak Method"Microsoft has discovered a new method for jailbreaking Large Language Model (LLM) Artificial Intelligence (AI) tools and has revealed its continued efforts to improve LLM safety and security.
-
"The Future of Online Security Safeguarded by AI and Metasurfaces"A team of researchers at Pohang University of Science and Technology (POSTECH) significantly advanced online security by integrating an Artificial Intelligence (AI)-based metasurface with oblique helicoidal cholesteric liquid crystals.
-
"Cisco Duo's Multifactor Authentication Service Breached"A social engineering attack has compromised a third-party provider responsible for handling telephony for Cisco's Duo Multi-Factor Authentication (MFA) service. Cisco Duo customers have been warned to be on the lookout for follow-on phishing attacks.
-
"New Open-Source Project Takeover Attacks Spotted, Stymied"The OpenJS Foundation has thwarted a "credible takeover attempt" similar to the one that resulted in a backdoor being put in the open source XZ Utils package by someone called "Jia Tan." The malicious maintainer achieved that position through a success
-
"TA558 Hackers Weaponize Images for Wide-Scale Malware Attacks"The threat actor known as "TA558" has been using steganography as an obfuscation method in the delivery of a variety of malware, including Agent Tesla, FormBook, Remcos RAT, LokiBot, GuLoader, Snake Keylogger, XWorm, and more.
-
"PuTTY SSH Client Flaw Allows Recovery of Cryptographic Private Keys"Fabian Baumer and Marcus Brinkmann from Ruhr University Bochum discovered a vulnerability in PuTTY 0.68 through 0.80 that enables attackers with access to 60 cryptographic signatures to recover the private key used to generate them.
-
"Ransomware Group Starts Leaking Data Allegedly Stolen From Change Healthcare"The "RansomHub" ransomware group is now publishing data allegedly stolen from the healthcare transaction processor Change Healthcare in February. The incident disrupted Change Healthcare's operations and caused healthcare system outages.