News
-
"The Weirdest Trend in Cybersecurity: Nation-States Returning to USBs"Nation-state cyber threat groups are again turning to USBs to infiltrate government organizations and critical infrastructure facilities.
-
"Malicious Email Campaign Steals NTLM Hashes"TA577, also known in the security industry as Hive0118, has targeted organizations with rogue email attachments that, when opened, steal Microsoft Windows NT LAN Manager (NTLM) authentication information.
-
"New Fakext Malware Targets Latin American Banks"In November 2023, security researchers at IBM Security Trusteer discovered malware called "Fakext," which uses a malicious Edge extension to execute man-in-the-browser and web-injection attacks.
-
"Hackers Target Docker, Hadoop, Redis, Confluence With New Golang Malware"Misconfigured servers running Apache Hadoop YARN, Docker, Confluence, or Redis are the target of new Golang-based malware that automates the discovery and compromise of the hosts.
-
"CISA Forced to Take Two Systems Offline Last Month After Ivanti Compromise"In February, two systems from the Cybersecurity and Infrastructure Security Agency (CISA) were hacked through issues with Ivanti products. Ivanti provides software to manage IT security and system access.
-
"Massive Ad Fraud Campaign Sends Million of Spam Emails from Thousands of Hijacked Reputable Domains"An ad fraud campaign uses thousands of hijacked legitimate domains and subdomains to send millions of spam emails, generating revenue for the threat actors.
-
"Microsoft: Russians Are Using Stolen Information to Breach Company's Systems"Microsoft warns that Russian hackers who launched several high-profile attacks on the US government are now exploiting information stolen from the company's systems in November.
-
"Switzerland: Play Ransomware Leaked 65,000 Government Documents"The National Cyber Security Centre (NCSC) of Switzerland has recently released a report on its analysis of a data breach following a ransomware attack on Xplain, disclosing that the incident impacted thousands of sensitive Federal government files.
-
"CISA Warns on JetBrains TeamCity Flaw That Could Allow Hackers to Generate Admin Accounts"The US Cybersecurity and Infrastructure Security Agency (CISA) has added a JetBrains vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, noting evidence of active exploitation.
-
"Tesla Can Be Hacked via MiTM Phishing Attack"Researchers discovered that hackers can steal a Tesla Model 3 by conducting a Man-in-The-Middle (MiTM) phishing attack on car owners' Tesla accounts.
-
"UnitedHealth Sets Timeline to Restore Change Healthcare Systems After BlackCat Hit"UnitedHealth Group has recently published a timeline to restore Change Healthcare’s systems following the BlackCat/ALPHV ransomware attack, which has led to delays to patient care across the US.
-
"NSA Releases Top Ten Cloud Security Mitigation Strategies"The National Security Agency (NSA) has published "Top Ten Cloud Security Mitigation Strategies" to help cloud customers understand important security practices as they migrate their data to cloud environments.