News
-
"Researchers Discover Exposed API Secrets, Impacting Major Tech Tokens"Escape's security research team conducted a scan of 189.5 million URLs and discovered the exposure of over 18,000 Application Programming Interface (API) secrets.
-
"AnyDesk Incident: Customer Credentials Leaked and Published for Sale on the Dark Web"Resecurity identified malicious actors selling a large number of AnyDesk customer credentials on the dark web. This credential leak is suspected to be the result of infostealer infections.
-
"How to Run a Password Update Campaign Efficiently and With Minimal IT Costs"There has been little research on how to run a password update campaign efficiently and with minimal Information Technology (IT) costs.
-
"Deepfakes Will Hurt 30% of Organizations' Trust in Biometrics by 2026"Gartner analysts predict that deepfakes, which are Artificial Intelligence (AI)-generated replicas of a person's likeness, will lower confidence in face biometric authentication solutions for 30 percent of companies by 2026.
-
"UTEP, PNNL Partner to Train Cybersecurity Hydropower Experts"Hydropower, one of the oldest forms of energy generation in the US, makes up 6 percent of the country's electricity supply.
-
"U.S. Government Sanctions Iranian Officials Over Pennsylvania Water Facility Hack"The U.S. Treasury Department recently announced sanctions against a half dozen Iranian government officials for their role in targeting devices at a Pennsylvania water utility in November 2023.
-
"DDoS Attack Power Skyrockets to 1.6 Tbps"According to Gcore, Distributed Denial-of-Service (DDoS) attack trends for the second half of 2023 reveal alarming increases in scale and sophistication. The maximum attack power increased from 800 Gbps to 1.6 Tbps.
-
"Russian APT28 Hackers Targeting High-Value Orgs with NTLM Relay Attacks"From April 2022 to November 2023, the Russian state-sponsored hacking group APT28 conducted NT LAN Manager (NTLM) v2 hash relay attacks using various methods, focusing on high-value targets worldwide.
-
"Payment Fraud is Hitting Organizations Harder Than Ever Before"According to security researchers at Trustpair, 96% of US companies were targeted with at least one fraud attempt in the past year. In the past year, many US companies (83%) saw an increase in cyber fraud attempts on their organization.
-
"Lurie Children's Hospital Took Systems Offline After Cyberattack"Lurie Children's Hospital in Chicago was recently forced to take IT systems offline after a cyberattack, disrupting normal operations and delaying medical care in some instances.
-
"Cloudflare Hacked Using Auth Tokens Stolen in Okta Attack"Cloudflare has revealed that a suspected nation-state actor breached its internal Atlassian server. They gained access to its Confluence wiki, Jira bug database, and Bitbucket source code management system.
-
"Google Play Used to Spread 'Patchwork' APT's Espionage Apps"Patchwork, an Indian Advanced Persistent Threat (APT) group known for its targeted spear phishing cyberattacks on Pakistanis, has been using Google Play to distribute six different Android espionage apps masquerading as legitimate messaging and news se