News
-
"Government Security Vulnerabilities Surge By 151%, Report Finds"According to security researchers at Bugcrowd, the government sector has witnessed the most significant growth in crowdsourced security in 2023, marking a 151% increase in vulnerability submissions and a substantial 58% rise in Priority 1 (P1) rewards
-
"Blackwood APT Delivers Malware by Hijacking Legitimate Software Update Requests"ESET researchers have uncovered NSPX30, an implant used by the China-aligned Advanced Persistent Threat (APT) group called Blackwood. Blackwood has conducted cyber espionage operations against individuals and organizations in China, Japan, and the UK.
-
"Atlassian Tightens API After Hacker Scrapes 15M Trello Profiles"Millions of names, usernames, and emails associated with public Trello boards have been made available for sale on the dark web, potentially leading to Account Takeover (ATO) and spear-phishing attacks.
-
"HPE Says Russian Government Hackers Had Access to Emails for 6 Months"In a recent SEC filing, Hewlett Packard Enterprise (HPE) revealed that its cloud email environment was targeted by hackers believed to be sponsored by the Russian government.
-
"Firefox 122 Patches 15 Vulnerabilities"Mozilla recently announced security updates for both Firefox and Thunderbird to patch 15 vulnerabilities, including five rated "high severity." The first high-severity flaw is an out-of-bounds write in ANGLE (Almost Native Graphics Layer Engine), the o
-
"Offshore Wind Farms Are Vulnerable to Cyberattacks, New Concordia Study Shows"A team of researchers from Concordia and Hydro-Quebec conducted a study on the risks of cyberattacks faced by offshore wind farms.
-
"Lassonde Researcher Examining Privacy Concerns in Virtual Reality Environment"Some Virtual Reality (VR) technologies pose significant privacy risks by improperly collecting and sharing users' data.
-
"UAH Leads NATO Program Partners in Project to Address Impact of Quantum Technology on Global Security"Researchers at the University of Alabama in Huntsville (UAH) are leading a NATO collaboration to address emerging security challenges posed by quantum technologies.
-
"5,379 Gitlab Servers Vulnerable to Zero-Click Account Takeover Attacks"Thousands of GitLab servers are vulnerable to zero-click Account Takeover (ATO) attacks involving the exploitation of a critical vulnerability.
-
"SEC Blames SIM Swap Hack for Twitter Account Hijack"The US Securities and Exchange Commission (SEC) confirmed that a SIM swapping hack resulted in its X (Twitter) account getting hijacked.
-
"Ukrainian Hackers Claim Attack on Russian Scientific Research Center"According to Ukraine's defense intelligence directorate (GUR), the pro-Ukraine hacker group called BO Team infiltrated the Russian State Research Center on Space Hydrometeorology, destroying its database and valuable equipment.
-
"Browser Phishing Threats Grew 198% Last Year"Security researchers at Menlo Security have observed a 198% increase in browser-based phishing attacks during the latter half of 2023 compared to the first half, with a 206% rise in evasive attacks.