News
-
"Malicious NPM Packages Exfiltrate Hundreds of Developer SSH Keys via GitHub"Two malicious packages on the NPM package registry use GitHub to store Base64-encrypted SSH keys stolen from developer systems. One module was downloaded 412 times, and the other was downloaded 1,281 times before being removed by the NPM maintainers.
-
"Black Basta Gang Claims the Hack of the UK Water Utility Southern Water"The Black Basta ransomware gang says it hacked Southern Water, a major player in the UK's water industry.
-
"Why Cyberattacks Must Not Be Kept Secret"Laurie Mercer, a security architect at HackerOne, emphasizes that no company is invulnerable to cyberattacks. However, when an attack occurs, many companies continue to stay silent.
-
"Australia Sanctions Russian Hacker Behind Medibank Breach"The Australian government has publicly named Aleksandr Ermakov, 33, a Russian cybercriminal, as responsible for the Medibank data breach, which affected 9.7 million people.
-
"NPM Registry Users Download 2.1B Deprecated Packages Weekly, Researchers Say"Researchers from Aqua Security's Team Nautilus conducted a statistical analysis of the top 50,000 most downloaded packages in the NPM registry, revealing that users download deprecated packages an estimated 2.1 billion times per week.
-
"Chinese Cyberspies Exploited Critical VMware vCenter Flaw Undetected for 1.5 Years"In October, VMware patched a critical Remote Code Execution (RCE) vulnerability in its vCenter Server and Cloud Foundation enterprise products.
-
"Cracked macOS Apps Drain Wallets Using Scripts Fetched From DNS Records"Hackers are delivering information-stealing malware to macOS users through Domain Name System (DNS) records that hide malicious scripts.
-
"'VexTrio' TDS: The Biggest Cybercrime Operation on the Web?"One Traffic Distribution System (TDS) operator with over 70,000 domains is facilitating unprecedented levels of scams, phishing, and malware infections.
-
"Russian Hackers Suspected of Sweden Cyberattack"According to IT consultancy Tietoery, online services at some Swedish government agencies and shops have been disrupted in a ransomware attack believed to have been carried out by a Russian hacker group.
-
"Subway Sandwich Chain Investigating Ransomware Group’s Claims"Sandwich chain Subway has recently launched an investigation after the notorious LockBit ransomware group claimed over the weekend that it hacked into the company’s systems and stole vast amounts of information.
-
"Aviation Leasing Giant AerCap Hit by Ransomware Attack"Aircraft leasing giant AerCap has recently confirmed falling victim to ransomware after an emerging cybercrime gang claimed responsibility for the attack. The company says that the intrusion occurred on January 17.
-
"Researchers Unveil New Way to Counter Mobile Phone 'Account Takeover' Attacks"A team of computer science researchers developed a new method for identifying security vulnerabilities that leave people exposed to Account Takeover (ATO) attacks. In such attacks, hackers gain unauthorized access to online accounts.