News
-
"Attackers Can Steal NTLM Password Hashes via Calendar Invites"According to security researcher Dolev Taler, a recently patched vulnerability in Microsoft Outlook that allows attackers to steal users' NTLM v2 hashes can be exploited by adding two headers to an email containing a specially crafted file.
-
"Ransomware Actor Uses TeamViewer to Gain Initial Access to Networks"Attackers have used TeamViewer quite frequently to gain initial access to target systems. Organizations use TeamViewer to provide remote support, collaboration, and access to endpoint devices.
-
"Malicious Web Redirect Scripts Stealth up to Hide on Hacked Sites"Security researchers analyzed over 10,000 scripts used by the Parrot Traffic Direction System (TDS) and discovered an evolution involving optimizations that make malicious code more stealthy against security mechanisms.
-
"MavenGate Attack Could Let Hackers Hijack Java and Android via Abandoned Libraries"According to researchers at the mobile security company Oversecured, several public and popular libraries that have been abandoned but are still used in Java and Android applications are vulnerable to a new software supply chain attack method cal
-
"Trezor Support Site Breach Exposes Personal Data of 66,000 Customers"Trezor recently issued a security alert after identifying a data breach on January 17 due to unauthorized access to their third-party support ticketing portal.
-
"Russian Spies Brute Force Senior Microsoft Staff Accounts"Russian state hackers recently managed to compromise the email accounts of some of Microsoft’s senior leadership team members using basic brute-force techniques.
-
"Owner of Cybercrime Website BreachForums Sentenced to Supervised Release"Conor Brian Fitzpatrick, the owner of the infamous cybercrime website BreachForums, was recently sentenced to time served and 20 years of supervised release.
-
"LoanDepot Breach: 16.6 Million People Impacted"Lending giant LoanDepot recently announced that roughly 16.6 million individuals were impacted by a ransomware attack disclosed earlier this month.
-
"Encryption Boost for Cross-Border E-commerce - 'Privacy Information Encryption for Cross-Border E-commerce Users Based on Social Network Analysis'"A team of researchers in China has introduced a novel approach to improving privacy for cross-border e-commerce users.
-
"US Charges Russian Involved in 2013 Hacking of Neiman Marcus, Michaels"The US Justice Department recently announced separate charges against two Russian nationals accused of being involved in cybercriminal activities, including a man allegedly involved in the 2013 hacking of retailers Michaels and Neiman Marcus.
-
"CISA Issues Emergency Directive Requiring Federal Agencies to Mitigate Ivanti Connect Secure and Policy Secure Vulnerabilities"The Cybersecurity and Infrastructure Security Agency (CISA) has issued Emergency Directive 24-01 in response to the widespread and active exploitation of vulnerabilities in Ivanti Connect Secure and Ivanti Policy Secure appliances.