News
-
"1.3 Million Maine Residents Impacted by MOVEit Hack"The State of Maine is the latest entity to disclose a significant impact from the cyberattack targeting a zero-day in Progress Software’s MOVEit file transfer tool earlier this year.
-
"ICBC and Allen & Overy Hit By Ransomware"Two giants of the banking and legal sectors have recently been breached by suspected ransomware actors. Allen & Overy is one of the UK's "Magic Circle" law firms.
-
"Audio Deepfake Detective Developing New Sleuthing Techniques"Audio deepfakes have raised concerns among cybersecurity experts as scammers increasingly use voice-related Artificial Intelligence (AI) schemes for various malicious activities.
-
"MOVEit Hackers Cl0p Exploit SysAid Zero-Day – Microsoft"According to researchers at Microsoft Threat Intelligence, the Russia-linked Cl0p ransomware group behind the wave of MOVEit Transfer-related attacks has been exploiting a previously unknown bug in the SysAid Information Technology (IT) support s
-
"FBI: Ransomware Gangs Hack Casinos via 3rd Party Gaming Vendors"The FBI is warning of ransomware threat actors targeting casino servers and using legitimate system management tools to gain network access. To breach casinos, ransomware gangs continue to rely on third-party gaming vendors.
-
"Open-Source Vulnerability Disclosure: Exploitable Weak Spots"According to Aqua Security researchers, attackers could exploit flaws in the vulnerability disclosure process of open-source projects to gather the information they need to launch attacks before patches are made available.
-
"Medical Company Fined $450,000 by New York AG Over Data Breach"The attorney general of the state of New York recently announced that a medical company has been fined $450,000 over a data breach resulting from a ransomware attack.
-
"CISA Signs Memorandum of Understanding with the Republic of Korea to Share Cyber Threat Information and Cybersecurity Best Practices"Jen Easterly, Director of the Cybersecurity and Infrastructure Security Agency (CISA), and Baek Jong-wook, the Republic of Korea's Deputy Director of the National Intelligence Service (NIS), have signed a Memorandum of Understanding (MoU) outlining col
-
"NSA and ESF Partners Release Recommended Practices for Software Bill of Materials Consumption"The National Security Agency (NSA), the Office of the Director of National Intelligence (ODNI), the Cybersecurity and Infrastructure Security Agency (CISA), and industry partners have published "Securing the Software Supply Chain: Recommended Practices
-
"CISA Adds SLP Flaw to Its Known Exploited Vulnerabilities Catalog"The US Cybersecurity and Infrastructure Security Agency (CISA) has added the Service Location Protocol (SLP) vulnerability, tracked as CVE-2023-29552 with a CVSS score of 7.5, to its Known Exploited Vulnerabilities (KEV) catalog.
-
"Sandworm Cyberattackers Down Ukrainian Power Grid During Missile Strikes"Russia's Sandworm Advanced Persistent Threat (APT) group used Living-off-the-Land (LotL) techniques to cause a power outage in a Ukrainian city during missile strikes in October last year.
-
"Beware, Developers: BlazeStealer Malware Discovered in Python Packages on PyPI"A new set of malicious Python packages has infiltrated the Python Package Index (PyPI) repository, aiming to steal sensitive information from compromised developer systems.