-
"BlackCat Ransomware Uses New 'Munchkin' Linux VM in Stealthy Attacks"The BlackCat/ALPHV ransomware operation is now applying a new tool named Munchkin, which uses Virtual Machines (VMs) to stealthily launch encryptors on network devices.
-
"QR Codes Used in 22% of Phishing Attacks"A new study called the "Hoxhunt Challenge" has unveiled alarming trends in employee susceptibility to phishing attacks, emphasizing the critical role of engagement in reducing human risk.
-
"DarkGate Malware Campaigns Linked to Vietnam-Based Cybercriminals"Security researchers at WithSecure believe that Vietnam-based cybercriminals are behind attacks using DarkGate malware, which have targeted organizations in the UK, US, and India since 2018.
-
"Project Will Protect Researchers' Open-Source Software Worldwide"Researchers at Indiana University are working on a project to protect the open-source software used by institutions worldwide to collaborate and share study findings.
-
"Microsoft Found Users Can Trick GPT-4 Into Releasing Biased Results and Leaking Private Information"According to research backed by Microsoft, OpenAI's GPT-4 Large Language Model (LLM) might be more trustworthy than GPT-3.5, but also more vulnerable to jailbreaking and bias.
-
"Organizations Admit Employee Use of AI Is a Risk They Aren't Prepared For"According to a Riskonnect survey of 300 professionals on the top internal threats to businesses in 2023, most risk and compliance professionals believe that employee use of generative Artificial Intelligence (AI) poses a threat to business, and less th
-
"Most Organizations Globally Have Implemented Zero Trust"According to Okta's 2023 State of Zero Trust report, the percentage of organizations implementing a zero trust initiative has nearly tripled in the past three years, from 24 percent in 2021 to 61 percent in 2023.
-
"HR Topics Used the Most as Attack Method in Phishing Attacks"According to findings from KnowBe4's research, Human Resources (HR)-related topics are the most commonly used by hackers to facilitate phishing attacks. The strategy is not new, but it consistently results in successful attacks.
-
"NSA Shares Recommendations to Advance Device Security Within a Zero Trust Framework"The National Security Agency (NSA) has published a Cybersecurity Information Sheet (CSI) to help federal agencies, partners, and organizations assess devices within their systems and respond more effectively to threats.
-
"Sophisticated MATA Framework Strikes Eastern European Oil and Gas Companies"As part of a cyber espionage operation between August 2022 and May 2023, an updated version of a sophisticated backdoor framework called MATA was used in attacks against more than a dozen Eastern European oil and gas sector and defense industry compani
-
"Google Ads for KeePass, Notepad++ Lead To Malware"According to Jérôme Segura, Director of Threat Intelligence at Malwarebytes, people who have used Google to search for and download the KeePass password manager and the Notepad++ text editor may have been infected with malware.
-
"Google Play Protect Gets Real-Time Code Scanning"Google recently announced improved protections against malware for all Android devices with Google Play Services in the form of real-time scanning at code level in Google Play Protect.
News