News
-
"Tesla Jailbreak Unlocks Theft of In-Car Paid Features"Tesla cars are vulnerable to a nearly irreversible jailbreak of their onboard infotainment systems, which would enable owners to gain access to a variety of paid in-car features for free. According to a team of researchers, the stolen benefits can range…
-
"Russian APT Phished Government Employees via Microsoft Teams"Microsoft reports that an Advanced Persistent Threat (APT) group with ties to Russia's Foreign Intelligence Service has used Microsoft Teams to launch phishing attacks against employees of dozens of global organizations. To host and execute their social…
-
"'Mysterious Team Bangladesh' Targeting India with DDoS Attacks and Data Breaches"Since June 2022, the hacktivist group Mysterious Team Bangladesh has been linked to more than 750 Distributed Denial-of-Service (DDoS) attacks and 78 website defacements. According to Group-IB, the group primarily targets logistics, government, and…
-
"Over 640 Citrix Servers Backdoored With Web Shells in Ongoing Attacks"Hundreds of Citrix Netscaler ADC and Gateway servers have been compromised and backdoored in a series of attacks targeting a critical Remote Code Execution (RCE) flaw, tracked as CVE-2023-3519. The vulnerability has been exploited as a zero-day to breach…
-
"AI-Powered CryptoRom Scam Targets Mobile Users"According to security researchers at Sophos, CryptoRom, a notorious scam that combines fake cryptocurrency trading and romance scams, has taken a new twist by utilizing generative artificial intelligence (AI) chat tools to lure and interact with victims…
-
Call for Papers: Journal of Cybersecurity Special CollectionCall for Papers Special Collection: The Philosophy of Information Security Editors: David Pym and Jonathan Spring For this special collection, we solicit papers at the intersection of philosophy, information security, and philosophy of science. There…
-
"Allegheny County Issues Notice of Data Breach"Allegheny County recently released limited details on a data breach. According to the county, they were affected by a global cybersecurity incident impacting the popular file transfer tool, MOVEit. The county noted that the breach allowed a…
-
"OT/IoT Malware Surges Tenfold in First Half of the Year"According to security researchers at Nozomi Networks, malware-related cyber threats in operational technology (OT) and Internet of Things (IoT) environments jumped tenfold year-on-year in the first six months of 2023. The researchers noted that…
-
"Firefox 116 Patches High-Severity Vulnerabilities"Mozilla recently announced the release of Firefox 116, Firefox ESR 115.1, and Firefox ESR 102.14, which include patches for multiple high-severity vulnerabilities. Mozilla lists 14 CVEs in its advisory, nine of which are rated high severity. …
-
"Managing Technological Security of Smart Environment Monitoring Systems"New research in the International Journal of Critical Infrastructures presents guidance regarding securing water-related critical infrastructures and further emphasizes the need to protect environment monitoring technologies as cities evolve into smart…
-
"Alleged NATO Data Theft Leaked Hundreds of Sensitive Documents and Thousands of User Records"The North Atlantic Treaty Organization (NATO) is investigating the alleged theft of data by the hacktivist group known as SiegedSec. The threat actor claims to have compromised the Communities of Interest (COI) Cooperation Portal and stolen hundreds of…
-
"New Malware WikiLoader Targeting Italian Organizations"Researchers are warning about a malware downloader spoofing Italian organizations in order to deliver a banking Trojan to Italian companies. The downloader, dubbed WikiLoader by Proofpoint researchers, uses multiple methods to avoid detection. The…