News
  • "Fluhorse: Flutter-Based Android Malware Targets Credit Cards and 2FA Codes"
    Cybersecurity researchers have shared details regarding the "Fluhorse" Android malware family. According to Fortinet FortiGuard Labs, the malware represents a significant transition because it includes malicious components directly within the Flutter…
  • "CyberSentry Program Launches Webpage"
    CyberSentry is a US Cybersecurity and Infrastructure Security Agency (CISA)-managed capability for threat detection and monitoring, governed by an agreement between CISA and voluntarily participating critical infrastructure partners that operate major…
  • "6 Ways Cybersecurity Is Gut-Checking the ChatGPT Frenzy"
    Generative Artificial Intelligence (AI), ChatGPT, OpenAI, and Large Language Models (LLMs) are now almost daily topics of conversation within the cybersecurity community. Some small and large security vendors have incorporated AI chatbots into their…
  • "Global Rise in DDoS Attacks Threatens Digital Infrastructure"
    According to Nexusguard, the total number of Distributed Denial-of-Service (DDoS) attacks increased by 115.1 percent in 2022 compared to 2021 globally. The data also revealed that attackers continued to change their threat vectors by focusing on Internet…
  • "DHS S&T Seeks Solutions for Privacy-Preserving Digital Credential Wallets & Verifiers"
    The US Department of Homeland Security (DHS) Science and Technology Directorate (S&T) has issued a new solicitation for the development, improvement, and implementation of a new set of tools that protect the privacy of individuals when using digital…
  • "Rise of the Script Kiddie: A Tenth of Children Say They Can Hack Websites"
    One in ten children believe they can hack into websites and online accounts, but only 8 percent of parents are concerned about this possible issue. Censuswide surveyed 500 children in the UK aged 12 to 17. Less than half of parents (44 percent) limit…
  • "DOE Suffers Data Breach; 45K Students Affected"
    The Department of Education (DOE) recently experienced a data breach incident on Saturday, June 24.  The DOE stated that the third-party file-sharing software MOVEit, which is used by the DOE to transfer documents and data internally and to vendors…
  • "Sweetwater UHSD Data Breach Compromises Student, Staff Info"
    Sweetwater Union High School District recently announced that the personal information of students, families, and current and former employees was compromised in a February data breach.  Between Feb. 11 and 12, an unauthorized person gained access…
  • "Dozens of Businesses Hit Recently by ‘8Base’ Ransomware Gang"
    According to security researchers at VMware, a ransomware gang named 8Base was the second most active group in June 2023.  8Base has been active since March 2022 and mainly focused on small businesses.  The researchers noted that the group…
  • "Using Electromagnetic Fault Injection Attacks to Take Over Drones"
    IOActive researchers explored the development of fault injection attacks against hardened Unmanned Aerial Vehicles (UAVs) as the use of drones continues to increase. The researchers focused on executing code on a commercially available drone, supporting…
  • Pub Crawl #75
    ​Pub Crawl summarizes, by hard problems, sets of publications that have been peer reviewed and presented at SoS conferences or referenced in current work. The topics are chosen for their usefulness for current researchers.
  • "Serious Vulnerability Exposes Admin Interface of Arcserve UDP Backup Solution"
    A new vulnerability, tracked as CVE-2023-26258, was identified in the web management interface of Arcserve UDP by security researchers at MDSec. The researchers noted that successfully exploiting the bug could allow an attacker to access the…