News
-
"Game Theory Comes to the Defense of the Smart Grid"There are various infiltration strategies adversaries can use to threaten the smart grid. For example, in a false-data injection attack, someone could hack into the grid's communication networks and replace actual measurements with false data. Denial-of-…
-
"A Nested Inventory for Software Security, Supply Chain Risk Management"High-profile data breaches such as Kaseya and Apache Log4j continue to impact organizations, thus making software supply chain security more important than ever. A Software Bill of Materials (SBOM) consists of all the components and libraries used to…
-
"First Search Result Leads to Malware: Crooks Now Paying for Ads"Cybercriminals continue to look for new methods to manipulate search results. They are flooding Google with paid advertisements through malvertising campaigns, which direct unsuspecting users to malicious websites that exploit their data and trust. The…
-
"71 Percent of Organizations May Have Been Breached and Not Know About It"Vectra AI has released a new research report revealing that 97 percent of analysts are concerned about missing security events. Seventy-one percent acknowledge that their organization may have been compromised, but they are unaware of it. Analysts are…
-
"Clop Drives Record Ransomware Activity in June"According to researchers at NCC Group, ransomware attacks in June soared 221% year-on-year to hit a record 434 for the month. The researchers claimed that the figures were driven by Clop’s targeting of global organizations via the MOVEit flaw, “…
-
"Take the First Steps Towards Better Cybersecurity With these Four Goals"President Biden's National Security Memorandum on Improving Cybersecurity for Critical Infrastructure Control Systems required the Cybersecurity and Infrastructure Security Agency (CISA) to develop a set of voluntary Cross-Sector Cybersecurity…
-
"HHS, FTC Warn Hospitals and Telehealth Providers About Third-Party Tracking Tech"The US Department of Health and Human Services (HHS) Office for Civil Rights (OCR) and the Federal Trade Commission (FTC) sent a letter to 130 hospitals and telehealth providers highlighting the security and privacy risks posed by third-party tracking…
-
"Rite Aid Announces Data Breach That May Have Compromised Customers' Personal Information"Rite Aid recently announced that a data breach may have compromised customers' personal information. The drug store chain said an "unknown party" had accessed names, birth dates, addresses, and prescription information. The company noted that…
-
"Rutgers Among Universities Impacted by MOVEit Hack That Exposed Data"Rutgers recently announced that it was among numerous universities across the nation that may have exposed the personal information of students and employees through vendors that use a particular file transfer software that was hacked by a Russian…
-
"Sophisticated BundleBot Malware Disguised as Google AI Chatbot and Utilities"Using .NET single-file deployment techniques, a new malware strain called BundleBot operates under the radar, allowing threat actors to steal sensitive data from compromised hosts. Researchers at Check Point noted that BundleBot exploits the dotnet…
-
"GitHub Warns of Lazarus Hackers Targeting Devs With Malicious Projects"According to GitHub, a social engineering campaign is attempting to infect the devices of developers in the blockchain, cryptocurrency, online gambling, and cybersecurity industries with malware. The campaign has been attributed to the North Korean state…
-
"CyLab Presents at White House's Launch of New IoT Cybersecurity Labeling System"Carnegie Mellon University's (CMU) CyLab Security and Privacy Institute recently met with government officials and technology industry leaders as the White House launched its new Internet of Things (IoT) cybersecurity label. CMU was represented at the…