News
-
"'Metior' Defense Blueprint Against Side-Channel Vulnerabilities Debuts"Metior is an analysis framework developed by MIT researchers to simplify hardware and software design frameworks in order to enhance defense capabilities against known and unknown side-channel attacks. Using Metior, engineers could quantitatively…
-
"JumpCloud Confirms Data Breach By Nation-State Actor"Identity and access management solutions provider JumpCloud has recently revealed that it was the target of a security breach caused by a sophisticated nation-state-sponsored threat actor. The company noted that the breach first came to light on…
-
"WooCommerce Bug Exploited in Targeted WordPress Attacks"Security researchers at Wordfence have recorded over one million attempts to compromise a popular WordPress plugin over the past few days. The researchers stated that the attacks began on July 14 and continued over the weekend, peaking at 1.3…
-
"How Popular AI Apps Are Invading Your Privacy"Cybernews researchers further explored how privacy-invasive Artificial Intelligence (AI)-powered applications like ChatGPT are. Large Language Models (LLM)s such as OpenAI's ChatGPT, Meta's LLaMA, and Google's PaLM2 are the most notable examples of…
-
"The Biden Administration Announces a Cybersecurity Labeling Program for Smart Devices"US President Joe Biden's administration and major consumer technology companies have launched an initiative to establish a nationwide cybersecurity certification and labeling program to help consumers select smart devices less vulnerable to hacking.…
-
"How AI-Augmented Threat Intelligence Solves Security Shortfalls"Security operations and threat intelligence teams are understaffed, overwhelmed with data, and juggling competing demands, all of which can be remedied by Large Language Model (LLM) systems. However, the lack of experience with the systems prevents many…
-
"VirusTotal Leaked Data of 5,600 Registered Users"A data breach faced by VirusTotal exposed the names and email addresses of 5,600 registered users. The leaked data reportedly includes employee information from US and German intelligence agencies. VirusTotal is a popular online service owned by Google…
-
"CISA Shares Free Tools to Help Secure Data in the Cloud"The Cybersecurity and Infrastructure Security Agency (CISA) has published a factsheet outlining free tools and guidance for securing digital assets after migrating to cloud environments. The factsheet helps network defenders, incident response analysts,…
-
"FIN8 Group Using Modified Sardonic Backdoor for BlackCat Ransomware Attacks"The financially motivated threat actor known as FIN8 has been delivering the BlackCat ransomware via a "revamped" version of the Sardonic backdoor. According to the Symantec Threat Hunter Team, the group is attempting to diversify its focus and maximize…
-
"UMD Researchers Uncover Privacy Risks in Cell Phones Purchased at Police Auctions"Law enforcement agencies regularly sell items confiscated in criminal investigations or unclaimed from lost-and-found inventories. Many of these items, including cars, jewelry, watches, and devices such as mobile phones, end up on online auction sites.…
-
"ESF Members NSA and CISA Publish Second Industry Paper on 5G Network Slicing"The National Security Agency (NSA) and the Cybersecurity and Infrastructure Security Agency (CISA), which are Enduring Security Framework (ESF) partners, have published an assessment of 5G network slicing. ESF is a public-private cross-sector working…
-
"Email Hack Prompts Call for Microsoft to Make Security Logs Free"There is criticism regarding Microsoft charging its cloud services customers additional fees to access security records after a China-based threat group compromised the email accounts of more than two dozen organizations, including US government agencies…