News
-
"Rapid Growth of Password Reset Attacks Boosts Fraud and Account Takeovers"According to the annual "LexisNexis Risk Solutions Cybercrime Report," one in four password reset attempts from desktop browsers are fraud. The fraud attempts are part of the rise in password reset attacks.
-
"CISA Launches New Portal to Improve Cyber Reporting"As part of its ongoing effort to improve cyber incident reporting, the US Cybersecurity and Infrastructure Security Agency (CISA) moved its cyber incident reporting form to the new CISA Services Portal.
-
"Cicada3301 Ransomware Group Emerges From the Ashes of ALPHV"Researchers at Truesec have discovered new double extortion ransomware with links to the "ALPHV/BlackCat" variant and the "Brutus" botnet.
-
"Active Ransomware Groups Surge by 56% in 2024"A new Searchlight Cyber report reveals a 56 percent rise in ransomware gangs in the first half of 2024. In the first half of 2024, researchers observed 73 ransomware groups operating compared to 46 during the same period in 2023.
-
"UB Researchers Find Vulnerabilities in Safety of AI in Driverless Cars"Ongoing research conducted by the University of Buffalo looks into how vulnerable Artificial Intelligence (AI) systems in self-driving vehicles are to an attack. Their findings suggest that malicious actors may cause these systems to fail.
-
"Intel Responds to SGX Hacking Research"After a researcher claimed to have hacked Intel's Software Guard Extensions (SGX) data protection technology, clarifications have been made by the chip giant.
-
"Palo Alto's GlobalProtect VPN Spoofed to Deliver New Malware Variant"Researchers at Palo Alto Networks discovered that its Virtual Private Network (VPN) software, GlobalProtect, was used to distribute a new variant of the "WikiLoader" loader malware, also known as "WailingCrab." WikiLoader is a sophisticated downl
-
"Vulnerabilities in Microsoft Apps for macOS Allow Stealing Permissions"Cisco Talos researchers found eight vulnerabilities in Microsoft apps for macOS that enable attackers to inject malicious libraries and steal permissions. Exploitation could allow access to the microphone, camera, and other sensitive resources.
-
"Ransomware Crisis Deepens as Attacks and Payouts Rise"According to Corvus Insurance, new ransomware groups such as "PLAY," "Medusa," "RansomHub," "INC Ransom," "BlackSuit," and others led a series of attacks in the second quarter that surpassed the first quarter of this year by 16 percent and the second q
-
"Hacktivists Exploits WinRAR Vulnerability in Attacks Against Russia and Belarus""Head Mare" is a hacktivist group linked to cyberattacks targeting organizations in Russia and Belarus. The group uses up-to-date methods to obtain initial access.
-
"Evolving npm Package Campaign Targets Roblox Devs, for Years"For at least a year, attackers have used malicious Node Package Manager (npm) packages mimicking the popular "noblox.js" library to infect Roblox game developers with malware.
-
"VMware Patches High-Severity Code Execution Flaw in Fusion"Virtualization software technology vendor VMware recently announced a security update for its Fusion hypervisor to address a high-severity vulnerability that exposes users to code execution exploits.