News
-
"Surge in New Scams as Pig Butchering Dominates"According to security researchers at Chainalysis, online fraudsters are rapidly adapting their activities to run more impactful scams of shorter duration.
-
"Ransomware Attacks Exposed 6.7 Million Records in US Schools"According to security researchers at Comparitech, ransomware attacks on US schools and colleges have surged in recent years, with 491 incidents recorded since 2018, impacting over 8000 educational institutions and exposing 6.7 million individual record
-
"Hundreds of LLM Servers Expose Corporate, Health & Other Online Data"Hundreds of open source Large Language Model (LLM) builder servers and dozens of vector databases leak sensitive data to the web.
-
"Iran-Backed Peach Sandstorm Hackers Deploy New Tickler Backdoor""Peach Sandstorm," an Iran-backed hacking group, has created a new custom multi-stage backdoor to infiltrate targets during cyber espionage operations.
-
"Iranian Hackers Work With Ransomware Gangs to Extort Breached Orgs""Pioneer Kitten" is an Iranian hacking group infiltrating US defense, education, finance, and healthcare organizations and extorting victims with affiliates of several ransomware operations.
-
"LummaC2 Infostealer Resurfaces With Obfuscated PowerShell Tactics""LummaC2" malware has reemerged, infiltrating and exfiltrating sensitive data. The infostealer malware actively exploits PowerShell commands. According to researchers at Ontinue, the latest variant of LummaC2 uses sophisticated tactics.
-
"BlackByte Ransomware Exploits VMware ESXi Flaw in Latest Attack Wave"According to Cisco Talos, "BlackByte" ransomware attackers have exploited a recently patched VMware ESXi hypervisor flaw while also abusing different vulnerable drivers to disable security.
-
"South Korean Spies Exploit WPS Office Zero-Day"ESET discovered a cyber espionage campaign, traced to the Seoul-aligned APT-C-60 group, that exploited a novel Remote Code Execution (RCE) vulnerability in WPS Office for Windows to launch a custom backdoor.
-
"Malware Delivered via Malicious Pidgin Plugin, Signal Fork"Threat actors have been delivering malware to users of instant messaging apps. They have used a malicious Pidgin plugin and an unofficial fork of the Signal app.