News
  • "FBI Seized Domains Linked to 48 DDoS-For-Hire Service Platforms"

    The US Department of Justice (DOJ)  has seized 48 Internet domains and charged six people in connection with the operation of booter or stresser platforms that allow anyone to easily conduct Distributed Denial-of-Service (DDoS) attacks. Booters are…

  • "Senate Unanimously Passes Bill Banning TikTok From Government Devices"

    The Senate just passed a bill by unanimous consent that would ban the social media app TikTok from all government devices amid increased scrutiny over the app's perceived threats to national security.  Lawmakers have been increasingly vocal about…

  • "Hackers Bombard Open-Source Repositories with Over 144,000 Malicious Packages"

    Unknown threat actors have published more than 144,000 packages in the NuGet, PyPI, and npm ecosystems as part of a new campaign. According to Checkmarx and Illustria researchers, the packages were part of a new attack vector in which attackers spammed…

  • "Iran-Linked Cyberspies Expand Targeting to Medical Researchers, Travel Agencies"

    Over the last two years, a cyberespionage group with ties to Iran's Islamic Revolutionary Guard Corps (IRGC) has been observed attacking new targets, including medical researchers, an aerospace engineer, and even a Florida-based realtor. TA453, also…

  • "ALMA Still Recovering From Devastating Cyberattack"

    The Atacama Large Millimeter/Submillimeter Array (ALMA) in Chile is still offline more than a month after a ransomware cyberattack on its computer systems. The disruption is interfering with astronomers' research projects worldwide and costs the…

  • "Splunk Report Finds Public Sector Organizations Lack Cybersecurity Intelligence"

    According to new research from Splunk, public sector organizations lack the cybersecurity intelligence they require, and the problem is far worse than in the private sector. The Splunk 2022 Public Sector Survey reveals that nearly half of public sector…

  • "VMware Fixed Critical VM Escape Bug Demonstrated at GeekPwn Hacking Contest"

    VMware patched three vulnerabilities in various products, including a virtual machine escape flaw exploited at the GeekPwn 2022 hacking competition and tracked as CVE-2022-31705. Yuhao Jiang, an Ant Security researcher, demonstrated a working exploit for…

  • "The DOD Aims for Full Zero Trust Deployment by 2027"

    According to the Department of Defense (DOD) CIO John Sherman, the Pentagon plans to implement a zero trust architecture across its entire enterprise by 2027. The goal is to have zero trust deployed across most of the DOD's enterprise systems. Sherman…

  • "Identifying Software Vulnerabilities Quickly and Efficiently"

    Fuzzware is a new system developed by researchers at Ruhr University Bochum's Horst Görtz Institute for Information Technology (IT) Security that specializes in analyzing embedded systems, which are minicomputers found in smart light bulbs, intelligent…

  • "HackerOne Surpasses $230 Million in Paid Bug Bounties"

    Bug bounty platform HackerOne recently found that ethical hackers have identified and reported more than 65,000 software vulnerabilities in 2022.  The popular hacker-powered platform, which hosts bug bounty programs for both private and public…

  • "ESF Members NSA and CISA Provide Threat Assessment, Best Practices for 5G Network Slicing"

    Enduring Security Framework (ESF) partners, in collaboration with experts from the National Security Agency (NSA) and Cybersecurity and Infrastructure Security Agency (CISA), published an assessment of potential threats associated with 5G network slicing…

  • "Unsafe on Any Site -- Over Three-Quarters of Americans Admit to Risky Online Behavior"

    According to the new Xfinity Cyber Health Report from Comcast, 78 percent of Americans engage in risky online behaviors that expose them to cyber threats, such as reusing or sharing passwords, skipping software updates, and more, which is a 14 percent…