News
  • "New 'Faraday Cage' Research Facility to Help Combat Digital Crime"

    Specific computer forensic testing procedures for electronic systems require using an isolated environment free of electromagnetic interference, known as a "Faraday Cage." Therefore, a team of digital forensics researchers at the University of…

  • "Experts Find 16,000+ Scam FIFA World Cup Domains"

    Security researchers at Group-IB have warned of a deluge of phishing scams, fake apps, and malicious merchandising sites spoofing the branding of the FIFA World Cup in Qatar to target football fans.  The researchers tracked over 16,000 scam domains…

  • "Why Microsegmentation is Critical for Securing CI/CD"

    Cloud-native technology, microservices architectures, and DevOps or DevSecOps teams working in close collaboration throughout the development life cycle represent modern development environments. At the heart of this environment, the Continuous…

  • "Police Shutter 13,000 Sites in Piracy Crackdown"

    According to Europol, a wide-ranging effort to disrupt counterfeiting and online piracy across the EU resulted in the closure of 12,526 websites hosting illegal content.  As of Cyber Monday, police disconnected 32 servers used to distribute the…

  • "Irish Data Protection Commission Fines Meta Over 2021 Data-Scraping Leak"

    The Irish Data Protection Commission (DPC) fined Meta $275.5 million for a data leak suffered by Facebook in 2021 that exposed the data of millions of Facebook users. Meta is also subject to a number of corrective measures imposed by the DPC. On April 3…

  • "Pre-auth RCE in Oracle Fusion Middleware Exploited in the Wild (CVE-2021-35587)"

    The US Homeland Security Department's Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that a pre-authentication Remote Code Execution (RCE) flaw in Oracle Access Manager (OAM), tracked as CVE-2021-35587, which was fixed in January…

  • "Cyber-Threat Group Targets Critical RCE Vulnerability in 'Bleed You' Campaign"

    A campaign called "Bleed You" is attempting to exploit a known Remote Code Execution (RCE) vulnerability in Windows Internet Key Exchange (IKE) Protocol Extensions, and over 1,000 systems are unpatched and vulnerable. According to a new report from…

  • "Acer Fixes UEFI Bugs That Can Be Used to Disable Secure Boot"

    Acer has patched a critical vulnerability affecting several laptop models that could allow local attackers to disable Unified Extensible Firmware Interface (UEFI) Secure Boot on targeted systems. The Secure Boot security feature thwarts untrusted…

  • "Hackers Using Trending TikTok 'Invisible Challenge' to Spread Malware"

    According to new Checkmarx research, threat actors are exploiting a popular TikTok challenge to trick users into downloading information-stealing malware. The Invisible Challenge trend involves using a filter called Invisible Body, which only leaves a…

  • "SocGholish Finds Success Through Novel Email Techniques"

    Proofpoint researchers have revealed more technical details about SocGholish, the malware variant they discovered earlier in November, emphasizing its tactics that differ from traditional phishing campaigns. SocGholish deviates from the norm by doing…

  • "Cisco Identifies Vulnerabilities in Identity Services Engine"

    High-level vulnerabilities in Cisco Systems' network access control solution could allow an authenticated, remote attacker to inject arbitrary operating system commands, bypass security safeguards, and execute Cross-Site Scripting (XSS) attacks. Four of…

  • "What's Next in Cybersecurity"

    Hacking is an unavoidable constant in the cybersecurity industry, which is expected to spend $150 billion this year without actually being able to stop hackers. This year has seen Russian government hacks against Ukraine, an increase in ransomware…