News
  • "CISA Is Warning of High-Severity PAN-OS DDoS Flaw Used in Attacks"
    A recent vulnerability discovered in Palo Alto Networks' PAN-OS has been added to the US Cybersecurity and Infrastructure Security Agency's (CISA) catalog of Known Exploitable Vulnerabilities (KEV). The vulnerability, CVE-2022-0028, is a high-severity…
  • "Charming Kitten APT Wields New Scraper to Steal Email Inboxes"
    Charming Kitten, an Iranian Advanced Persistent Threat (APT) group, is using a new data-scraping tool to scrape emails from victim Gmail, Yahoo!, and Microsoft Outlook accounts using previously acquired credentials, according to Google researchers.…
  • "New Air-Gap Attack Uses MEMS Gyroscope Ultrasonic Covert Channel to Leak Data"
    A novel data exfiltration technique has been discovered that uses a covert ultrasonic channel to leak sensitive information from isolated, air-gapped computers to a nearby smartphone without the use of a microphone. The adversarial model, dubbed…
  • "More Than 80,000 Hikvision Cameras With Flaws Exposed Online"
    Over 80,000 Hikvision cameras have been discovered to be vulnerable to a severe command injection problem, which can be quickly exploited by sending carefully designed messages to the weak web server. Hikvision patched the vulnerability, known as CVE-…
  • "New 'BianLian' Ransomware Variant on the Rise"
    Security researchers at Cybel have discovered that cybercriminals are swarming to deploy an emerging ransomware variant called BianLian that was written in Go, the Google-created open source programming language.  The researchers stated that…
  • "64 Percent of Security Leaders Can't Stop a Supply Chain-Related Attack"
    Businesses have spent the last two years focusing on changing the way they operate due to the COVID-19 pandemic. However, these changes called for a high level of IT support and resources, leading to deficiencies in other areas, such as the ability to…
  • "TikTok's In-App Browser Can Monitor Your Keystrokes, Including Passwords And Credit Cards, Researcher Says"
    During new research, a security researcher named Felix Krause revealed some of the data popular apps can track and collect while using in-app browsers.  Krause assessed what code is injected onto a website to gather user activity when it is opened…
  • "Automatic Device Driver Isolation Protects Against Bugs in Operating Systems"
    The kernel of an operating system serves as a translator between the user and the machine. Developers can isolate the operating system's device drivers to improve kernel reliability and prevent a failure in one component from affecting other components.…
  • "Canada Announces Funding to Protect Against the Quantum Cyber Threat"
    Current encryption algorithms are expected to become obsolete as a result of quantum computers' ability to calculate at a much faster rate than current computers. Sensitive data that has been encrypted in the past and data that is being encrypted now…
  • "Spanish-Language Trojan Targets Many Industry Verticals"
    Researchers discovered an ongoing spear-phishing campaign targeting Spanish-speaking countries such as Mexico and Spain, which work in various industries, including automotive, chemical manufacturing, and more. According to Zscaler ThreatLabz, in the…
  • "Bringing Lessons From Cybersecurity to the Fight Against Disinformation"
    Mary Ellen Zurko, a cybersecurity researcher at MIT Lincoln Laboratory, is involved in exploring the human-computer relationship. Her focus has shifted to technology to counter influence operations, which are attempts by foreign adversaries to…
  • "Textile Company Sferra Discloses Data Breach"
    Textile company Sferra Fine Linens recently announced that it has started notifying individuals of a cybersecurity incident involving their personal information.  Founded in 1891, Sferra designs and sells Italian-made luxury linen products,…