News
  • "Hackers Use DNS Tunneling for Network Scanning, Tracking Victims"
    Threat actors have been conducting Domain Name System (DNS) tunneling to track when targets open phishing emails and click on malicious links. They are also applying the method to scan networks for vulnerabilities.
  • "Mallox Ransomware Deployed Via MS-SQL Honeypot Attack"
    Cyberattackers launching "Mallox" ransomware, also known as "Fargo," "TargetCompany," and "Mawahelper" have applied sophisticated methods, as shown by a recent Microsoft SQL (MS-SQL) honeypot incident.
  • "FBCS Collection Agency Data Breach Impacts 2.7 Million"
    A recent data breach faced by the Debt collection agency Financial Business and Consumer Solutions (FBCS) compromised the personal information of almost 2.7 million people.
  • "Fake Online Stores Scam Over 850,000 Shoppers"
    Security researchers at Security Research (SR) Labs have warned online shoppers to be on their guard after revealing news of an extensive network of fake e-commerce stores designed to steal victims’ card details and cash.
  • "Millions of IoT Devices at Risk From Integrated Cellular Modem Flaws"
    Several vulnerabilities in cellular modem technology impact millions of Internet of Things (IoT) devices in financial services, telecommunications, healthcare, and other sectors. Telit Cinterion modems have Remote Code Execution (RCE) flaws.
  • "Threat Actor Claims Major Europol Data Breach"
    A well-known threat actor is starting to sell what they claim to be a legitimate trove of highly sensitive internal data stolen from Europol this month. "IntelBroker" recently took to the hacking site BreachForums to advertise their wares.
  • "Black Basta Ransomware Victim Count Tops 500"
    According to a Joint Cybersecurity Advisory (CSA) issued by the Cybersecurity and Infrastructure Security Agency (CISA), the Department of Health and Human Services (HHS), and the Multi-State Information Sharing and Analysis Center (MS-ISAC), the
  • "New Tool Pinpoints Security Fixes in Open Source Software Updates"
    Researchers from North Carolina State University have demonstrated a new tool called "VFCFinder" that analyzes open source software updates to determine which sections of code are being modified to address recently i
  • "'TunnelVision' DHCP Flaw Lets Attackers Bypass VPNs, Redirect Traffic"
    Attackers can manipulate routing tables to bypass traffic meant for a Virtual Private Network (VPN) and redirect it to an untrusted local network using a technique called "TunnelVision." It involves the exploitation of a Dynamic Host Co
  • "VR May Pose Privacy Risks for Kids: A New Study Finds Parents Aren't as Worried as They Should Be"
    As more children use Virtual Reality (VR) apps, new research suggests that few parents understand VR technologies' security and privacy risks. According to the study, few parents actively address security and privacy issu
  • "Cornell Tech Launches Security, Trust, and Safety Initiative"
    Cornell Tech's Security, Trust, and Safety (SETS) Initiative will guide new teaching, research, engagement, and entrepreneurial activities aimed at addressing critical problems posed by unsafe digital technologies to societies globally.
  • "New 'LLMjacking' Attack Exploits Stolen Cloud Credentials"
    The Sysdig Threat Research Team (TRT) has discovered "LLMjacking," a new cyberattack that targets cloud-hosted Large Language Model (LLM) services using stolen cloud credentials.