News
  • "Memory Corruption Issues Lead 2021 CWE Top 25"
    Memory corruption errors are still considered one of the most common and critical vulnerabilities in modern software. The MITRE-operated Homeland Security Systems Engineering and Development Institute places memory corruption errors at the top of the 25…
  • "Netskope Report Finds Cloud-Delivered Malware Increased 68% in Q2"
    Netskope recently released the fifth edition of its Cloud and Threat Report covering the cloud data risks, threats, and trends they see throughout the quarter.  The report noted that cloud storage apps account for more than 66% of cloud malware…
  • "Kaseya Obtains Universal Decryptor for REvil Ransomware"
    Kaseya has obtained a master decryptor key for the REvil ransomware that locked up the systems of at least 60 of its customers in a spate of worldwide cyberattacks on July 2. The attacks, which exploited now-patched zero-days in the Kaseya Virtual System…
  • "New Cybersecurity Education and Research Institute"
    Washington State University (WSU) was selected to receive a $1.5 million Department of Defense (DOD) grant to set up a new cybersecurity education and research program. The Northwest Virtual Institute for Cybersecurity Education and Research (CySER)…
  • "Financial Services Accounting For Nearly 40% of All Phishing URLs"
    Researchers at Vade discovered that there had been a significant jump in phishing attacks since the start of the year, with a 281 percent spike in May and another 284 percent increase in June, for a total of 4.2 billion phishing emails detected by Vade…
  • "Cybercriminals may target 2020 Tokyo Olympics, FBI warns"
    The United States Federal Bureau of Investigation (FBI) has issued a warning about threat actors potentially attempting to disrupt the upcoming Tokyo 2020 Summer Olympics. The FBI is warning that cybercriminals could utilize various types of cybercrime…
  • "New Technology Shows Promise In Detecting, Blocking Grid Cyberattacks"
    Researchers from Idaho National Laboratory (INL) and New Mexico-based Visgence Inc. have developed and demonstrated a new cybersecurity technology. The Constrained Cyber Communication Device (C3D) can block cyberattacks on the power grid. The C3D device…
  • "NPM Package Steals Chrome Passwords on Windows via Recovery Tool" 
    New NPM malware has been observed stealing Google Chrome credentials through the use of legitimate password recovery tools on Windows systems. NPM, short for Node Package Manager, is a packet manager for the JavaScript programming language. The NPM…
  • "HiveNightmare: Windows 10 and Windows 11 Have a Security Vulnerability"
    Both Windows 10 and Windows 11 have been discovered to be impacted by a local privilege escalation vulnerability that can allow attackers to gain access to otherwise inaccessible areas of the registry. The exploitation of this vulnerability could lead to…
  • "Law Firm to the Fortune 500 Breached with Ransomware"
    Campbell Conroy & O'Neil, P.C., a U.S. law firm to many huge companies, put out a press release that an intruder may have accessed their client's data. The law firm was hit with ransomware in February and is now suffering the data-breach fallout.…
  • "TSA Issues Cybersecurity Requirements for Pipelines"
    The U.S. Transportation Security Administration (TSA) issued a directive Tuesday requiring owners and operators of TSA-designated critical pipelines to implement cybersecurity controls.  The latest directive by TSA applies to companies transporting…
  • "This Ancient Printer Security Bug Affects Millions of Devices Worldwide"
    Cybersecurity researchers at SentinelOne have shared details about a high-severity vulnerability in HP printer drivers, which impacts millions of devices. According to the researchers, the vulnerability has existed since 2005 and impacts more than 380 HP…