News
-
"Report: Microsoft’s GitHub Account Gets Hacked"Hackers from a group called Shiny Hunters have claimed to have stolen 500 GB of data from Microsoft's GitHub account. The information stolen does not seem to include any sensitive or critical information. The hacking group planned to sell the…
-
"Millions of Thunderbolt-Equipped Devices Open to 'ThunderSpy' Attack"Research has shown that millions of Windows or Linux computers manufactured before 2019 are vulnerable to physical attacks through the exploitation of the Intel Thunderbolt port, which is a popular multipurpose connector. Researcher at the Eindhoven…
-
"H2 2019: Duration of Phishing Attacks Grows, Use of Banking Trojans Wanes"Group-IB's Computer Emergency Response Team (CERT-GIB) observed a significant growth in the number of phishing attacks launched last year. CERT-GIB blocked 5,939 more phishing web resources in 2019 than in 2018. According to the response team, there has…
-
"Attempted Cyberattack Highlights Vulnerability of Global Water Infrastructure"Recently there were assault attempts on control and control systems of wastewater treatment plants, pumping stations, and sewers, according to Israel's National Cyber directorate. In the US alone, there are an estimated 70,000 water utilities.…
-
"Vulnerabilities in Two Schneider Electric ICS Products Reminiscent of Stuxnet"Trustwave's Global OT/IoT security research team discovered security flaws in two Schneider Electric industrial control systems (ICS) products. Trustwave analysts demonstrated the possibility of malicious actors exploiting the vulnerabilities found in…
-
"Critical WordPress Plugin Bug Lets Hackers Take Over 1M Sites"Wordfence's Threat Intelligence team has reported attempts by threat actors to exploit two security vulnerabilities in the Elementor Pro and Ultimate Addons for Elementor WordPress plugins. The abuse of these vulnerabilities can allow attackers to…
-
"GoDaddy Confirms Breach Affecting 28,000 Accounts: Report"GoDaddy recently discovered a data breach that affected about 28,000 of its customers' web hosting accounts. The company believes that no data was altered or stolen. The security incident occurred in October 2019 but was not discovered until…
-
"Most Attacks Don't Generate Security Alerts: Mandiant"FireEye's Mandiant Security Validation team's 2020 Mandiant Security Effectiveness Report reveals that only a small percentage of attacks trigger security alerts, and more than 50% of successful intrusions go undetected by security solutions. The report…
-
"Attackers Adapt Techniques to Pandemic Reality"Recent studies by Palo Alto Networks and Mimecast highlight threat actors' continued exploitation of fear and interest surrounding the coronavirus outbreak to increase the success of phishing and social engineering attacks. According to Palo Alto…
-
"Kaiji Botnet Targets Linux Servers, IoT Devices"Researchers at a security firm called Intezer have discovered a new botnet called Kaiji. The Kaiji botnet is spreading by targeting SSH protocols, which use encryption to establish a remote link between a device and a server. It uses brute-…
-
"We Believe We're Less Likely Than Others Are to Fall for Online Scams"A new cybersecurity study by researchers at New York University shows that when people assess their exposure to risk, they believe they are less likely than others to engage in activities that would increase their vulnerability to online attacks.…
-
"Password Psychology: People Aren’t Protecting Themselves Even Though They Know Better"In a new global survey, researchers polled 3,250 individuals across the United States, Singapore, Australia, Germany, Brazil, and the United Kingdom. The researchers found that there is a heightened global awareness of what are good security…