-
"Millions of IoT Devices at Risk From Integrated Cellular Modem Flaws"Several vulnerabilities in cellular modem technology impact millions of Internet of Things (IoT) devices in financial services, telecommunications, healthcare, and other sectors. Telit Cinterion modems have Remote Code Execution (RCE) flaws.
-
"Threat Actor Claims Major Europol Data Breach"A well-known threat actor is starting to sell what they claim to be a legitimate trove of highly sensitive internal data stolen from Europol this month. "IntelBroker" recently took to the hacking site BreachForums to advertise their wares.
-
"Black Basta Ransomware Victim Count Tops 500"According to a Joint Cybersecurity Advisory (CSA) issued by the Cybersecurity and Infrastructure Security Agency (CISA), the Department of Health and Human Services (HHS), and the Multi-State Information Sharing and Analysis Center (MS-ISAC), the
-
"New Tool Pinpoints Security Fixes in Open Source Software Updates"Researchers from North Carolina State University have demonstrated a new tool called "VFCFinder" that analyzes open source software updates to determine which sections of code are being modified to address recently i
-
"'TunnelVision' DHCP Flaw Lets Attackers Bypass VPNs, Redirect Traffic"Attackers can manipulate routing tables to bypass traffic meant for a Virtual Private Network (VPN) and redirect it to an untrusted local network using a technique called "TunnelVision." It involves the exploitation of a Dynamic Host Co
-
"VR May Pose Privacy Risks for Kids: A New Study Finds Parents Aren't as Worried as They Should Be"As more children use Virtual Reality (VR) apps, new research suggests that few parents understand VR technologies' security and privacy risks. According to the study, few parents actively address security and privacy issu
-
"Cornell Tech Launches Security, Trust, and Safety Initiative"Cornell Tech's Security, Trust, and Safety (SETS) Initiative will guide new teaching, research, engagement, and entrepreneurial activities aimed at addressing critical problems posed by unsafe digital technologies to societies globally.
-
"New 'LLMjacking' Attack Exploits Stolen Cloud Credentials"The Sysdig Threat Research Team (TRT) has discovered "LLMjacking," a new cyberattack that targets cloud-hosted Large Language Model (LLM) services using stolen cloud credentials.
-
"CISA Announces CVE Enrichment Project 'Vulnrichment'"The US Cybersecurity and Infrastructure Security Agency (CISA) has announced a new project aimed at adding important information to CVE records in order to help organizations improve vulnerability management.
-
"Ohio Lottery Ransomware Attack Impacts Over 538,000 Individuals"At least 538,000 people affected by the Ohio Lottery Christmas Eve cyberattack are receiving data breach notification letters. Names, Social Security numbers, and other personal information were stolen.
-
"Social Engineering in the Era of Generative AI: Predictions for 2024"Large Language Model (LLM) advancements are fueling social engineering scammers, posing a significant cybersecurity threat. As companies rush to adopt Artificial Intelligence (AI) technology, they increase cyber risk.
-
"Cybercriminals Are Getting Faster at Exploiting Vulnerabilities"Fortinet says cybercriminals are taking advantage of the exponential growth in connected devices, new applications, and online services, which create new vulnerabilities. The company's latest semiannual report provides a snapshot of the acti
News