News
-
"Amazon Cloud Service Loses Silver Lining as Analyst Warns of Breach Threat"According to Mitiga research, the cloud storage provider Amazon Web Services (AWS) has a vulnerability that could allow threat actors with pre-existing account control to exploit Internet Protocol (IP) addresses to gain access to other systems. The flaw…
-
"Personal Information of 68,000 DraftKings Users Exposed in Credential Stuffing Attack"DraftKings, a Nasdaq-listed sports betting company, revealed that the personal information of almost 68,000 clients was exposed in a credential stuffing attack in November. A credential stuffing attack is a cyberattack in which an attacker leverages…
-
"GA Health System Reports Healthcare Data Breach"Emory Healthcare is a healthcare system in the US state of Georgia, which has disclosed a data breach that potentially compromised the Protected Health Information (PHI) of over 1,000 people. Through a notice issued by the US Department of Labor (DOL),…
-
"McGraw Hill Exposed Student Data and Grades, Online Privacy Firm Says"According to a recent report by vpnMentor, the education publishing company McGraw Hill faced a data breach that may have revealed the email addresses and grades of hundreds of thousands of students. The Internet privacy organization stated that its…
-
"Windows 10 Users Encounter 'Blue Screen of Death' After Latest Patch Tuesday Update"Microsoft has issued a warning that some Windows 10 users may experience the Blue Screen of Death (BSOD) after installing its latest "Patch Tuesday" security updates. The company disclosed that the blue screen issue could affect some users who downloaded…
-
"Microsoft Details Recent macOS Gatekeeper Bypass Vulnerability"Microsoft recently shared details on CVE-2022-42821, a Gatekeeper bypass vulnerability that Apple recently addressed in macOS Ventura, Monterey, and Big Sur. The vulnerability was identified in July 2022, and the security defect is described as a…
-
"New RisePro Infostealer Increasingly Popular Among Cybercriminals"According to researchers at Flashpoint, a recently identified information stealer named "RisePro" is being distributed by pay-per-install malware downloader service "PrivateLoader." RisePro is written in C++ and harvests potentially sensitive…
-
"Phishing Targets Ukrainian Battlefield Awareness Tool Users"The Ukrainian military agency that recently debuted a battlefield situational awareness technology alerted the Ukrainian Computer Emergency Response Team (CERT-UA) about a phishing campaign in which the operators seek to steal files and Internet browser…
-
"Sophisticated DarkTortilla Malware Serves Imposter Cisco, Grammarly Pages"Researchers at Cyble Research and Intelligence Labs have identified two phishing sites, one masquerading as a Cisco webpage and the other as a Grammarly site, which threat actors are using to deliver a severe piece of malware known as "DarkTortilla." The…
-
"Connected Homes Are Expanding, so Is Attack Volume"Comcast reports a 14 percent increase in the percentage of Americans reporting unsafe online practices that expose them to cyber threats, such as reusing or sharing passwords, ignoring software updates, and more, during the past two years. Comcast's EVP…
-
"Malicious 'SentinelOne' PyPI Package Steals Data From Developers"Threat actors have uploaded on PyPI a malicious Python package named 'SentinelOne' that masquerades as the authentic Software Development Kit (SDK) client for a reputable American cybersecurity company, but actually steals data from developers. The…
-
"Russian Hackers Target Major Petroleum Refining in NATO Member State During Ukraine War"Amid the continuing Russian-Ukrainian conflict, the Russia-affiliated Gamaredon group attempted to break into a petroleum refinery in a NATO member state early this year. The attack, which occurred on August 30, 2022, is one of the numerous strikes…