News
-
"Hiding a Phishing Attack Behind the AWS Cloud"Cybercriminals are using Amazon Web Services (AWS) to execute their attacks by slipping phishing emails past automated security scanners. Scammers are taking advantage of the ability to use an AWS service to build and host web pages using WordPress or…
-
"Data on California Prisons' Visitors, Staff, Inmates Exposed"California corrections officials recently stated that there was a potential exposure of medical information for employees and visitors who were tested for the coronavirus, although they have not found any improper use despite the data breach. The…
-
"LockBit Ransomware Site Hit by DDoS Attack as Hackers Start Leaking Entrust Data"The leak website of the LockBit ransomware operation has been taken offline by a distributed denial-of-service (DDoS) attack that appears to have been launched in response to the cybercriminals publishing data stolen from security company Entrust. …
-
"FBI: Beware Residential IPs Hiding Credential Stuffing"The FBI is warning that cybercriminals are increasingly hijacking home IP addresses to hide credential stuffing activity and increase their chances of success. Credential stuffing is a popular method of account takeover whereby attackers use large…
-
"Configuration Errors to Blame for 80% of Ransomware"Security researchers at Microsoft found that the vast majority (80%) of ransomware attacks can be traced back to common configuration errors in software and devices. The researchers stated that ransomware attacks involve decisions based on…
-
"Media Firms Twice as Vulnerable as Cross-Sector Average"Security researchers at BlueVoyant have discovered that the percentage of media companies susceptible to compromise is double the figure across all other sectors. The researchers found that 30% of media companies are exposed to compromise via…
-
"DDoS Attacks Jump 203 Percent, Patriotic Hacktivism Surges"According to a new Radware report, the number of malicious Distributed Denial-of-Service (DDoS) attacks increased by 203 percent in the first six months of 2021. The report also emphasizes how Russia's invasion of Ukraine has shifted the threat landscape…
-
"CISA Is Warning of High-Severity PAN-OS DDoS Flaw Used in Attacks"A recent vulnerability discovered in Palo Alto Networks' PAN-OS has been added to the US Cybersecurity and Infrastructure Security Agency's (CISA) catalog of Known Exploitable Vulnerabilities (KEV). The vulnerability, CVE-2022-0028, is a high-severity…
-
"Charming Kitten APT Wields New Scraper to Steal Email Inboxes"Charming Kitten, an Iranian Advanced Persistent Threat (APT) group, is using a new data-scraping tool to scrape emails from victim Gmail, Yahoo!, and Microsoft Outlook accounts using previously acquired credentials, according to Google researchers.…
-
"New Air-Gap Attack Uses MEMS Gyroscope Ultrasonic Covert Channel to Leak Data"A novel data exfiltration technique has been discovered that uses a covert ultrasonic channel to leak sensitive information from isolated, air-gapped computers to a nearby smartphone without the use of a microphone. The adversarial model, dubbed…
-
"More Than 80,000 Hikvision Cameras With Flaws Exposed Online"Over 80,000 Hikvision cameras have been discovered to be vulnerable to a severe command injection problem, which can be quickly exploited by sending carefully designed messages to the weak web server. Hikvision patched the vulnerability, known as CVE-…
-
"New 'BianLian' Ransomware Variant on the Rise"Security researchers at Cybel have discovered that cybercriminals are swarming to deploy an emerging ransomware variant called BianLian that was written in Go, the Google-created open source programming language. The researchers stated that…