News
-
"CISA Alerts Healthcare Sector to OFFIS DCMTK Cybersecurity Vulnerabilities"High-severity cybersecurity flaws discovered in OFFIS DCMTK software could lead to Remote Code Execution (RCE) if exploited, according to a recent advisory released by the US Homeland Security Department's Cybersecurity and Infrastructure Security Agency…
-
"APT Hackers Targeting Industrial Control Systems with ShadowPad Backdoor"An attack campaign targeting unpatched Microsoft Exchange Servers as an initial access vector to launch the ShadowPad malware is targeting entities in Afghanistan, Malaysia, and Pakistan. This activity has been attributed to a previously unknown Chinese-…
-
"Android Malware Called 'Revive' Poses as 2FA App For Spain's BBVA Bank"A new Android banking malware called Revive impersonates the two-factor authentication (2FA) application required to access BBVA bank accounts in Spain. Rather than infecting customers of various financial institutions, this Trojan has a more focused…
-
"New Vulnerability Database Catalogs Cloud Security Issues"Because of the lack of a Common Vulnerability Enumeration (CVE) program, such as the one maintained by MITRE for publicly disclosed software security issues, organizations have traditionally struggled to track vulnerabilities in public cloud platforms…
-
"Project Improves Cybersecurity of Global Ship-Tracking System"Cybersecurity advancements made by the Georgia Tech Research Institute (GTRI) in collaboration with the US Navy could soon help strengthen protection for the Automated Identification System (AIS), which is used to track and identify commercial and…
-
"NIST Releases New Guidance and Resources on macOS Security"The National Institute of Standards and Technology (NIST) has published the final version of Special Publication (SP) 800-219, called "Automated Secure Configuration Guidance from the macOS Security Compliance Project (mSCP)." This document delves into…
-
"Cyberattack Hits Lithuania After Sanctions Feud With Russia"On Monday, a cyberattack temporarily knocked out public and private websites in Lithuania, with a pro-Moscow hacker group reportedly claiming responsibility. A distributed-denial-of-service (DDOS) attack targeted a secure national data network.…
-
"House Passes ICS Cybersecurity Training Bill"The US House of Representatives has recently passed a new cybersecurity bill named the “Industrial Control Systems Cybersecurity Training Act. Specifically, the Industrial Control Systems Cybersecurity Training Act would amend the Homeland Security Act…
-
"Wichita State Researchers Aim to Educate, Protect Refugees From Cyber-Scams"Dr. Mythili Menon, assistant professor of English and linguistics and director of linguistics at Wichita State University (WSU), was recently awarded $296,470 as part of the National Science Foundation's Early-concept Grants for Exploratory Research (…
-
"Final Call for Views on Government App Security Proposals"The UK government is urging the cybersecurity industry to submit feedback on new proposals to place new security requirements on app store operators and developers. The consultation period for the plans ends at 11.45 pm BST on Wednesday, June 29,…
-
"Black Basta Ransomware Becomes Major Threat in Two Months"Security researchers have analyzed Black Basta ransomware and stated that it had become a significant new threat in just a couple of months. Evidence suggests it was still in development in February 2022 and only became operational in April 2022.…
-
"Cybercriminals Use Azure Front Door in Phishing Attacks"Resecurity, Inc. (USA) has discovered an increase in phishing content delivered via Azure Front Door (AFD), a Microsoft cloud CDN service. In one of the malicious campaigns, the identified resources impersonated various services that appeared to be…