News
-
"How Threat Actors Are Using npm to Launch Attacks"A report released by WhiteSource details malicious activity discovered in npm, a popular JavaScript package manager widely used among developers. The report is based on findings from over 1,300 malicious npm packages identified in 2021. JavaScript…
-
"Attackers Target Intuit Users by Threatening to Cancel Tax Accounts"The usual tax-season barrage of cybercriminal activity is already underway with a phishing campaign impersonating the popular accounting and tax-filing software. Intuit is warning customers of a phishing campaign that threatens to close user…
-
"NFT Wash Trading Made Scammers at Least $9m in 2021"Security researchers at Chainalysis have found that cybercriminals are making and laundering millions through non-fungible tokens (NFTs). NFTs are technically unique records on a blockchain that are each linked to a piece of digital content. …
-
"DHS Launches First-Ever Cyber Safety Review Board"The US Department of Homeland Security (DHS) has launched the Cyber Safety Review Board (CSRB), a public-private initiative aimed at bolstering the nation's cybersecurity by bringing government and industry leaders together. The CSRB was established as…
-
"SolarMarker Malware Spread Through Advanced SEO Poisoning"Sophos discovered malware called SolarMarker, a backdoor and information-stealing malware being spread through Search Engine Optimization (SEO) poisoning. SEO poisoning is a technique in which threat actors create malicious websites and use SEO…
-
"Researchers Found New Ransomware DeadBolt Targeting NAS Servers"Researchers at QNAP Sytems found a new ransomware variant called DeadBolt that is actively compromising unsecured Internet-connected Network-Attached Storage (NAS) devices, encrypting users' data for Bitcoin ransom. The DeadBolt ransomware campaign has…
-
"Online Thieves Steal $320m from Crypto Firm Wormhole"Yet another cryptocurrency firm is offering a multimillion-dollar bug bounty reward to those who hacked it after suffering a cyber-heist worth an estimated $322m. Wormhole operates what is known as a cross-blockchain bridge, enabling holders of…
-
"Growing Number of Phish Kits Bypass MFA"Security researchers at Proofpoint found that multi-factor authentication (MFA) finally appears to have reached a tipping point of user adoption. Security researchers have found that 79% of UK and US users deployed some kind of second-factor…
-
"Researcher Will Use NSF Award to Fortify and Improve Security Operations Centers"A researcher at the University of Kansas School of Engineering received the Faculty Early Career Development (CAREER) Program award from the National Science Foundation (NSF) in support of investigating how to improve the effectiveness of Security…
-
"Alpha-Omega Project Aims to Secure Open Source Ecosystem"The Open Source Security Foundation (OpenSSF) has announced the Alpha-Omega Project, which is aimed at helping maintainers of the most critical open source projects identify and fix security vulnerabilities in their code, and improve their security…
-
"Researchers Develop Automated Approach to Extract Security Policies From Software"A team of researchers at the University of Texas at San Antonio (UTSA) is delving into the prevention of software security vulnerabilities through a new automated approach. They sought to develop a deep learning model capable of teaching software how to…
-
"FBI Director Wray Says Scale of Chinese Spying in The U.S. 'Blew me Away'"In an interview, FBI Director Christopher Wray stated that the sheer scale of Chinese efforts to steal U.S. technology shocked him when he became FBI director in 2017. Wray noted that the FBI is opening a new China related counter-intelligence…