SolarMarker Attack Leverages Weak WordPress Sites, Fake Chrome Browser UpdatesThe SolarMarker group is exploiting a vulnerable WordPress-run website to encourage victims to download fake Chrome browser...
Month: October 2022
Microsoft Confirms Pair of Blindsiding Exchange Zero-Days, No Patch Yet
Microsoft Confirms Pair of Blindsiding Exchange Zero-Days, No Patch YetThe "ProxyNotShell" security vulnerabilities can be chained for remote code execution and total takeover of corporate email...
Trojanized, Signed Comm100 Chat Installer Anchors Supply Chain Attack
Trojanized, Signed Comm100 Chat Installer Anchors Supply Chain AttackMalicious Comm100 files have been found scattered throughout North America, and across sectors including tech, healthcare, manufacturing, telecom,...
Cybercriminals See Allure in BEC Attacks Over Ransomware
Cybercriminals See Allure in BEC Attacks Over RansomwareWhile ransomware seems stalled, business email compromise (BEC) attacks continue to make profits from the ProxyShell and Log4j vulnerabilities,...
Reshaping the Threat Landscape: Deepfake Cyberattacks Are Here
Reshaping the Threat Landscape: Deepfake Cyberattacks Are HereIt's time to dispel notions of deepfakes as an emergent threat. All the pieces for widespread attacks are in...
LA School District Ransomware Attackers Now Threaten to Leak Stolen Data
LA School District Ransomware Attackers Now Threaten to Leak Stolen DataWeeks after it breached the Los Angeles Unified School District, the Vice Society ransomware group is...
Worried About the Exchange Zero-Day? Here’s What to Do
Worried About the Exchange Zero-Day? Here's What to DoWhile organizations wait for an official patch for the two zero-day flaws in Microsoft Exchange, they should scan...
ESXi-Targeting Ransomware: The Threats That Are After Your Virtual Machines (Part 1)
ESXi-Targeting Ransomware: The Threats That Are After Your Virtual Machines (Part 1)Introduction In recent months, we have observed in our telemetry an increase in ransomware that...
ESXi-Targeting Ransomware: The Threats That Are After Your Virtual Machines (Part 1)
ESXi-Targeting Ransomware: The Threats That Are After Your Virtual Machines (Part 1)Introduction In recent months, we have observed in our telemetry an increase in ransomware that...
How CIA betrayed informants with shoddy front websites built for covert comms
How CIA betrayed informants with shoddy front websites built for covert commsTop tip, don't give your secret login box the HTML form type 'password' For almost...
Ex-eBay execs jailed for cyberstalking web critics
Ex-eBay execs jailed for cyberstalking web criticsStill to come: Civil RICO lawsuit against e-souk and former top brass Two now-former eBay executives who pleaded guilty to...
Stop us if you’ve heard this one before: Exchange Server zero-days actively exploited
Stop us if you've heard this one before: Exchange Server zero-days actively exploitedRemember this next time Microsoft talks about how seriously it takes security Updated Infosec...
Microsoft warns of North Korean crew posing as LinkedIn recruiters
Microsoft warns of North Korean crew posing as LinkedIn recruitersState-sponsored ZINC allegedly passes on malware-laden open source apps Microsoft has claimed a North Korean crew poses...
Live Webinar | The Critical Role of SBOM in Securing Your Software Supply Chain
Live Webinar | The Critical Role of SBOM in Securing Your Software Supply ChainPost ContentRead MoreDataBreachToday.com RSS Syndication
Panel | Leveraging a Post-Pandemic IT Security Strategy to Mitigate Security Vendor Fatigue
Panel | Leveraging a Post-Pandemic IT Security Strategy to Mitigate Security Vendor FatiguePost ContentRead MoreDataBreachToday.com RSS Syndication
Possible Chinese Hackers Exploit Microsoft Exchange 0-Days
Possible Chinese Hackers Exploit Microsoft Exchange 0-DaysNo Patch Yet Available Although Exploitation Requires Authenticated AccessHackers, possibly Chinese, are exploiting Microsoft Exchange zero-day vulnerabilities to apparently implant...
Cloudflare, VCs Join Forces to Give $1.25B Away to Startups
Cloudflare, VCs Join Forces to Give $1.25B Away to StartupsVenture Capital Firms Commit Up to $50M Each for Startups Using Cloudflare WorkersCloudflare has joined forces with...
DOJ: Army Doc, Wife Sought to Leak Health Records to Russia
DOJ: Army Doc, Wife Sought to Leak Health Records to RussiaProsecutors Allege Both Doctors Aimed to Help Russia in Ukraine WarA Maryland couple faces federal indictment...
North Korean Trojanizing Open Source Software
North Korean Trojanizing Open Source SoftwareLazarus Group Uses Social Engineering to Manipulate Victims Into Downloading MalwareNorth Korean is using weaponized versions of open source utilities to...