Security Researchers Spot $36m BEC AttackThreat actors impersonated target company's vendorRead MoreThreat actors impersonated target company's vendor
Month: March 2023
CISA and NSA Enhance Security Framework With New IAM Guide
CISA and NSA Enhance Security Framework With New IAM GuideGuidance includes best practices for identity governance, environmental hardening, SSO, MFA and IAM auditingRead MoreGuidance includes best...
New Android Banking Trojan ‘Nexus’ Promoted As MaaS
New Android Banking Trojan 'Nexus' Promoted As MaaSNexus offers overlay attacks and keylogging activities designed to steal victims' credentialsRead MoreNexus offers overlay attacks and keylogging activities...
BreachForums Shuts Down After Admin’s Arrest
BreachForums Shuts Down After Admin's ArrestThe forum's admin said the move might be temporary and that they will set up a new Telegram groupRead MoreThe forum's...
Irish Food Giant Dole Admits Employee Data Breach
Irish Food Giant Dole Admits Employee Data BreachIncident was linked to previously disclosed ransomware attackRead MoreIncident was linked to previously disclosed ransomware attack
Malicious ChatGPT Chrome Extension Hijacks Facebook Accounts
Malicious ChatGPT Chrome Extension Hijacks Facebook AccountsSoftware was unwittingly downloaded thousands of timesRead MoreSoftware was unwittingly downloaded thousands of times
UK Government Sets Out Vision for NHS Cybersecurity
UK Government Sets Out Vision for NHS CybersecurityPlans to boost cyber-resilience in the health service by 2030Read MorePlans to boost cyber-resilience in the health service by...
New Post-Exploitation Attack Method Found Affecting Okta Passwords
New Post-Exploitation Attack Method Found Affecting Okta PasswordsThe flaw derives from the way the Okta system records failed login attempts to instancesRead MoreThe flaw derives from...
SharePoint Phishing Scam Targets 1600 Across US, Europe
SharePoint Phishing Scam Targets 1600 Across US, EuropeCyber-criminals used the scam to steal the credentials for various email accountsRead MoreCyber-criminals used the scam to steal the...
China-Aligned “Operation Tainted Love” Targets Middle East Telecom Providers
China-Aligned "Operation Tainted Love" Targets Middle East Telecom ProvidersThe deployment of custom credential theft malware is the main novelty of the new campaignRead MoreThe deployment of...
Cisco Event Response: March 2023 Semiannual Cisco IOS and IOS XE Software Security Advisory Bundled Publication
Cisco Event Response: March 2023 Semiannual Cisco IOS and IOS XE Software Security Advisory Bundled PublicationPost ContentRead MoreCisco Event Responses
Pwn2Own Vancouver 2023 Day 1: Windows 11 and Tesla hacked
Pwn2Own Vancouver 2023 Day 1: Windows 11 and Tesla hackedOn the first day of Pwn2Own Vancouver 2023, the organization awarded $375,000 (and a Tesla Model 3)...
Dole discloses data breach after February ransomware attack
Dole discloses data breach after February ransomware attackDole Food Company confirmed that threat actors behind the recent ransomware attack had access to employees’ data. Dole Food...
Nexus, an emerging Android banking Trojan targets 450 financial apps
Nexus, an emerging Android banking Trojan targets 450 financial appsExperts warn of an emerging Android banking trojan dubbed Nexus that was employed in attacks against 450 financial applications....
2022 Ransomware Statistics & The Biggest Ransomware Attacks
2022 Ransomware Statistics & The Biggest Ransomware AttacksThe state of ransomware remains, more or less, unchanged; my choice of words would be unchallenged. For the past...
Another Fake ChatGPT Extension Found in Google Chrome Store
Another Fake ChatGPT Extension Found in Google Chrome StoreResearchers discovered a new fake ChatGPT extension for Chrome in the official Chrome Store. This version steals Facebook...
Threat Actors Use the MageCart Malware in New Credit Card Data Stealing Campaign
Threat Actors Use the MageCart Malware in New Credit Card Data Stealing CampaignA new credit card hacking campaign is wreaking havoc, but this time it’s a...
What Is Nmap and How to Use It to Enhance Network Security
What Is Nmap and How to Use It to Enhance Network SecurityNmap is short for Network Mapper, an open-source tool used for IP and port scanning...
37M Subscribers Streaming Platform Lionsgate Exposes User Data
37M Subscribers Streaming Platform Lionsgate Exposes User DataCybersecurity researchers found that Lionsgate, an entertainment industry giant, exposed the IP addresses and viewing habits of its subscribers....
Fake GPT Chrome extension steals Facebook session cookies, breaks into accounts
Fake GPT Chrome extension steals Facebook session cookies, breaks into accountsThe world has gone ChatGPT bonkers. Which makes it an effective lure for cybercriminals who may...
Europe’s transport sector terrorised by ransomware, data theft, and denial-of-service attacks
Europe’s transport sector terrorised by ransomware, data theft, and denial-of-service attacksA new report from ENISA, the European Union Agency for Cybersecurity, looking at cyberattacks targeting the...
Danger USB! Journalists sent exploding flash drives
Danger USB! Journalists sent exploding flash drivesIf you were sent a USB stick anonymously through the post, would you plug it into your computer? Perhaps you'll...
Mass Ransomware Attack
Mass Ransomware AttackA vulnerability in a popular data transfer tool has resulted in a mass ransomware attack: TechCrunch has learned of dozens of organizations that used...
Python info-stealing malware uses Unicode to evade detection
Python info-stealing malware uses Unicode to evade detectionA malicious Python package on PyPI uses Unicode as an obfuscation technique to evade detection while stealing and exfiltrating...
CloudPanel installations use the same SSL certificate private key
CloudPanel installations use the same SSL certificate private keySelf-hosted web administration solution CloudPanel was found to have several security issues, including using the same SSL certificate...
Exploit released for Veeam bug allowing cleartext credential theft
Exploit released for Veeam bug allowing cleartext credential theftCross-platform exploit code is now available for a high-severity Backup Service vulnerability impacting Veeam's Backup & Replication (VBR)...
Microsoft fixes Acropalypse privacy bug in Windows 11 Snipping Tool
Microsoft fixes Acropalypse privacy bug in Windows 11 Snipping ToolMicrosoft is testing an updated version of the Windows 11 Snipping Tool that fixes a recently disclosed...
Windows 11 gets phishing protection boost and SHA-3 support
Windows 11 gets phishing protection boost and SHA-3 supportMicrosoft announced that the new Windows 11 build rolling out to Insiders in the Canary channel comes with...
Splashtop Buys Foxpass to Bring Enterprise IAM to the Masses
Splashtop Buys Foxpass to Bring Enterprise IAM to the MassesFoxpass Purchase Will Thwart Password Sharing and Simplify Developer OnboardingRemote access provider Splashtop has bought server and...
Russians Can Use Crypto to Evade Sanctions, Researchers Warn
Russians Can Use Crypto to Evade Sanctions, Researchers Warn'Reshippers' and Prepaid Cryptocurrency Virtual Credit Cards Can Facilitate EvasionDark web merchants have been offering Russians - consumers...




























