Microsoft releases guidance on how organizations can check their systems for the presence of BlackLotus, a powerful threat first analyzed by ESET researchers Microsoft has released...
Day: April 14, 2023
Safety first: 5 cybersecurity tips for freelance bloggers
The much-dreaded writer’s block isn’t the only threat that may derail your progress. Are you doing enough to keep your blog (and your livelihood) safe from...
Shifting the Balance of Cybersecurity Risk – Principles and Approaches for Secure-by-Design – Secure-by-Default – CISA
The content you are trying to access is private only to member users of the site. You must have a free membership at CISO2CISO.COM to access...
Vice Society ransomware uses new PowerShell data theft tool in attacks
The Vice Society ransomware gang is deploying a new, rather sophisticated PowerShell script to automate data theft from compromised networks. Stealing corporate and customer data is...
Microsoft expands Start menu ads test with new ‘treatments’
Microsoft is testing new ads in the Windows Start menu, or what it describes as “new treatments,” for users logged into local accounts as part of...
Google Chrome emergency update fixes first zero-day of 2023
Google has released an emergency Chrome security update to address the first zero-day vulnerability exploited in attacks since the start of the year. “Google is aware that an exploit for...
Darktrace: Investigation found no evidence of LockBit breach
Cybersecurity firm Darktrace says it found no evidence that the LockBit ransomware gang breached its network after the group added an entry to their dark web...
Russia accuses NATO of launching 5,000 cyberattacks since 2022
The Federal Security Service of the Russian Federation (FSB) has accused the United States and other NATO countries of launching over 5,000 cyberattacks against critical infrastructure...
Police disrupts $98M online fraud ring with 33,000 victims
Europol and Eurojust announced today the arrest of five individuals believed to be part of a massive online investment fraud ring with at least 33,000 victims who...
For cybercriminal mischief, it’s dark web vs deep web
Image: oz/Adobe Stock Threat actors are consolidating their use of encrypted messaging platforms, initial access brokers and generative AI models, according to security firm Cybersixgill’s new...
As Tax Day approaches, Microsoft warns accounting firms of targeted attacks
Accountants are being warned to be on their guard from malicious hackers, as cybercriminals exploit the rush to prepare tax returns for clients before the deadline...
Pentagon leak suspect Jack Teixeira arrested at gunpoint
The US Department of Justice says a member of the US Air Force National Guard has been arrested in connection with a high profile leak of...
CISA Asks Manufacturers to Prioritize Cybersecurity in Product Design
Several cybersecurity organizations worldwide have jointly published a new series of guidelines to aid manufacturers in prioritizing cybersecurity practices while designing products. The paper was developed...
RTM Locker Gang Targets Corporate Environments with Ransomware
The “Read The Manual” (RTM) Locker group has been observed targeting corporate environments with ransomware and forcing their affiliates to follow a strict set of rules. According...
Hyundai Experiences Cybersecurity Issues: Breach and App Bugs
Automotive manufacturer Hyundai has recently disclosed a breach that has affected an unspecified number of Italian and French car owners as well as individuals who booked...
Kodi discloses data breach after its forum was compromised
Open-source media player software provider Kodi discloses a data breach after threat actors stole its MyBB forum database. Kodi has disclosed a data breach, threat actors...
RTM Locker, a new RaaS gains notorieties in the threat landscape
Cybersecurity firm Trellix analyzed the activity of an emerging cybercriminal group called ‘Read The Manual’ RTM Locker. Researchers from cybersecurity firm Trellix have detailed the tactics,...
Hikvision fixed a critical flaw in Hybrid SAN and cluster storage products
Chinese video surveillance giant Hikvision addressed a critical vulnerability in its Hybrid SAN and cluster storage products. Chinese video surveillance giant Hikvision addressed an access control...
The Russia-linked APT29 is behind recent attacks targeting NATO and EU
Poland intelligence linked the Russian APT29 group to a series of attacks targeting NATO and European Union countries. Poland’s Military Counterintelligence Service and its Computer Emergency...
A flaw in the Kyocera Android printing app can be abused to drop malware
Security experts warn that a Kyocera Android printing app is vulnerable to improper intent handling and can be abused to drop malware. An improper intent handling issue...
EU’s Proposed CSAM Bill Poses Hacking Risks
Endpoint Security , Governance & Risk Management , Legislation & Litigation Hackers Would Exploit Client-Sider Scanning, LIBE Committee Hears Akshaya Asokan (asokan_akshaya) • April 13, 2023...
Webinar OnDemand | Expert Insights: Safeguarding Your Hybrid Workforce with 5 Key SOC Best Practices
Eric Howard Cisco Global Technical Marketing Engineer Eric Howard is a Technical Leader for Cisco’s Threat Intelligence, Detection and Response product team. He leads a team...
Exclusive Discussion | Don’t Be the Next Cyber Attack Headline!
Patrick Sullivan CTO, Security Strategy, Akamai Technologies, Inc. In his 15 years at Akamai, Patrick has held a number of leadership positions including leading the Enterprise...
Cybersecurity ‘Doom Loop’ at Crossroads
Governance & Risk Management , Patch Management Google Funds Vulnerability Disclosure Policy Group and Legal Defense for White Hats David Perera (@daveperera) • April 13, 2023...
Lead/Forward Exchange Yankee Stadium with VMware Tanzu
Presented by VMware Tanzu Businesses value and innovation are delivered through modern apps, with many organizations identifying modernization as their top initiative. From cloud native application...
Indy 500 Executive Suite with VMware Tanzu
Thank you for registering with ISMG Complete your profile and stay up to date Need help registering? Contact Support Views: 0
National Guardsman Arrested for Military, Intelligence Leaks
Cybercrime , Fraud Management & Cybercrime , Incident & Breach Response Jack Teixeira, 21, Accused of Sharing Classified National Defense Info on Discord Michael Novinson (MichaelNovinson)...
Russian APT Hackers Actively Targeting European NATO Allies
Cyberwarfare / Nation-State Attacks , Fraud Management & Cybercrime European Embassies and Diplomats at Most Risk, Warns Polish CERT Akshaya Asokan (asokan_akshaya) • April 13, 2023...
New Mirai Variant Employs Uncommon Tactics to Distribute Malware
A new version of a Mirai variant called RapperBot is the latest example of malware using relatively uncommon or previously unknown infection vectors to try and...
Money Ransomware Group Enters Double-Extortion Fray
An emerging threat group dubbed Money Ransomware has adopted the increasingly popular tactic of encrypting and exfiltrating sensitive data from organizations and threatening to leak it...