Source: securityaffairs.com – Author: Pierluigi Paganini A previously undocumented APT group targets iOS devices with zero-click exploits as part of a long-running campaign dubbed Operation Triangulation. Researchers...
Day: June 2, 2023
California-based workforce platform Prosperix leaks drivers licenses and medical records – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Prosperix leaked nearly 250,000 files. The breach exposed job seekers’ sensitive data, including home addresses and phone numbers. Prosperix, formally...
Apps with over 420 Million downloads from Google Play unveil the discovery of SpinOk spyware – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Researchers discovered spyware, dubbed SpinOk, hidden in 101 Android apps with over 400 million downloads in Google Play. The malicious...
Most people are aware of their data trails, but few know how to deal with it: Okta study – Source: www.techrepublic.com
Source: www.techrepublic.com – Author: Karl Greenberg A new study by Okta finds that a proliferation of active accounts and web identities is exacerbating security risks both...
How to determine exactly what personal information Microsoft Edge knows about you – Source: www.techrepublic.com
Source: www.techrepublic.com – Author: Mark W. Kaelin Users should be aware of what personal data is being collected and stored by Microsoft Edge and be prepared...
Checklist: Network and systems security – Source: www.techrepublic.com
Source: www.techrepublic.com – Author: Cybersecurity demands and the stakes of failing to properly secure systems and networks are high. While every organization’s specific security needs form...
Modern Applications Require Modern Application Security – Source: www.techrepublic.com
Source: www.techrepublic.com – Author: Application security is one of the most important components of an overall security program, yet some organizations struggle to identify and address...
New Botnet Malware ‘Horabot’ Targets Spanish-Speaking Users in Latin America – Source:thehackernews.com
Source: thehackernews.com – Author: . Jun 02, 2023Ravie LakshmananBotnet / Malware Spanish-speaking users in Latin America have been at the receiving end of a new botnet...
Camaro Dragon Strikes with New TinyNote Backdoor for Intelligence Gathering – Source:thehackernews.com
Source: thehackernews.com – Author: . Jun 02, 2023Ravie LakshmananMalware / Cyber Threat The Chinese nation-stage group known as Camaro Dragon has been linked to yet another...
North Korea’s Kimsuky Group Mimics Key Figures in Targeted Cyber Attacks – Source:thehackernews.com
Source: thehackernews.com – Author: . Jun 02, 2023Ravie LakshmananCyber Espionage / APT U.S. and South Korean intelligence agencies have issued a new alert warning of North...
MOVEit Transfer Under Attack: Zero-Day Vulnerability Actively Being Exploited – Source:thehackernews.com
Source: thehackernews.com – Author: . Jun 02, 2023Ravie Lakshmanan Zero-Day / Vulnerability A critical flaw in Progress Software’s in MOVEit Transfer managed file transfer application has...
Insurers Predict $33bn Bill for Catastrophic “Cyber Event” – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 A catastrophic “once-in-200-years” cyber event could cause $33bn in losses for the cyber-insurance sector, according to a new report from Guy...
Chinese Phishing Gang “PostalFurious” Expands Campaign – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 A recently discovered Chinese phishing gang has expanded its campaigns to the Middle East with new scams designed to harvest personal...
Kaspersky Says it is Being Targeted By Zero-Click Exploits – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 Russian AV vendor Kaspersky has claimed that iOS devices on its network are being targeted by sophisticated zero-day exploits. The firm...
Amazon Pays $30.8M to Settle Ring Spying & Alexa Privacy Lawsuits – Source: www.darkreading.com
Source: www.darkreading.com – Author: Dark Reading Staff, Dark Reading Because of the complaints made by the Federal Trade Commission (FTC), Amazon has agreed to pay a...
Jetpack WordPress Plug-in API Bug Triggers Mass Updates – Source: www.darkreading.com
Source: www.darkreading.com – Author: Dark Reading Staff, Dark Reading Jetpack, a WordPress plug-in for boosting website security and speed has issued a critical update following a...
How Do I Reduce Security Tool Sprawl in My Environment? – Source: www.darkreading.com
Source: www.darkreading.com – Author: Yotam Segev, Co-Founder and CEO, Cyera Question: We have too many security tools. How do I consolidate and reduce tool sprawl in...
Sustained ‘Red Deer’ Phishing Attacks Impersonate Israel Post, Drop RATs – Source: www.darkreading.com
Source: www.darkreading.com – Author: Dan Raywood, Senior Editor, Dark Reading Israeli engineering and telecommunications companies have been targeted with a sustained phishing message campaign that is...
Google Drive Deficiency Allows Attackers to Exfiltrate Workspace Data Without a Trace – Source: www.darkreading.com
Source: www.darkreading.com – Author: Elizabeth Montalbano, Contributor, Dark Reading A lack of event logging in the free-subscription version of Google Workspace can allow attackers to download...
Where SBOMs Stand Today – Source: www.darkreading.com
Source: www.darkreading.com – Author: Liran Tancman, CEO & Co-Founder, Rezilion What a difference two years makes. Around this time in 2021, the term “SBOM” — which...
Novel PyPI Malware Uses Compiled Python Bytecode to Evade Detection – Source: www.darkreading.com
Source: www.darkreading.com – Author: Nate Nelson, Contributing Writer, Dark Reading In a new twist on software supply chain attacks, researchers have discovered a Python package hiding...
Horabot Campaign Targets Spanish-Speaking Users in the Americas – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 A new cyber threat campaign named “Horabot” has been discovered by cybersecurity firm Cisco Talos targeting Spanish-speaking users in the Americas. Horabot,...
Void Rabisu’s RomCom Backdoor Reveals Shifting Threat Actor Goals – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 The hacking group known as Void Rabisu has deployed a new backdoor called RomCom. According to security researchers at Trend Micro,...
Potential Backdoor in Gigabyte PCs Exposes Supply Chain Risks – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: 1 Cybersecurity firm Eclypsium has uncovered a potential backdoor in Gigabyte systems, raising concerns about the security of the technology supply chain....
ISACA pledges to help grow cybersecurity workforce in Europe – Source: www.csoonline.com
Source: www.csoonline.com – Author: ISACA will provide 20,000 free memberships to students across Europe and support the identification of qualified cybersecurity candidates for organizations. IT Stone...
BigID wants to let you tweak your data classifications manually – Source: www.csoonline.com
Source: www.csoonline.com – Author: Sailing the seas of enterprise data may get easier, with BigID’s latest release. The company hopes to make discovery simpler by letting...
What is the Cybercrime Atlas? How it can help disrupt cybercrime – Source: www.csoonline.com
Source: www.csoonline.com – Author: The Cybercrime Atlas aims to map the cybercriminal ecosystem worldwide and allow global law enforcement agencies to access that information when fighting...
New Horabot campaign takes over victim’s Gmail, Outlook accounts – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A previously unknown campaign involving the Hotabot botnet malware has targeted Spanish-speaking users in Latin America since at least November...
Windows 11 will let you view phone photos in File Explorer – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Sergiu Gatlan Microsoft is now rolling out a new Windows 11 dev build allowing Insiders to view their phone’s camera roll in...
Harvard Pilgrim Health Care ransomware attack hits 2.5 million people – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Harvard Pilgrim Health Care (HPHC) has disclosed that a ransomware attack it suffered in April 2023 impacted 2,550,922 people, with...