Source: www.bleepingcomputer.com – Author: Bill Toulas The Port of Nagoya, the largest and busiest port in Japan, has been targeted in a ransomware attack that currently...
Author:
Google Analytics data transfer to U.S. brings $1 million fine to Swedish firms – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The Swedish Authority for Privacy Protection (Integritetsskyddsmyndigheten – IMY) has fined two companies with 12.3 million SEK (€1 million/$1.1 million)...
New Python tool checks NPM packages for manifest confusion issues – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A security researcher and system administrator has developed a tool that can help users check for manifest mismatches in packages...
Microsoft denies data breach, theft of 30 million customer accounts – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Microsoft has denied the claims of the so-called hacktivists “Anonymous Sudan” that they breached the company’s servers and stole credentials...
Hackers target European government entities in SmugX campaign – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A phishing campaign that security researchers named SmugX and attributed to a Chinese threat actor has been targeting embassies and...
300,000+ Fortinet firewalls vulnerable to critical FortiOS RCE bug – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Hundreds of thousands of FortiGate firewalls are vulnerable to a critical security issue identified as CVE-2023-27997, almost a month after...
Snappy: A tool to detect rogue WiFi access points on open networks – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Cybersecurity researchers have released a new tool called ‘Snappy’ that can help detect fake or rogue WiFi access points that...
BlackCat ransomware pushes Cobalt Strike via WinSCP search ads – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Image: Bing Create The BlackCat ransomware group (aka ALPHV) is running malvertizing campaigns to lure people into fake pages that...
Hackers exploit zero-day in Ultimate Member WordPress plugin with 200K installs – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Hackers exploit a zero-day privilege escalation vulnerability in the ‘Ultimate Member’ WordPress plugin to compromise websites by bypassing security measures...
Free Akira ransomware decryptor helps recover your files – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Cybersecurity firm Avast has released a free decryptor for the Akira ransomware that can help victims recover their data without...
TSMC denies LockBit hack as ransomware gang demands $70 million – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Chipmaking giant TSMC (Taiwan Semiconductor Manufacturing Company) denied being hacked after the LockBit ransomware gang demanded $70 million not to...
New EarlyRAT malware linked to North Korean Andariel hacking group – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Security analysts have discovered a previously undocumented remote access trojan (RAT) named ‘EarlyRAT,’ used by Andariel, a sub-group of the...
Pro-Russia DDoSia hacktivist project sees 2,400% membership increase – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The pro-Russia crowdsourced DDoS (distributed denial of service) project, ‘DDoSia,’ has seen a massive 2,400% growth in less than a...
Proton launches open-source password manager with some limitations – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Proton AG has announced the global availability of Proton Pass, an open-source and free-to-use password manager available as a browser...
Linux version of Akira ransomware targets VMware ESXi servers – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The Akira ransomware operation uses a Linux encryptor to encrypt VMware ESXi virtual machines in double-extortion attacks against companies worldwide....
Brave Browser boosts privacy with new local resources restrictions – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The Brave team has announced that the privacy-centric browser will soon introduce new restriction controls allowing users to specify how...
NPM ecosystem at risk from “Manifest Confusion” attacks – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The NPM (Node Package Manager) registry suffers from a security lapse called “manifest confusion,” which undermines the trustworthiness of packages...
8Base ransomware gang escalates double extortion attacks in June – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A 8Base ransomware gang is targeting organizations worldwide in double-extortion attacks, with a steady stream of new victims since the...
Siemens Energy confirms data breach after MOVEit data-theft attack – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Siemens Energy has confirmed that data was stolen during the recent Clop ransomware data-theft attacks using a zero-day vulnerability in...
EncroChat takedown led to 6,500 arrests and $979 million seized – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Europol announced today that the takedown of the EncroChat encrypted mobile communications platform has led to the arrest of over...
New Mockingjay process injection technique evades EDR detection – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A new process injection technique named ‘Mockingjay’ could allow threat actors to bypass EDR (Endpoint Detection and Response) and other...
Anatsa Android trojan now steals banking info from users in US, UK – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A new mobile malware campaign since March 2023 pushes the Android banking trojan ‘Anatsa’ to online banking customers in the...
Man charged in US for running ‘Monopoly’ darknet drug market – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A 33-year-old man from Serbia has been extradited from Austria to the United States to face charges of running a...
Suncor Energy cyberattack impacts Petro-Canada gas stations – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Petro-Canada gas stations across Canada are impacted by technical problems preventing customers from paying with credit card or rewards points...
Trojanized Super Mario game used to install Windows malware – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A trojanized installer for the popular Super Mario 3: Mario Forever game for Windows has been infecting unsuspecting players with multiple malware...
Grafana warns of critical auth bypass due to Azure AD integration – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Grafana has released security fixes for multiple versions of its application, addressing a vulnerability that enables attackers to bypass authentication...
MOVEIt breach impacts GenWorth, CalPERS as data for 3.2 million exposed – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas PBI Research Services (PBI) has suffered a data breach with three clients disclosing that the data for 4.75 million people...
Fortinet fixes critical FortiNAC remote command execution flaw – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Cybersecurity solutions company Fortinet has updated its zero-trust access solution FortiNAC to address a critical-severity vulnerability that attackers could leverage...
Microsoft Teams bug allows malware delivery from external accounts – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Security researchers have found a simple way to deliver malware to an organization with Microsoft Teams, despite restrictions in the...
Mirai botnet targets 22 flaws in D-Link, Zyxel, Netgear devices – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A variant of the Mirai botnet is targeting almost two dozen vulnerabilities aiming to take control of D-Link, Arris, Zyxel,...