New iLeakage Attack Exposes Sensitive Information on Apple Devices
A new attack vector called iLeakage has been discovered, which allows attackers to extract sensitive information from Safari on Macs and all browsers on iOS devices.
A new attack vector called iLeakage has been discovered, which allows attackers to extract sensitive information from Safari on Macs and all browsers on iOS devices.
YoroTrooper, an espionage-focused threat actor originating from Kazakhstan, targets state-owned entities in CIS countries and demonstrates fluency in Kazakh and Russian languages, using custom tools programmed in Python, PowerShell, Golang, and Rust to steal data through spear-phishing and credential harvesting techniques.
Kaspersky experts have discovered StripedFly, a highly sophisticated cross-platform malware that has infected over a million Windows and Linux systems globally since 2016.
Virtualization services provider VMware issues warning to customers about high-severity bugs in Aria Operations for Logs software, including an authentication bypass vulnerability and a deserialization vulnerability, which can be exploited for remote code execution and IP address spoofing.
Seiko Group Corporation reveals that a ransomware attack by the BlackCat gang resulted in a data breach compromising personal information of 60,000 individuals, including customer details, employee records, and business transaction information.
The Identity Theft Resource Center’s 2023 Business Impact Report reveals a record high in cyberattacks on small businesses in the US, highlighting the prevalence of data breaches and the need for increased cybersecurity measures.