Google Chrome Enhances Download Protection Features for User Security
Google Chrome implements new warning system for password-protected files from untrustworthy sources, leading to increased malware detection rates and reduced likelihood of falling victim to phishing scams.
View full story…
Latest Cybernews
Cybercriminal “Stargazer Goblin” Operates Malware Network on GitHub
Stargazer Goblin runs the Stargazers Ghost Network on GitHub, distributing malware to Windows users through fake accounts and earning up to $100,000.
View full story…
CISA Adds Twilio Authy and IE Flaws to Exploited Vulnerabilities List
Two critical vulnerabilities, CVE-2012-4792 in Internet Explorer and CVE-2024-39891 in Twilio Authy, pose significant risks to organizations and individuals, with potential exploitation and data exposure threats.
View full story…
SafeBase Introduces Trust Center Platform for Managing Security Questionnaires and Requests
SafeBase’s Trust Center platform centralizes expertise, standardizes responses, and promotes continuous improvement to streamline the security review process and reduce time and budget costs.
View full story…
Cyberattackers Exploit Microsoft Defender SmartScreen Vulnerability for Stealer Campaign Targeting Organizations
Threat actors are using a critical security bypass vulnerability in Microsoft Defender SmartScreen to launch a stealer campaign targeting organizations with outdated Windows patching.
View full story…
Cybersecurity Firm Uncovers North Korean Hacker Infiltration Attempt
KnowBe4, a cybersecurity awareness training company, detects North Korean threat actor posing as remote software engineer in attempted infiltration.
View full story…
Latest Cybernews
Cyberattack on Ukrainian Energy Company Highlights Threat to Critical Infrastructure
A cyberattack using the FrostyGoop malware targeted a municipal energy company in Lviv, Ukraine, causing a two-day outage of central heating for over 600 apartment buildings.
View full story…
Google Abandons Plan to Disable Third-Party Cookies in Chrome
Google has decided to keep third-party cookies enabled for users who do not disable them, while introducing a new prompt for setting preferences, reflecting the company’s ongoing efforts to balance user privacy with targeted advertising.
View full story…
UK’s National Crime Agency Dismantles DigitalStress DDoS-for-Hire Service Provider
The NCA, FBI, and PSNI collaborate to shut down DigitalStress, a prominent DDoS-for-hire service provider, apprehending its administrator Skiop and seizing user data for international law enforcement agencies.
View full story…
Threat Actors Using Swap Files to Hide Credit Card Skimmers on Compromised Websites
Threat actors are utilizing swap files on compromised websites to hide credit card skimmers, with recent cases involving Magento e-commerce sites and WordPress sites being exploited.
View full story…
Chinese APT Group Daggerfly Continues Global Espionage Campaign with Enhanced Malware Toolkit
Daggerfly, also known as Evasive Panda or Bronze Highland, targets organizations and individuals globally with updated malware toolkit, including new backdoors and espionage capabilities.
View full story…
Latest Cybernews
SocGholish Malware Exploits BOINC Project for Covert Cyberattacks
The SocGholish malware, also known as FakeUpdates, has been active since July 4th, 2024, spreading through fake browser updates to deliver the AsyncRAT trojan and install the BOINC platform on infected systems for cyberattacks.
View full story…