TAG-100 Cyber Espionage Group Targets Global Organizations with Open-Source Tools
TAG-100 cyber espionage group targets government, intergovernmental, and private sector organizations worldwide using open-source tools and exploiting vulnerabilities in internet-facing devices.
View full story…
US District Court Judge Dismisses Most Charges Against SolarWinds in SEC Fraud Case
SolarWinds and its CISO, Tim Brown, cleared of most charges in civil fraud case filed by SEC, with claims related to cybersecurity posture before cyberattack sustained.
View full story…
US Data Breach Victims Surge by 1170% in H1 2024
Identity Theft Resource Center reports over 1 billion individuals affected, with major breaches at organizations like Prudential Financial and Infosys McCamish System leading to revised estimates of millions of affected individuals.
View full story…
Operation Spincaster Targets Approval Phishing Scams in the UK
Chainalysis-led operation identifies over 230 victims and recovers portion of 33 million pounds lost in collaborative effort with 100 partners across six countries.
View full story…
Security Researchers Discover Vulnerabilities in SAP AI Core Platform, Dubbed “SAPwned”
Vulnerabilities in the SAP AI Core platform, known as “SAPwned,” exposed customer data to cyber attacks and allowed unauthorized access to private artifacts and credentials in cloud environments.
View full story…
Meta Platforms Suspends Use of GenAI Tools in Brazil Amid Privacy Policy Concerns
Meta Platforms has suspended the use of generative artificial intelligence tools in Brazil in response to objections from the Brazilian government and a ban imposed by the National Data Protection Authority.
View full story…
ESET Uncovers HotPage Malware Exploiting Signed Drivers on Windows Systems
HotPage malware, signed by Microsoft, poses security risks by injecting malicious code into processes on Windows hosts.
View full story…
MediSecure Cyber-Attack Exposes Personal and Health Data of 13 Million Australians
A cyber-attack on MediSecure compromised the personal and health data of nearly 13 million Australians, making it one of the largest breaches in Australian history.
View full story…
Latest Cybernews
Critical Remote Code Execution Vulnerability in Apache HugeGraph-Server Being Actively Exploited
Threat actors are actively exploiting a critical remote code execution vulnerability in Apache HugeGraph-Server, identified as CVE-2024-27348, allowing them to execute arbitrary operating system commands and gain complete control over affected systems.
View full story…
Advance Auto Parts Snowflake Data Breach Exposes 2.3 Million Customers’ Personal Information
A cyberattack on Advance Auto Parts’ Snowflake account has exposed personal information of over 2.3 million individuals, highlighting the importance of robust security measures in the face of evolving threats.
View full story…
Interpol’s Operation Jackal III Targets West African Organized Crime Groups
Interpol’s global law enforcement campaign results in the arrest of 300 individuals involved in cyber fraud, human trafficking, drug smuggling, and violent crimes globally.
View full story…
FIN7 Group Advertises Security Bypassing Tool on Dark Web Forums
FIN7, a financially motivated threat actor, promotes the tool AvNeutralizer on cybercrime forums, showcasing technical expertise and adaptability.
View full story…
Concerning Increase in Cyber Threats Targeting Paris 2024 Olympics
Cybersecurity analysts have identified a rise in cyber threats targeting the Paris 2024 Olympics, with a focus on darknet activity and phishing kits tailored for the event.
View full story…
Risks and Opportunities of Generative AI Applications in Business
Generative AI applications are increasingly popular among businesses, but pose risks to data security and privacy, prompting the implementation of risk management practices.
View full story…