Cyber-Attacks Targeting Cloud Resources on the Rise
Organizations worldwide facing increasing threat of cyber-attacks targeting cloud resources, with breaches attributed to human error, misconfiguration, known vulnerabilities, and lack of encryption and Multi-Factor Authentication.
View full story…
New Medusa Banking Trojan Variant Resurfaces with Remote Access Capabilities
Cleafy researchers have discovered new fraud campaigns involving the Medusa banking Trojan, also known as TangleBot, which now includes remote access capabilities like keylogging, screen control, and SMS reading/writing, targeting Android users globally.
View full story…
Organizations Cutting Costs and Enhancing Security with Browser Security Platforms
Six CISOs share success stories of reducing costs and improving efficiency through browser security solutions.
View full story…
Boolka Evolves Operations to Include Malware Delivery Platform Using BeEF Framework
Boolka, a threat actor known for SQL injection attacks, now distributes BMANAGER Trojan through a landing page, posing significant cybersecurity threats.
View full story…
Dark Web Sees 230% Rise in Stolen Identity Data from Singapore Citizens
Cybercriminals, nation-state actors, and foreign entities are exploiting stolen identity data, including biometric information, from Singapore citizens and residents for fraudulent activities.
View full story…
Linux Botnet P2PInfect Evolves with Rootkit, Cryptominer, and Ransomware Payloads
The Linux botnet P2PInfect has evolved to include a rootkit, cryptominer, and ransomware payloads, targeting vulnerable Redis instances by exploiting the Lua sandbox escape vulnerability CVE-2022-0543.
View full story…
New Cyberattack Technique GrimResource Exploits Microsoft Management Console Vulnerabilities
GrimResource cyberattack technique discovered by Elastic Security Labs exploits vulnerabilities in Microsoft Management Console files to execute unauthorized code, posing a significant threat to cybersecurity.
View full story…
Latest Cybernews
Cybersixgill Launches IQ Report Generator for Efficient CTI Reporting
Cybersixgill introduces the IQ Report Generator, utilizing generative AI technology to streamline the creation of comprehensive cybersecurity reports in minutes.
View full story…
Sellafield Ltd Pleads Guilty to Historic Cyber Security Offences
Sellafield Ltd has pleaded guilty to historic information technology security offences, including failure to protect sensitive nuclear information on its IT network and not following cybersecurity requirements, marking the first prosecution under the Nuclear Industries Security Regulations.
View full story…
Security Researchers Identify Rafel RAT Malware Targeting Outdated Android Devices in Multiple Countries
Rafel RAT, an open-source Android malware tool, used by threat actors for espionage activities, targets outdated Android devices in the US, China, India, and Indonesia.
View full story…
Critical Security Vulnerability Probllama (CVE-2024-37032) Identified in Ollama AI Platform
A critical security vulnerability named Probllama (CVE-2024-37032) allowing for remote code execution has been discovered in the Ollama open-source AI platform, emphasizing the importance of updating to version 0.1.34 or newer to mitigate the risk.
View full story…
Polish Prosecutors Investigate Alleged Misuse of Pegasus Spyware by Previous Government
Polish prosecutors are examining confiscated Pegasus spyware systems to investigate allegations of surveillance on opposition figures by the former government.
View full story…
Chinese State-Sponsored Hacking Group RedJuliett Targets Taiwanese Organizations with VPN Exploits
RedJuliett, a suspected Chinese state-sponsored hacking group, intensifies cyber espionage campaigns targeting Taiwanese organizations by exploiting vulnerabilities in SoftEther VPN software.
View full story…