Phishing Campaign PHANTOM#SPIKE Targets Individuals in Pakistan with Custom Backdoor
Threat actors behind PHANTOM#SPIKE campaign use military-themed phishing documents to infect victims with a custom backdoor, posing serious security risks.
View full story…
US Bans Kaspersky Lab Cybersecurity Products Due to National Security Concerns
The Biden administration has announced a ban on Kaspersky Lab cybersecurity products in the United States starting in July, citing concerns about potential exploitation by the Russian government.
View full story…
CISA Warns of Breach in Chemical Security Assessment Tool (CSAT)
CISA issues warning to CFATS participants after breach of CSAT involving zero-day vulnerability in Ivanti Connect Secure Appliance.
View full story…
SolarWinds Serv-U Vulnerability Exploited by Threat Actors
Threat actors are exploiting a high-severity vulnerability in SolarWinds Serv-U file transfer software, allowing remote attackers to access sensitive files on the host machine through a directory traversal bug.
View full story…
FSISAC Announces 2024 Board of Directors
New and re-elected members join to oversee global cybersecurity activities in the financial services sector.
View full story…
UK Medical Testing Provider Synnovis Targeted in Cyber Attack by Ransomware Group Qilin
Over 400GB of sensitive data, including patient information and financial records, exposed in cyber attack leading to destruction of critical medical samples and disruptions to patient care.
View full story…
Chinese Hackers Target Government Entities with Sophisticated Malware Tools
Chinese hackers from the APT group SneakyChef have been targeting government entities in various countries using malware tools like SugarGh0st and SpiceRAT.
View full story…
Malvertising Campaign Using Trojanized Installers Drops Oyster Backdoor
Threat actors are using trojanized installers for popular software to deliver the Oyster backdoor, associated with the Russia-linked group ITG23, in a new malvertising campaign.
View full story…
Latest Cybernews
Guardz Offers Unified Cybersecurity Platform for MSPs to Address Integration Challenges and Enhance Security Posture
Guardz provides a centralized view of critical risks, prevents tool sprawl, and streamlines operations for MSPs, offering a comprehensive solution to managing cybersecurity tools and minimizing risks.
View full story…
Security Experts Identify New Evasive Malware Loader Targeting Chinese Organizations
LevelBlue Labs has discovered SquidLoader, a new malware loader spreading through phishing campaigns and targeting Chinese-speaking victims with second-stage payload malware.
View full story…
NIST Cybersecurity Framework 2.0 Released to Address Ransomware Threats
The National Institute of Standards and Technology’s Cybersecurity Framework 2.0 offers a structured approach to managing cybersecurity risks for organizations of all sizes.
View full story…
Chinese Cyber Espionage Campaign Targets Telecom Operators in Asia
Chinese threat actors have targeted multiple telecom operators in an Asian country since at least 2021, deploying custom backdoors like Coolclient, Quickheal, and Rainyday to steal credentials and gather intelligence on critical infrastructure.
View full story…
Fortinet Discovers New Rust-Based Malware Fickle Stealer Targeting Sensitive Information
Fickle Stealer malware utilizes innovative techniques to evade detection and target crypto wallets, web browsers, and applications like Discord and Skype.
View full story…
Cyber Incident at CDK Global Disrupts Operations for Thousands of Auto Dealerships
A recent cyber incident at software provider CDK Global has caused disruptions for almost 15,000 auto dealerships in the US and Canada, impacting clients like General Motors and Group 1 Automotive.
View full story…