SEC Concludes Investigation into Progress Software’s Handling of MOVEit Supply Chain Attack
Progress Software will not face charges from the SEC for the exploitation of MOVEit Transfer vulnerabilities, impacting 95 million individuals, highlighting the importance of cooperation and transparency in cybersecurity incidents.
View full story…
Security Researcher Demonstrates Exploitation of Microsoft Copilot Through Prompt Injections
Security researcher Michael Bargury showcases the creation of LOLCopilot to manipulate Copilot’s behavior through prompt injections, highlighting potential risks and the need for additional detection tools.
View full story…
BlackSuit Ransomware Group Demands Over $500 Million in Extortion Payments
BlackSuit, formerly known as Royal, targets organizations with significant ransom demands, using unique encryption tactics and double extortion methods.
View full story…
Latest Cybernews
Chameleon Trojan Campaign Targets Hospitality Sector and B2C Roles in Canada and Europe
A new Chameleon Trojan campaign has been discovered targeting users in Canada and Europe, posing a significant risk to organizations in the hospitality sector and Business-to-Consumer roles.
View full story…
CrowdStrike Conducts Root Cause Analysis of Falcon Sensor Software Update Crash
CrowdStrike identifies content validation issue in Channel File 291 incident, leading to system crash on Windows devices and $500 million lawsuit from Delta Air Lines.
View full story…
New Linux Kernel Exploitation Technique SLUBStick Uncovered
Cybersecurity researchers have discovered SLUBStick, a new Linux kernel exploitation technique that leverages nine security vulnerabilities to achieve privilege escalation to root without authentication and escape container environments, posing a significant threat to memory safety.
View full story…
Latest Cybernews
Interpol Recovers $41 Million in Singapore BEC Scam Bust
Interpol, Singapore Police Force, and Timor-Leste authorities collaborate to recover $41 million in a business email compromise scam, leading to the apprehension of seven individuals and the seizure of a cryptocurrency exchange involved in criminal activities.
View full story…
Darktrace Report Highlights 17.8 Million Phishing Emails Detected in 2023-2024
Darktrace researchers identify a surge in phishing emails, with notable threats including information-stealing malware and new ransomware variants employing advanced tactics.
View full story…
New Android Spyware LianSpy Targets Users in Russia
Cybersecurity researchers have discovered a sophisticated Android spyware, LianSpy, targeting users in Russia since July 2021, which disguises itself as popular apps and utilizes Yandex Cloud for command-and-control operations.
View full story…
The Growing Threat of Quantum Computing on Cybersecurity
Cybercriminals are leveraging quantum computing techniques to breach encryptions and launch attacks, posing a significant cybersecurity threat that organizations must prepare for.
View full story…
2024 Midyear Threat Landscape Review Reveals 30% Increase in Reported CVEs
The 2024 Midyear Threat Landscape Review shows a significant rise in reported Common Vulnerabilities and Exposures, highlighting the growing threat posed by the exploitation of vulnerabilities.
View full story…
North Korean Threat Actor Moonstone Sleet Distributes Malicious npm Packages Targeting Windows Systems
Moonstone Sleet, a North Korea-linked threat actor, distributes malicious npm packages targeting Windows systems, highlighting the ongoing cyber threat posed by North Korean threat actors.
View full story…