North Korean IT Worker Network Tied to BeaverTail Phishing Campaign –
BeaverTail malware has been used to target tech job seekers through fake recruiters, Palo Alto Networks’ Unit 42 has found – Read More –
BeaverTail malware has been used to target tech job seekers through fake recruiters, Palo Alto Networks’ Unit 42 has found – Read More –
The US Federal Trade Commission is celebrating a halving of unwanted telemarketing and scam calls since 2021 – Read More –
The UK’s National Cyber Security Centre is urging shoppers to stay safe this Christmas after revealing they lost £11.5m to fraudsters in 2023 – Read More –
The security provider has elevated its warning about a vulnerability affecting firewall management interfaces after observing active exploitation – Read More –
Ilya Lichtenstein hacked into the cryptocurrency exchange in 2016 and stole around 120,000 bitcoins – Read More –
The new vulnerability was named “FortiJump Higher” due to its similarity with the “FortiJump” vulnerability discovered in October – Read More –
SentinelOne described some of ransomware groups’ favorite techniques for targeting cloud services – Read More –
Post Content – Read More –
Over 1 million domains are vulnerable to “Sitting Ducks” attack, which exploits DNS misconfigurations – Read More –
Misconfigurations in Microsoft Power Pages granting excessive access permissions expose sensitive data, risking PII to unauthorized users – Read More –
The FBI and CISA have confirmed that US officials’ private communications have been compromised – Read More –
Over 80% of UK organizations suffered an API security incident in the past year, with each costing over £400,000 – Read More –
The UK’s financial regulators have discarded plans to force critical suppliers to disclose new vulnerabilities – Read More –
Hive0145 is targeting Spain, Germany, Ukraine with Strela Stealer malware in invoice phishing tactic – Read More –
2025 could see our biggest AI fears materialize, according to a Google Cloud forecast report – Read More –
Lazarus APT has been found smuggling malware onto macOS devices using custom extended attributes, evading detection – Read More –
An individual who posted data allegedly stolen via MOVEit from Amazon and other big-name firms claims not to be malicious – Read More –
Microsoft has addressed four zero-day vulnerabilities this month, two of which have been exploited – Read More –
The TA455 phishing campaign used fake job offers on LinkedIn to deploy malware – Read More –
Panaseer claims 72% of security leaders are taking out personal indemnity insurance as board scrutiny increases – Read More –
New phishing tool GoIssue targets GitHub, enabling mass phishing, and has been linked to the GitLoker extortion campaign – Read More –
watchTowr has found a flaw in Citrix’s Session Recording Manager that can be exploited to enable unauthenticated RCE against Citrix Virtual Apps and Desktops – Read More –
Jamf observed North Korean attackers embedding malware within Flutter applications to target macOS devices, potentially to test a new way of weaponizing malware – Read More –
Halliburton has reported a $35m loss associated with an August ransomware breach – Read More –
The World Economic Forum has shared recommendations on how to build on the success of existing partnerships to accelerate the disruption of cybercriminal activities – Read More –
The new Remcos RAT variant identified in a new phishing campaign exploits CVE-2017-0199 via malicious Excel files – Read More –
Researchers have uncovered a surge in phishing attacks using Visio .vsdx files to evade security scans – Read More –
This year’s Blue OLEx cyber-attack drill was hosted in Italy and benefited from the new EU-CyCLONe for the first time – Read More –
The UK Regional Organised Crime Unit (ROCU) Network has urged the elderly to be on the lookout for scam texts offering a winter fuel subsidy – Read More –
Swedish-Russian national Roman Sterlingov has been jailed for 12 years and six months for operating notorious cryptocurrency mixer Bitcoin Fog – Read More –
South Korea warned that pro-Russian groups have attacked government and private sector websites following the deployment of North Korean soldiers in Ukraine – Read More –
International energy solution provider Newpark Resources has confirmed it was hit by a ransomware attack that disrupted critical systems – Read More –
SentinelLabs observed the North Korean group BlueNoroff targeting crypto firms via a multi-stage malware campaign which utilizes a novel persistence mechanism – Read More –
Interlock employs both “big-game hunting” and double extortion tactics against its victims – Read More –
Androxgh0st botnet has expanded, integrating Mozi IoT payloads and targeting web server vulnerabilities – Read More –
An ICO audit of AI recruitment tools found numerous data privacy issues that may lead to jobseekers being discriminated against and privacy compromised – Read More –
The UK’s National Cyber Security Centre has released malvertising guidance for brands and their ad partners – Read More –
TikTok Technology Canada, Inc, the subsidiary of Chinese group ByteDance, will have to cease its operations in Canada – Read More –
CIISec report reveals the average wage for UK security professionals is now over £87,000 – Read More –
Trend Micro’s Robert McArdle says cybercriminals use of AI is far more limited than many realize, and pales in comparison to defenders’ use of the technology – Read More –
A cyber-attack targeting telematics provider Microlise has disrupted tracking services for key clients like DHL and Serco – Read More –
Organizations remain unprepared to defend against known and predictable attacks like ransomware – Read More –
The Nigerian police have arrested 113 foreign individuals and their 17 Nigerian collaborators for their alleged involvement in high-level cybercrimes – Read More –
Winos4.0 malware, derived from Gh0strat, targets Windows users via game-related applications, enabling remote control of affected systems – Read More –
Google wants to ensure a smooth transition towards required MFA across all Google Cloud accounts with a phased rollout running throughout 2025 – Read More –
Interpol claims an international policing operation has shuttered 22,000 IPs connected with cybercrime – Read More –
A man suspected of breaching hundreds of Snowflake accounts has been arrested – Read More –
ToxicPanda malware targets banking apps on Android, spreading through Italy, Portugal and Spain – Read More –
ClickFix exploits fake error messages across multiple platforms, such as Google Meet and Zoom – Read More –
A joint US government advisory warned about increasing foreign influence efforts designed to undermine the legitimacy of the Presidential Election – Read More –
This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.
Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.
If you disable this cookie, we will not be able to save your preferences. This means that every time you visit this website you will need to enable or disable cookies again.