Latest Cybersecurity News and Articles
23 February 2023
The (Other) Risk in Finance
A few years ago, a Washington-based real estate developer received a document link from First American – a financial services company in the real estate industry – relating to a deal he was working on. Everything about the document was perfectly fine and normal.
The odd part, he told a reporter, was that if he changed a single digit in the URL, suddenly, he could see
23 February 2023
Hydrochasma, the threat actor behind this campaign, has not been linked to any previously identified group, but appears to have a possible interest in industries that may be involved in COVID-19-related treatments or vaccines.
23 February 2023
In an early victory for Meta, the Competition Appeal Tribunal has refused to certify a collective claim brought on behalf of some 45 million consumers by proposed class representative Dr. Liza Lovdahl Gormsen (the “PCR”).
23 February 2023
Materials research organizations in Asia have been targeted by a previously unknown threat actor using a distinct set of tools.
Symantec, by Broadcom Software, is tracking the cluster under the moniker Clasiopa. The origins of the hacking group and its affiliations are currently unknown, but there are hints that suggest the adversary could have ties to India.
This includes references to "
23 February 2023
A new backdoor associated with a malware downloader named Wslink has been discovered, with the tool likely used by the notorious North Korea-aligned Lazarus Group, new findings reveal.
The payload, dubbed WinorDLL64 by ESET, is a fully-featured implant that can exfiltrate, overwrite, and delete files; execute PowerShell commands; and obtain comprehensive information about the underlying machine.
23 February 2023

Employees given until 15 March to comply amid concerns over app’s Chinese ownershipThe EU’s executive body has banned its thousands of staff from using TikTok, as governments and officials become increasingly concerned over the company’s data practices and Chinese ownership.The European Commission sent an email to employees ordering them to delete the app from all work phones and devices, and any personally owned ones that use the commission’s apps and email. Employees have until 15 March to comply. Continue reading...
23 February 2023
Two recent separate hacking incidents involving attackers stealing copies of protected health information have affected more than one million patients of a New Jersey healthcare system and an Alabama cardiovascular clinic.
23 February 2023
Researchers warned that malicious actors could have deleted the dataset, resulting in a permanent loss of users’ private messages, if the leaked data had not been backed up.
23 February 2023
Tech giant Microsoft says it observed distributed denial-of-services attacks become shorter in duration in 2022 while also becoming more potent and capable of larger impact.
23 February 2023
An active malware campaign has set its sights on Facebook and YouTube users by leveraging a new information stealer to hijack the accounts and abuse the systems' resources to mine cryptocurrency.
Bitdefender is calling the malware S1deload Stealer for its use of DLL side-loading techniques to get past security defenses and execute its malicious components.
"Once infected, S1deload Stealer steals
23 February 2023
Millions of Russians in almost a dozen cities throughout the country were greeted Wednesday morning by radio alerts, text messages, and sirens warning of an air raid or missile strikes that never occurred. The warnings were later blamed on hackers.
23 February 2023
Many of Russia’s cyber operations against Ukraine and NATO members during the past year have not yet become public knowledge, according to a joint report published this week by two Dutch intelligence services.
23 February 2023
The European Digital Rights (EDRi) association on Tuesday called for the European Parliament committee investigating spyware to amend its recommendations around the technology.
23 February 2023
On February 16, 2023, the National Credit Union Administration (NCUA) issued its final rule on cyber incident notification requirements for federally insured credit unions.
23 February 2023
At least five proposed class action lawsuits have been filed in recent days in the wake of a California medical group's February 1 report of a ransomware attack last December that affected more than 3.3 million individuals.
23 February 2023
A report from Varonis revealed its findings about the second version of HardBit ransomware that extorts organizations. Its first version was observed in October 2022. This time, actors were spotted negotiating with certain victims as per their terms of cyber insurance. Victims are given 48 hours to get in touch with hackers, who use a peer-to-peer chat program that is open-source and encrypted.
23 February 2023
The guide published by the Defense Department's intelligence agency on Wednesday includes a long list of recommendations, including a short list of highlights urging teleworkers to ensure their devices and software are up to date.
23 February 2023
The campaign aims to raise $1.3 million to purchase technology and equipment that will help Ukraine’s cyber forces conduct digital operations that could impede Russia’s advances on the real battlefield.
23 February 2023
In a statement, the company described identifying “an unauthorized attempt to access our systems in recent days” which it said had been “contained, isolated, and terminated.”
23 February 2023
Cybersecurity researchers are warning of "imposter packages" mimicking popular libraries available on the Python Package Index (PyPI) repository.
The 41 malicious PyPI packages have been found to pose as typosquatted variants of legitimate modules such as HTTP, AIOHTTP, requests, urllib, and urllib3.
The names of the packages are as follows:
aio5, aio6, htps1, httiop, httops, httplat, httpscolor