Latest Cybersecurity News and Articles


Major corporations’ credentials stolen in data center incident

21 February 2023
EXECUTIVE SUMMARY: In an incident that highlights the broad-based vulnerability of computer networks everywhere, cyber criminals recently got ahold of login credentials for data centers in Asia that are used by leading global businesses. As a result, cyber criminals may be able to execute advanced espionage activities, sabotage, or other malicious activities. The data caches […] The post Major corporations’ credentials stolen in data center incident appeared first on CyberTalk.

MyloBot Botnet Spreading Rapidly Worldwide, Infecting Over 50,000 Devices Daily

21 February 2023
A sophisticated botnet known as MyloBot has compromised thousands of systems, with most of them located in India, the United States, Indonesia, and Iran, according to BitSight.

Scrut Automation Raises $7.5 Million for GRC Platform

21 February 2023
India-based Scrut Automation has announced raising $7.5 million in a new funding round that will help the company improve its governance, risk, and compliance (GRC) automation platform and expand its presence in the United States.

Hackers Scored Corporate Giants’ Logins for Asian Data Centers

21 February 2023
The information included credentials in varying numbers for some of the world’s biggest companies, including Alibaba Group, Amazon, Apple, BMW AG, Goldman Sachs Group, Huawei Technologies, Microsoft, and Walmart, according to Resecurity.

DNA Diagnostic Center fined $400,000 for 2021 data breach

21 February 2023
The DNA testing company will pay a penalty of $400,000 to the attorneys general of Pennsylvania and Ohio for a data breach in 2021 that affected 2.1 million individuals nationwide, according to a settlement deal with the states’ attorneys general.

Newly Identified Earth Yako APT Observed Targeting Japanese Entities

21 February 2023
Trend Micro experts observed several targeted attacks against researchers of academic organizations and think tanks in Japan and attributed the campaign to Earth Yako. Previous to this, Earth Yako APT group has been abusing legitimate services such as Dropbox, GitHub, and Protonmail to expand its campaign to East Asia. 

ChatGPT is bringing advancements and challenges for cybersecurity

21 February 2023
ChatGPT is a gold mine of insight that removes much of the work involved in research and problem-solving by enabling users to access the entire corpus of the public internet with just one set of instructions.

Feigning sickness is the most common romance scammer tactic

21 February 2023
The FTC released data regarding the common lies sold by romance scammers, whose scams cost nearly 70,000 consumers $1.3 billion in 2022.

MyloBot Botnet Spreading Rapidly Worldwide: Infecting Over 50,000 Devices Daily

21 February 2023
A sophisticated botnet known as MyloBot has compromised thousands of systems, with most of them located in India, the U.S., Indonesia, and Iran. That's according to new findings from BitSight, which said it's "currently seeing more than 50,000 unique infected systems every day," down from a high of 250,000 unique hosts in 2020. Furthermore, an analysis of MyloBot's infrastructure has found

Complexity, volume of cyber attacks lead to burnout in security teams

21 February 2023
The rapid evolution of cybercrime is weighing on security teams substantially more than it did last year, leading to widespread burnout and potential regulatory risk, according to Magnet Forensics.

HardBit 2.0 Engages in Clever Ransom Negotiation Based on Cyber Insurance Coverage

21 February 2023
Seemingly improving upon their initial release, HardBit version 2.0 was introduced toward the end of November 2022, with samples seen throughout the end of 2022 and into 2023.

The Future of Network Security: Predictive Analytics and ML-Driven Solutions

21 February 2023
As the digital age evolves and continues to shape the business landscape, corporate networks have become increasingly complex and distributed. The amount of data a company collects to detect malicious behaviour constantly increases, making it challenging to detect deceptive and unknown attack patterns and the so-called "needle in the haystack". With a growing number of cybersecurity threats,

Researchers Warn of ReverseRAT Backdoor Targeting Indian Government Agencies

21 February 2023
Cybersecurity firm ThreatMon attributed the activity to a threat actor tracked as SideCopy. SideCopy is a threat group of Pakistani origin that overlaps with another actor called Transparent Tribe.

Ireland: Tusla to begin contacting 20,000 people whose data was compromised during HSE cyberattack

21 February 2023
The child and family agency Tusla is to begin contacting around 20,000 people whose data was compromised during the 2021 cyberattack on the Health Service Executive (HSE), Ireland's public healthcare system.

WIP26 Espionage Attack Targets Telecom Providers in the Middle East

21 February 2023
SentinelOne spotted a new cyberespionage campaign, dubbed WIP26, targeting telecommunications providers in the Middle East by exploiting popular tools from Google, Microsoft, and Dropbox. The attack begins with a WhatsApp message sent to employees of the targeted organization. For protection against such sophisticated attacks, researchers suggest keeping yourself updated with the latest cyber activities across the sector and leveraging a threat intelligence platform that caters to your need.

New Advanced Info-stealer Stealc Appears in the Threat Landscape

21 February 2023
Plymouth already released several versions of the info-stealer malware and published changelogs on hacking forums, as well as on a dedicated Telegram channel. The most recent variant observed by the experts is v1.3.0, released on February 11, 2023.

Researchers Discover Dozens Samples of Information Stealer 'Stealc' in the Wild

21 February 2023
A new information stealer called Stealc that's being advertised on the dark web could emerge as a worthy competitor to other malware of its ilk. "The threat actor presents Stealc as a fully featured and ready-to-use stealer, whose development relied on Vidar, Raccoon, Mars, and RedLine stealers," SEKOIA said in a Monday report. The French cybersecurity company said it discovered more than 40

LVHN Reports Cyberattack by Russian Ransomware Gang

21 February 2023
The health system announced Monday morning some patient data was compromised in a ransomware attack. LVHN said the group behind the attack is known as "BlackCat" and has had ties to Russia.

Coinbase Employee Falls for SMS Scam in Cyber Attack, Limited Data Exposed

21 February 2023
Popular cryptocurrency exchange platform Coinbase disclosed that it experienced a cybersecurity attack that targeted its employees. The company said its "cyber controls prevented the attacker from gaining direct system access and prevented any loss of funds or compromise of customer information." The incident, which took place on February 5, 2023, resulted in the exposure of a "limited amount of

Cybersecurity breaches are up manifold as Internet penetration grows

21 February 2023
According to official data, the total number of cybersecurity incidents tracked by the CERT-In during the year 2019 was 394,499, which spiked to 1,158,208 in 2020, and 1,402,809 in 2021. Similarly, 1,391,457 incidents were observed in 2022.