Latest Cybersecurity News and Articles


Deepwatch raises $180 million to accelerate platform innovation

16 February 2023
Deepwatch has unveiled a total of $180 million in equity investments and strategic financing from Springcoast Capital Partners, Splunk Ventures, and Vista Credit Partners, a subsidiary of Vista Equity Partners.

SAS Airline Network Hit by Hackers, Says Mobile App was Compromised

16 February 2023
SAS said it was hit by a cyberattack Tuesday evening and urged customers to refrain from using its app but later said it had fixed the problem. News reports said the hack paralyzed the carrier's website and leaked customer information from its app.

Why Keeping Your Gaming Console Secure Should be a Priority in 2023

16 February 2023
There are an estimated 3.09 billion active video gamers worldwide. Unsurprisingly, the rising popularity of video gaming has proved an irresistible draw for cyber-criminals looking to target players’ login credentials and personal information.

China-base 8220 Gang Evolves its Tactics to Target Cloud Environments

16 February 2023
Chinese 8220 Gang has been found enhancing its attack techniques, such as involving using malicious Docker images and exploiting Struts2, Redis, and Weblogic servers, to launch cryptomining attacks. Some of these attacks leveraged vulnerable Oracle Weblogic servers, and the other campaign attacked a vulnerable Apache web server. Companies can leverage threat intelligence platforms to track IOCs and understand the attack patterns of such attacks.

Emsisoft Says Hackers are Spoofing its Code Signing Certificates to Breach Networks

16 February 2023
?A hacker is using fake code-signing certificates impersonating cybersecurity firm Emsisoft to target customers using its security products, hoping to bypass their defenses.

Dark Web Revenue Down Dramatically After Hydra's Demise

16 February 2023
Until its takedown in April 2022, Hydra owned 93% of all illicit underground economic activities. Year-over-year, dark web marketplace revenues at the end of 2021 were about $3.1 billion, but by the end of 2022, they totaled only about $1.5 billion.

Mirai Botnet Variant V3G4 Exploiting IoT Devices for DDoS Attacks

16 February 2023
Dubbed V3G4 by researchers, it is a type of malware that specifically targets Internet of Things (IoT) devices. Like the original Mirai botnet, V3G4 infects IoT devices by exploiting default data login credentials such as usernames and passwords.

APT37 Exploits Hangul Vulnerability with Highly-Evasive M2RAT Malware

16 February 2023
North Korean APT37 was spotted using a highly evasive M2RAT malware and steganography to target individuals for intelligence collection. It exploits an old EPS bug, tracked as CVE-2017-8291, in the Hangul word processor (commonly used in South Korea). The malware uses a shared memory region for executing commands and exfiltrating data from infected machines.

GAO Calls for Improved Data Privacy Protections

16 February 2023
The most recent in a series of US Government Accountability Office (GAO) reports on the state of cybersecurity across the federal government makes specific recommendations about the collection, use, and sharing of PII.

Breaking the Security "Black Box" in DBs, Data Warehouses and Data Lakes

16 February 2023
Security teams typically have great visibility over most areas, for example, the corporate network, endpoints, servers, and cloud infrastructure. They use this visibility to enforce the necessary security and compliance requirements. However, this is not the case when it comes to sensitive data sitting in production or analytic databases, data warehouses or data lakes. Security teams have to

ProxyShellMiner Campaign Creating Dangerous Backdoors

16 February 2023
As the name suggests, ProxyShellMiner exploits the ProxyShell vulnerabilities CVE-2021-34473 and CVE-2021-34523 in Windows Exchange servers for initial access and compromise of an organization to deliver crypto miners.

New Threat Actor WIP26 Targeting Telecom Service Providers in the Middle East

16 February 2023
Telecommunication service providers in the Middle East are being targeted by a previously undocumented threat actor as part of a suspected espionage-related campaign. Cybersecurity firms SentinelOne and QGroup are tracking the activity cluster under the former's work-in-progress moniker WIP26. "WIP26 relies heavily on public cloud infrastructure in an attempt to evade detection by making

Report: Pentagon Personnel Use Unauthorized, Unsafe Apps on Work Devices

16 February 2023
The Defense Department’s inspector general found that unsanctioned apps downloaded onto government-issued mobile devices “could pose operational and cybersecurity risks to DOD information and information systems.”

Hyundai Says Its Cars Will No Longer Be Easy to Steal Using Viral TikTok Instructions

16 February 2023
Hyundai will issue a software patch that the company says will thwart would-be thieves from stealing its cars using instructions from viral TikTok videos, according to a company announcement.

ESXiArgs Ransomware Hits Over 500 New Targets in European Countries

16 February 2023
More than 500 hosts have been newly compromised en masse by the ESXiArgs ransomware strain, most of which are located in France, Germany, the Netherlands, the U.K., and Ukraine. The findings come from attack surface management firm Censys, which discovered "two hosts with strikingly similar ransom notes dating back to mid-October 2022, just after ESXi versions 6.5 and 6.7 reached end of life."

GitHub Copilot update stops AI model from revealing secrets

16 February 2023
GitHub has updated the AI model of Copilot, a programming assistant that generates real-time source code and function recommendations in Visual Studio, and says it's now safer and more powerful.

Splunk Enterprise Updates Patch High-Severity Vulnerabilities

16 February 2023
The most severe vulnerabilities are CVE-2023-22939 and CVE-2023-22935 (CVSS score of 8.1), two issues that could lead to the bypass of search processing language (SPL) safeguards for risky commands.

Google lets a few Android devices into its Privacy Sandbox

16 February 2023
Google on Tuesday began rolling out a beta test of its Privacy Sandbox software for a small portion of Android 13 devices to learn how its purportedly privacy-protecting ad tech actually performs.

OT Network Security Myths Busted in a Pair of Hacks

16 February 2023
As IT and OT network lines continue to blur in the rapidly digitalized industrial sector, new vulnerabilities and threats imperil conventional OT security measures that once isolated and guarded physical processes from cyberattacks.

Intel issues patches for SGX vulnerabilities

16 February 2023
Intel's Software Guard Extensions (SGX) are under the spotlight again after the chipmaker disclosed several newly discovered vulnerabilities affecting the tech, and recommended users update their firmware.