Latest Cybersecurity News and Articles


Google Fi Says Hackers Accessed Customers' Phone Numbers, Account Information

09 February 2023
Google says the hackers accessed limited customer information, including phone numbers, account status, SIM card serial numbers, and information related to details about customers’ mobile service plans.

New SH1MMER Exploit for Chromebook Unenrolls Managed ChromeOS Devices

09 February 2023
A new exploit has been devised to "unenroll" enterprise- or school-managed Chromebooks from administrative control. Enrolling ChromeOS devices makes it possible to enforce device policies as set by the organization via the Google Admin console, including the features that are available to users. "Each enrolled device complies with the policies you set until you wipe or deprovision it," Google 

Microsoft’s Verified Publisher Status Abused in Email Theft Campaign

09 February 2023
The campaign mainly targeted Microsoft customers in Ireland and the UK. The tech giant has taken steps to disrupt the operation and it has published an article on how users can protect against these threats, which the company calls consent phishing.

BOXX Insurance raises $14.4 million to help customers stay ahead of cyber threats

09 February 2023
The latest investment was led by Zurich Insurance Company (Zurich). BOXX also unveiled that its business met its combined goal to grow 10x in the last 24 months whilst continuing to outperform its underwriting targets.

IT Army of Ukraine Gained Access to a 1.5GB Archive From Russia's Gazprom

09 February 2023
The group of Ukrainian hacktivists announced the hack on their Telegram channel claiming that the archive contains more than 6,000 files of the companies of the Gazprom group.

Experts Warn of 'Ice Breaker' Cyberattacks Targeting Gaming and Gambling Industry

09 February 2023
A new attack campaign has targeted the gaming and gambling sectors since at least September 2022, just months prior to the ICE London 2023 gaming industry trade fair event that's scheduled next week. Israeli cybersecurity company Security Joes is tracking the activity cluster under the name Ice Breaker, stating the intrusions employ clever social engineering tactics to deploy a JavaScript

Update: LockBit takes credit for November ransomware attack on Sacramento PBS station

09 February 2023
The PBS station KVIE announced the attack on November 23, noting that some of its internal systems were affected on October 31. It immediately took systems offline, notified law enforcement, and hired experts to investigate the incident.

Planet Ice Suffers Hack Resulting in Theft of 240,000 Customers' Accounts Details

09 February 2023
The data from 240,488 customer accounts is now in the hands of hackers, including dates of birth, names, and genders of children having parties, email addresses, IP addresses, passwords, phone numbers, physical addresses, and purchases.

Reality check: Is ChatGPT really the next big cybersecurity threat?

09 February 2023
When OpenAI released ChatGPT in November, programmers were astounded to discover that the artificial intelligence-powered chatbot could not only mimic a huge variety of human speech but could also write code.

Pro-Russian DDoS attacks raise alarm in Denmark, U.S.

09 February 2023
Since Russia began its invasion of Ukraine 11 months ago, hacking groups like Killnet and NoName057 have targeted an array of government institutions, businesses, and organizations across Europe and the United States.

Ransomware Attack Forces the Closure of Four Public Schools in Nantucket

09 February 2023
A ransomware attack forced the closure Tuesday of four public schools serving 1,700 students on the island of Nantucket, Massachusetts, the school district’s superintendent said in an email to parents.

9 data privacy guidelines recommended to New Yorkers

09 February 2023
New York Governor releases guidelines on how citizens can protect themselves and their data in addition to an expansion of cybersecurity initiatives.

Update: POC exploit released for VMware vRealize Log Insight vulnerabilities

09 February 2023
Updates for the vulnerabilities are available for VMware vRealize Log Insight in the form of version 8.10.2. VMware also published workarounds as an alternative for affected customers.

New LockBit Green Ransomware Variant Borrows Code From Conti Ransomware

09 February 2023
Lockbit ransomware operators have implemented a new version of their malware, dubbed LockBit Green, which was apparently designed to include cloud-based services among its targets.

5 hacktivism examples: Most famous and devastating cases

09 February 2023
Contributed by George Mack, Content Marketing Manager, Check Point Software. It you keep up-to-date with current events, then it is highly probable that you’re aware of at least one example of hacktivism. Derived from the words ‘hack’ and ‘activism,’ hacktivism is a type of activism that involves the act of hacking to bring attention to […] The post 5 hacktivism examples: Most famous and devastating cases appeared first on CyberTalk.

Nevada Ransomware has Released Upgraded Locker

09 February 2023
The actors behind this new project have an affiliate platform first introduced on the RAMP underground community, which is known for initial access brokers (IABs) and other cybercriminal actors and ransomware groups.

New Sh1mmer ChromeBook exploit unenrolls managed devices

09 February 2023
Security researchers from the Mercury Workshop Team have developed a new exploit called 'Shady Hacking 1nstrument Makes Machine Enrollment Retreat', or 'Sh1mmer,' that lets users unenroll their Chromebooks from enterprise management.

Researchers Uncover New Bugs in Popular ImageMagick Image Processing Utility

09 February 2023
Cybersecurity researchers have disclosed details of two security flaws in the open source ImageMagick software that could potentially lead to a denial-of-service (DoS) and information disclosure. The two issues, which were identified by Latin American cybersecurity firm Metabase Q in version 7.1.0-49, were addressed in ImageMagick version 7.1.0-52, released in November 2022. A

The best AWS security practices for 2023

09 February 2023
EXECUTIVE SUMMARY: As organizations have transitioned from basic cloud environments to distributed, and considerably more complex cloud-native environments, the cloud security strategies of 5 years ago have become outdated. To enact a better cloud security strategy that allows you to stay a step ahead of cyber criminals, here’s what you need to know… Are you […] The post The best AWS security practices for 2023 appeared first on CyberTalk.

New Threat: Stealthy HeadCrab Malware Compromised Over 1,200 Redis Servers

09 February 2023
At least 1,200 Redis database servers worldwide have been corralled into a botnet using an "elusive and severe threat" dubbed HeadCrab since early September 2021. "This advanced threat actor utilizes a state-of-the-art, custom-made malware that is undetectable by agentless and traditional anti-virus solutions to compromise a large number of Redis servers," Aqua security researcher Asaf Eitani