Latest Cybersecurity News and Articles


Cyber-Insurance Premiums Decline as Firms Build Resilience

02 July 2024
Cyber insurance premiums have seen significant reductions in price due to improved cybersecurity measures implemented by organizations. Despite an 18% increase in ransomware incidents, premiums have decreased in 2023/24.

Preparing for Q-Day as NIST Nears Approval of PQC Standards

02 July 2024
Q-Day, the day when a quantum computer can break modern encryption, is approaching rapidly, leaving our society vulnerable to cyberattacks. Recent advancements in quantum technology suggest that Q-Day is coming sooner than expected.

New Orcinius Trojan Uses VBA Stomping to Mask Infection

02 July 2024
This multi-stage trojan utilizes Dropbox and Google Docs to update and deliver payloads. It uses the VBA stomping technique, removing the VBA source code in a Microsoft Office document, leaving only compiled p-code.

How Hacked YouTube Channels Spread Scams and Malware

02 July 2024
The most common attack methods against YouTube channels involve phishing attacks to steal login credentials, exploiting weak or reused passwords, and even bypassing two-factor authentication by stealing session cookies.

CapraRAT Spyware Variant Disguised as Popular Apps to Target Android Users

02 July 2024
The recent campaign shows updates to the group's techniques and social engineering tactics, as well as efforts to maximize the spyware's compatibility with older and modern versions of the Android operating system.

78% of organizations are tracking AI risks

02 July 2024
A recent report found that 78 percent of organizations are tracking AI as an emerging risk while simultaneously adopting the technology themselves.

Dev Rejects CVE Severity, Makes his GitHub Repository Read-Only

02 July 2024
The open source project 'ip' has been archived on GitHub due to a dubious CVE report filed against it. This is not an isolated incident, as open-source developers have seen an increase in unsubstantiated CVE reports for their projects.

Security leaders weigh in on Life360 data breach

02 July 2024
Life360 was impacted by a data breach. Security leaders are sharing their insights.

Report: Cyber Workforce Grows 15% at Large Organizations

02 July 2024
Large organizations have significantly bolstered their cybersecurity workforce in 2024, with an average of one expert dedicated to cybersecurity for every 1,086 employees in companies with over $1 billion in revenue, as per a report by Wavestone.

Latest Intel CPUs Impacted by New Indirector Side-Channel Attack

02 July 2024
Researchers at the University of California, San Diego have discovered a new type of attack called 'Indirector' that targets modern Intel processors, including those from the Raptor Lake and Alder Lake generations.

How MFA Failures are Fueling a 500% Surge in Ransomware Losses

02 July 2024
The cybersecurity threat landscape has witnessed a dramatic and alarming rise in the average ransomware payment, an increase exceeding 500%. Sophos, a global leader in cybersecurity, revealed in its annual "State of Ransomware 2024" report that the average ransom payment has increased 500% in the last year with organizations that paid a ransom reporting an average payment of $2 million, up from

Indonesia Arrests Over 100 Foreigners in Bali Suspected of Participating in Cybercrime

02 July 2024
Over a hundred foreign nationals suspected of committing cybercrimes were arrested in a villa raid on Bali. Among the arrested, 14 were Taiwanese citizens, but the identities of the others are unknown, although all held Taiwanese passports.

New Intel CPU Vulnerability 'Indirector' Exposes Sensitive Data

02 July 2024
Modern CPUs from Intel, including Raptor Lake and Alder Lake, have been found vulnerable to a new side-channel attack that could be exploited to leak sensitive information from the processors. The attack, codenamed Indirector by security researchers Luyi Li, Hosein Yavarzadeh, and Dean Tullsen, leverages shortcomings identified in Indirect Branch Predictor (IBP) and the Branch Target Buffer (BTB

CISOs Becoming More Comfortable With Risk Levels

02 July 2024
The cyber threats landscape has led to changes in the way CISOs evaluate their business's risk appetite, causing tensions with CEO and C-suite members, according to Netskope.

Google Thwarts Over 10,000 Attempts by Chinese Influence Operator

02 July 2024
Google has revealed that it blocked over 10,000 instances of Dragon Bridge activity in the first quarter of 2024, labeling it the most prolific influence operator it tracks.

Update: Hackers Copied Employee Directory Data and Encrypted Passwords in TeamViewer Intrusion

02 July 2024
Software company TeamViewer has confirmed that a compromised employee account allowed hackers from a group tracked as APT29, linked to the Russian government, to breach its internal IT environment and steal encrypted passwords.

National Australia Bank Raises Alarm About Cyber Threats to Major Banks

02 July 2024
Australia's four major banks, including ANZ Bank, Commonwealth Bank, National Australia Bank (NAB), and Westpac, are constantly under attack from threat actors seeking to steal sensitive information and money from unsuspecting customers.

Industrial cyberattacks fuel surge in OT cybersecurity spending

02 July 2024
Enterprise spending on OT cybersecurity is predicted to increase by almost 70% to $21.6 billion globally by 2028, up from $12.75 billion in 2023, driven by attacks and regulation, according to ABI Research.

China’s ‘Velvet Ant’ Hackers Caught Exploiting New Zero-Day in Cisco Devices

02 July 2024
The vulnerability, known as CVE-2024-20399, affects Cisco NX-OS software used for Nexus-series switches. Sygnia discovered the vulnerability during an investigation into the threat group Velvet Ant.

Sanctioned and Exposed, Predator Spyware Maker Group Has Gone Awfully Quiet

02 July 2024
The group behind the Predator spyware, Intellexa Alliance, has significantly reduced its operations, indicating that it has been impacted by recent sanctions and exposure.