Latest Cybersecurity News and Articles


U.S. Government Releases New AI Security Guidelines for Critical Infrastructure

30 April 2024
The U.S. government has unveiled new security guidelines aimed at bolstering critical infrastructure against artificial intelligence (AI)-related threats. "These guidelines are informed by the whole-of-government effort to assess AI risks across all sixteen critical infrastructure sectors, and address threats both to and from, and involving AI systems," the Department of Homeland Security (DHS)&

FCC Imposes $200 Million in Fines on Four US Carriers

30 April 2024
The FCC has fined four major U.S. wireless carriers - AT&T, Sprint, T-Mobile, and Verizon - a total of nearly $200 million for unlawfully selling access to their customers' real-time location data without consent.

Google Rejected 2.28 Million Risky Android Apps From Play Store in 2023

30 April 2024
Additionally, the tech giant reports that it identified and blocked 333,000 Google Play accounts that uploaded malware, fraudulent apps, or engaged in repeated grave policy violations.

The Darkgate Menace: Leveraging Autohotkey & Attempt to Evade SmartScreen

30 April 2024
Researchers found a novel infection chain associated with the DarkGate malware, which is a Remote Access Trojan (RAT) developed using Borland Delphi and marketed as a Malware-as-a-Service (MaaS) offering on a Russian-language cybercrime forum.

Security Flaws in IRS Systems Pose Risk to Financial Statements, GAO Says

30 April 2024
In its report, the GAO highlighted “new and continuing” shortcomings with information systems and the safeguarding of assets, issues that increase the likelihood of unauthorized access to sensitive IRS data.

Thoma Bravo to take UK cybersecurity company Darktrace private in $5B deal

30 April 2024
Thoma Bravo, a private equity firm, is set to acquire the U.K.-based cybersecurity company Darktrace in a deal valued at around $5 billion. The deal is pending shareholder approval and is expected to be finalized by the end of 2024.

Zloader Learns Old Tricks

30 April 2024
Zloader, a modular trojan based on the leaked ZeuS source code, has recently introduced a new anti-analysis feature in versions 2.4.1.0 and 2.5.1.0 to prevent execution on machines that differ from the original infection.

New U.K. Law Bans Default Passwords on Smart Devices Starting April 2024

30 April 2024
The U.K. National Cyber Security Centre (NCSC) is calling on manufacturers of smart devices to comply with new legislation that prohibits them from using default passwords, effective April 29, 2024. "The law, known as the Product Security and Telecommunications Infrastructure act (or PSTI act), will help consumers to choose smart devices that have been designed to

FCC Fines Major U.S. Wireless Carriers for Selling Customer Location Data

29 April 2024
The U.S. Federal Communications Commission (FCC) today levied fines totaling nearly $200 million against the four major carriers -- including AT&T, Sprint, T-Mobile and Verizon -- for illegally sharing access to customers' location information without consent.

Google Prevented 2.28 Million Malicious Apps from Reaching Play Store in 2023

29 April 2024
Google on Monday revealed that almost 200,000 app submissions to its Play Store for Android were either rejected or remediated to address issues with access to sensitive data such as location or SMS messages over the past year. The tech giant also said it blocked 333,000 bad accounts from the app storefront in 2023 for attempting to distribute malware or for repeated policy violations. "In 2023,

Experts weigh in on the MITRE nation-state cyberattack

29 April 2024
MITRE Corporation announced that it was the target of a nation-state cyberattack, and security leaders are sharing their insights. 

China-Linked 'Muddling Meerkat' Hijacks DNS to Map Internet on Global Scale

29 April 2024
A previously undocumented cyber threat dubbed Muddling Meerkat has been observed undertaking sophisticated domain name system (DNS) activities in a likely effort to evade security measures and conduct reconnaissance of networks across the world since October 2019. Cloud security firm Infoblox described the threat actor as likely affiliated with the

DDoS Attacks Continue, Post-Election, Against Russian Independent Media Site Meduza

29 April 2024
In April, Meduza faced two large-scale distributed denial-of-service (DDoS) attacks, prompting it to reach out to Qurium to investigate their origin and composition, the researchers said.

More Than 800 Vulnerabilities Resolved Through CISA Ransomware Notification Pilot

29 April 2024
The Ransomware Vulnerability Warning Pilot was unveiled in January 2023 as a program designed to “identify organizations with internet-accessible vulnerabilities commonly associated with known ransomware actors.”

British Intelligence Moves to Protect Research Universities From Espionage

29 April 2024
The head of Britain’s domestic intelligence agency warned the country’s leading research universities on Thursday that foreign states are targeting their institutions and imperiling national security.

Experts weigh in on Omni Hotel ransomware incident

29 April 2024
Omni Hotels & Resorts was the recent target of a ransomware attack by the Daixin Team ransomware group.

Report: 73% of SME Security Professionals Missed or Ignored Critical Alerts

29 April 2024
IT staff at SMEs is overwhelmed by the complexity and demands of managing multiple tools in their security stack, leading them to miss critical severity events and weaken their company’s security posture, according to Coro.

Security leaders respond to disruption of LabHost, a fraud website

29 April 2024
LabHost, a notable phishing-as-a-service platform, was disrupted by international investigations. Security leaders respond. 

72% of CISOs believe AI solutions may lead to security breaches

29 April 2024
A new report surveyed more than 400 CISOs from the United States and the United Kingdom to gauge their challenges, priorities and initiatives. 

DHS Announces AI Safety Board with OpenAI Founder, CEOs of Microsoft, Nvidia, IBM

29 April 2024
Members will include representatives of tech companies, critical infrastructure entities, academia, and government agencies, as well as “leaders in the civil rights, civil liberties, and privacy communities,” DHS Secretary Alejandro Mayorkas said.