Latest Cybersecurity News and Articles


Researchers Uncover 'LLMjacking' Scheme Targeting Cloud-Hosted AI Models

10 May 2024
Cybersecurity researchers have discovered a novel attack that employs stolen cloud credentials to target cloud-hosted large language model (LLM) services with the goal of selling access to other threat actors. The attack technique has been codenamed LLMjacking by the Sysdig Threat Research Team. "Once initial access was obtained, they exfiltrated cloud credentials and gained

New TunnelVision Attack Allows Hijacking of VPN Traffic via DHCP Manipulation

09 May 2024
Researchers have detailed a Virtual Private Network (VPN) bypass technique dubbed TunnelVision that allows threat actors to snoop on victim's network traffic by just being on the same local network. The "decloaking" method has been assigned the CVE identifier CVE-2024-3661 (CVSS score: 7.6). It impacts all operating systems that implement a DHCP client and has

How Workforce Reductions Affect Cybersecurity Postures

09 May 2024
The Cobalt State of Pentesting Report highlights the challenges faced by the cybersecurity industry in balancing the use of AI and protecting against it, amidst significant workforce reductions and resource constraints.

Kremlin-Backed APT28 Targets Polish Institutions in Large-Scale Malware Campaign

09 May 2024
Polish government institutions have been targeted as part of a large-scale malware campaign orchestrated by a Russia-linked nation-state actor called APT28. "The campaign sent emails with content intended to arouse the recipient's interest and persuade him to click on the link," the computer emergency response team, CERT Polska, said in a Wednesday bulletin. Clicking on the link

Update: Boeing Confirms Attempted $200 Million Ransomware Extortion Attempt

09 May 2024
Boeing confirmed to CyberScoop that it is the unnamed multinational aeronautical and defense corporation referenced in an indictment unsealed Tuesday by the U.S. Department of Justice.

With Nation-State Threats in Mind, Nearly 70 Software Firms Agree to Secure by Design Pledge

09 May 2024
The CISA announced the first round of commitments at the RSA Conference on Wednesday, with Director Jen Easterly warning that it was necessary because of widespread hacking campaigns by nation-states like China.

Poland Says it was Targeted by Russian Military Intelligence Hackers

09 May 2024
Poland’s CERT-PL said on Wednesday that it had observed a large-scale malware campaign, likely carried out by the hacker group APT28, also known as Fancy Bear, associated with Russia’s military intelligence agency, the GRU.

Generative AI is a Looming Cybersecurity Threat

09 May 2024
Researchers have not identified any AI-engineered cyberattack campaigns, yet, but they say it’s only a matter of time before an AI system is dominant enough in the market to draw attention.

Security Tools Fail to Translate Risks for Executives

09 May 2024
CISOs stress the importance of DevSecOps automation to mitigate risks associated with AI and emphasize the need for modernized security tools to combat evolving cyber threats and comply with regulations.

Mirai Botnet Exploits Ivanti Connect Secure Flaws for Payload Delivery

09 May 2024
In the attack chain observed by Juniper Threat Labs, CVE-2023-46805 is exploited to gain access to the "/api/v1/license/key-status/;" endpoint, which is vulnerable to command injection, and inject the payload.

CISA Extends CIRCIA Rule Comment Period

09 May 2024
The CISA will prolong the comment period for new regulations under the Cyber Incident Reporting for Critical Infrastructure Act for another month after requests from the energy and information technology sectors and other industries.

Findings Show MFA Bypass in Microsoft Azure Entra ID Using Seamless SSO

09 May 2024
Researchers at Pen Test Partners successfully bypassed Azure’s MFA requirement for SSO by changing the user-agent of a browser. They used a browser that resembled Chrome on Linux but encountered an error message stating MFA was required.

Report: 97% of Organizations Hit by Ransomware Turn to Law Enforcement

09 May 2024
According to a new Sophos report, 59% of those organizations that did engage with law enforcement found the process easy or somewhat easy. Only 10% of those surveyed said the process was very difficult.

97% of organizations report difficulties with identity verification

09 May 2024
A survey of 700 IT decision-makers reveals the state of identity fraud. Notably, almost all organizations face challenges with identity verification. 

Fake E-commerce Network Scams $50M from American, European, Australian Shoppers

09 May 2024
According to a report by the German cybersecurity firm Security Research Labs GmbH (SRLabs), the BogusBazaar network has attempted to process an estimated $50 million in fake purchases since the operation launched three years ago.

Six Austrians Arrested in Multi-Million Euro Crypto Scheme

09 May 2024
Law enforcement agencies from Austria, Cyprus, and Czechia have collaborated to dismantle an online cryptocurrency scam, resulting in the arrest of six Austrians allegedly behind the scheme.

New Guide: How to Scale Your vCISO Services Profitably

09 May 2024
Cybersecurity and compliance guidance are in high demand among SMEs. However, many of them cannot afford to hire a full-time CISO. A vCISO can answer this need by offering on-demand access to top-tier cybersecurity expertise. This is also an opportunity for MSPs and MSSPs to grow their business and bottom line. MSPs and MSSPs that expand their offerings and provide vCISO services

Mirai Botnet Exploits Ivanti Connect Secure Flaws for Malicious Payload Delivery

09 May 2024
Two recently disclosed security flaws in Ivanti Connect Secure (ICS) devices are being exploited to deploy the infamous Mirai botnet. That's according to findings from Juniper Threat Labs, which said the vulnerabilities CVE-2023-46805 and CVE-2024-21887 have been leveraged to deliver the botnet payload. While CVE-2023-46805 is an authentication bypass flaw,

FBI Warns of Gift Card Fraud Ring Targeting Retail Companies

09 May 2024
The FBI has issued a warning about a hacking group named Storm-0539 targeting retail companies in the United States through phishing attacks on employees in gift card departments.

Pktstat: Open-Source Ethernet Interface Traffic Monitor

09 May 2024
Pktstat is an open-source tool that is a straightforward alternative to ncurses-based Pktstat. On Linux, it utilizes AF_PACKET, while on other platforms, it employs generic PCAP live wire capture.