Latest Cybersecurity News and Articles


Losses Linked to Impersonation Scams Top $1 Billion Yearly, FTC Says

02 April 2024
A classic type of fraud — when a crook impersonates a business or a government agency — appears to be bigger than ever, according to federal statistics, and it’s now most likely to begin via text message or email instead of a phone call.

FTC denies new COPPA application

02 April 2024
The FTC denied an application for approval of a new mechanism for obtaining parental consent under the Children’s Online Privacy Protection Rule.

Escalating Malware Tactics Drive Global Cybercrime Epidemic

02 April 2024
Evasive, basic, and encrypted malware all increased in Q4 2023, fueling a rise in total malware, according to WatchGuard. The average number of malware detections rose 80% from the previous quarter.

OWASP Discloses a Data Breach Due to Wiki Misconfiguration

02 April 2024
In late February 2024, the Foundation received a few support requests and became aware of a misconfiguration of OWASP’s old Wiki web server. The misconfiguration led to a data breach involving old member resumes.

Vulnerability Database Backlog Due to Increased Volume, Changes in ‘Support,’ NIST Says

02 April 2024
The National Institute of Standards and Technology (NIST) blamed increases in the volume of software and “a change in interagency support” for the recent backlog of vulnerabilities analyzed in the organization’s National Vulnerability Database (NVD).

Government agencies collaborate on a guide to address DDoS attacks

02 April 2024
The CISA and the FBI have partnered with the Multi-State Information Sharing and Analysis Center (MS-ISAC) to release a guideline for organizations to defend against DDoS attacks. 

Vultur Banking Malware for Android Poses as McAfee Security App

02 April 2024
Fox-IT warned that a new, evasive version of Vultur spreads to victims through a hybrid attack that relies on SMS phishing and phone calls that trick the targets into installing a version of the malware that masquerades as the McAfee Security app.

Harnessing the Power of CTEM for Cloud Security

02 April 2024
Cloud solutions are more mainstream – and therefore more exposed – than ever before. In 2023 alone, a staggering 82% of data breaches were against public, private, or hybrid cloud environments. What’s more, nearly 40% of breaches spanned multiple cloud environments. The average cost of a cloud breach was above the overall average, at $4.75 million. In a time where cloud has become the de facto

Data Leak at Shopping Platform PandaBuy Impacts 1.3 Million Users

02 April 2024
"The data was stolen by exploiting several critical vulnerabilities in the platform's API and other bugs were identified allowing access to the internal service of the website," the threat actor named 'Sanggiero' said.

China-linked Hackers Deploy New 'UNAPIMON' Malware for Stealthy Operations

02 April 2024
A threat activity cluster tracked as Earth Freybug has been observed using a new malware called UNAPIMON to fly under the radar. "Earth Freybug is a cyberthreat group that has been active since at least 2012 that focuses on espionage and financially motivated activities," Trend Micro security researcher Christopher So said in a report published today. "It has been observed to

Advanced Cybersecurity Strategies Boost Shareholder Returns

02 April 2024
Companies demonstrating advanced cybersecurity performance generate a shareholder return that is 372% higher than their peers with basic cybersecurity performance, according to a new report from Diligent and Bitsight.

Update: Prudential Insurance Says Data of 36,000 Exposed During February Cyberattack

02 April 2024
“Through the investigation, we learned that the unauthorized third party gained access to our network on February 4, 2024, and removed a small percentage of personal information from our systems,” the breach notification letters said.

Skyflow Raises $30M in Extended Series B

02 April 2024
Skyflow, a Palo Alto, CA-based data privacy vault company, raised $30M in Extended Series B funding. The round was led by Khosla Ventures with participation from Mouro Capital, Foundation Capital, and Canvas Ventures.

India Says it has Rescued 250 Citizens From Cambodian Cyber Slavery

02 April 2024
On Saturday, India’s Ministry of External Affairs responded to local media reports about Indians trapped in Cambodia, saying they are closely collaborating with Cambodian authorities to rescue them.

AI Abuse and Misinformation Campaigns Threaten Financial Institutions

02 April 2024
Though generative AI offers financial firms remarkable business and cybersecurity utility, cyber threats relating to GenAI in financial services are a consistent concern, according to FS-ISAC.

Update: Yacht Retailer MarineMax Discloses Data Breach After Cyberattack

02 April 2024
MarineMax filed an updated report to regulators at the Securities and Exchange Commission on Monday warning that customer and employee information was stolen during the incident. The Rhysida ransomware gang took credit for the attack on March 21.

StealthMole raises $7M Series A for its AI-Powered Dark Web Intelligence Platform

02 April 2024
StealthMole, an AI-powered dark web intelligence startup that specializes in monitoring cyber threats and detecting cybercrime, announced Thursday that it has raised a $7 million Series A funding round.

Google to Delete Billions of Browsing Records in 'Incognito Mode' Privacy Lawsuit Settlement

02 April 2024
Google has agreed to purge billions of data records reflecting users' browsing activities to settle a class action lawsuit that claimed the search giant tracked them without their knowledge or consent in its Chrome browser. The class action, filed in 2020, alleged the company misled users by tracking their internet browsing activity who thought that it remained private when using the "

Massive Phishing Campaign Strikes Latin America: Venom RAT Targeting Multiple Sectors

02 April 2024
The threat actor known as TA558 has been attributed to a new massive phishing campaign that targets a wide range of sectors in Latin America with the goal of deploying Venom RAT. The attacks primarily singled out hotel, travel, trading, financial, manufacturing, industrial, and government verticals in Spain, Mexico, United States, Colombia, Portugal, Brazil, Dominican Republic, and

Florida Pediatric Associates health data impacted by data breach

01 April 2024
Florida Pediatric Associates (FPA) announced that a data breach experienced by Bowden Barlow Law may have affected FPA health information.