Latest Cybersecurity News and Articles


Update: 133k+ Fortinet Appliances Still Vulnerable to CVE-2024-21762

19 March 2024
The wide geographic distribution of vulnerable SSL VPNs highlights the extensive attack surface for the critical vulnerability, with Asia having the highest number of exposed appliances.

The Aviation and Aerospace Sectors Face Skyrocketing Cyber Threats

19 March 2024
In an increasingly fragmented geopolitical landscape, influenced by the war in Ukraine and rising tensions in the Middle East, the aerospace sector’s designation as critical infrastructure has become a double-edged sword.

PoC Exploit for Critical RCE in Fortra FileCatalyst Tool Released

19 March 2024
The critical vulnerability, tracked as CVE-2024-25153 with a CVSS score of 9.8, allows remote attackers to upload files outside the intended directory and execute arbitrary code.

Suspected Russian Data-Wiping 'AcidPour' Malware Targeting Linux x86 Devices

19 March 2024
A new variant of a data wiping malware called AcidRain has been detected in the wild that's specifically designed for targeting Linux x86 devices. The malware, dubbed AcidPour, is compiled for Linux x86 devices, SentinelOne's Juan Andres Guerrero-Saade said in a series of posts on X. "The new variant [...] is an ELF binary compiled for x86 (not MIPS) and while it refers to similar devices/

New and Evasive Method Delivers NetSupport RAT in Operation PhantomBlu

19 March 2024
A new phishing campaign called Operation PhantomBlu is using sophisticated social engineering tactics to deploy the NetSupport RAT remote access trojan, showcasing innovation in evasion techniques.

Network Outages in Birmingham Persist as City Officials Stay Tight-Lipped

19 March 2024
In a brief update posted to social media on Thursday evening, the city said its offices “remain open and staff is committed to serving the public despite a network disruption first announced a week ago.”

Apex Legends Players Worried About RCE Flaw After ALGS Hacks

19 March 2024
Electronic Arts has postponed the North American (NA) finals of the ongoing Apex Legends Global Series (ALGS) after hackers compromised players mid-match during the tournament.

UK Defence Secretary Jet Hit by Electronic Warfare Attack in Poland

19 March 2024
Russian hackers launched an electronic warfare attack that disabled the GPS and communications systems of UK Defence Secretary Grant Shapps' RAF Dassault Falcon 900 jet while flying near Kaliningrad.

New Phishing Attack Uses Clever Microsoft Office Trick to Deploy NetSupport RAT

19 March 2024
A new phishing campaign is targeting U.S. organizations with the intent to deploy a remote access trojan called NetSupport RAT. Israeli cybersecurity company Perception Point is tracking the activity under the moniker Operation PhantomBlu. "The PhantomBlu operation introduces a nuanced exploitation method, diverging from NetSupport RAT’s typical delivery mechanism by leveraging OLE (Object

E-Root Marketplace Admin Sentenced to 42 Months for Selling 350K Stolen Credentials

19 March 2024
A 31-year-old Moldovan national has been sentenced to 42 months in prison in the U.S. for operating an illicit marketplace called E-Root Marketplace that offered for sale hundreds of thousands of compromised credentials, the Department of Justice (DoJ) announced. Sandu Boris Diaconu was charged with conspiracy to commit access device and computer fraud and possession of 15 or more unauthorized

New DEEP#GOSU Malware Campaign Targets Windows Users with Advanced Tactics

18 March 2024
A new elaborate attack campaign has been observed employing PowerShell and VBScript malware to infect Windows systems and harvest sensitive information. Cybersecurity company Securonix, which dubbed the campaign DEEP#GOSU, said it's likely associated with the North Korean state-sponsored group tracked as Kimsuky. "The malware payloads used in the DEEP#GOSU represent a

Fujitsu Found Malware on IT Systems, Confirms Data Breach

18 March 2024
An announcement published late last week on the firm's news portal discloses a major cybersecurity incident that has compromised systems and data, including sensitive information of customers.

UK: NCSC Releases Cloud SCADA Security Guidance

18 March 2024
The NCSC released guidance for operational technology (OT) organizations on migrating their SCADA systems to the cloud. This guidance aims to help organizations assess the benefits and risks of cloud-hosted SCADA to make informed decisions.

Report reveals an increase in cloud account compromise incidents

18 March 2024
A new report highlights new and continuing threat trends that security leaders must prepare to face in the coming years. 

Evasive Azorult Campaign Delivers Malicious Payload Through Google Sites

18 March 2024
This campaign is noteworthy as it uses an unorthodox HTML smuggling technique where the malicious payload is embedded in a separate JSON file hosted on an external website.

Charles Henderson hired as EVP of Cyber Security at Coalfire

18 March 2024
Charles Henderson was hired as EVP of Cyber Security at Coalfire with experience in threat intelligence, incident response and penetration testing.

New Acoustic Side-Channel Attack Determines Keystrokes From Typing Patterns

18 March 2024
Researchers have demonstrated a new acoustic side-channel attack on keyboards that can deduce user input based on their typing patterns, even in poor conditions, such as environments with noise.

Filipino Police Break up Forced Labor Cyber Operation

18 March 2024
The victims were lured into slavery with false job offers and were forced to adopt fake identities to extract money from their victims through promises of cryptocurrency wins, investments, and romance.

Earth Krahang APT Exploits Intergovernmental Trust to Launch Cross-Government Attacks

18 March 2024
The APT campaign targets several government entities worldwide, with a strong focus in Southeast Asia, but also seen targeting Europe, America, and Africa. It exploits public-facing servers and sends spear-phishing emails to deliver backdoors.

Moldovan Citizen Sentenced in Connection With the E-Root Marketplace Case

18 March 2024
Moldovan national Sandu Boris Diaconu was sentenced to 42 months in federal prison for operating the E-Root cybercrime marketplace, which facilitated the sale of compromised computer credentials.