Latest Cybersecurity News and Articles


AI Tools Put Companies at Risk of Data Exfiltration

07 March 2024
The rise of GenAI, along with cloud applications, has made it challenging to monitor and protect critical data. As a result, organizations are concerned about the impact of AI on sensitive data and struggle to comply with data protection laws.

American Express announces data breach

07 March 2024
American Express announced that card members' account and financial data may have been affected by a data breach involving third party partners.

Recognising UK-based security researchers who have disclosed vulnerabilities to UK government

07 March 2024
The NCSC recently hosted a small number of those who have helped make UK government services more secure and resilient.

Recognising UK-based security researchers who have disclosed vulnerabilities to UK government

07 March 2024
The NCSC recently hosted a small number of those who have helped make UK government services more secure and resilient.

Feds Get Second Guilty Plea in Prosecution of Nigerian-Led BEC Case

07 March 2024
Nigerian national Henry Onyedikachi Echefu pleaded guilty to wire fraud and money laundering in connection with a $6 million business email compromise scheme dating back to 2017.

ITRC Finds Online Job Scams on the Rise

07 March 2024
The surge in online job scams, targeting job seekers for personal information, has seen a significant increase in reported incidents, with a 545% spike in January 2024 compared to December 2023, according to the Identity Theft Resource Center (ITRC).

RiskInDroid Performs Open-Source Risk Analysis of Android Apps

07 March 2024
RiskInDroid is an open-source tool for analyzing the risk level of Android applications using machine learning. Unlike other tools, RiskInDroid conducts reverse engineering on apps to extract permissions and assess their usage in the bytecode.

EU Agrees 'Cyber Solidarity Act' to Bolster Incident Response and Recovery

07 March 2024
The regulations will establish an EU-wide cybersecurity alert system and a cybersecurity emergency mechanism to support preparedness, financial assistance, and a cybersecurity reserve for large-scale incidents.

Hacked WordPress Sites Abusing Visitors' Browsers for Distributed Brute-Force Attacks

07 March 2024
Threat actors are conducting brute-force attacks against WordPress sites by leveraging malicious JavaScript injections, new findings from Sucuri reveal. The attacks, which take the form of distributed brute-force attacks, “target WordPress websites from the browsers of completely innocent and unsuspecting site visitors,” security researcher Denis Sinegubko said. The activity is part of a&

Chinese State Hackers Target Tibetans with Supply Chain, Watering Hole Attacks

07 March 2024
The China-linked threat actor known as Evasive Panda orchestrated both watering hole and supply chain attacks targeting Tibetan users at least since September 2023. The end of the attacks is to deliver malicious downloaders for Windows and macOS that deploy a known backdoor called MgBot and a previously undocumented Windows implant known as Nightdoor. The findings come from ESET, which

PetSmart Warns of Credential Stuffing Attacks Trying to Hack Accounts

07 March 2024
PetSmart, a major pet retail company, has issued a warning to customers about credential stuffing attacks aimed at breaching their accounts. As a precaution, passwords for accounts logged in during the attack have been reset.

Capita Says Cyberattack Contributed to Annual Loss of More Than $135 Million

07 March 2024
The incident led to a drop in Capita's share price and a decline in its customer experience score. Data breaches and potential regulatory penalties could further impact the company, which is also facing criticism for its handling of personal data.

Hackers Switch From Crypto Drainer to Distributed WordPress Brute Force Attacks

07 March 2024
Hackers are using compromised WordPress sites to force visitors' browsers to conduct brute-force attacks on other websites, potentially leading to data theft and site manipulation.

Five Ways to Keep API Integrations Secure

07 March 2024
Regularly updating software, enforcing rate limits, and funneling logs to an SIEM solution are essential steps to maintain the security of API integrations and uncover security issues on time.

Linux Malware Targets Misconfigured Apache Hadoop, Confluence, Docker, and Redis Servers

07 March 2024
An emerging malware campaign is targeting misconfigured servers hosting web-facing services like Apache Hadoop YARN, Docker, Confluence, and Redis, using novel Golang payloads for automated identification and exploitation of vulnerable hosts.

South Korean Police Develops Deepfake Detection Tool

07 March 2024
The tool will be able to determine whether video content has been artificially generated using AI technology in about five to 10 minutes. Police said the software has an 80% probability of detecting whether a video is authentic.

Human vs. Non-Human Identity in SaaS

07 March 2024
In today's rapidly evolving SaaS environment, the focus is on human users. This is one of the most compromised areas in SaaS security management and requires strict governance of user roles and permissions, monitoring of privileged users, their level of activity (dormant, active, hyperactive), their type (internal/ external), whether they are joiners, movers, or leavers, and more.  Not

NSA Shares Zero-Trust Guidance to Limit Adversaries on the Network

07 March 2024
Organizations need to gradually advance through specific maturity levels in various components of the zero-trust architecture to effectively build a resilient security environment.

Why Cyber Maturity Assessment Should Become Standard Practice

07 March 2024
Despite obstacles like time constraints and lack of expertise, regular and thorough cyber maturity assessments based on established frameworks are crucial for businesses of all sizes to enhance their security posture and resilience.

Kimsuky Exploits ScreenConnect Bugs, Drops ToddlerShark

07 March 2024
The North Korea-based Kimsuky APT is abusing ScreenConnect bugs, CVE-2024-1708 and CVE-2024-1709, to propagate a new malware called ToddleShark. ToddlerShark uses polymorphic traits, legitimate Microsoft binaries, and registry modifications to establish persistence and gather sensitive information from infected devices.  With a concerted effort to prioritize security updates, organizations can safeguard their systems and data against cyberattacks.