Latest Cybersecurity News and Articles


Silence Laboratories, a Cryptographic Security Startup, Secures Funding

04 March 2024
The funding, co-led by Pi Ventures and Kira Studio, brings the total raised to $6 million. The company plans to use the funding to expand its teams and research and development efforts.

American Express Credit Cards Exposed in Vendor Data Breach

04 March 2024
American Express has issued a data breach notification after one of its service providers experienced unauthorized access to its systems. This has led to the exposure of American Express Card account numbers, names, and card expiration dates.

Evolving cloud threats were observed in the last half of 2023

04 March 2024
A recent report indicates that malicious actors broadened their techniques and may present more threats to security leaders. 

Update: Ivanti Disputes CISA Findings of Post-Factory Reset Hacking

04 March 2024
Ivanti disputes the U.S. cybersecurity agency's claim that hackers can establish persistence on rooted appliances through a factory reset, stating that it won't succeed in a live customer environment.

86% of CIOS have implemented formal AI policies

04 March 2024
According to a report, 85% of organizations are investing in AI technologies with transformative potential in 2024, despite economic uncertainty.

CyberFirst Girls scoop prizes following success in national cyber security competition

04 March 2024
Winning teams from across the UK have been recognised for their success in the CyberFirst Girls Competition at an awards ceremony hosted at the University of Oxford’s Robotics Institute

CyberFirst Girls scoop prizes following success in national cyber security competition

04 March 2024
Winning teams from across the UK have been recognised for their success in the CyberFirst Girls Competition at an awards ceremony hosted at the University of Oxford’s Robotics Institute

How Cybercriminals are Exploiting India's UPI for Money Laundering Operations

04 March 2024
Cybercriminals are using a network of hired money mules in India using an Android-based application to orchestrate a massive money laundering scheme. The malicious application, called XHelper, is a "key tool for onboarding and managing these money mules," CloudSEK researchers Sparsh Kulshrestha, Abhishek Mathew, and Santripti Bhujel said in a report. Details about the scam 

Update: ALPHV Website Goes Down Amid Growing Fallout From Change Healthcare Attack

04 March 2024
The website used by the ransomware group responsible for breaching a major US healthcare payment processor went down, causing financial pressure on medical providers and difficulty for consumers to access medicine.

Report provides key insights into the energy and utilities sector

04 March 2024
A survey of more than 1,000 security professionals worldwide has been conducted to gain valuable insights into the energy and utilities sector. 

NTT Boss Takes Early Retirement to Atone for Data Leak

04 March 2024
NTT West president resigned to take responsibility for the leak of 9.28 million customers' data, reflecting the significance of social responsibility in Japanese corporate culture.

From 500 to 5000 Employees - Securing 3rd Party App-Usage in Mid-Market Companies

04 March 2024
A company’s lifecycle stage, size, and state have a significant impact on its security needs, policies, and priorities. This is particularly true for modern mid-market companies that are either experiencing or have experienced rapid growth. As requirements and tasks continue to accumulate and malicious actors remain active around the clock, budgets are often stagnant at best. Yet, it is crucial

Multistage RA World Ransomware Uses Anti-AV Tactics, Exploits GPO

04 March 2024
The RA World ransomware employs multi-stage components to target healthcare organizations in the Latin American region, signifying a strategic and targeted approach to compromising systems within the target network.

Cybercriminals Harness AI for New Era of Malware Development

04 March 2024
The Group-IB Hi-Tech Crime Trends 2023/2024 report highlights the increasing alliance between ransomware groups and initial access brokers, leading to a 74% rise in companies having their data uploaded on leak sites.

U.S. Judge Ordered NSO Group to Hand Over the Pegasus Spyware Code to WhatsApp

04 March 2024
This decision came after Meta won a legal battle against NSO Group. The lawsuit originated from allegations that NSO Group had conducted malicious attacks against WhatsApp users.

U.S. Authorities Charged an Iranian National for Long-Running Hacking Campaign

04 March 2024
Iranian national Alireza Shafie Nasab has been charged by the U.S. DoJ for orchestrating a multi-year hacking campaign targeting U.S. government and defense entities, using techniques like spear phishing and social engineering.

Malicious Meeting Invite Fix Targets Mac Users

04 March 2024
Scammers impersonating cryptocurrency investors on Telegram are luring targets into fake partnership meetings, using AppleScripts to compromise Mac users and gain administrator permissions.

New Wave of SocGholish Infections Impersonates WordPress Plugins

04 March 2024
The malware has evolved to infect websites through modified versions of legitimate WordPress plugins, emphasizing the need for vigilance in managing plugin installations.

Over 100 Malicious AI/ML Models Found on Hugging Face Platform

04 March 2024
As many as 100 malicious artificial intelligence (AI)/machine learning (ML) models have been discovered in the Hugging Face platform. These include instances where loading a pickle file leads to code execution, software supply chain security firm JFrog said. "The model's payload grants the attacker a shell on the compromised machine, enabling them to gain full control over victims'

Researchers Spot New Infrastructure Likely Used for Predator Spyware

04 March 2024
Insikt Group researchers uncovered new infrastructure used by the operators of the Predator spyware in 11 countries, including Angola, Egypt, Saudi Arabia, and the Philippines.