Latest Cybersecurity News and Articles


WordPress LiteSpeed Plugin Vulnerability Puts 5 Million Sites at Risk

27 February 2024
A security vulnerability has been disclosed in the LiteSpeed Cache plugin for WordPress that could enable unauthenticated users to escalate their privileges. Tracked as CVE-2023-40000, the vulnerability was addressed in October 2023 in version 5.7.0.1. "This plugin suffers from unauthenticated site-wide stored [cross-site scripting] vulnerability and could allow any unauthenticated user

Russian Hacker Set to Face Trial for the Hack of a Local Power Grid

27 February 2024
A 49-year-old Russian national has been charged with carrying out a cyberattack on a local power plant, resulting in a widespread blackout in 38 villages in the Vologda region.

Russian SVR-Linked APT29 Threat Actors Adapt Their Tactics for Initial Cloud Access

27 February 2024
The Russian Foreign Intelligence Service (SVR) cyber actors, also known as APT29 or Cozy Bear, have shifted their tactics to target cloud environments as organizations increasingly move to cloud-based infrastructure.

VEC and BEC attacks rise in the energy and infrastructure industry

27 February 2024
New information shows that the energy and infrastructure industry is experiencing more cyberattacks utilizing social engineering tactics. 

UK: Privacy Watchdog Cracks Down on Biometric Employee Tracking

27 February 2024
The British privacy watchdog has ordered a leisure center contractor, Serco Leisure, to stop using facial recognition and fingerprint scanning to track employees at 38 leisure facilities.

Steel Production Giant ThyssenKrupp Confirms Cyberattack on Automotive Division

27 February 2024
ThyssenKrupp, a major steel producer and industrial engineering firm, experienced a cyberattack on its Automotive division, leading to a forced shutdown of IT systems as part of the response and containment measures.

Open-Source Xeno RAT Trojan Emerges as a Potent Threat on GitHub

27 February 2024
An "intricately designed" remote access trojan (RAT) called Xeno RAT has been made available on GitHub, making it available to other actors at no extra cost. Written in C# and compatible with Windows 10 and Windows 11 operating systems, the open-source RAT comes with a "comprehensive set of features for remote system management," according to its developer, who goes by the name moom825

Cybersecurity Crisis in Schools

27 February 2024
The education sector faces significant cybersecurity risks due to factors such as BYOD culture, vast student data troves, and resource scarcity, making strong cybersecurity measures crucial.

NIST Releases Version 2.0 of Landmark Cybersecurity Framework

27 February 2024
NIST has updated the Cybersecurity Framework (CSF) to include quick-start guides, success stories, and a searchable catalog of references, making it more accessible and actionable for a wider range of organizations and sectors.

Investigators Trace $100 Million in Crypto Payments to Myanmar Scam Syndicate

27 February 2024
Two cryptocurrency addresses linked to a company operating in a notorious scam compound in Myanmar have received nearly $100 million worth of deposits in less than two years.

Hackers Exploit 14-Year-Old CMS Editor on Government and Educational Sites for SEO Poisoning

27 February 2024
The deprecated FCKeditor plugin is being abused to create open redirects on university, government, and corporate websites, allowing threat actors to poison search engine results with malicious content.

Web Check Provides Open-Source Intelligence for Any Website

27 February 2024
The tool offers a wide range of features including IP info, SSL chain, DNS records, cookies, headers, server location, open ports, and more, making it a valuable resource for both OSINT investigations and general curiosity.

Over 13,000 Hijacked Major-Brand Subdomains Found Bombarding Users With Millions of Malicious Emails

27 February 2024
The threat actors hijack abandoned subdomains and domains of well-known companies, allowing the emails to bypass spam filters and appear legitimate. Brands like MSN, VMware, and eBay have been unwittingly involved.

From Alert to Action: How to Speed Up Your SOC Investigations

27 February 2024
Processing alerts quickly and efficiently is the cornerstone of a Security Operations Center (SOC) professional's role. Threat intelligence platforms can significantly enhance their ability to do so. Let's find out what these platforms are and how they can empower analysts. The Challenge: Alert Overload The modern SOC faces a relentless barrage of security alerts generated by SIEMs and EDRs.

How the FBI and CISA Look to Mature the Government’s Top Ransomware Task Force

27 February 2024
The Joint Ransomware Task Force aims to enhance collaboration to identify ransomware groups and drive a comprehensive government and societal response to protect critical infrastructure and businesses.

Five Eyes Agencies Expose APT29's Evolving Cloud Attack Tactics

27 February 2024
Cybersecurity and intelligence agencies from the Five Eyes nations have released a joint advisory detailing the evolving tactics of the Russian state-sponsored threat actor known as APT29. The hacking outfit, also known as BlueBravo, Cloaked Ursa, Cozy Bear, Midnight Blizzard (formerly Nobelium), and The Dukes, is assessed to be affiliated with the Foreign Intelligence Service (SVR) of the

China Warns of Fake Digital Yuan Wallets

27 February 2024
Fake wallet apps for China's digital currency are circulating, leading to warnings from the Ministry of Industry and Information Technology about potential scams and data theft.

New Hugging Face Vulnerability Exposes AI Models to Supply Chain Attacks

27 February 2024
Cybersecurity researchers have found that it's possible to compromise the Hugging Face Safetensors conversion service to ultimately hijack the models submitted by users and result in supply chain attacks. "It's possible to send malicious pull requests with attacker-controlled data from the Hugging Face service to any repository on the platform, as well as hijack any models that are submitted

White House Urges Tech Industry to Switch to Memory-Safe Programming Languages

27 February 2024
A new report by the Office of the National Cyber Director (ONCD) highlighted that up to 70% of security vulnerabilities are due to memory safety issues in certain programming languages.

It’s Time for Security Operations to Ditch Excel

27 February 2024
Security teams often rely on manual Excel work to manage their cybersecurity operations, despite the limitations and inefficiencies of using spreadsheets for such critical tasks.