Latest Cybersecurity News and Articles


Canada: RCMP Investigating Cyberattack as its Website Remains Down

26 February 2024
The RCMP website was down due to the cyber incident, with pages being redirected to an install.php page that does not exist, indicating potential issues with website configuration.

New research finds gaps in secure access to OT environments

26 February 2024
Though historically isolated, OT systems are now experiencing increased connectivity that introduces new risks. 

LockBit Ransomware Operation Relaunches Dark Web Leak Site

26 February 2024
The Russian-speaking ransomware group LockBit has announced its return to hacking after a law enforcement operation, Operation Cronos, targeted the group. The group's leader, LockBitSupp, has vowed to continue hacking despite the takedown.

North Korean Hackers Targeting Developers with Malicious npm Packages

26 February 2024
A set of fake npm packages discovered on the Node.js repository has been found to share ties with North Korean state-sponsored actors, new findings from Phylum show. The packages are named execution-time-async, data-time-utils, login-time-utils, mongodb-connection-utils, and mongodb-execution-utils. One of the packages in question, execution-time-async, masquerades as its legitimate

SVR cyber actors adapt tactics for initial cloud access

26 February 2024
How SVR-attributed actors are adapting to the move of government and corporations to cloud infrastructure.

SVR cyber actors adapt tactics for initial cloud access

26 February 2024
How SVR-attributed actors are adapting to the move of government and corporations to cloud infrastructure.

Hackers Leak 2.5 Million Private Plane Owners’ Data Linked to LA International Airport Breach

26 February 2024
IntelBroker successfully breached the Los Angeles International Airport's CRM system, obtaining 2.5 million sensitive records, highlighting the critical need for organizations to strengthen cybersecurity measures against skilled hackers.

FTC to Ban Avast From Selling Browsing Data for Advertising Purposes

26 February 2024
The U.S. Federal Trade Commission (FTC) has ordered Avast to pay $16.5 million and banned the company from selling users' web browsing data or licensing it for advertising purposes.

Three Tips to Protect Your Secrets from AI Accidents

26 February 2024
Last year, the Open Worldwide Application Security Project (OWASP) published multiple versions of the "OWASP Top 10 For Large Language Models," reaching a 1.0 document in August and a 1.1 document in October. These documents not only demonstrate the rapidly evolving nature of Large Language Models, but the evolving ways in which they can be attacked and defended. We're going to talk in this

HHS Reaches Second-Ever Ransomware Settlement

26 February 2024
The U.S. Department of Health and Human Services (HHS) reached a settlement with Green Ridge Behavioral Health after a ransomware attack exposed the health information of over 14,000 individuals.

Banking Trojans Target Latin America and Europe Through Google Cloud Run

26 February 2024
Cybersecurity researchers are warning about a spike in email phishing campaigns that are weaponizing the Google Cloud Run service to deliver various banking trojans such as Astaroth (aka Guildma), Mekotio, and Ousaban (aka Javali) to targets across Latin America (LATAM) and Europe. "The infection chains associated with these malware families feature the use of malicious

Russian-Aligned Network Doppelgänger Targets German Elections

26 February 2024
The campaign involves a substantial network of social media accounts, sophisticated infrastructure, and tactics to evade detection, posing a challenge to combat such influence operations.

Cybersecurity Fears Drive a Return to On-Premise Infrastructure From Cloud Computing

26 February 2024
According to Citrix, 42% of organizations surveyed in the US are considering or already have moved at least half of their cloud-based workloads back to on-premises infrastructures, a phenomenon known as cloud repatriation.

UK and allies expose evolving tactics of Russian cyber actors

26 February 2024
New advisory reveals evolving tactics used by Russian state-linked cyber actors as more organisations move to cloud-based infrastructure.

UK and allies expose evolving tactics of Russian cyber actors

26 February 2024
New advisory reveals evolving tactics used by Russian state-linked cyber actors as more organisations move to cloud-based infrastructure.

Malawi Immigration Department Halts Services Amid Cyberattack

26 February 2024
The Malawi government has suspended passport issuance for two weeks due to a ransomware attack on the immigration service's network. President Lazarus Chakwera stated that the hackers are demanding a ransom, but the government refuses to pay.

Apple Unveils PQ3 Protocol - Post-Quantum Encryption for iMessage

26 February 2024
The protocol combines Kyber and ECC, aims to mitigate the impact of key compromises, and will be integrated into Apple's iOS, iPadOS, macOS, and watchOS in the next update.

Dormant PyPI Package Compromised to Spread Nova Sentinel Malware

26 February 2024
The attacker stripped the package of its original content, leaving only an __init__.py and example.py file, and introduced an executable named "Updater_1.4.4_x64.exe" to launch the Nova Sentinel malware.

Businesses Increase Cybersecurity as Budgets Surge in 2024

26 February 2024
Cloud security and incident response are top priorities, attracting 47% of additional cybersecurity spending, followed by areas such as MSSP outsourcing, identity management, and security awareness training, according to Infosecurity Europe.

Update: Sony Subsidiary Insomniac Games Alerts Employees Hit by Ransomware Data Breach

26 February 2024
The leaked files include personal information of employees, former employees, and independent contractors, as well as sensitive internal documents, and only 98% of the stolen data has been leaked so far.