Latest Cybersecurity News and Articles
22 February 2024
FixedFloat, a non-KYC crypto exchange, was hacked for $26 million worth of Bitcoin and Ethereum due to vulnerabilities and insufficient security measures, leading to frozen transactions and missing funds.
22 February 2024
The company confirmed that no credit/debit card numbers were compromised and assured that customer accounts are protected by multifactor authentication, ensuring security from unauthorized access.
22 February 2024
Confidence in biometric technology and the security of organizations that store biometric data is declining, according to a new report.
22 February 2024
The incident disrupted patient payments and prescription processing, affecting a significant portion of the U.S. healthcare system due to Change Healthcare's extensive reach and role in handling healthcare transactions.
22 February 2024
The IBM X-Force Threat Intelligence Index report found that valid account compromises were the most common way for cyber attackers to gain access in 2023, with a 71% increase in such attacks.
22 February 2024
The DOPLUGS malware acts as a downloader and supports four backdoor commands, including the ability to download a generic version of the PlugX malware, and it utilizes the KillSomeOne module to support USB worm capability.
22 February 2024
A new report by Veracode revealed the prevalence of security debt in applications and organizations, with 42% of applications and 71% of organizations having unfixed flaws.
22 February 2024
In the past 2 years, we have observed a significant surge in hacktivism activity due to ongoing wars and geopolitical conflicts in various regions. Since the war against Ukraine began, we have witnessed a notable mobilization of non-state and state-backed actors alike, forming new groups or joining existing hacker collectives.
We understand hacktivism as a form of computer hacking that is
22 February 2024
A recently open-sourced network mapping tool called SSH-Snake has been repurposed by threat actors to conduct malicious activities.
"SSH-Snake is a self-modifying worm that leverages SSH credentials discovered on a compromised system to start spreading itself throughout the network," Sysdig researcher Miguel Hernández said.
"The worm automatically searches through known credential
22 February 2024
An installer for a tool likely used by the Russian Consular Department of the Ministry of Foreign Affairs (MID) has been backdoored to deliver a remote access trojan called Konni RAT (aka UpDog).
The findings come from German cybersecurity company DCSO, which linked the activity as originating from the Democratic People's Republic of Korea (DPRK)-nexus actors targeting Russia.
The
22 February 2024
The European Commission is investigating TikTok for potential violations of the Digital Services Act related to child protection, advertising transparency, and harmful content.
22 February 2024
A report by Arctic Wolf on cybercrime in 2023 revealed that ransomware demands rose by 20%, with some industries facing median demands of $1 million or more per incident.
22 February 2024
The UK's National Cyber Security Centre (NCSC) has warned smaller organizations about the potential vulnerability of their private branch exchange (PBX) phone systems to cyberattacks.
22 February 2024
The industrial sector, particularly manufacturing, has been heavily targeted by ransomware attacks, with over 900 incidents reported in the past year, according to a report by Dragos.
22 February 2024
Scams and cybercrime cases in Singapore increased by 49.6% in 2023, with victims losing a total of SG$651.8 million (~US$483.62 million), despite industry-wide measures being implemented to combat such incidents.
22 February 2024
The growth of Web3 and Dapp technologies has attracted cybercriminals, leading to the creation of thousands of Web3 phishing sites with crypto drainers and an increase in attacks targeting Dapp users.
22 February 2024
The director of cybersecurity at the National Security Agency, Rob Joyce, is retiring after 34 years of service. David Luber, deputy director of the Cybersecurity Directorate, will succeed Joyce.
22 February 2024
These vulnerabilities could lead users to join a malicious network or allow attackers to access trusted networks without a password. The vulnerabilities could result in potential attacks such as malware infections and data theft.
22 February 2024
The U.S. State Department has announced monetary rewards of up to $15 million for information that could lead to the identification of key leaders within the LockBit ransomware group and the arrest of any individual participating in the operation.
"Since January 2020, LockBit actors have executed over 2,000 attacks against victims in the United States, and around the world, causing costly
21 February 2024
ReversingLabs' research revealed a broader campaign involving multiple packages and sophisticated tactics, indicating an emerging trend of DLL sideloading attacks in open-source environments.