Latest Cybersecurity News and Articles


Russian-Linked Hackers Breach 80+ Organizations via Roundcube Flaws

19 February 2024
Threat actors operating with interests aligned to Belarus and Russia have been linked to a new cyber espionage campaign that likely exploited cross-site scripting (XSS) vulnerabilities in Roundcube webmail servers to target over 80 organizations. These entities are primarily located in Georgia, Poland, and Ukraine, according to Recorded Future, which attributed the intrusion set to a threat

Iranian Hackers Target Middle East Policy Experts with New BASICSTAR Backdoor

18 February 2024
The Iranian-origin threat actor known as Charming Kitten has been linked to a new set of attacks aimed at Middle East policy experts with a new backdoor called BASICSTAR by creating a fake webinar portal. Charming Kitten, also called APT35, CharmingCypress, Mint Sandstorm, TA453, and Yellow Garuda, has a history of orchestrating a wide range of social engineering campaigns that cast a

FBI's Most-Wanted Zeus and IcedID Malware Mastermind Pleads Guilty

18 February 2024
A Ukrainian national has pleaded guilty in the U.S. to his role in two different malware schemes, Zeus and IcedID, between May 2009 and February 2021. Vyacheslav Igorevich Penchukov (aka Vyacheslav Igoravich Andreev, father, and tank), 37, was arrested by Swiss authorities in October 2022 and extradited to the U.S. last year. He was added to the FBI's most-wanted list in 2012. The U.S.

How Businesses Can Safeguard Their Communication Channels Against Hackers

17 February 2024
Efficient communication is a cornerstone of business success. Internally, making sure your team communicates seamlessly helps you avoid friction losses, misunderstandings, delays, and overlaps. Externally, frustration-free customer communication is directly correlated to a positive customer experience and higher satisfaction.  However, business communication channels are also a major target

Alpha Ransomware Emerges From NetWalker Ashes

17 February 2024
The Alpha ransomware operation appears to be linked to the previously inactive NetWalker ransomware, suggesting a potential revival or acquisition of the original payload.

Google Open Sources Magika: AI-Powered File Identification Tool

17 February 2024
Google has announced that it's open-sourcing Magika, an artificial intelligence (AI)-powered tool to identify file types, to help defenders accurately detect binary and textual file types. "Magika outperforms conventional file identification methods providing an overall 30% accuracy boost and up to 95% higher precision on traditionally hard to identify, but potentially problematic content

CISA Warns of Akira Ransomware Exploiting Cisco ASA/FTD Vulnerability

17 February 2024
The information disclosure vulnerability, known as CVE-2020-3259, is being exploited by the Akira ransomware group to compromise susceptible Cisco Anyconnect SSL VPN appliances.

SpyNote Android Spyware Poses as Legit Crypto Wallets, Steals Funds

17 February 2024
Android users are advised to be cautious of applications requesting Accessibility API access, particularly those claiming to be crypto wallets, PDF readers, and video players.

North Korean Hackers Now Launder Stolen Crypto via YoMix Tumbler

17 February 2024
YoMix saw a significant increase in funds in 2023, with about one-third of inflows originating from wallets associated with crypto hacks, demonstrating the adaptability of sophisticated threat actors.

Volt Typhoon Hits Multiple Electric Utilities, Expands Cyber Activity

16 February 2024
The Voltzite threat, a subset of China's Volt Typhoon APT, has been actively targeting US electric companies and African electric transmission and distribution organizations, with the intent to compromise physical industrial control systems.

Hackers Exploit EU Agenda in Spear Phishing Campaigns

16 February 2024
Organizations based in the EU are being targeted by spear phishing campaigns leveraging EU political and diplomatic events, according to the bloc’s Computer Emergency Response Team (CERT-EU).

Washington County Pays $350,000 Ransom After Cyberattack

16 February 2024
The Washington County Board of Commissioners voted to pay a $350,000 ransom to Russian cybercriminals after a cyberattack shut down county services. The decision was made in an emergency meeting due to the deadline set by the hackers.

To Avoid Bankruptcy, EMR Firm Settles Lawsuit for $4M

16 February 2024
The settlement includes options for affected individuals such as identity theft monitoring, reimbursement for losses, or a flat fee cash payment, with attorneys seeking about one-third of the settlement fund in fees.

CISA Adds Microsoft Windows Bugs to Its Known Exploited Vulnerabilities Catalog

16 February 2024
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two Microsoft Windows vulnerabilities to its list of Known Exploited Vulnerabilities. These flaws, CVE-2024-21412 and CVE-2024-21351, are actively being exploited in the wild.

Zeus, IcedID Malware Gangs Leader Pleads Guilty, Faces 40 Years in Prison

16 February 2024
Vyacheslav Igorevich Penchukov, a Ukrainian cybercriminal, pleaded guilty to leading the Zeus and IcedID malware groups, involved in stealing millions of dollars and attacking a major hospital with ransomware.

Russia Continues to Focus on Cyber Operations and Espionage

16 February 2024
Russia continues to target Ukraine with cyber operations and espionage to gain an edge in the ongoing ground campaign, focusing on supply chain disruption and information gathering.

CISA Warning: Akira Ransomware Exploiting Cisco ASA/FTD Vulnerability

16 February 2024
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a now-patched security flaw impacting Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) software to its Known Exploited Vulnerabilities (KEV) catalog, following reports that it's being likely exploited in Akira ransomware attacks. The vulnerability in question is 

FTC Wants to Crack Down on AI Impersonation of Individuals

16 February 2024
The FTC has finalized a new rule to combat AI-driven impersonation fraud targeting government and businesses. The rule allows it to take legal action to recover proceeds from scams and is now being considered for extension to protect individuals.

Google Calls for Framework Giving AI Access to Incident Data

16 February 2024
The company emphasized the need to shift from AI being an assistive technology to becoming an autonomous one, and highlighted the importance of controlling access to incident data for training AI systems.

Ivanti Pulse Secure Found Using 11-Year-Old Linux Version and Outdated Libraries

16 February 2024
Multiple security flaws, including actively exploited vulnerabilities and weaknesses in the Integrity Checker Tool, have been discovered, highlighting the need for enhanced visibility and validation of digital supply chains in enterprise products.