Latest Cybersecurity News and Articles


DarkMe Malware Targets Traders Using Microsoft SmartScreen Zero-Day Vulnerability

14 February 2024
A newly disclosed security flaw in the Microsoft Defender SmartScreen has been exploited as a zero-day by an advanced persistent threat actor called Water Hydra (aka DarkCasino) targeting financial market traders. Trend Micro, which began tracking the campaign in late December 2023, said it entails the exploitation of CVE-2024-21412, a security bypass vulnerability related to Internet

Report: Stealthy “Hunter-Killer” Malware Detections Surge 333% Annually

14 February 2024
Defenders must adopt a proactive approach, employing multiple security controls with a defense-in-depth strategy to detect and mitigate the impact of stealth-oriented "hunter-killer" malware.

Raspberry Robin Worm Rides on New One-Day Flaws to Launch Stealthy Attacks

14 February 2024
Check Point Research revealed a concerning trend in the tactics of the notorious malware, Raspberry Robin, indicating a transition towards purchasing exploits for swifter cyber assaults. Previously, the malware operators integrated exploits for year-old vulnerabilities but now prioritize exploits less than a month old, emphasizing speed for increased attack success rates.

Microsoft Rolls Out Patches for 73 Flaws, Including 2 Windows Zero-Days

14 February 2024
Microsoft has released patches to address 73 security flaws spanning its software lineup as part of its Patch Tuesday updates for February 2024, including two zero-days that have come under active exploitation. Of the 73 vulnerabilities, 5 are rated Critical, 65 are rated Important, and three and rated Moderate in severity. This is in addition to 24 flaws that have been fixed

Fat Patch Tuesday, February 2024 Edition

13 February 2024
Microsoft Corp. today pushed software updates to plug more than 70 security holes in its Windows operating systems and related products, including two zero-day vulnerabilities that are already being exploited in active attacks.

Security experts discuss recent Bank of America data breach

13 February 2024
The Bank of America experienced a security breach, revealing the personal identifiable information of more than 50,0000 affected users.

CISOs share 5 priorities for 2024

13 February 2024
Info-Tech research group analyzed the priorities of several chief information security officers (CISOs) for 2024 in their recent report.

91% of organizations faced a software supply chain attack last year

13 February 2024
According to a recent cybersecurity report by Data Theorem, 91% of organizations experienced a software supply chain attack over the last year. 

Diving Into Glupteba's UEFI Bootkit

13 February 2024
The Pay-Per-Install (PPI) ecosystem, originally intended for distributing advertisements, has evolved into a profitable platform for spreading spyware and malware, including threats like Glupteba.

Notorious Bumblebee Malware Re-emerges with New Attack Methods

13 February 2024
The Bumblebee malware has re-emerged with a significantly different attack chain after a four-month absence, utilizing social engineering techniques and unique characteristics in its new campaign.

Glupteba Botnet Evades Detection with Undocumented UEFI Bootkit

13 February 2024
The Glupteba botnet has been found to incorporate a previously undocumented Unified Extensible Firmware Interface (UEFI) bootkit feature, adding another layer of sophistication and stealth to the malware. "This bootkit can intervene and control the [operating system] boot process, enabling Glupteba to hide itself and create a stealthy persistence that can be extremely difficult to

PikaBot Resurfaces with Streamlined Code and Deceptive Tactics

13 February 2024
The threat actors behind the PikaBot malware have made significant changes to the malware in what has been described as a case of "devolution." "Although it appears to be in a new development cycle and testing phase, the developers have reduced the complexity of the code by removing advanced obfuscation techniques and changing the network communications," Zscaler ThreatLabz researcher Nikolaos

LectureNotes Learning App breach affects over 2 million users

13 February 2024
Millions of users of the LectureNotes Learning App have had their sensitive information leaked in this data breach. 

Report: Over 1.76 billion phishing emails were sent in 2023

13 February 2024
A new report reveals that 2023 saw the highest amount of phishing emails sent globally. 

Jet Engine Dealer to Major Airlines Discloses ‘Unauthorized Activity’

13 February 2024
The Black Basta ransomware group claims to have stolen 910 GB of sensitive company data from Willis Lease Finance Corporation, including passport scans and personal information of staff and customers.

SiCat: Open-Source Exploit Finder

13 February 2024
The tool has key features such as an easy-to-understand code structure, reporting/output system in HTML and JSON formats, and the ability to run via Nmap scan results in XML format.

Bank of America Warns Customers of Data Breach After Vendor Hack

13 February 2024
The personal information of approximately 57,028 individuals was exposed, including names, addresses, social security numbers, and financial details. The breach was attributed to a cyberattack by the LockBit ransomware gang.

Midnight Blizzard and Cloudflare-Atlassian Cybersecurity Incidents: What to Know

13 February 2024
The Midnight Blizzard and Cloudflare-Atlassian cybersecurity incidents raised alarms about the vulnerabilities inherent in major SaaS platforms. These incidents illustrate the stakes involved in SaaS breaches — safeguarding the integrity of SaaS apps and their sensitive data is critical but is not easy. Common threat vectors such as sophisticated spear-phishing, misconfigurations and

Hackers Exploit Ivanti SSRF Flaw to Deploy New DSLog Backdoor

13 February 2024
The new DSLog backdoor allows threat actors to execute commands on compromised Ivanti servers remotely, and Orange Cyberdefense has confirmed its successful exploitation.

Update: Caravan Club Admits Members’ Personal Data Possibly Accessed

13 February 2024
Members are advised to be cautious of phishing attacks and to update their passwords as a precautionary measure, while the organization has taken steps to enhance cybersecurity in response to the incident.