Latest Cybersecurity News and Articles


US Authorities Take Down Seller of Widely Used RAT Malware

12 February 2024
Two men, one from Malta and the other from Nigeria, have been arrested for their involvement in selling and providing customer support for remote access Trojan (RAT) malware on hacking forums since 2012.

ExpressVPN Bug has Been Leaking Some DNS Requests for Years

12 February 2024
The bug affected versions 12.23.1 – 12.72.0 of ExpressVPN for Windows and allowed some DNS requests to bypass ExpressVPN's server, potentially exposing users' browsing history.

Microsoft Introduces Linux-Like 'sudo' Command to Windows 11

12 February 2024
Microsoft said it's introducing Sudo for Windows 11 as part of an early preview version to help users execute commands with administrator privileges. "Sudo for Windows is a new way for users to run elevated commands directly from an unelevated console session," Microsoft Product Manager Jordi Adoumie said. "It is an ergonomic and familiar solution for users who want to elevate a command

U.S. Offers $10 Million Bounty for Info Leading to Arrest of Hive Ransomware Leaders

11 February 2024
The U.S. Department of State has announced monetary rewards of up to $10 million for information about individuals holding key positions within the Hive ransomware operation. It is also giving away an additional $5 million for specifics that could lead to the arrest and/or conviction of any person "conspiring to participate in or attempting to participate in Hive ransomware activity."

U.S. DoJ Dismantles Warzone RAT Infrastructure, Arrests Key Operators

11 February 2024
The U.S. Justice Department (DoJ) on Friday announced the seizure of online infrastructure that was used to sell a remote access trojan (RAT) called Warzone RAT. The domains – www.warzone[.]ws and three others – were "used to sell computer malware used by cybercriminals to secretly access and steal data from victims' computers," the DoJ said. Alongside the takedown, the

Alert: New Stealthy "RustDoor" Backdoor Targeting Apple macOS Devices

10 February 2024
Apple macOS users are the target of a new Rust-based backdoor that has been operating under the radar since November 2023. The backdoor, codenamed RustDoor by Bitdefender, has been found to impersonate an update for Microsoft Visual Studio and target both Intel and Arm architectures. The exact initial access pathway used to propagate the implant is currently not known, although

‘World’s Biggest Casino’ App Exposed Customers’ Personal Data

10 February 2024
The phone app developed by startup Dexiga for the casino resort WinStar had an exposed database containing customers' personal information, including names, phone numbers, email addresses, and home addresses.

Over 800 Phony Temu Domains Lure Shoppers into Credential Theft

10 February 2024
Temu is the latest brand chosen by scammers for their phishing scams. Hackers are using Temu’s giveaway rewards to entice users to give away their credentials, with over 800 new domains registered as “Temu” in the last three months.

Is Your Crypto Safe? XPhase Clipper Malware Steals Coins with a Click

10 February 2024
The malware is spread through deceptive websites impersonating legitimate cryptocurrency platforms, with a noticeable emphasis on targeting Indian cryptocurrency enthusiasts.

New RustDoor macOS Malware Impersonates Visual Studio Update

10 February 2024
RustDoor has various commands to control compromised systems, exfiltrate data, and establish persistence, and it has been distributed under multiple names while remaining undetected for at least three months.

AI-generated voices in robocalls declared illegal by the FCC

09 February 2024
A recent ruling by the FCC has made AI-generated voices in robocalls illegal, providing more opportunities for law enforcement to bring scam artists to justice. 

US Insurance Firms Sound Alarm After 66,000 Individuals Impacted by SIM Swap Attack

09 February 2024
Two US insurance companies, Washington National Insurance and Bankers Life, have reported that the personal information of around 66,000 individuals may have been stolen by hackers using SIM-swapping attacks.

Americans received 15 spam calls a month in Q4 2023

09 February 2024
Fraud calls around the globe were analyzed in a recent report. According to the report, there were 7.3 billion unwanted calls globally in Q3 2023.

Raspberry Robin Malware Upgrades with Discord Spread and New Exploits

09 February 2024
The operators of Raspberry Robin are now using two new one-day exploits to achieve local privilege escalation, even as the malware continues to be refined and improved to make it stealthier than before. This means that "Raspberry Robin has access to an exploit seller or its authors develop the exploits themselves in a short period of time," Check Point said in a report this

'Coyote' Malware Begins Its Hunt, Preying on 61 Banking Apps

09 February 2024
Brazilian banking trojans have a history of expanding abroad, and the emergence of new variants like "Coyote" could lead to their evolution into fully fledged initial access trojans and backdoors.

New Fortinet RCE Flaw in FortiOS SSL VPN Likely Exploited in Attacks

09 February 2024
The vulnerability affects various versions of FortiOS, and the recommended solution includes upgrading to specific versions or migrating to a fixed release to address the flaw.

Juniper Support Portal Exposed Customer Device Info

09 February 2024
Until earlier this week, the support website for networking equipment vendor Juniper Networks was exposing potentially sensitive information tied to customer products, including the exact devices each customer bought, as well as each device's warranty status, service contracts and serial numbers. Juniper said it has since fixed the problem, and that the inadvertent data exposure stemmed from a recent upgrade to its support portal.

Cyber security threats are predominantly as-a-service attacks

09 February 2024
A recent report reveals the key threats businesses have faced in the past six months. 

MoqHao Android Malware Evolves with Auto-Execution Capability

09 February 2024
Threat hunters have identified a new variant of Android malware called MoqHao that automatically executes on infected devices without requiring any user interaction. "Typical MoqHao requires users to install and launch the app to get their desired purpose, but this new variant requires no execution," McAfee Labs said in a report published this week. "While the app is

Ransomware threats increased by twofold in 2023

09 February 2024
According to a recent report, ransomware attacks almost doubled from 2,200 to 4,200 in 2023. The United States faced the highest number of attacks.