Latest Cybersecurity News and Articles
16 January 2024
The operators behind the now-defunct Inferno Drainer created more than 16,000 unique malicious domains over a span of one year between 2022 and 2023.
The scheme “leveraged high-quality phishing pages to lure unsuspecting users into connecting their cryptocurrency wallets with the attackers’ infrastructure that spoofed Web3 protocols to trick victims into authorizing
16 January 2024
Tura Scandinavia AB has allegedly been targeted by the LockBit ransomware group, with claims of unauthorized access to the company's network and the sale of login credentials on the dark web.
16 January 2024
Threat actors have been observed leveraging a now-patched security flaw in Microsoft Windows to deploy an open-source information stealer called Phemedrone Stealer.
“Phemedrone targets web browsers and data from cryptocurrency wallets and messaging apps such as Telegram, Steam, and Discord,” Trend Micro researchers Peter Girnus, Aliakbar Zahravi, and Simon Zuckerbraun said.
“It also
15 January 2024
The vulnerability was addressed through updates on November 22, 2023, after responsible disclosure, and was related to a long-forgotten version of the My Flow landing page.
15 January 2024
According to a recent report, there 2343 4,368 ransomware victims in 2023, a 55% surge from 2022. Business services suffered the most attacks.
15 January 2024
Several prominent organizations in Lithuania, including Compensa Vienna Insurance Group, If Insurance, Lithuanian Roads Association, AD REM, INIT, and Balticum, have been targeted by the NoName ransomware group.
15 January 2024
The Information Commissioner's Office found that HelloFresh breached regulations by not informing customers about the extent of their data usage for marketing purposes and continuing to send unwanted messages even after customers requested to stop.
15 January 2024
The Anonymous Collective has launched a cyberattack on Bahrain in retaliation for its support of US and UK airstrikes on Yemen. Several Bahraini media outlets, including Akhbar al-Khaleej and Gulf Daily News, have been affected by the cyberattack.
15 January 2024
The recovery process is ongoing and will involve a full technical rebuild, with the Library working closely with the UK government to ensure a secure and financially sustainable recovery.
15 January 2024
The ransomware industry surged in 2023 as it saw an alarming 55.5% increase in victims worldwide, reaching a staggering 4,368 cases.
Figure 1: Year over year victims per quarter
The rollercoaster ride from explosive growth in 2021 to a momentary dip in 2022 was just a teaser—2023 roared back with the same fervor as 2021, propelling existing groups and ushering in a wave of formidable
15 January 2024
Cybersecurity researchers have disclosed a security flaw in the Opera web browser for Microsoft Windows and Apple macOS that could be exploited to execute any file on the underlying operating system.
The remote code execution vulnerability has been codenamed MyFlaw by the Guardio Labs research team owing to the fact that it takes advantage of a feature called My Flow that makes it
15 January 2024
The Azorult malware, known for stealing sensitive data, has resurfaced with a sophisticated approach. It is distributed through malicious PDF files that contain a shortcut file.
15 January 2024
The environmental services industry experienced an alarming surge in HTTP-based DDoS attacks during COP 28, highlighting the increasing intersection between environmental issues and cyber security.
15 January 2024
Microsoft has announced that it will store all customer data in the European Union (EU) rather than transferring it abroad. This move is aimed at complying with varying privacy regulations across jurisdictions.
15 January 2024
Insider actions and human error account for the majority of data breaches in UK law firms, emphasizing the need for robust cybersecurity measures to protect sensitive information.
15 January 2024
The Beijing Wangshendongjian Judicial Appraisal Institute Institute's claim that AirDrop's anonymization techniques can be easily circumvented raises concerns about the vulnerability of user identities and the potential for surveillance.
15 January 2024
Amazon is challenging a significant privacy fine imposed by the Luxembourg data protection authority, accusing them of attacking the company based on unfounded allegations.
15 January 2024
The exposed data includes high-resolution passport images, travel visa certificates, and itinerary or ticket files, putting the affected individuals at risk of identity theft and fraud.
15 January 2024
The CISA's ICS advisories highlight high and critical severity vulnerabilities in products from companies like Rapid Software, Horner Automation, Schneider Electric, and Siemens.
15 January 2024
The FCC is requesting detailed information from auto manufacturers and wireless providers on how they support survivors, handle geolocation data, and comply with the Safe Connections Act.