Latest Cybersecurity News and Articles


Colorado wellness company suffers data breach

08 January 2024
In July of 2023, Welltok was alerted to a data breach affected by MOVEit Transfer software, affecting health data and Social Security Numbers.

Meet Ika & Sal: The Bulletproof Hosting Duo from Hell

08 January 2024
In 2020, the United States brought charges against four men accused of building a bulletproof hosting empire that once dominated the Russian cybercrime industry and supported multiple organized cybercrime groups. All four pleaded guilty to conspiracy and racketeering charges. But there is a fascinating and untold backstory behind the two Russian men involved, who co-ran Russia's most popular spam forum for years.

Cyberattack Hits Maldives Government Websites

08 January 2024
Over the weekend, the Maldives government websites experienced a cyberattack, resulting in temporary unavailability of the President's office, Foreign Ministry, and Tourism Ministry websites.

68% of organizations face risks due to cybersecurity skills shortage

08 January 2024
 According to a recent cybersecurity report, the number of organizations confirming five or more breaches jumped by 53% between 2021 and 2022.

Security leaders weigh in on 23andme hack

08 January 2024
According to reports, the personal information of nearly 6.9 million users has been accessed by hackers of 23andMe. Security leaders discuss.

Update: Google Says Malware Abusing API Is Standard Token Theft, Not an API Issue

08 January 2024
Google downplays the severity of the issue, treating it as regular cookie theft and suggesting users log out of their Chrome browser to invalidate the stolen cookies and tokens.

NoName Group Claims DDoS Attacks on Ukrainian Government Sites

08 January 2024
The NoName group has reportedly targeted several Ukrainian government websites, including Accordbank, Zaporizhzhya Titanium-Magnesium Plant, and the State Tax Service. The group posted a list of their latest DDoS attack victims on the dark web.

Bots, Fraud Farms, and Cryptojacking Surge, Urgently Requiring Attention

08 January 2024
Cybercriminals are increasingly relying on ready-made bots and human fraud farms, which account for the majority of malicious website and app traffic, highlighting the need for robust defenses.

Canada: Personal and Pregnancy Details of Midwives of Windsor Clients was Breached

08 January 2024
The compromised data includes names, addresses, contact information, medical details, and health insurance information. The exact number of affected clients is unclear, and it is unknown if the information has been misused.

Syrian Hackers Distributing Stealthy C#-Based Silver RAT to Cybercriminals

08 January 2024
Threat actors operating under the name Anonymous Arabic have released a remote access trojan (RAT) called Silver RAT that’s equipped to bypass security software and stealthily launch hidden applications. “The developers operate on multiple hacker forums and social media platforms, showcasing an active and sophisticated presence,” cybersecurity firm Cyfirma said in a report

Beirut International Airport Hit by Cyberattack Affecting Flight Information Display System

08 January 2024
The Beirut International Airport in Lebanon was targeted by a cyberattack, with hackers breaching the Flight Information Display System (FIDS) and disrupting the baggage inspection system.

North Korean Hackers Stole $600 Million in Cryptocurrency in 2023

08 January 2024
Despite law enforcement pressure, North Korean hackers continue to evolve and explore alternative money laundering methods, demanding continuous vigilance and innovation from businesses and governments.

KyberSlash Attacks Put Quantum-Safe Encryption Projects at Risk

08 January 2024
While patches have been released for some implementations, several projects using Kyber, including Signal, remain unpatched, and the impact of KyberSlash on users' communications is still unclear.

Update: Traces of LockBit Foul Play Emerge in Capital Health Cyberattack

08 January 2024
Capital Health is now fully operational and working with a forensic investigation firm to assess the risk to patient and employee data. While the firm has not disclosed the hacker group involved, it has been alleged that LockBit ransomware was used.

Cyber Espionage Campaign by Sea Turtle APT Targets Dutch IT and Telecom Companies

08 January 2024
The group leverages DNS hijacking and exploits known vulnerabilities to establish a foothold in target networks and gather intelligence to meet strategic Turkish interests.

Unifying Security Tech Beyond the Stack: Integrating SecOps with Managed Risk and Strategy

08 January 2024
Cybersecurity is an infinite journey in a digital landscape that never ceases to change. According to Ponemon Institute1, “only 59% of organizations say their cybersecurity strategy has changed over the past two years.” This stagnation in strategy adaptation can be traced back to several key issues. Talent Retention Challenges: The cybersecurity field is rapidly advancing, requiring a

AuthLogParser: Open-Source Tool for Analyzing Linux Authentication Logs

08 January 2024
The open-source tool offers granular event analysis, customizable tables, and an adaptive design, making it a powerful resource for digital forensics and incident response on Linux platforms.

Mortgage Firm loanDepot Cyberattack Impacts IT Systems, Payment Portal

08 January 2024
The loanDepot cyberattack caused its IT systems to go offline and prevented customers from making online payments on their loans. The company confirmed the attack and is working with law enforcement and forensics experts to investigate.

Ransomware Payment Ban: Wrong Idea at the Wrong Time

08 January 2024
A complete ban on ransomware payments is not a viable solution to combat ransomware attacks, according to some experts. While eliminating extortion as a source of criminal income may reduce attacks, there are several reasons why a ban would not work.

X Users Fed up With Constant Stream of Malicious Crypto Ads

08 January 2024
Cybercriminals are exploiting Twitter ads to promote cryptocurrency scams. These scams include links to Telegram channels promoting pump and dumps, phishing pages, and sites hosting malicious scripts that steal assets from connected wallets.