Latest Cybersecurity News and Articles


New Open-Source Tool for Investigating Google Drive File Stream’s Disk Forensic Artifacts

04 January 2024
DriveFS Sleuth automates the investigation of Google Drive File Stream disk artifacts. The tool can parse the disk artifacts and build a filesystem tree-like structure enumerating the synchronized files along with their respective properties.

Atos Confirms Talks of Cyber Sell-off to Airbus are Underway

04 January 2024
Airbus is expected to offer between €1.5 to 1.8 billion (~$1.64 to 1.97 billion) for Atos' Big Data & Security division, in line with its goal of growing its cybersecurity arm and enhancing its defense and security portfolio.

UAC-0050 Group Using New Phishing Tactics to Distribute Remcos RAT

04 January 2024
The threat actor known as UAC-0050 is leveraging phishing attacks to distribute Remcos RAT using new strategies to evade detection from security software. "The group's weapon of choice is Remcos RAT, a notorious malware for remote surveillance and control, which has been at the forefront of its espionage arsenal," Uptycs security researchers Karthick Kumar and Shilpesh Trivedi said in

Update: Nearly 11 Million SSH Servers Vulnerable to New Terrapin Attacks

04 January 2024
Attackers need to be in an adversary-in-the-middle position to intercept and modify the handshake exchange, making network compromise a key factor in executing the Terrapin attack.

Mandiant’s Account on X Hacked to Push Cryptocurrency Scam

04 January 2024
The Twitter account of cybersecurity firm Mandiant, which is owned by Google, was hacked and used to promote a cryptocurrency scam. The attacker impersonated the Phantom crypto wallet and shared a fake website offering free tokens.

Mandiant's Twitter Account Restored After Six-Hour Crypto Scam Hack

04 January 2024
American cybersecurity firm and Google Cloud subsidiary Mandiant had its X (formerly Twitter) account compromised for more than six hours by an unknown attacker to propagate a cryptocurrency scam. As of writing, the account has been restored on the social media platform. It's currently not clear how the account was breached. But the hacked Mandiant account was initially renamed to "@

‘Large-Scale’ Cyberattack Hits French Township, All Local Services Down

03 January 2024
The mayor of Pays Fouesnantais, a township in France, announced that the municipality has been hit by a large-scale cyberattack, causing all community services to be taken down.

European parking app announces data breach

03 January 2024
Cyberattacks, data breaches and newly exploited vulnerabilities across the globe were analyzed in a recent report by Check Point Research. 

European parking app announced data breach

03 January 2024
Cyberattacks, data breaches and newly exploited vulnerabilities across the globe were analyzed in a recent report by Check Point Research. 

Fake and Stolen X Gold Accounts Flood Dark Web

03 January 2024
A surge of fake or stolen Twitter Gold (now X Gold) accounts has been flooding both the surface web and the dark web over the past year, according to cybersecurity firm CloudSEK.

Qualcomm Chip Vulnerability Enables Remote Attack by Voice Call

03 January 2024
Qualcomm has announced a critical vulnerability that could lead to remote attacks on devices using their chipsets. The flaw, tracked as CVE-2023-33025, involves a buffer overflow during VoLTE calls, allowing attackers to execute code remotely.

SonicWall Acquires Banyan to Boost Zero-Trust, SSE Offerings

03 January 2024
With its second acquisition in two months, SonicWall aims to help enterprises with growing remote workforces through zero-trust network and security service edge offerings.

CISA Warns of Actively Exploited Bugs in Chrome and Excel Parsing Library

03 January 2024
The CISA has identified two recently patched vulnerabilities, one in Google Chrome and another in the open-source Perl library Spreadsheet::ParseExcel, that have been actively exploited and require immediate mitigation.

Threat Actor Leaks 3.6 Million Records Allegedly Stolen From Cross Switch

03 January 2024
The data breach, carried out by a threat actor named IntelBroker, has allegedly exposed sensitive details such as full names, emails, phone numbers, banking information, and more.

5 New Year's resolutions for CISOs

03 January 2024
In an ever-evolving digital age, how can CISOs prepare themselves and their employees? What should they take into consideration for the new year?

Malware Using Google MultiLogin Exploit to Maintain Access Despite Password Reset

03 January 2024
Information stealing malware are actively taking advantage of an undocumented Google OAuth endpoint named MultiLogin to hijack user sessions and allow continuous access to Google services even after a password reset. According to CloudSEK, the critical exploit facilitates session persistence and cookie generation, enabling threat actors to maintain access to a valid session in an

Hacktivists Shut Down Top State-Owned Belarusian News Agency

03 January 2024
Belarusian hacktivist group, the Cyber-Partisans, launched a cyberattack on the country's leading state-owned media outlet, wiping the main website servers and backups, as a retaliatory measure against President Lukashenko's propaganda campaign.

Online Museum Collections Down After Ransomware Attack on Service Provider

03 January 2024
Gallery Systems, a museum software provider, has revealed that it experienced a ransomware attack last week, leading to ongoing IT outages. The attack caused the company to take systems offline to prevent further encryption.

Ban on Ransomware Payments? The Alternative Isn’t Working

03 January 2024
Ransomware attacks in the US reached record levels in 2023, targeting hospitals, schools, government organizations, and private-sector businesses, costing victims an average of $1.5 million to rectify.

Defunct Ambulance Service Data Breach Impacts Nearly One Million People

03 January 2024
Fallon Ambulance Services, a subsidiary of Transformative Healthcare, was targeted in a ransomware attack that exposed the personal information of nearly a million people. The attack occurred in February 2023 and was discovered in April 2023.