Latest Cybersecurity News and Articles


Remote Encryption Attacks Surge: How One Vulnerable Device Can Spell Disaster

20 December 2023
Ransomware groups are increasingly switching to remote encryption in their attacks, marking a new escalation in tactics adopted by financially motivated actors to ensure the success of their campaigns. "Companies can have thousands of computers connected to their network, and with remote ransomware, all it takes is one underprotected device to compromise the entire network," Mark Loman, vice

Smishing Triad Targets UAE Residents in Identity Theft Campaign

20 December 2023
Security researchers have observed a new fraudulent campaign orchestrated by the Smishing Triad gang and impersonating the United Arab Emirates Federal Authority for Identity and Citizenship.

New Web Injections Campaign Steals Banking Data From 50,000 People

20 December 2023
The attackers infect victims' devices and then inject a script onto the victim's browser to modify webpage content. This new approach makes the attacks more stealthy and harder to detect.

Iranian APT Group Targets Telecom Organizations in North and East Africa

20 December 2023
Seedworm (aka Muddywater) continues to use a combination of living-off-the-land and publicly available tools, but has also developed its own custom tools, such as a custom build of Venom Proxy and a custom keylogger.

‘No Evidence’ of Foreign Election Interference in 2022 US Midterms, Spy Agencies Say

20 December 2023
The U.S. intelligence community has stated that Russia and China attempted to influence the 2022 U.S. midterms, but were unsuccessful in hacking the election infrastructure or disrupting voting.

Product Explained: Memcyco's Real-Time Defense Against Website Spoofing

20 December 2023
Hands-On Review: Memcyco’s Threat Intelligence Solution Website impersonation, also known as brandjacking or website spoofing, has emerged as a significant threat to online businesses. Malicious actors clone legitimate websites to trick customers, leading to financial scams and data theft causing reputation damage and financial losses for both organizations and customers. The Growing Threat of

Authorities Claim Seizure of Notorious ALPHV Ransomware Gang’s Dark Web Leak Site

20 December 2023
The FBI has released a decryption tool that has helped over 500 ALPHV ransomware victims restore their systems, saving them from paying approximately $68 million in ransom demands.

Threat Actors Exploit CVE-2017-11882 to Deliver Agent Tesla

20 December 2023
The Agent Tesla malware uses obfuscated VBS files and steganography techniques to download a Base64-encoded DLL, which is then decoded and loaded to carry out malicious procedures.

Alert: Chinese-Speaking Hackers Pose as UAE Authority in Latest Smishing Wave

20 December 2023
The Chinese-speaking threat actors behind Smishing Triad have been observed masquerading as the United Arab Emirates Federal Authority for Identity and Citizenship to send malicious SMS messages with the ultimate goal of gathering sensitive information from residents and foreigners in the country. "These criminals send malicious links to their victims' mobile devices through SMS or

Anti-Ransomware Startup Halcyon Lands Fresh $40M Tranche

20 December 2023
The oversubscribed Series B funding round was led by Bain Capital Ventures. The company aims to use the funds to expand its product lines, enhance its services, and strengthen its sales and marketing efforts.

Terrapin Attacks can Downgrade Security of OpenSSH Connections

20 December 2023
The attack exploits weaknesses in the SSH transport layer protocol and encryption modes used by a majority of current implementations, making it a significant concern for the cybersecurity community.

Ransomware Trends and Recovery Strategies Companies Should Know

20 December 2023
Ransomware activity continues to rise, and organizations expect to increase spending on ransomware preparedness. Ransomware groups are continually using new vulnerabilities and coercive tactics to extort payments.

JaskaGO’s Coordinated Strike on macOS and Windows

20 December 2023
The malware utilizes extensive commands from its C2 server, enabling it to exfiltrate valuable user information, including browser credentials and cryptocurrency wallet details.

3,500 Arrested in Global Operation HAECHI-IV Targeting Financial Criminals

20 December 2023
A six-month-long international police operation codenamed HAECHI-IV has resulted in the arrests of nearly 3,500 individuals and seizures worth $300 million across 34 countries. The exercise, which took place from July through December 2023, took aim at various types of financial crimes such as voice phishing, romance scams, online sextortion, investment fraud, money laundering

New MetaStealer Malvertising Campaigns Spotted

20 December 2023
MetaStealer is a popular piece of malware that has been observed in recent malicious ad campaigns. The developers of MetaStealer have announced that they are releasing a new and improved version of the malware.

New Go-Based JaskaGO Malware Targeting Windows and macOS Systems

20 December 2023
A new Go-based information stealer malware called JaskaGO has emerged as the latest cross-platform threat to infiltrate both Windows and Apple macOS systems. AT&T Alien Labs, which made the discovery, said the malware is "equipped with an extensive array of commands from its command-and-control (C&C) server." Artifacts designed for macOS were first observed in July

Okta Acquiring Cybersecurity Startup Spera for Over $100 Million

20 December 2023
American identity and access management company Okta is acquiring Israeli cybersecurity company Spera for approximately $100-130 million, marking Okta's first acquisition in Israel and highlighting the strength of the Israeli cyber industry.

Healthcare Cybersecurity Proposal Stirs Industry Opposition

20 December 2023
Lobbyists for U.S. hospitals are opposing a proposal by the Biden administration for mandatory cybersecurity requirements and potential financial penalties for organizations that fail to meet them.

Report: Insurer’s UK Honeypots Attacked 17 Million Times Per Day

20 December 2023
Legacy vulnerabilities and Remote Desktop Protocol (RDP) endpoints are being singled out by attackers, according to new data based on billions of recorded cyberattacks in 2023 by insurer Coalition.

BlackCat Ransomware Raises Ante After FBI Disruption

19 December 2023
The U.S. Federal Bureau of Investigation (FBI) disclosed today that it infiltrated the world's second most prolific ransomware gang, a Russia-based criminal group known as ALPHV and BlackCat. The FBI said it seized the gang's darknet website, and released a decryption tool that hundreds of victim companies can use to recover systems. Meanwhile, BlackCat responded by briefly "unseizing" its darknet site with a message promising 90 percent commissions for affiliates who continue to work with the crime group, and open season on everything from hospitals to nuclear power plants.