Latest Cybersecurity News and Articles


Microsoft Discovers Critical RCE Flaw in Perforce Helix Core Server

19 December 2023
Four vulnerabilities, including a critical one, have been discovered in the widely used Perforce Helix Core Server, posing a significant risk to organizations in the gaming, government, military, and technology sectors.

New Scam Involving Remote Jobs on Social Media Platforms

19 December 2023
Researchers at Bitdefender Labs have uncovered a new scam involving remote jobs on social media platforms. Scammers are promising payment for simply liking YouTube videos.

CISA Releases Key Risk and Vulnerability Findings for Healthcare and Public Health Sector

19 December 2023
CISA recently published a cybersecurity advisory which details the agency’s key findings and activities during a Risk and Vulnerability Assessment conducted at a healthcare and public health organization in early 2023.

FBI, CISA, and ACSC Release Joint Advisory on Play Ransomware

19 December 2023
The Play ransomware group has been targeting businesses and critical infrastructure in North America, South America, and Europe since June 2022. They use a double-extortion model, encrypting systems after exfiltrating data.

FBI Takes Down BlackCat Ransomware, Releases Free Decryption Tool

19 December 2023
The U.S. Justice Department (DoJ) has officially announced the disruption of the BlackCat ransomware operation and released a decryption tool that victims can use to regain access to files locked by the malware. Court documents show that the U.S. Federal Bureau of Investigation (FBI) enlisted the help of a confidential human source (CHS) to act as an affiliate for the BlackCat and gain

Behind the Scenes of Matveev's Ransomware Empire: Tactics and Team

19 December 2023
Cybersecurity researchers have shed light on the inner workings of the ransomware operation led by Mikhail Pavlovich Matveev, a Russian national who was indicted by the U.S. government earlier this year for his alleged role in launching thousands of attacks across the world. Matveev, who resides in Saint Petersburg and is known by the aliases Wazawaka, m1x, Boriselcin, Uhodiransomwar,

Ransomware Attack on Westpole Disrupted Digital Services for Italian Public Administration

19 December 2023
One of Westpole's customers, PA Digitale, which serves 1300 public administrations including 540 municipalities, was targeted. The incident has led to manual operations for some services and may affect salary payments.

CISA releases Play ransomware guidelines

19 December 2023
CISA has partnered with federal U.S. and Australian organizations to release a joint cybersecurity advisory (CSA) about Play ransomware.

77% of financial organizations detected a cyberattack in the last year

19 December 2023
According to a recent Netwrix report, 77% of financial organizations detected a cyberattack in the last year, compared to 68% in other industries.

Xfinity Discloses Massive Data Breach Affecting Over 35 Million People

19 December 2023
The breach occurred after attackers exploited a critical vulnerability, known as Citrix Bleed, that had been actively exploited as a zero-day since August 2023. The company has asked users to reset their passwords.

Novel SMTP Smuggling Technique Slips Past DMARC, Email Protections

19 December 2023
Attackers can exploit SMTP smuggling to send spoofed emails with fake sender addresses, bypassing email security checks and putting organizations and individuals at risk for targeted phishing attacks.

Hackers Abusing GitHub to Evade Detection and Control Compromised Hosts

19 December 2023
Threat actors are increasingly making use of GitHub for malicious purposes through novel methods, including abusing secret Gists and issuing malicious commands via git commit messages. "Malware authors occasionally place their samples in services like Dropbox, Google Drive, OneDrive, and Discord to host second stage malware and sidestep detection tools," ReversingLabs researcher Karlo Zanki 

US Agencies Release Security Guidance on Managing SBOMs and Open Source Software

19 December 2023
The report provides guidance on open source software adoption, including criteria for selection, risk assessment, licensing, export control, maintenance, vulnerability response, and secure software delivery.

Henry Schein reports 29K affected in September cyberattack

19 December 2023
In a filing with the Maine Attorney General, dental and medical products supplier Henry Schein announced more than 29,000 people were potentially affected from a recent data breach.

Henry Schein reports 29K affected in September cyber attack

19 December 2023
In a filing with the Maine Attorney General, dental and medical products supplier Henry Schein announced more than 29,000 people were potentially affected from a recent data breach.

CISA Urges Manufacturers to Eliminate Default Passwords to Thwart Cyber Threats

19 December 2023
Manufacturers are advised to follow Secure by Design principles, provide unique setup passwords or disable them after a preset time period, and implement phishing-resistant multi-factor authentication methods to mitigate these risks.

Are We Ready to Give Up on Security Awareness Training?

19 December 2023
Some of you have already started budgeting for 2024 and allocating funds to security areas within your organization. It is safe to say that employee security awareness training is one of the expenditure items, too. However, its effectiveness is an open question with people still engaging in insecure behaviors at the workplace. Besides, social engineering remains one of the most prevalent attacks

Iran Hit by Major Cyberattack Targeting Nation's Fuel Supply

19 December 2023
Gas stations in Iran experienced widespread disruptions due to a cyberattack claimed by the group Predatory Sparrow, which has previously targeted Iranian critical infrastructure.

Iranian Hackers Using MuddyC2Go in Telecom Espionage Attacks Across Africa

19 December 2023
The Iranian nation-state actor known as MuddyWater has leveraged a newly discovered command-and-control (C2) framework called MuddyC2Go in its attacks on the telecommunications sector in Egypt, Sudan, and Tanzania. The Symantec Threat Hunter Team, part of Broadcom, is tracking the activity under the name Seedworm, which is also tracked under the monikers Boggy Serpens, Cobalt

New Malvertising Campaign Distributing PikaBot Disguised as Popular Software

19 December 2023
The malware loader known as PikaBot is being distributed as part of a malvertising campaign targeting users searching for legitimate software like AnyDesk. "PikaBot was previously only distributed via malspam campaigns similarly to QakBot and emerged as one of the preferred payloads for a threat actor known as TA577," Malwarebytes' Jérôme Segura said. The malware family,