Latest Cybersecurity News and Articles
15 December 2023
Google on Thursday announced that it will start testing a new feature called "Tracking Protection" starting January 4, 2024, to 1% of Chrome users as part of its efforts to deprecate third-party cookies in the web browser.
The setting is designed to limit "cross-site tracking by restricting website access to third-party cookies by default," Anthony Chavez, vice president of Privacy
15 December 2023
The hackers accessed an off-site data center used for human resources services, compromising personal information such as names, social security numbers, salary details, and banking information.
15 December 2023
A novel multi-platform threat called NKAbuse has been discovered using a decentralized, peer-to-peer network connectivity protocol known as NKN (short for New Kind of Network) as a communications channel.
"The malware utilizes NKN technology for data exchange between peers, functioning as a potent implant, and equipped with both flooder and backdoor capabilities," Russian
14 December 2023
The Federal Communications Commission (FCC) has officially adopted changes to data breach notification rules for communication companies.
14 December 2023
Cybersecurity in the workplace was analyzed in a report, where 66% of respondents flagged completing daily tasks as more crucial than cybersecurity.
14 December 2023
On Dec. 18, 2013, KrebsOnSecurity broke the news that U.S. retail giant Target was battling a wide-ranging computer intrusion that compromised more than 40 million customer payment cards over the previous month. The malware used in the Target breach included the text string "Rescator," which also was the handle chosen by the cybercriminal who was selling all of the cards stolen from Target customers. Ten years later, KrebsOnSecurity has uncovered new clues about the real-life identity of Rescator.
14 December 2023
Google is using Clang sanitizers to enhance the security of the cellular baseband in Android. The sanitizers, including IntSan and BoundSan, detect and prevent vulnerabilities in program execution.
14 December 2023
Saudi Arabian students specializing in AI and cybersecurity are participating in workshops to enhance their capabilities in identifying and assessing potential risks of large language models (LLMs) across different platforms.
14 December 2023
Cybersecurity researchers have identified a set of 116 malicious packages on the Python Package Index (PyPI) repository that are designed to infect Windows and Linux systems with a custom backdoor.
"In some cases, the final payload is a variant of the infamous W4SP Stealer, or a simple clipboard monitor to steal cryptocurrency, or both," ESET researchers Marc-Etienne M.Léveillé and Rene
14 December 2023
The cybercrime group, Storm-1152, provided accounts to other cybercriminals involved in ransomware attacks and data theft, highlighting the interconnectedness of various criminal networks.
14 December 2023
Sony's subsidiary, Insomniac Games, is currently investigating a reported ransomware attack by the Rhysida gang, which has targeted various government institutions and healthcare organizations in the past.
14 December 2023
The global risk map by International SOS shows how climate change has changed risk levels and risk management, including medical emergencies.
14 December 2023
The ThreatNG Governance and Compliance Dataset is an open-source initiative that aims to provide access to critical cybersecurity data, promoting transparency and collaboration.
14 December 2023
Threat landscape shows continued investment by threat actors financially motivated to “follow the money” as banking via a mobile app becomes increasingly ubiquitous.
14 December 2023
A pro-Hamas threat actor known as Gaza Cyber Gang is targeting Palestinian entities using an updated version of a backdoor dubbed Pierogi.
The findings come from SentinelOne, which has given the malware the name Pierogi++ owing to the fact that it's implemented in the C++ programming language unlike its Delphi- and Pascal-based predecessor.
"Recent Gaza Cybergang activities show
14 December 2023
This incident follows a similar ransomware attack on the municipal administration of Zollikofen in November, highlighting the growing threat of ransomware attacks targeting Swiss organizations.
14 December 2023
Check Point Software Technologies has cooperated with the SEC inquiry into the SolarWinds Orion cyber vulnerability, voluntarily providing documents and information about its limited testing environment access.
14 December 2023
Volt Typhoon utilizes living-off-the-land techniques and hands-on-keyboard activity to evade detection, routing malicious traffic through compromised SOHO network devices and relying on customized versions of open-source tools for communication.
14 December 2023
French police have arrested a Russian national in Paris for allegedly helping the Hive ransomware gang with money laundering. The suspect was apprehended after being linked to digital wallets that received millions of dollars from suspicious sources.
14 December 2023
With the Securities and Exchange Commission (SEC) cybersecurity disclosure rule deadlines fast approaching, security leaders are sharing thoughts on the ruling and its effect on the industry.