Latest Cybersecurity News and Articles
19 October 2023
Thousands of IT workers contracting with U.S. firms have secretly sent millions of dollars to North Korea to fund its missile program.
The post FBI: Thousands of Remote IT Workers Sent Wages to North Korea to Help Fund Weapons Program appeared first on SecurityWeek.
19 October 2023
A recent Q3 ransomware report found a nearly 15% increase in ransomware activity since Q2 due to an increased number of ransomware groups.
19 October 2023
An updated version of a sophisticated backdoor framework called MATA has been used in attacks aimed at over a dozen Eastern European companies in the oil and gas sector and defense industry as part of a cyber espionage operation that took place between August 2022 and May 2023.
"The actors behind the attack used spear-phishing mails to target several victims, some were infected with Windows
19 October 2023
The IT manager and his wife stole the personally identifiable information of over 9,000 individuals and sold it for $160,000 in Bitcoin, which was later used for criminal activities.
19 October 2023
A new report reveals cyberattacks are the leading cause of IT downtime and data loss in 2023.
19 October 2023
The leaked data poses serious risks, as threat actors could potentially disrupt services, launch phishing campaigns, and engage in "doxxing" and "swatting" activities, putting customers at risk.
19 October 2023
EDF, the company operating nuclear power plants in the UK, is facing increased regulatory attention after an inspection of its cybersecurity practices. The company failed to provide a comprehensive cybersecurity improvement plan.
19 October 2023
The attackers made use of legitimate tools like Plink to configure port-forwarding rules, enabling remote access via the Remote Desktop Protocol (RDP), and modified Windows firewall rules to facilitate their activities.
19 October 2023
Australian startup ChipherStash raises $3 million in seed funding for technology that keeps data encrypted in use.
The post CipherStash Raises $3 Million for Encryption-in-Use Technology appeared first on SecurityWeek.
19 October 2023
To mitigate the risk, organizations should implement strategies such as employee training, geolocation and geofencing, endpoint data encryption, and secure storage solutions.
19 October 2023
CISA, NSA, FBI, and MS-ISAC have released guidance and prevention recommendations on common phishing techniques.
The post US Government Releases Anti-Phishing Guidance appeared first on SecurityWeek.
19 October 2023
The time between a vulnerability being discovered and hackers exploiting it is narrower than ever – just 12 days. So it makes sense that organizations are starting to recognize the importance of not leaving long gaps between their scans, and the term "continuous vulnerability scanning" is becoming more popular.
Hackers won’t wait for your next scan
One-off scans can be a simple ‘one-and-done'
19 October 2023
A hacker has leaked 4.1 million stolen genetic data profiles from 23andMe, a DNA testing company, on a hacking forum. This follows a recent leak of 1 million profiles of Ashkenazi Jews.
19 October 2023
Google improves Android devices’ proactive protections against malware with real-time scanning at code level.
The post Google Play Protect Gets Real-Time Code Scanning appeared first on SecurityWeek.
19 October 2023
Google has announced an update to its Play Protect with support for real-time scanning at the code level to tackle novel malicious apps prior to downloading and installing them on Android devices.
"Google Play Protect will now recommend a real-time app scan when installing apps that have never been scanned before to help detect emerging threats," the tech giant said.
Google Play Protect is a
19 October 2023
A hypothetical cyberattack on a major financial services payment system could result in global economic losses of up to $3.5 trillion over a five-year period. The United States, China, and Japan are the countries most at risk.
19 October 2023
The number of Cisco devices hacked via the CVE-2023-20198 zero-day has reached 40,000, including many in the US.
The post Number of Cisco Devices Hacked via Unpatched Vulnerability Increases to 40,000 appeared first on SecurityWeek.
19 October 2023
The attackers employed sophisticated techniques, including exploiting a vulnerability in Internet Explorer and using specialized malware modules for data exfiltration, highlighting the increasing complexity of targeted attacks.
19 October 2023
The marketplace, which used an online payment system called Perfect Money, offered illicit cryptocurrency exchange services and listed credentials belonging to 350,000 devices for sale globally.
19 October 2023
Healthcare solutions giant Henry Schein has disclosed a cybersecurity incident that disrupted operations and possibly led to a data breach.
The post Operations of Healthcare Solutions Giant Henry Schein Disrupted by Cyberattack appeared first on SecurityWeek.