Latest Cybersecurity News and Articles


China's BlackTech Hacking Group Exploited Routers to Target U.S. and Japanese Companies

28 September 2023
Cybersecurity agencies from Japan and the U.S. have warned of attacks mounted by a state-backed hacking group from China to stealthily tamper with branch routers and use them as jumping-off points to access the networks of various companies in the two countries. The attacks have been tied to a malicious cyber actor dubbed BlackTech by the U.S. National Security Agency (NSA), Federal Bureau of

Swan Retail Cyberattack Woes Continue for Independent UK Retailers

28 September 2023
The attacks have caused significant problems for retailers, with issues such as inventory management and order fulfillment still not resolved. Retailers have reported glitches and loss of sales due to the cyberattack.

Campbell Soup Says Summer Cyberattack Caused Limited Business Impact

28 September 2023
The incident did not affect systems that connect with customers or suppliers, and the company is working with its insurer to make claims under its cyber insurance coverage.

Amid MGM, Caesars Incidents, Attackers Focus on Luxury Hotels

28 September 2023
The campaign targets luxury resorts and hotel chains, using reconnaissance emails and instant messages to trick employees into responding and downloading malicious files from trusted cloud domains.

Cybersecurity firm Lumu raises $30M to detect network intrusions

28 September 2023
Ricardo Villadiego, Lumu’s founder and CEO, says that the new cash will be put toward growing Lumu’s sales team in the U.S., supporting its go-to-market strategy, and increasing the startup’s investments in R&D.

Cannot Depend on Dependabot: Found Contributing Malicious Code

28 September 2023
Threat actors meticulously fabricated commit messages to mimic Dependabot's automated contributions to mask the malevolent activities they were indulging in. Between July 8 and July 11, an unidentified threat actor began compromising a multitude of GitHub repositories, affecting both public and private sectors, with a significant number of victims originating from Indonesia. The attackers skillfully manipulated commit messages, leading developers to believe that the real Dependabot had made these contributions.

US businesses see cyberattacks decrease; Still too high to sustain

28 September 2023
A recent security report reveals a drop in phishing and ransomware attacks, but fallout from the Las Vegas attacks underscores the massive social engineering vulnerabilities still plaguing businesses.

New Marvin Attack Impacts 25-Year-Old PKCS#1 v1.5 Padding Scheme for RSA Key Exchange

28 September 2023
The encryption method, known as PKCS#1 v1.5 padding scheme, was previously thought to be immune to attacks, but a new paper reveals that many software implementations of the scheme are actually vulnerable.

Department of Defense overhauls cyber strategy: Experts weigh in

28 September 2023
Security leaders discuss recently released unclassified summary of the Department of Defense's classified 2023 Cyber Strategy.

DHS to Host Latin American Cyber Summit as Region Faces an Onslaught of Digital Attacks

28 September 2023
The conference will discuss topics such as protecting critical infrastructure, ransomware, and the U.S. national cyber strategy, aiming to establish a long-lasting relationship with the region on cyber issues.

Chinese State-Sponsored BlackTech Hackers Caught Hiding in Cisco Router Firmware

28 September 2023
A Chinese state-sponsored APT called BlackTech has been caught hacking into network edge devices and using firmware implants to stay hidden and silently hop around the corporate networks of U.S. and Japanese multinational companies.

Chinese Hackers Stole Emails From US State Department in Microsoft Breach, Senate Staffer Says

28 September 2023
Chinese hackers breached Microsoft's email platform and stole tens of thousands of emails from U.S. State Department accounts, including those of officials working on Indo-Pacific diplomacy efforts.

The Dark Side of Browser Isolation – and the Next Generation Browser Security Technologies

28 September 2023
The landscape of browser security has undergone significant changes over the past decade. While Browser Isolation was once considered the gold standard for protecting against browser exploits and malware downloads, it has become increasingly inadequate and insecure in today's SaaS-centric world. The limitations of Browser Isolation, such as degraded browser performance and inability to tackle

Building Automation Giant Johnson Controls Hit by Dark Angels Ransomware Attack

28 September 2023
The ransomware gang, known as Dark Angels, has demanded a $51 million ransom and claimed to have stolen over 27 TB of corporate data from the network of Johnson Controls.

‘Snatch’ Ransom Group Exposes Visitor IP Addresses

28 September 2023
The leaked data from Snatch's victim shaming site reveals that the group's darknet site attracts a significant number of visitors from Russia, potentially indicating their source of victims.

macOS 14 Sonoma Patches 60 Vulnerabilities

28 September 2023
While some of these vulnerabilities can be exploited remotely by getting the targeted user to access a specially crafted website, a majority require the presence of a malicious app on the targeted device.

China-Linked Budworm Targeting Middle Eastern Telco and Asian Government Agencies

28 September 2023
Government and telecom entities have been subjected to a new wave of attacks by a China-linked threat actor tracked as Budworm using an updated malware toolset. The intrusions, targeting a Middle Eastern telecommunications organization and an Asian government, took place in August 2023, with the adversary deploying an improved version of its SysUpdate toolkit, the Symantec Threat Hunter Team,

RICO Class-Action Data Privacy Lawsuit Filed Against H&R Block, Google, Meta

28 September 2023
The suit claims that the companies violated data privacy laws by sharing customer tax return data without adequate disclosure, potentially creating targeted advertising dossiers.

Simple Membership Plugin Flaws Expose WordPress Sites

28 September 2023
Two new security flaws in the popular Simple Membership plugin for WordPress, affecting versions 4.3.4 and below, have been identified, leading to potential privilege escalation issues.

Network Flight Simulator: Open-Source Adversary Simulation Tool

28 September 2023
The tool simulates various malicious traffic patterns, including DNS tunneling, DGA traffic, and requests to known active C2 destinations, to quantify and measure the coverage of existing detection tools.