Latest Cybersecurity News and Articles


58% of malicious emails contained spoof content

30 August 2023
According to a VIPRE Security Group report, 85% of phishing emails sent in Q2 2023 utilized malicious links in the content of the email.

Cyber defense makes up majority of cybersecurity budgets

30 August 2023
Cyberattacks and risk management were analyzed in a report. When asked, 18% of respondents report cyberattacks threatened or disrupted their business.

Hackers Can Exploit Windows Container Isolation Framework to Bypass Endpoint Security

30 August 2023
New findings show that malicious actors could leverage a sneaky malware detection evasion technique and bypass endpoint security solutions by manipulating the Windows Container Isolation Framework. The findings were presented by Deep Instinct security researcher Daniel Avinoam at the DEF CON security conference held earlier this month. Microsoft's container architecture (and by extension, 

China-Linked BadBazaar Android Spyware Targeting Signal and Telegram Users

30 August 2023
Cybersecurity researchers have discovered malicious Android apps for Signal and Telegram distributed via the Google Play Store and Samsung Galaxy Store that are engineered to deliver the BadBazaar spyware on infected devices.

GitHub Enterprise Server Gets New Security Capabilities

30 August 2023
Now, teams using GitHub Actions can also create their own custom deployment protection rules, to ensure that only “the deployments that pass all quality, security, and manual approval requirements make it to production,” GitHub explained.

MMRat Android Trojan Executes Remote Financial Fraud Through Accessibility Feature

30 August 2023
A previously undocumented Android banking trojan dubbed MMRat has been observed targeting mobile users in Southeast Asia since late June 2023 to remotely commandeer the devices and perform financial fraud. "The malware, named after its distinctive package name com.mm.user, can capture user input and screen content, and can also remotely control victim devices through various techniques, enabling

Malicious npm Packages Aim to Target Developers for Source Code Theft

30 August 2023
An unknown threat actor is leveraging malicious npm packages to target developers with an aim to steal source code and configuration files from victim machines, a sign of how threats lurk consistently in open-source repositories.

Security leaders report need to balance human and machine identities

30 August 2023
The effect of data breaches was analyzed in a recent report by AppViewX and Forrester, including financial costs and decision-maker stress.

AMA: Cybersecurity Executive Edition — Andrew Wilder

30 August 2023
In this AMA episode from Security magazine, Andrew Wilder, cybersecurity executive and professor at Washington University, discusses security trends.

Russians Impersonate Washington Post and Fox News With Anti-Ukraine Stories

30 August 2023
This operation, named Doppelganger, has persevered in its attempts to influence Western opinion despite numerous disruptions by Meta and “continuous scrutiny by platforms and researchers.”

China-Linked BadBazaar Android Spyware Targeting Signal and Telegram Users

30 August 2023
Cybersecurity researchers have discovered malicious Android apps for Signal and Telegram distributed via the Google Play Store and Samsung Galaxy Store that are engineered to deliver the BadBazaar spyware on infected devices. Slovakian company ESET attributed the campaign to a China-linked actor called GREF. "Most likely active since July 2020 and since July 2022, respectively, the campaigns

Microsoft Adds HSTS Support to Exchange Server 2016 and 2019

30 August 2023
This protects against man-in-the-middle attacks and prevents users from connecting through compromised channels. HSTS also eliminates the need for redirecting users from HTTP to HTTPS URLs.

FBI Dismantles QakBot Malware, Frees 700,000 Computers, Seizes $8.6 Million

30 August 2023
The cross-border exercise involved the participation of France, Germany, Latvia, Romania, the Netherlands, the U.K., and the U.S., alongside technical assistance from cybersecurity company Zscaler.

Genshin Impact Developer Will Sue Kaveh Hacks Users and Developers

30 August 2023
Genshin Impact developer miHoYohas responded to an in-game hacking situation that has caused problems recently in its player community, warning that they would take legal action against those responsible.

Marqeta names Heather Gantt-Evans as CISO

30 August 2023
Marqeta has announced the appointment of Heather Gantt-Evans as its Chief Information Security Officer (CISO).

DDoS attacks rise 40% in Q2 2023, affecting banks, gaming & e-commerce

30 August 2023
According to a study the number of DDoS attacks has increased by 40% over the past six months, increasingly targeting diverse industries including banking, e-commerce and education.

How to Prevent ChatGPT From Stealing Your Content & Traffic

30 August 2023
ChatGPT and similar large language models (LLMs) have added further complexity to the ever-growing online threat landscape. Cybercriminals no longer need advanced coding skills to execute fraud and other damaging attacks against online businesses and customers, thanks to bots-as-a-service, residential proxies, CAPTCHA farms, and other easily accessible tools.  Now, the latest technology damaging

Malicious npm Packages Aim to Target Developers for Source Code Theft

30 August 2023
An unknown threat actor is leveraging malicious npm packages to target developers with an aim to steal source code and configuration files from victim machines, a sign of how threats lurk consistently in open-source repositories. "The threat actor behind this campaign has been linked to malicious activity dating back to 2021," software supply chain security firm Checkmarx said in a report shared

Alert: Juniper Firewalls, Openfire, and Apache RocketMQ Under Attack from New Exploits

30 August 2023
Recently disclosed security flaws impacting Juniper firewalls, Openfire, and Apache RocketMQ servers have come under active exploitation in the wild, according to multiple reports. The Shadowserver Foundation said that it's "seeing exploitation attempts from multiple IPs for Juniper J-Web CVE-2023-36844 (& friends) targeting/webauth_operation.php endpoint," the same day a proof-of-concept (PoC)

Pay Our Ransom Instead of GDPR Fine, Cybercrime Gang Tells Its Targets

30 August 2023
The hackers behind Ransomed are probably linked to other data leak websites like BreachForums and Exposed, Flashpot said. Some of these sites have shut down due to money problems or poor management, the researchers said.