Latest Cybersecurity News and Articles


New Agniane Stealer Peddled on Dark Web Forums to Enable Crypto Theft

23 August 2023
Agniane Stealer is a new information stealer malware that targets credentials, system information, and cryptocurrency wallets, and is available for sale on dark web forums.

Over a Dozen Malicious npm Packages Target Roblox Game Developers

23 August 2023
More than a dozen malicious packages have been discovered on the npm package repository since the start of August 2023 with capabilities to deploy an open-source information stealer called Luna Token Grabber on systems belonging to Roblox developers. The ongoing campaign, first detected on August 1 by ReversingLabs, employs modules that masquerade as the legitimate package noblox.js, an API

Cybersecurity risks found in browser extensions

22 August 2023
Browser extension security was analyzed in a recent report by Spin.AI, finding extensions with unknown authors attached to personal email accounts.

Tourists Give Themselves Away by Looking Up. So Do Most Network Intruders.

22 August 2023
In large metropolitan areas, tourists are often easy to spot because they're far more inclined than locals to gaze upward at the surrounding skyscrapers. Security experts say this same tourist dynamic is a dead giveaway in virtually all computer intrusions that lead to devastating attacks like ransomware, and that more organizations should set simple virtual tripwires that sound the alarm when authorized users and devices are spotted exhibiting this behavior.

Thousands of Android Malware Apps Use Stealthy APKs to Bypass Security

22 August 2023
Threat actors are reportedly exploiting APK files that employ unknown or unsupported compression methods to bypass malware analysis, warned cybersecurity firm Zimperium. The approach hinders decompilation efforts while still enabling installation on Android devices running OS versions above Android 9 Pie. Zimperium found 3,300 instances of this tactic in the wild, with 71 of them being compatible with the operating system

MOVEit Attack Spree Makes Clop This Summer’s Most-Prolific Ransomware Group

22 August 2023
Clop was responsible for one-third of all ransomware attacks in July, positioning the financially-motivated threat actor to become the most prolific ransomware threat actor this summer, according to multiple threat intelligence reports.

US and UK express interest in cybersecurity education for children

22 August 2023
According to ThreatX research, consumers in the U.S. and U.K believe increasing cybersecurity education in schools will help close the talent gap.

EVLF DEV - Knowing the Creator of CypherRAT and CraxsRAT

22 August 2023
A fresh player in the realm of cyber threats has emerged under the moniker EVLF DEV, operating as a Malware-as-a-Service (MaaS) provider. Hailing from Syria and active for over eight years, this actor has developed the CypherRAT and CraxsRAT malware strains. To counteract such campaigns by malicious actors, individuals should practice caution while downloading applications, refrain from interacting with dubious links or attachments.

Two Data Breaches in Gadsden: Court System, EMS Report That Data May Have Been Stolen

22 August 2023
The 2nd Judicial Circuit announced Monday that law enforcement is investigating a data breach involving Gadsden County court records. In a news release, the circuit said that initial assessments show some of the records contained PII.

Akira Ransomware Targets Cisco VPNs to Breach Organizations

22 August 2023
There's mounting evidence that Akira ransomware targets Cisco VPN (virtual private network) products as an attack vector to breach corporate networks, steal, and eventually encrypt data.

Snatch Gang Claims the Hack of South Africa's Department of Defense

22 August 2023
The group claims to have stolen military contracts, internal call signs, and personal data, amounting to 1.6 TB. If the attack gets confirmed, the disclosure of confidential information poses a serious risk to organizations involved in the contracts.

Carderbee APT Uses Legitimate Software in Supply Chain Attack Targeting Hong Kong Firms

22 August 2023
The group appears to be skilled and patient, selectively pushing payloads to specific victims. The use of signed malware and supply chain attacks makes it difficult for security software to detect.

35% of online shoppers trust AI tools to manage their data

22 August 2023
In response to FTC concerns over artificial intelligence (AI) and data privacy, consumer opinions on AI were analyzed from a recent Capterra survey. 

Grip Security Raises $41 Million to Accelerate Growth and Extend its Market

22 August 2023
The investment brings Grip Security’s total funding to $66 million and marks a major milestone for the company, further accelerating its go-to-market strategy and advancing product development.

Ukrainian Hackers Claim to Leak Emails of Russian Parliament Deputy Chief

22 August 2023
Ukrainian hackers claim to have broken into the email account of a senior Russian politician and exposed documents that allegedly prove his involvement in money laundering and sanction evasion schemes.

Cerby Raises $17 Million for Access Management Platform for Nonstandard Applications

22 August 2023
The investment round was led by Two Sigma Ventures, with additional funding from Outpost Ventures, AV8, Bowery Capital, Founders Fund, Incubate Fund, Okta Ventures, Ridge Ventures, Salesforce Ventures, and Tau Ventures.

New Variant of XLoader macOS Malware Disguised as 'OfficeNote' Productivity App

22 August 2023
XLoader, the macOS malware first detected in 2020, is considered a successor to Formbook and is an information stealer and keylogger offered under the malware-as-a-service (MaaS) model.

UK Government Urges More Students to be Cyber Explorers

22 August 2023
Around 2000 schools across the UK are participating in Cyber Explorers – a free learning platform for 11–14-year-olds designed to introduce them to key cybersecurity concepts.

Ecuador’s National Election Agency Says Cyberattacks Caused Absentee Voting Issues

22 August 2023
Ecuador’s national election on Sunday was marred by difficulties voting online for citizens living abroad — incidents the country’s election agency attributed to cyberattacks originating from seven different countries.

Brighthouse Life Insurance Company discovers data security event

22 August 2023
A life insurance company has notified affected policy holders after sensitive information disclosed in data breach.