Latest Cybersecurity News and Articles


Turns Out AI Probably Isn’t Very Good at Writing Malware

21 August 2023
Recent research from Trend Micro and Google's Mandiant indicates that while criminals show interest in using generative AI models for malicious purposes, the actual usage remains limited.

Israel, US to Invest $4 Million in Critical Infrastructure Security Projects

21 August 2023
Government agencies in Israel and the US have announced plans to invest $3.85 million in projects meant to improve the security of critical infrastructure in both countries.

Jenkins Patches High-Severity Vulnerabilities in Multiple Plugins

21 August 2023
The patches address three high-severity cross-site request forgery (CSRF) and cross-site scripting (XSS) issues in the Folders, Flaky Test Handler, and Shortcut Job plugins.

Four Juniper Junos OS Flaws can be Chained to Remotely Hack Devices

21 August 2023
Juniper Networks has released an “out-of-cycle” security update to address four vulnerabilities in the J-Web component of Junos OS. The vulnerabilities could be chained to achieve remote code execution on vulnerable appliances.

Cisco Patches High-Severity Vulnerabilities in Enterprise Applications

21 August 2023
Last week, Cisco announced security updates for several enterprise applications to patch high-severity vulnerabilities leading to privilege escalation, SQL injection, directory traversal, and denial-of-service (DoS).

HiatusRAT Malware Resurfaces: Taiwan Firms and U.S. Military Under Attack

21 August 2023
The threat actors behind the HiatusRAT malware have returned from their hiatus with a new wave of reconnaissance and targeting activity aimed at Taiwan-based organizations and a U.S. military procurement system. Besides recompiling malware samples for different architectures, the artifacts are said to have been hosted on new virtual private servers (VPSs), Lumen Black Lotus Labs said in a report

Germany’s National Bar Association Investigating Ransomware Attack

19 August 2023
The German Federal Bar (BRAK) Association discovered the attack on August 2. The group is an umbrella organization overseeing 28 regional bars across Germany and representing about 166,000 lawyers nationally and internationally.

WoofLocker Toolkit Hides Malicious Codes in Images to Run Tech Support Scams

19 August 2023
Cybersecurity researchers have detailed an updated version of an advanced fingerprinting and redirection toolkit called WoofLocker that's engineered to conduct tech support scams. The sophisticated traffic redirection scheme was first documented by Malwarebytes in January 2020, leveraging JavaScript embedded in compromised websites to perform anti-bot and web traffic filtering checks to serve

Cuba Ransomware Deploys New Tools to Target U.S. Critical Infrastructure Sector and IT Integrator in Latin America

19 August 2023
The group's toolkit includes custom and off-the-shelf parts, such as the BUGHATCH downloader and the Metasploit framework. The attacks often start with the compromise of valid credentials through a credentials reuse scheme or vulnerability exploits.

New Juniper Junos OS Flaws Expose Devices to Remote Attacks - Patch Now

19 August 2023
Networking hardware company Juniper Networks has released an "out-of-cycle" security update to address multiple flaws in the J-Web component of Junos OS that could be combined to achieve remote code execution on susceptible installations. The four vulnerabilities have a cumulative CVSS rating of 9.8, making them Critical in severity. They affect all versions of Junos OS on SRX and EX Series. "By

Illinois Hospital Notifies Patients, Employees of Data Breach After Royal Gang Posting

19 August 2023
In late May, reports said the Royal ransomware gang had posted data from the organization on its leak site. As of May 23, the hospital had said it was still investigating the incident.

Update: Companies Respond to ‘Downfall’ Intel CPU Vulnerability

19 August 2023
AWS said its customers’ data and cloud instances are not affected by Downfall and no action is required. The cloud giant did note that it has “designed and implemented its infrastructure with protections against this class of issues”.

WinRAR Flaw Lets Hackers Run Programs When You Open RAR Archives

19 August 2023
A high-severity vulnerability has been fixed in WinRAR, the popular file archiver utility for Windows used by millions, that can execute commands on a computer simply by opening an archive.

Thousands of Android Malware Apps Using Stealthy APK Compression to Evade Detection

19 August 2023
Threat actors are using Android Package (APK) files with unknown or unsupported compression methods to elude malware analysis. That's according to findings from Zimperium, which found 3,300 artifacts leveraging such compression algorithms in the wild. 71 of the identified samples can be loaded on the operating system without any problems. There is no evidence that the apps were available on the

Ransomware Gang Threatens Raleigh Housing Authority Months After Devastating Attack

19 August 2023
A ransomware gang has started posting sensitive personal information connected to a devastating attack on the Raleigh Housing Authority (RHA) that disrupted the organization for weeks in May.

Update: Man Arrested in Northern Ireland Police Data Leak

19 August 2023
The unnamed man was questioned by detectives who were said to be "investigating criminality linked to last week's freedom of information data breach," but has now been released on bail to allow for further inquiries, the PSNI stated.

New phishing campaign recognized in Europe and South America

18 August 2023
A phishing campaign designed to collect Zimbra user credentials was uncovered by ESET. The campaign has been active since at least April 2023.

Cloaked Malvertising: Unmasking Complex Fingerprinting and Evading Detection

18 August 2023
Malwarebytes Labs identified a new trend in malvertising campaigns that use advanced cloaking techniques to evade detection. Threat actors are targeting the users of popular IT programs by creating malicious ads displayed on Google search results. To safeguard against ever-evolving malvertising tactics, security experts must prioritize regular website security audits, robust traffic analysis, and anomaly detection.

Synthetic identity fraud fastest growing financial crime in U.S.

18 August 2023
A Deloitte report found that synthetic identity fraud such as deepfakes could trigger the need for more sophisticated biometric security systems.

Ongoing Phishing Campaign Targets Zimbra Credentials

18 August 2023
ESET uncovered an ongoing phishing campaign targeting Zimbra Collaboration users, aiming to harvest their Zimbra account credentials. The phishing emails lure victims by posing as email server updates, account deactivations, or similar issues, and directing them to click on an attached HTML file. Security teams are advised to implement necessary email security controls to stay safe.