Latest Cybersecurity News and Articles


Behind WoofLocker: Long-running Traffic Diversion Scheme

18 August 2023
The long-standing WoofLocker tech support scam campaign, initiated in 2017, remains active with enhanced resilience as it employs a unique traffic redirection approach on compromised websites. Redirecting targeted users to a fake virus warning browser locker screen, WoofLocker has exhibited stability and ease of management over the years.

Interpol Arrests 14 Suspected Cybercriminals for Stealing $40 Million

18 August 2023
An international law enforcement operation led by Interpol has led to the arrest of 14 suspected cybercriminals in an operation codenamed 'Africa Cyber Surge II,' launched in April 2023.

Catching up With Wooflocker, the Most Elaborate Traffic Redirection Scheme to Tech Support Scams

18 August 2023
The WoofLocker tech support scam campaign, which was first discovered in 2020, is still active and has evolved to become more sophisticated. The campaign relies on compromised websites to distribute its malicious code, with a focus on adult websites.

Cleveland City School District Suffers Ransomware Attack

18 August 2023
Cleveland City Schools say they are dealing with the aftermath of a ransomware attack Tuesday. They say less than 5% of faculty and staff devices were affected. A CCS spokesperson says their printers are down.

Thousands of Android APKs Use Compression Trick to Thwart Analysis

18 August 2023
The main advantage of this approach is to evade detection by security tools using static analysis and hamper examination by researchers, delaying the development of an in-depth understanding of how an Android malware strain works.

14 Suspected Cybercriminals Arrested Across Africa in Coordinated Crackdown

18 August 2023
A coordinated law enforcement operation across 25 African countries has led to the arrest of 14 suspected cybercriminals, INTERPOL announced Friday. The exercise, conducted in partnership with AFRIPOL, enabled investigators to identify 20,674 cyber networks that were linked to financial losses of more than $40 million. "The four-month Africa Cyber Surge II operation was launched in April 2023

CISA hosts nation’s largest annual election security exercise

18 August 2023
This week, the Cybersecurity and Infrastructure Security Agency (CISA) hosted the nation’s largest annual election security exercise.

Microsoft Warns of BlackCat's New 'Sphynx' Ransomware Variant

18 August 2023
Microsoft has discovered a new version of the BlackCat ransomware that embeds the Impacket networking framework and the Remcom hacking tool, both enabling spreading laterally across a breached network.

The Vulnerability of Zero Trust: Lessons from the Storm 0558 Hack

18 August 2023
While IT security managers in companies and public administrations rely on the concept of Zero Trust, APTS (Advanced Persistent Threats) are putting its practical effectiveness to the test. Analysts, on the other hand, understand that Zero Trust can only be achieved with comprehensive insight into one's own network.  Just recently, an attack believed to be perpetrated by the Chinese hacker group

New Wave of Attack Campaign Targeting Zimbra Email Users for Credential Theft

18 August 2023
A new "mass-spreading" social engineering campaign is targeting users of the Zimbra Collaboration email server with an aim to collect their login credentials for use in follow-on operations. The activity, active since April 2023 and still ongoing, targets a wide range of small and medium businesses and governmental entities, most of which are located in Poland, Ecuador, Mexico, Italy, and Russia

Security Basics Aren’t So Basic — They’re Hard

18 August 2023
Fundamental defenses — identity and access management, MFA, memory-safe languages, patching and vulnerability management — are lacking or nonexistent across the economy, according to cybersecurity experts.

Chinese Hackers Accused of Targeting Southeast Asian Gambling Sector

18 August 2023
Hackers based in China are targeting the gambling sector across Southeast Asia in a campaign that researchers say is closely related to data collection and surveillance operations identified earlier this year.

Update: Suncor CEO Says Company Mostly Recovered From June Cyberattack

18 August 2023
Suncor Energy executives said the Canadian energy giant has recovered most of its normal operations since a June cyberattack. But the incident was serious, executives said, and Suncor learned significant lessons.

New BlackCat Ransomware Variant Adopts Advanced Impacket and RemCom Tools

18 August 2023
Microsoft on Thursday disclosed that it found a new version of the BlackCat ransomware (aka ALPHV and Noberus) that embeds tools like Impacket and RemCom to facilitate lateral movement and remote code execution. "The Impacket tool has credential dumping and remote service execution modules that could be used for broad deployment of the BlackCat ransomware in target environments," the company's

Hackers Ask $120,000 for Access to Multi-Billion Auction House

18 August 2023
Researchers at threat intelligence company Flare poured through three months of IAB offers on the Russian-language hacker forum Exploit to better understand who they target, their ask prices, and who are the most active.

Report: 30% of Phishing Threats Involve Newly Registered Domains

18 August 2023
Phishing remains the most dominant and fastest-growing internet crime, largely due to the ubiquity of email and the ceaseless issue of human error that is preyed upon by today’s threat actors, according to Cloudflare.

New Apple iOS 16 Exploit Enables Stealthy Cellular Access Under Fake Airplane Mode

18 August 2023
Cybersecurity researchers have documented a novel post-exploit persistence technique on iOS 16 that could be abused to fly under the radar and maintain access to an Apple device even when the victim believes it is offline.

Mass-Spreading Campaign Targeting Zimbra Users

18 August 2023
ESET researchers have discovered a widespread phishing campaign targeting users of the Zimbra Collaboration email server. The campaign, which has been active since April 2023, aims to collect Zimbra account users' credentials.

Banks Defending Their Right to Security are Missing the Point About Consumer Trust

18 August 2023
When businesses override a customer's security decision, does it make them fully liable when a breach occurs? That's a question banks like those in Singapore need to consider before they roll out their next security feature.

Sneaky 'NoFilter' Privilege Escalation Attack Bypasses Windows Security

18 August 2023
A previously undetected attack method called NoFilter has been found to abuse the Windows Filtering Platform (WFP) to achieve privilege escalation in the Windows operating system.