Latest Cybersecurity News and Articles


German Police Warn of Increased Foreign Cybercrime Threat

18 August 2023
In a report published on Wednesday, the Federal Criminal Police Office of Germany, or BKA, said the country had recorded 136,865 cases of cybercrime in 2022, resulting in an estimated loss of 203 billion euros.

Federal Judge Inclined to Grant Claims in Meta Pixel Case

18 August 2023
The consolidated proposed class action lawsuit filed last year alleges that Facebook and Instagram parent Meta violated privacy laws by obtaining the sensitive data of millions of patients through its web tracking Pixel tool.

Google Chrome's New Feature Alerts Users About Auto-Removal of Malicious Extensions

18 August 2023
Google has announced plans to add a new feature in the upcoming version of its Chrome web browser to alert users when an extension they have installed has been removed from the Chrome Web Store. The feature, set for release alongside Chrome 117, allows users to be notified when an add-on has been unpublished by a developer, taken down for violating Chrome Web Store policy, or marked as malware.

Innovative QR Code Phishing Scheme Hits U.S. Energy Firm

18 August 2023
Cofense detected a significant phishing campaign that employed QR codes to target Microsoft credentials across various industries. Among the targets, a major U.S.-based energy company stood out, with around 29% of over 1,000 malicious QR code emails directed at it. Organizations should consider bolstering their security protocols by implementing advanced email filtering solutions capable of detecting embedded QR codes.

Karma Catches Up to Global Phishing Service 16Shop

17 August 2023
You've probably never heard of "16Shop," but there's a good chance someone using it has tried to phish you. Last week, the international police organization INTERPOL said it had shuttered the notorious 16Shop, a popular phishing-as-a-service platform launched in 2017 that made it simple for even complete novices to conduct complex and convincing phishing scams. INTERPOL said authorities in Indonesia arrested the 21-year-old proprietor and one of his alleged facilitators, and that a third suspect was apprehended in Japan.

Stealthy LABRAT Operation Runs Cryptojacking and Proxyjacking Campaign Targeting GitLab

17 August 2023
The Sysdig Threat Research Team (TRT) recently discovered a new, financially motivated operation, dubbed LABRAT. This operation set itself apart from others due to the attacker’s emphasis on stealth and defense evasion in their attacks.

NoFilter Attack: Sneaky Privilege Escalation Method Bypasses Windows Security

17 August 2023
A previously undetected attack method called NoFilter has been found to abuse the Windows Filtering Platform (WFP) to achieve privilege escalation in the Windows operating system. "If an attacker has the ability to execute code with admin privilege and the target is to perform LSASS Shtinkering, these privileges are not enough," Ron Ben Yizhak, a security researcher at Deep Instinct, told The

NYC Finance Department Sent Every Employee Their Colleagues’ Personal Info

17 August 2023
The New York City’s tax collection agency accidentally shared the home addresses, cell phone numbers, and personal email addresses of more than 1,700 workers with all those employees.

White House holds roundtable on data protection

17 August 2023
Participants at a White House roundtable shared insights and concerns about the harms and risks of companies sharing and selling consumer data.

China-Linked Bronze Starlight Group Targeting Gambling Sector with Cobalt Strike Beacons

17 August 2023
An ongoing cyber attack campaign originating from China is targeting the Southeast Asian gambling sector to deploy Cobalt Strike beacons on compromised systems.  Cybersecurity firm SentinelOne said the tactics, techniques, and procedures point to the involvement of a threat actor tracked as Bronze Starlight (aka Emperor Dragonfly or Storm-0401), which has been linked to the use of short-lived 

Play Ransomware Found Using Security MSPs and N-Day Exploits to Attack

17 August 2023
The Play ransomware group is targeting managed security service providers (MSSPs) to gain initial access and use up to a half-decade-old vulnerabilities in security appliances, warn security researchers with Adlumin.

New LABRAT Campaign Exploits GitLab Flaw for Cryptojacking and Proxyjacking Activities

17 August 2023
A new, financially motivated operation dubbed LABRAT has been observed weaponizing a now-patched critical flaw in GitLab as part of a cryptojacking and proxyjacking campaign. "The attacker utilized undetected signature-based tools, sophisticated and stealthy cross-platform malware, command-and-control (C2) tools which bypassed firewalls, and kernel-based rootkits to hide their presence," Sysdig 

New Apple iOS 16 Exploit Enables Stealthy Cellular Access Under Fake Airplane Mode

17 August 2023
Cybersecurity researchers have documented a novel post-exploit persistence technique on iOS 16 that could be abused to fly under the radar and main access to an Apple device even when the victim believes it is offline. The method "tricks the victim into thinking their device's Airplane Mode works when in reality the attacker (following successful device exploit) has planted an artificial

Over 74% of organizations see a rise in AI use by cybercriminals

17 August 2023
 According to a recent report, the threat of email attacks generated by AI is growing year over year and is projected to increase exponentially.

Hackers are Increasingly Hiding Within Services Such as Slack and Trello to Deploy Malware

17 August 2023
An analysis of more than 400 malware families deployed over the past two years found that at least a quarter of them abused legitimate internet services in some way as part of their infrastructure.

The Plan to Better Protect US Hospitals From Ransomware

17 August 2023
The HHS' Advanced Research Projects Agency for Health (Arpa-H) launched an initiative to find and help fund the development of cybersecurity technologies that can specifically improve defenses for digital infrastructure in US health care.

Cybercriminals Selling SMS Bomber Attack Tools on Underground Forums

17 August 2023
The underground market for SMS Bomber services is thriving, with various platforms offering attack services for a fee, highlighting the need for increased security measures in registration pages and APIs.

CISA Publishes Plan For Remote Monitoring Tools After Nation-State, Ransomware Exploitation

17 August 2023
In an announcement Wednesday, CISA said it worked with industry partners as part of the Joint Cyber Defense Collaborative (JCDC) to create a “clear roadmap to advance security and resilience of the RMM ecosystem.”

CISA posts remote monitoring & management systems cyber defense plan

17 August 2023
A new plan published by CISA through JCDC provides a roadmap to address systemic risks by advancing security and resilience of the RMM ecosystem.

Why You Need Continuous Network Monitoring?

17 August 2023
Changes in the way we work have had significant implications for cybersecurity, not least in network monitoring. Workers no longer sit safely side-by-side on a corporate network, dev teams constantly spin up and tear down systems, exposing services to the internet. Keeping track of these users, changes and services is difficult – internet-facing attack surfaces rarely stay the same for long. But