Latest Cybersecurity News and Articles
11 August 2023
A hitherto undocumented threat actor operating for nearly a decade and codenamed MoustachedBouncer has been attributed to cyber espionage attacks aimed at foreign embassies in Belarus.
"Since 2020, MoustachedBouncer has most likely been able to perform adversary-in-the-middle (AitM) attacks at the ISP level, within Belarus, in order to compromise its targets," ESET security researcher Matthieu
11 August 2023
The flaw, tracked as CVE-2023-39250, is caused by a static AES encryption key, shared across all installs, that is used to encrypt the vCenter credentials stored in the program's configuration file.
11 August 2023
The NSA Codebreaker Challenge is a competition for high school and university students across the US that started in 2013 to explain what the missions of NSA agents are using fictitious scenarios.
11 August 2023
The US Cybersecurity and Infrastructure Security Agency (CISA) has released a new advisory detailing the malware, dubbed “Whirlpool.” It claimed the backdoor established a TLS reverse shell to a command-and-control (C2) server.
11 August 2023

Exclusive: Accidental publishing of names and salaries happened in March and follows scandal over PSNI leakAnother British police force has experienced a huge breach of the data of all its officers and staff, the Guardian has learned.Cumbria police has admitted accidentally publishing the names and salaries of every one of its more than 2,000 employees and has apologised. Continue reading...
11 August 2023
Indian lawmakers Wednesday approved a data protection legislation that “seeks to better regulate big tech firms and penalize companies for data breaches” as several groups expressed concern over citizens’ privacy rights.
11 August 2023
The LockBit gang added 15 victims to its leak site on Wednesday including El Cerrito, which is home to more than 25,000 residents and is about 10 minutes north of Oakland.
11 August 2023
Google has announced plans to add support for quantum-resistant encryption algorithms in its Chrome browser, starting with version 116.
"Chrome will begin supporting X25519Kyber768 for establishing symmetric secrets in TLS, starting in Chrome 116, and available behind a flag in Chrome 115," Devon O'Brien said in a post published Thursday.
Kyber was chosen by the U.S. Department of Commerce's
11 August 2023
The strategy’s primary pillars – unification, resilience, and preparedness – are designed to enable New York State to not only deter cyberattacks but also neutralize potential threats effectively.
11 August 2023
Anewly identified cyberespionage group in Belarus is targeting foreign embassies often with the assistance of local internet service providers, researchers with the cybersecurity firm ESET said Thursday.
11 August 2023

There were 9,000 breaches of personal information last year but experts say not enough is being done to stop them“It’s brutal. People are wondering if they should resign, or move house, or get fortified gates. You can feel the anger.”The comment from a former officer in the Police Service of Northern Ireland (PSNI) underlines the real-life consequences of an all-too frequent occurrence: a data breach. Continue reading...
11 August 2023
The acquisition comes amid a major funding crunch for startups. Perimeter 81’s exit is coming at a big discount to its last valuation: It raised $100 million in June 2022 at a $1 billion valuation, according to PitchBook data.
11 August 2023
Researchers observed that Statc Stealer can steal user’s cookies data, web data, local state, data preferences, login data, various different wallets information, FileZilla, browser autofills, Anydesk, ronin_edge, Metamask, and Telegram data.
11 August 2023
The vulnerability, tracked as CVE-2023-38180, was fixed by Microsoft with its August 2023 Patch Tuesday updates, which also address CVE-2023-36884, an Office vulnerability exploited by Russian threat actors.
11 August 2023
Over the course of three months beginning in January 2023, Sophos X-Ops investigated four different ransomware attacks, one involving Hive, two by Royal, and one by Black Basta, and noticed distinct similarities between the attacks.
11 August 2023
The Chinese threat actor known as APT31 (aka Bronze Vinewood, Judgement Panda, or Violet Typhoon) has been linked to a set of advanced backdoors that are capable of exfiltrating harvested sensitive information to Dropbox.
The malware is part of a broader collection of more than 15 implants that have been put to use by the adversary in attacks targeting industrial organizations in Eastern Europe
11 August 2023
Critical vulnerabilities discovered by IoT and industrial cybersecurity firm Claroty in Western Digital (WD) and Synology network-attached storage (NAS) products could have exposed the files of millions of users.
11 August 2023
An unknown threat actor has been linked to a cyber attack on a power generation company in South Africa with a new variant of the SystemBC malware called DroxiDat as a precursor to a suspected ransomware attack.
"The proxy-capable backdoor was deployed alongside Cobalt Strike Beacons in a South African nation's critical infrastructure," Kurt Baumgartner, principal security researcher at
11 August 2023
Proofpoint came across EvilProxy, a phishing platform, being used in a large-scale campaign targeting MFA-protected Microsoft 365 accounts, with over 120,000 phishing emails sent to more than hundreds of organizations. The campaign primarily targeted high-ranking executives. Organizations must enhance their email and web security to defend against advanced hybrid threats.
11 August 2023
Alternative education options, such as vocational-technical schooling and industry-relevant certifications, offer cost-effective pathways for aspiring cybersecurity professionals.