Latest Cybersecurity News and Articles


Update: More Malicious NPM Packages Found in Wake of Jumpcloud Supply Chain Hack

29 July 2023
An investigation by ReversingLabs researchers has uncovered evidence of more malicious npm packages, with links to the same infrastructure that also appear to target cryptocurrency providers.

CoinsPaid Blames North Korea-Linked APT Lazarus for Theft of $37M Worth of Cryptocurrency

29 July 2023
“On July 22nd, CoinsPaid experienced a hacker attack, resulting in the theft of USD 37.3M,” reads the announcement published by the company. “We believe Lazarus expected the attack on CoinsPaid to be much more successful.”

China’s Wuhan Earthquake Center Suffers Cyberattack

29 July 2023
The Global Times newspaper, owned by the Chinese Communist Party, reported on July 26 that the Wuhan Municipal Emergency Management Bureau revealed that the Monitoring Center had been subjected to a cyberattack by an “overseas organization.”

Ivanti Warns of Another Endpoint Manager Mobile Vulnerability Under Active Attack

29 July 2023
The new vulnerability, tracked as CVE-2023-35081 (CVSS score: 7.8), impacts supported versions 11.10, 11.9, and 11.8, as well as those that are currently end-of-life (EoL).

Coro Buys Privatise to Infuse SASE With Network Connectivity

29 July 2023
The New York-based company said its acquisition of Jerusalem-based Privatise will provide Coro clients with a secure way to connect, manage and filter out malicious content, according to co-founder Dror Liwer.

RFP Template for Browser Security

29 July 2023
Increasing cyber threats and attacks have made protecting organizational data a paramount concern for businesses of all sizes. A group of experts have recognized the pressing need for comprehensive browser security solutions and collaborated to develop "The Definitive Browser Security RFP Template." This resource helps streamline the process of evaluating and procuring browser security platforms

Weintek Weincloud Vulnerabilities Allowed Manipulation, Damaging of ICS Devices

29 July 2023
Several vulnerabilities discovered by a researcher from industrial cybersecurity firm TXOne Networks in a Weintek product could have been exploited to manipulate and damage industrial control systems (ICS).

Apple Sets New Rules for Developers to Prevent Fingerprinting and Data Misuse

29 July 2023
Apple has announced plans to require developers to submit reasons to use certain APIs in their apps starting later this year with the release of iOS 17, iPadOS 17, macOS Sonoma, tvOS 17, and watchOS 10 to prevent their abuse for data collection. "This will help ensure that apps only use these APIs for their intended purpose," the company said in a statement. "As part of this process, you'll need

Hackers Deploy "SUBMARINE" Backdoor in Barracuda Email Security Gateway Attacks

29 July 2023
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday disclosed details of a "novel persistent backdoor" called SUBMARINE deployed by threat actors in connection with the hack on Barracuda Email Security Gateway (ESG) appliances. "SUBMARINE comprises multiple artifacts — including a SQL trigger, shell scripts, and a loaded library for a Linux daemon — that together enable

Ivanti Warns of Another Endpoint Manager Mobile Vulnerability Under Active Attack

29 July 2023
Ivanti has disclosed yet another security flaw impacting Endpoint Manager Mobile (EPMM), formerly known as MobileIron Core, that it said has been weaponized as part of an exploit chain by malicious actors in the wild. The new vulnerability, tracked as CVE-2023-35081 (CVSS score: 7.8), impacts supported versions 11.10, 11.9, and 11.8, as well as those that are currently end-of-life (EoL). "

FTC warns against online tracking technology for healthcare providers

28 July 2023
Hospitals and telehealth providers have been warned by the FTC and the Office for Civil Rights (OCR) regarding online tracking technology.

DOD, OMB expect September release of proposed CMMC rule

28 July 2023
The rule has been delayed several times as the DOD revamp its approach, including changing to the longer proposed rule-making process. Originally, the expectation was that CMMC would come out as an interim final rule to be finalized in 60 days.

IcedID Malware Adapts and Expands Threat with Updated BackConnect Module

28 July 2023
The latest analysis of the attack infrastructure from Team Cymru has revealed that the number of BackConnect C2s have shot up from 11 to 34 since January 23, 2023, with the average uptime of a server significantly reducing from 28 days to eight days.

New report highlights the rise of IPv6 in cybercriminal activities

28 July 2023
A new report reveals some of the top emerging cybersecurity threats and trends worldwide.

New re highlights the rise of IPv6 in cybercriminal activities

28 July 2023
A new report reveals some of the top emerging cybersecurity threats and trends worldwide.

85% of security leaders cite complexity as wide area network challenge

28 July 2023
The increasing rise of hybrid and remote work has risen the demand for secure access service edge (SASE), according to a recent report.

Zimbra Patches Zero-Day Vulnerability Exploited in XSS Attacks

28 July 2023
Now tracked as CVE-2023-38750, the security flaw is a reflected Cross-Site Scripting (XSS) discovered by security researcher Clément Lecigne of Google Threat Analysis Group.

STARK#MULE Targets Koreans with U.S. Military-Themed Document Lures

28 July 2023
An ongoing cyber attack campaign has set its sights on Korean-speaking individuals by employing U.S. Military-themed document lures to trick them into running malware on compromised systems.

WordPress Ninja Forms Plugin Flaw Lets Hackers Steal Submitted Data

28 July 2023
Researchers at Patchstack discovered and disclosed the three vulnerabilities to the plugin's developer, Saturday Drive, on June 22nd, 2023, warning that it affects NinjaForms versions 3.6.25 and older.

IcedID Malware Adapts and Expands Threat with Updated BackConnect Module

28 July 2023
The threat actors linked to the malware loader known as IcedID have made updates to the BackConnect (BC) module that's used for post-compromise activity on hacked systems, new findings from Team Cymru reveal. IcedID, also called BokBot, is a strain of malware similar to Emotet and QakBot that started off as a banking trojan in 2017, before switching to the role of an initial access facilitator