Latest Cybersecurity News and Articles


Cyber threat report reveals misalignment between execs & security analysts

25 July 2023
A new global study finds 70% of cybersecurity executives think all alerts are being handled while front-line roles report only 36% are handled.

Lazarus APT Hackers Hijack Microsoft IIS Servers to Spread Malware

25 July 2023
In the recent attacks observed by ASEC's analysts, Lazarus compromised legitimate South Korean websites to perform 'Watering Hole' attacks on visitors using a vulnerable version of the INISAFE CrossWeb EX V6 software.

Google Messages Getting Cross-Platform End-to-End Encryption with MLS Protocol

25 July 2023
MLS, as the name implies, is a security layer for end-to-end encryption that facilitates interoperability across messaging services and platforms. It was approved for publication as a standard by IETF in March 2023.

Global Ransomware Onslaught: GRIT Discovers 14 Fresh Ransomware Groups

25 July 2023
GuidePoint Research and Intelligence Team (GRIT) published its ransomware report for Q2 2023, which noted some shocking statistics. The report also identified a surge in the activity of Ransomware-as-a-Service (RaaS) groups throughout the quarter, attributed to the emergence of 14 new groups.

New 'Zenbleed' Flaw in AMD Zen 2 Processors Puts Encryption Keys and Passwords at Risk

25 July 2023
Discovered by Google Project Zero researcher Tavis Ormandy, the flaw – codenamed Zenbleed and tracked as CVE-2023-20593 (CVSS score: 6.5) – allows data exfiltration at the rate of 30 kb per core, per second.

Data Breach Costs Hit Record High but Fall For Some

25 July 2023
The average global cost of a data breach now stands at a record $4.45m, up a little over 2% year on year (YoY), according to IBM's 18th annual Cost of a Data Breach Report, compiled by the Ponemon Institute.

Casbaneiro Banking Malware Goes Under the Radar with UAC Bypass Technique

25 July 2023
The financially motivated threat actors behind the Casbaneiro banking malware family have been observed making use of a User Account Control (UAC) bypass technique to gain full administrative privileges on a machine, a sign that the threat actor is evolving their tactics to avoid detection and execute malicious code on compromised assets. "They are still heavily focused on Latin American

Law Firm Hack Affects Victims of an Earlier Breach Again

25 July 2023
Orrick, Herrington & Sutcliffe on July 20 reported the data breach to several state regulators, including the attorneys general of Maine and California, as well as a HIPAA breach to the U.S. Department of Health and Human Services.

macOS Under Attack: Examining the Growing Threat and User Perspectives

25 July 2023
As the number of people using macOS keeps going up, so does the desire of hackers to take advantage of flaws in Apple's operating system.  What Are the Rising Threats to macOS? There is a common misconception among macOS fans that Apple devices are immune to hacking and malware infection. However, users have been facing more and more dangers recently. Inventive attackers are specifically

Los Angeles SIM Swapper Pleads Guilty to Cybercrime Charges

25 July 2023
Between April 2019 and February 2023, the man, Amir Hossein Golshan, 24, engaged in account takeovers, Zelle payment fraud, and Apple support impersonation, causing roughly $740,000 in losses to his victims.

Clop Could Make $100m from MOVEit Campaign

25 July 2023
The notorious Clop ransomware gang may earn as much as $100m from its recent data extortion campaign, after a small number of victims paid the group large sums of money, according to Coveware.

TETRA:BURST — 5 New Vulnerabilities Exposed in Widely Used Radio Communication System

25 July 2023
A set of five security vulnerabilities have been disclosed in the Terrestrial Trunked Radio (TETRA) standard for radio communication used widely by government entities and critical infrastructure sectors, including what's believed to be an intentional backdoor that could have potentially exposed sensitive information. The issues, discovered by Midnight Blue in 2021 and held back until now, have

How MDR Helps Solve the Cybersecurity Talent Gap

25 July 2023
How do you overcome today's talent gap in cybersecurity? This is a crucial issue — particularly when you find executive leadership or the board asking pointed questions about your security team's ability to defend the organization against new and current threats. This is why many security leaders find themselves turning to managed security services like MDR (managed detection and response),

Zenbleed: New Flaw in AMD Zen 2 Processors Puts Encryption Keys and Passwords at Risk

25 July 2023
A new security vulnerability has been discovered in AMD's Zen 2 architecture-based processors that could be exploited to extract sensitive data such as encryption keys and passwords. Discovered by Google Project Zero researcher Tavis Ormandy, the flaw – codenamed Zenbleed and tracked as CVE-2023-20593 (CVSS score: 6.5) – allows data exfiltration at the rate of 30 kb per core, per second. The

Onetrust Hauls in Another $150 Million on a $4.5 Billion Down Round Valuation

25 July 2023
The round was led by Generation Investment Management, which is former vice president Al Gore’s firm, with participation from existing investor Sands Capital. OneTrust CEO Kabir Barday says that the company has been executing since its last round.

Ivanti Patches Mobileiron Zero-Day Bug Exploited in Attacks

25 July 2023
The patches can be installed by upgrading to EPMM 11.8.1.1, 11.9.1.1, and 11.10.0.2. They also target unsupported and end-of-life software versions lower than 11.8.1.0 (e.g., 11.7.0.0, 11.5.0.0)

Apple Rolls Out Urgent Patches for Zero-Day Flaws Impacting iPhones, iPads and Macs

25 July 2023
Tracked as CVE-2023-38606, the shortcoming resides in the kernel and permits a malicious app to modify sensitive kernel state potentially. The company said it was addressed with improved state management.

Atlassian Releases Patches for Critical Flaws in Confluence and Bamboo

25 July 2023
Atlassian has released updates to address three security flaws impacting its Confluence Server, Data Center, and Bamboo Data Center products that, if successfully exploited, could result in remote code execution on susceptible systems. The list of the flaws is below - CVE-2023-22505 (CVSS score: 8.0) - RCE (Remote Code Execution) in Confluence Data Center and Server (Fixed in versions 8.3.2 and

Ivanti Releases Urgent Patch for EPMM Zero-Day Vulnerability Under Active Exploitation

24 July 2023
Ivanti is warning users to update their Endpoint Manager Mobile (EPMM) mobile device management software (formerly MobileIron Core) to the latest version that fixes an actively exploited zero-day vulnerability. Dubbed CVE-2023-35078, the issue has been described as a remote unauthenticated API access vulnerability that impacts currently supported version 11.4 releases 11.10, 11.9, and 11.8 as

Apple Rolls Out Urgent Patches for Zero-Day Flaws Impacting iPhones, iPads and Macs

24 July 2023
Apple has rolled out security updates to iOS, iPadOS, macOS, tvOS, watchOS, and Safari to address several security vulnerabilities, including one actively exploited zero-day bug in the wild. Tracked as CVE-2023-38606, the shortcoming resides in the kernel and permits a malicious app to modify sensitive kernel state potentially. The company said it was addressed with improved state management. "