Latest Cybersecurity News and Articles


Cisco SD-WAN vManage Impacted by Unauthenticated Rest API Access

14 July 2023
The Cisco SD-WAN vManage management software is impacted by a flaw that allows an unauthenticated, remote attacker to gain read or limited write permissions to the configuration of the affected instance.

Secure Code Warrior Lands $50M to Educate Developers on Best Cyber Practices

14 July 2023
With a recent $50 million Series C funding round led by Paladin Capital Group, Secure Code Warrior plans to improve its platform and expand its workforce to meet the growing demand for cybersecurity skills training.

Critical Security Flaws Uncovered in Honeywell Experion DCS and QuickBlox Services

14 July 2023
Multiple security vulnerabilities have been discovered in various services, including Honeywell Experion distributed control system (DCS) and QuickBlox, that, if successfully exploited, could result in severe compromise of affected systems. Dubbed Crit.IX, the nine flaws in the Honeywell Experion DCS platform allow for "unauthorized remote code execution, which means an attacker would have

Hardcoded Accounts Allow Full Takeover of Technicolor Routers

14 July 2023
Multiple hardcoded credentials found on the Technicolor TG670 DSL gateway router allow attackers to completely take over devices, the CERT Coordination Center (CERT/CC) warns.

Norwegian Refugee Council hit by cyberattack

14 July 2023
The NRC said it immediately suspended the database to protect the data and prevent further attacks. They also launched an external forensic investigation to determine the scope and impact of the cyberattack.

Ransomware Costs Financial Services $32bn in Five Years

14 July 2023
Comparitech analyzed 225 confirmed cyberattacks on the sector over the past five years and found that the average organization loses two weeks in downtime due to an incident.

New CVSS Version Unveiled Amid Rising Cyber Threats

14 July 2023
A new version of the Common Vulnerability Scoring System (CVSS 4.0) has been unveiled publicly by the Forum of Incident Response and Security Teams (FIRST) on July 13, 2023.

Services in North Carolina Town Unavailable After Ransomware Attack

14 July 2023
Residents of Cornelius, North Carolina, are dealing with delayed or unavailable services after a ransomware attack earlier this week. Officials said, on July 11, they discovered a cybersecurity incident later determined to be a ransomware attack.

Fake THREADS App Climbed to Number 1 Spot on Apple Store in Europe

14 July 2023
In a recent development, Apple has taken down a fake version of the popular Threads app from its App Store in Europe. The fake app, developed by SocialKit LTD, had been soaring up the charts of the most downloaded apps.

Shutterfly Says Cl0p Ransomware Attack Did Not Impact Customer Data

14 July 2023
This week, the Cl0p ransomware gang published Shutterfly's name on its data leak site, among other companies it has targeted, largely via the MOVEit SQL Injection vulnerability, tracked as CVE-2023-34362.

Cisco Shopping Spree Adds Oort ID Threat Detection Tech

14 July 2023
Cisco’s cybersecurity shopping spree hit another gear Thursday with the planned acquisition of Oort, an early-stage startup selling software in the Identity Threat Detection and Response (ITDR) category.

Malicious Campaigns Target Government, Military and Civilian Entities in Ukraine, Poland

14 July 2023
Ukraine’s Computer Emergency Response Team (CERT-UA) has attributed the July campaign to the threat actor group UNC1151, as a part of the GhostWriter operational activities allegedly linked to the Belarusian government.

Defend Against Insider Threats: Join this Webinar on SaaS Security Posture Management

14 July 2023
As security practices continue to evolve, one primary concern persists in the minds of security professionals—the risk of employees unintentionally or deliberately exposing vital information. Insider threats, whether originating from deliberate actions or accidental incidents, pose a significant challenge to safeguarding sensitive data. To effectively address insider risks, organizations must

AIOS WordPress Plugin Faces Backlash for Storing User Passwords in Plain Text

14 July 2023
All-In-One Security (AIOS), a WordPress plugin installed on over one million sites, has issued a security update after a bug introduced in version 5.1.9 of the software caused users' passwords being added to the database in plaintext format. "A malicious site administrator (i.e. a user already logged into the site as an admin) could then have read them," UpdraftPlus, the maintainers of AIOS, 

Zimbra Urges Customers to Manually Fix Actively Exploited Zero-Day Reported by Google TAG

14 July 2023
“A security vulnerability in Zimbra Collaboration Suite Version 8.8.15 that could potentially impact the confidentiality and integrity of your data has surfaced,” reads the advisory published by the company.

USB Drive Malware Attacks Spiking Again in First Half of 2023

14 July 2023
Mandiant outlined how two USB malware campaigns have been observed this year; one named 'Sogu,' attributed to a Chinese espionage threat group 'TEMP.HEX,' and another named 'Snowydrive,' attributed to UNC4698, which targets Asian oil and gas firms.

TeamTNT's Cloud Credential Stealing Campaign Now Targets Azure and Google Cloud

14 July 2023
A malicious actor has been linked to a cloud credential stealing campaign in June 2023 that's focused on Azure and Google Cloud Platform (GCP) services, marking the adversary's expansion in targeting beyond Amazon Web Services (AWS). The findings come from SentinelOne and Permiso, which said the "campaigns share similarity with tools attributed to the notorious TeamTNT cryptojacking crew,"

Crit.IX: Flaws in Honeywell Experion DCS, Posing Risk to Critical Industries

14 July 2023
Reportedly, Armis detected these flaws in May 2022 and informed Honeywell about 13 code issues found in the Experion C300 controllers and server, which were later rolled into nine new vulnerabilities.

Fewer Than 100 Scammers Responsible For Global Email Extortion

14 July 2023
Barracuda Networks teamed up with Columbia University to analyze over 300,000 extortion emails tracked by the firm over a one-year period. They looked specifically at the Bitcoin addresses used by the scammers in order to discern specific trends.

Citrix Fixes Critical Flaw in Secure Access Client for Ubuntu

14 July 2023
Citrix addressed a critical vulnerability, tracked as CVE-2023-24492 (CVSS score of 9.6), affecting the Secure Access client for Ubuntu that could be exploited to achieve remote code execution.