Latest Cybersecurity News and Articles


AMA: CISO Edition — Diego Souza

12 July 2023
Diego Souza, Global Chief Information Security Officer (CISO) at Cummins, Inc., shares cybersecurity tactics and career advice in this AMA episode.

Report: Edge computing in healthcare is taking off

12 July 2023
In a new report, focused on the healthcare industry, found the primary use case was tele-emergency medical services.

SAP Patches Critical Vulnerability in ECC and S/4HANA Products

12 July 2023
German enterprise software maker SAP on Tuesday announced the release of 16 new security notes as part of its July 2023 Security Patch Day. In addition, updates were announced for two previously released notes.

Pro-Chinese Twitter Accounts Seek to Expand Beijing’s Influence in Latin America

12 July 2023
Three Twitter accounts that appear to have links to the Chinese government have been spreading propaganda in Latin America and successfully avoided Twitter's efforts to label state media, researchers said in an analysis published Tuesday.

Update: Bangladesh Government Fixes Website That Leaked Personal Data of 50 Million Citizens

12 July 2023
The information and technology minister of Bangladesh, Zunaid Ahmed, told local media that the data was exposed due to security weaknesses of a website, not a cyberattack.

Chinese Hackers Deploy Microsoft-Signed Rootkit to Target Gaming Sector

12 July 2023
Trend Micro has attributed the new activity cluster to the same threat actor that was previously identified as behind the FiveSys rootkit, which came to light in October 2021.

SaaS Application Security Firm Savvy Exits Stealth Mode With $30 Million in Funding

12 July 2023
The funds were raised in two investment rounds: $10 million in seed funding in 2021, and $20 million in a Series A funding round led by Canaan, with participation from previous investors Cyberstarts and Lightspeed.

Ransomware Extortion Skyrockets in 2023, Reaching $449.1 Million and Counting

12 July 2023
Ransomware has emerged as the only cryptocurrency-based crime to grow in 2023, with cybercriminals extorting nearly $175.8 million more than they did a year ago, according to findings from Chainalysis. "Ransomware attackers are on pace for their second-biggest year ever, having extorted at least $449.1 million through June," the blockchain analytics firm said in a midyear crypto crime report

Deutsche Bank Confirms Service Provider Breach Exposed Customer Data

12 July 2023
The number of impacted clients has not been determined, but Deutsche Bank said they have all been informed accordingly on the direct impact and what precautions they should take regarding their exposed data.

Hackers: Generative AI unlikely to replace human cybersecurity skills

12 July 2023
A new report finds that 72% of hackers believe artificial intelligence (AI) will not replace the creativity of humans in security research and vulnerability management.

Radisson Hotels, Major Insurance Firms Become Latest MOVEit Transfer Victims to Disclose Breaches

12 July 2023
The number of organizations affected by a recently exploited vulnerability in a popular file transfer tool surpassed 250 as major corporations like Radisson Hotels and two major insurance companies confirmed that their data was accessed by hackers.

Mobile Anti-Detection Toolkits for Payment Fraud Gaining Traction

12 July 2023
Threat actors are increasingly using specialized mobile Android OS device spoofing techniques to get beyond anti-fraud measures by posing as compromised account holders. Cybersecurity firm Resecurity has identified a surge in the emergence of such types of tools on the dark web in Q1 2023. Payment firms, online retailers, and financial institutions are urged to stay updated on the latest fraud trends through shared threat intel solutions.

Cybersecurity funding drops sharply in Q2

12 July 2023
Cybersecurity funding fell by more than half to $1.9 billion during Q2 2023, as fears of a recession and uncertainty in the banking sector roiled investments across technology and information security, as per a report by Pinpoint Search Group.

Bay Area City Shuts Down Municipal Sites Following Cyberattack

12 July 2023
“The City has no evidence of a breach of personal information of any employee or member of the public and is continuing to investigate the matter with the assistance of cybersecurity professionals,” officials said.

RomCom Attackers Launch Phishing Attacks Against NATO Countries

12 July 2023
Blackberry's research team has reported a phishing campaign targeting the upcoming NATO Summit in Vilnius as well as an organization supporting Ukraine abroad. Security experts believe this could be a RomCom RAT’s rebranded operation. This execution chain also involves the abuse of the Follina bug, CVE-2022-30190. The summit is scheduled for July 11-12.

The Risks and Preventions of AI in Business: Safeguarding Against Potential Pitfalls

12 July 2023
Artificial intelligence (AI) holds immense potential for optimizing internal processes within businesses. However, it also comes with legitimate concerns regarding unauthorized use, including data loss risks and legal consequences. In this article, we will explore the risks associated with AI implementation and discuss measures to minimize damages. Additionally, we will examine regulatory

Adobe Patch Tuesday: Critical Flaws Haunt InDesign, ColdFusion

12 July 2023
The company’s scheduled July Patch Tuesday rollout includes fixes for a dozen documented vulnerabilities in Adobe InDesign, including a bug serious enough to lead to arbitrary code execution attacks.

Spanish Police Arrest Phishing Ring Targeting Bank Customers

12 July 2023
The group consisted of highly professional cybercriminals who posed as employees of legitimate Spanish banks to make fraudulent calls and SMS messages, Spanish authorities said.

Microsoft Thwarts Chinese Cyber Attack Targeting Western European Governments

12 July 2023
Microsoft on Tuesday revealed that it repelled a cyber attack staged by a Chinese nation-state actor targeting two dozen organizations, some of which include government agencies, in a cyber espionage campaign designed to acquire confidential data. The attacks, which commenced on May 15, 2023, entailed access to email accounts affecting approximately 25 entities and a small number of related

Chinese Hackers Deploy Microsoft-Signed Rootkit to Target Gaming Sector

12 July 2023
Cybersecurity researchers have unearthed a novel rootkit signed by Microsoft that's engineered to communicate with an actor-controlled attack infrastructure. Trend Micro has attributed the activity cluster to the same actor that was previously identified as behind the FiveSys rootkit, which came to light in October 2021. "This malicious actor originates from China and their main victims are the