Latest Cybersecurity News and Articles


'RedDriver' Browser Hijacker Targets Chinese-Speaking Microsoft Users

12 July 2023
Cybercriminals have been observed targeting Chinese-speaking Microsoft users with a tool called RedDriver that allows them to intercept web browser traffic. The authors of RedDriver also exhibited familiarity or experience with software development lifecycles. A previous version of RedDriver was bundled with software intended for use in internet cafes.

Former Security Engineer Arrested for $9 Million Crypto Exchange Hack

12 July 2023
Shakeeb Ahmed, 34, of New York, has been charged with wire fraud and money laundering in connection with a scheme involving flash loans and inflated fees that were not legitimately earned.

Lawsuits Filed Against Johns Hopkins in MOVEit Hack Mess

12 July 2023
Johns Hopkins University and its Johns Hopkins Health System are facing at least two proposed federal class action lawsuits filed in recent days following the institution's disclosure that it was among the victims of the MOVEit Transfer hacks.

ICS Patch Tuesday: Siemens, Schneider Electric Fix 50 Vulnerabilities

12 July 2023
Siemens has released five new advisories to inform customers about the availability of patches for more than 40 vulnerabilities. Meanwhile, Schneider Electric has released four new advisories covering six vulnerabilities in the company’s products.

Moroccan Charged With OpenSea NFT and Crypto Theft

12 July 2023
A Moroccan man has been charged with four counts relating to a scheme to steal nearly half-a-million dollars’ worth of cryptocurrency and non-fungible tokens (NFT) from a US victim.

New Mozilla Feature Blocks Risky Add-Ons on Specific Websites to Safeguard User Security

12 July 2023
"We have introduced a new back-end feature to only allow some extensions monitored by Mozilla to run on specific websites for various reasons, including security concerns," the company said in its Release Notes for Firefox 115.0 shipped last week.

Microsoft Releases Patches for 132 Vulnerabilities, Including 6 Under Active Attack

12 July 2023
Of the 130 vulnerabilities, nine are rated Critical and 121 are rated Important in severity. This is in addition to eight flaws the tech giant patched in its Chromium-based Edge browser towards the end of last month.

Two more lawsuits filed against Scranton cardiology group over data breach

12 July 2023
Cybercriminals attempted to access accounts of a Scranton couple who are among clients whose personal information was exposed in a data breach at a Commonwealth Health cardiology group's practice, according to a proposed class-action lawsuit.

Python-Based PyLoose Fileless Attack Targets Cloud Workloads for Cryptocurrency Mining

12 July 2023
A new fileless attack dubbed PyLoose has been observed striking cloud workloads with the goal of delivering a cryptocurrency miner, new findings from Wiz reveal. "The attack consists of Python code that loads an XMRig Miner directly into memory using memfd, a known Linux fileless technique," security researchers Avigayil Mechtinger, Oren Ofer, and Itamar Gilad said. "This is the first publicly

Update: Apple’s Rapid Security Response Patches Causing Website Access Issues

12 July 2023
Apple has pulled its latest Rapid Security Response updates for iOS and macOS after users complained that they were getting errors when accessing some websites through Safari.

Microsoft Releases Patches for 130 Vulnerabilities, Including 6 Under Active Attack

12 July 2023
Microsoft on Tuesday released updates to address a total of 130 new security flaws spanning its software, including six zero-day flaws that it said have been actively exploited in the wild. Of the 130 vulnerabilities, nine are rated Critical and 121 are rated Important in severity. This is in addition to eight flaws the tech giant patched in its Chromium-based Edge browser towards the end of

Apple & Microsoft Patch Tuesday, July 2023 Edition

11 July 2023
Microsoft Corp. today released software updates to quash 130 security bugs in its Windows operating systems and related software, including at least five flaws that are already seeing active exploitation. Meanwhile, Apple customers have their own zero-day woes again this month: On Monday, Apple issued (and then quickly pulled) an emergency update to fix a zero-day vulnerability that is being exploited on MacOS and iOS devices.

New TOITOIN Trojan Targets LATAM

11 July 2023
Businesses in the Latin American region are facing a new threat from a sophisticated malicious campaign distributing the TOITOIN trojan. Moreover, the campaign uses Amazon EC2 instances to evade domain-based detections. It is crucial for organizations to maintain a high level of vigilance against evolving malware campaigns.

Maneet Singh hired as Chief Information Officer at Odyssey

11 July 2023
Maneet Singh has been hired as Chief Information Officer at Odyssey Logistics & Technology Corporation. Singh comes with over 20 years of experience.

Purr-fectly Crafted for Macs: Charming Kitten Introduces NokNok Malware

11 July 2023
Security researchers uncovered a new campaign by Charming Kitten (APT42) targeting Windows and macOS systems using different malware payloads. A new type of malware called NokNok, is specifically used for targeting macOS systems. For Windows, adversaries leverage PowerShell code and an LNK file to drop the GorjolEcho backdoor from a cloud hosting provider. 

Owncast, EaseProbe Security Vulnerabilities Revealed

11 July 2023
Oxeye has uncovered two critical security vulnerabilities and recommends immediate action to mitigate risk. The vulnerabilities were discovered in Owncast (CVE-2023-3188) and EaseProbe (CVE-2023-33967), two open-source platforms written in Go.

Hackers Exploit Windows Policy Loophole to Forge Kernel-Mode Driver Signatures

11 July 2023
A Microsoft Windows policy loophole has been observed being exploited primarily by native Chinese-speaking threat actors to forge signatures on kernel-mode drivers. "Actors are leveraging multiple open-source tools that alter the signing date of kernel mode drivers to load malicious and unverified drivers signed with expired certificates," Cisco Talos said in an exhaustive two-part report shared

HCA Healthcare Reports Breach of 11 Million Patients’ Personal Data

11 July 2023
In a website notice, HCA confirmed that the data includes “information used for email messages, such as reminders that patients may wish to schedule an appointment and education on healthcare programs and services.”

Six Malicious Python Packages in the PyPI Targeting Windows Users

11 July 2023
The attackers imitated the W4SP attack group by using custom entry points and leveraging free file hosting services to remain undetected during the installation or execution process.

Australian Infrastructure Company Ventia Hit With Cyberattack

11 July 2023
The Australian infrastructure services provider Ventia is dealing with a cyberattack that began this weekend. On Saturday, the company said it identified a cyber intrusion and took some “key systems” offline to contain the incident.