Latest Cybersecurity News and Articles
14 June 2023
Pikabot operates as a backdoor, enabling remote access to compromised systems, and receives commands from a C2 server. It uses anti-analysis techniques and deploys an injector to run tests before injecting its core module into a specified process.
14 June 2023
Security leader's trust in an organization and their employees' ability to prevent a cyberattack was analyzed in a recent report by Kroll.
14 June 2023
Researchers have dissected a new modular malware trojan, dubbed Pikabot, that can execute a diverse range of malicious commands. The trojan self-terminates if the system’s language is Georgian, Kazakh, Uzbek, or Tajik. To stay safe, organizations must deploy the necessary detection tools to root out malware in the initial stage.
14 June 2023
The breach of the cardiology group first occurred on Feb 2 in data maintained by Commonwealth Health Physician Network-Cardiology, aka Great Valley Cardiology (GVC). The breach wasn't discovered until April 13, the system said in a news release.
14 June 2023
This episode of The Security Podcasts focuses on MDM threats and features AJ Nash, VP and Distinguished Fellow of Intelligence at ZeroFox.
14 June 2023
The campaign impersonated four of France's most popular daily newspapers — 20 Minutes, Le Monde, Le Parisien, and Le Figaro — publishing “at least 58 articles” on the fake sites to push these false narratives, according to VIGINIUM.
14 June 2023
Trend Micro cautioned about the utilization of BatCloak, a tool designed to obfuscate batch files and evade antivirus detection engines with an 80% success rate. This ongoing research showcases the continuous evolution of the BatCloak engine, aiming to achieve compatibility with a wide range of malware families. This serves as evidence of the prevalence of this technique in the contemporary threat landscape.
14 June 2023
Hackers are distributing Windows 10 using torrents that hide cryptocurrency hijackers in the Extensible Firmware Interface (EFI) partition. Since standard antivirus tools do not scan the EFI partition, the malware can potentially bypass detections.
14 June 2023
A French conglomerate plans to purchase Australia's largest publicly traded cybersecurity company to expand its cyber service delivery capability in the high-growth Oceania market.
14 June 2023
New research shows the potential of electromagnetic fault injection (EMFI) attacks against unmanned aerial vehicles, with experts showing how drones that don’t have any known vulnerabilities could be hacked.
14 June 2023
Two "dangerous" security vulnerabilities have been disclosed in Microsoft Azure Bastion and Azure Container Registry that could have been exploited to carry out cross-site scripting (XSS) attacks.
"The vulnerabilities allowed unauthorized access to the victim's session within the compromised Azure service iframe, which can lead to severe consequences, including unauthorized data access,
14 June 2023
"Advanced tracking and fingerprinting protections go even further to help prevent websites from using the latest techniques to track or identify a user's device," Apple said.
14 June 2023
Since Windows 10 21H2 (aka Windows 10 November 2021 Update) will no longer receive security updates, customers are advised to upgrade to the latest release to avoid exposing their systems to attacks exploiting unpatched security vulnerabilities.
14 June 2023
The Development Bank of Southern Africa said Monday that it was hit with a ransomware attack, adding that servers, log files, and documents were encrypted by the Akira gang last month.
14 June 2023
Per M-23-16, attestation for critical software should be obtained no later than three months after the CISA's M-22-18 attestation common form is approved by OMB under the Paperwork Reduction Act (PRA).
14 June 2023
The brands impersonated include Nike, Puma, Asics, Vans, Adidas, Columbia, Superdry Converse, Casio, Timberland, Salomon, Crocs, Sketchers, The North Face, UGG, Guess, Caterpillar, New Balance, Fila, Doc Martens, Reebok, Tommy Hilfiger, and others.
14 June 2023
An experiment using high-interaction honeypots with an RDP connection accessible from the public web shows how relentless attackers are and that they operate within a daily schedule very much like working office hours.
14 June 2023
Hoxhunt has announced the appointment of Petri Kuivala as Chief Information Security Officer (CISO) Advisor.
14 June 2023
Agencies must remove identified networked management interfaces from exposure to the internet or protect them with Zero-Trust capabilities that implement a policy enforcement point separate from the interface itself.
14 June 2023
To secure the supply chain, companies need to have a process in place that allows them to quickly fix and deploy issues within their organization, such as having a set of known golden images.