Latest Cybersecurity News and Articles


VMware ESXi Zero-Day Used by Chinese Espionage Actor to Perform Privileged Guest Operations on Compromised Hosts

14 June 2023
Chinese cyber espionage group UNC3886 has been observed developing and deploying malware on systems such as network appliances, SAN arrays, and VMware ESXi hosts that do not generally support Endpoint Detection and Response (EDR) solutions.

New Golang-based Skuld Malware Stealing Discord and Browser Data from Windows PCs

14 June 2023
A new Golang-based information stealer called Skuld has compromised Windows systems across Europe, Southeast Asia, and the U.S. "This new malware strain tries to steal sensitive information from its victims," Trellix researcher Ernesto Fernández Provecho said in a Tuesday analysis. "To accomplish this task, it searches for data stored in applications such as Discord and web browsers; information

Incorporating cloud security teams into the SOC enhances operational efficiencies

14 June 2023
Security leaders are recognizing that cloud and the way cloud security teams work today are becoming increasingly critical to business and IT operations, according to Trend Micro.

Where from, Where to — The Evolution of Network Security

14 June 2023
For the better part of the 90s and early aughts, the sysadmin handbook said, "Filter your incoming traffic, not everyone is nice out there" (later coined by Gandalf as "You shall not pass"). So CIOs started to supercharge their network fences with every appliance they could get to protect against inbound (aka INGRESS) traffic. In the wake of the first mass phishing campaigns in the early 2010s,

Fake Researcher Profiles Spread Malware through GitHub Repositories as PoC Exploits

14 June 2023
At least half of dozen GitHub accounts from fake researchers associated with a fraudulent cybersecurity company have been observed pushing malicious repositories on the code hosting service. All seven repositories, which are still available as of writing, claim to be a proof-of-concept (PoC) exploit for purported zero-day flaws in Discord, Google Chrome, and Microsoft Exchange. VulnCheck, which

Office Open XML signatures are 'practically worthless'

14 June 2023
Office Open XML (OOXML) Signatures, an Ecma/ISO standard used in Microsoft Office applications and open source OnlyOffice, have several security flaws and can be easily spoofed.

Microsoft Releases Updates to Patch Critical Flaws in Windows and Other Software

14 June 2023
Of the 73 flaws, six are rated Critical, 63 are rated Important, two are rated Moderated, and one is rated Low in severity. This also includes three issues the tech giant addressed in its Chromium-based Edge browser.

Gozi malware hacker sentenced to three years in US prison

14 June 2023
Prosecutors said 39-year-old Mihai Ionut Paunescu helped run bulletproof hosting service PowerHost[.]ro, which helped cybercriminals distribute the Gozi Virus, the Zeus Trojan, the SpyEye Trojan, and the BlackEnergy malware.

UK doctors fear ID theft threat after S3 bucket leak

14 June 2023
A UK agency for freelance doctors has potentially exposed personal details relating to 3,200 individuals via unsecured S3 buckets, which one expert said could be used to launch ID theft attacks or blackmail.

Critical Security Vulnerability Discovered in WooCommerce Stripe Gateway Plugin

14 June 2023
A security flaw has been uncovered in the WooCommerce Stripe Gateway WordPress plugin that could lead to the unauthorized disclosure of sensitive information. The flaw, tracked as CVE-2023-34000, impacts versions 7.4.0 and below. It was addressed by the plugin maintainers in version 7.4.1, which shipped on May 30, 2023. WooCommerce Stripe Gateway allows e-commerce websites to directly accept

Ukraine police raid social media bot farm accused of pro-Russia propaganda

14 June 2023
Ukraine's Cyber Police have shut down a bot farm allegedly spreading disinformation on social media in an attempt to sway public opinion within the country about the Russia-Ukraine war.

Trilateration vulnerability spotted in WhosHere Plus dating app

14 June 2023
WhosHere Plus, a dating app that uses GPS data to connect users with similar interests, has been found to be vulnerable to trilateration, which could allow users' location data to be discovered with alarming accuracy.

Microsoft Releases Updates to Patch Critical Flaws in Windows and Other Software

14 June 2023
Microsoft has rolled out fixes for its Windows operating system and other software components to remediate major security shortcomings as part of Patch Tuesday updates for June 2023. Of the 73 flaws, six are rated Critical, 63 are rated Important, two are rated Moderated, and one is rated Low in severity. This also includes three issues the tech giant addressed in its Chromium-based Edge browser

Microsoft: Azure Portal outage was caused by traffic “spike”

14 June 2023
Microsoft revealed in an update to the Azure status page that the preliminary root cause behind an outage that impacted the Azure Portal worldwide on Friday was what it described as a traffic "spike."

NCSC and international partners shine a light on Lockbit ransomware threat

13 June 2023
New advisory recommends mitigations for network defenders to take against the ransomware strain most globally deployed.

UK cyber chief: "AI should be developed with security at its core"

13 June 2023
NCSC CEO, Lindy Cameron's speech emphasised the importance of building security into AI technologies from the outset.

Microsoft Patch Tuesday, June 2023 Edition

13 June 2023
Microsoft Corp. today released software updates to fix dozens of security vulnerabilities in its Windows operating systems and other software. This month's relatively light patch load has another added bonus for system administrators everywhere: It appears to be the first Patch Tuesday since March 2022 that isn't marred by the active exploitation of a zero-day vulnerability in Microsoft's products.

Strategic Intelligence Guidance for AI Organization Model Adoption

13 June 2023
As AI models become more sophisticated and firms explore how they can drive efficiencies within business, it is important to ensure that they are used in a way that enhances organizational humanity, rather than replacing it.

Update: Xplain data breach also impacted the national Swiss railway FSS

13 June 2023
The Play ransomware attack suffered by the IT services provider Xplain is worse than initially estimated, the incident also impacted the national railway company of Switzerland (FSS) and the canton of Aargau.

Matt Hillary hired as VP, Security and CISO at Drata

13 June 2023
Matt Hillary has been hired as VP, Security and Chief Information Security Officer at Drata. Hillary brings more than 15 years of security experience.