Latest Cybersecurity News and Articles


University of Manchester Announces Cyber Incident, Says Data ‘Likely’ Copied

09 June 2023
The University of Manchester, one of the largest universities in the United Kingdom by enrollment, announced on Friday that it was the victim of a cyber incident and that the hackers had accessed and “likely” copied data.

Microsoft Uncovers Banking AitM Phishing and BEC Attacks Targeting Financial Giants

09 June 2023
Banking and financial services organizations are the targets of a new multi-stage adversary-in-the-middle (AitM) phishing and business email compromise (BEC) attack, Microsoft has revealed. "The attack originated from a compromised trusted vendor and transitioned into a series of AiTM attacks and follow-on BEC activity spanning multiple organizations," the tech giant disclosed in a Thursday

Royal ransomware gang adds BlackSuit encryptor to their arsenal

09 June 2023
Since late April, there have been rumbles that the Royal ransomware operation was getting ready to rebrand under a new name. This escalated further after they began to feel pressure from law enforcement after they attacked the City of Dallas, Texas.

Google Launches Framework to Secure Generative AI

09 June 2023
The effort builds on Google’s experience developing cybersecurity models, such as the collaborative Supply-chain Levels for Software Artifacts (SLSA) framework and BeyondCorp, its zero trust architecture used by many organizations.

SaaS Ransomware Attack Hit Sharepoint Online Without Using a Compromised Endpoint

09 June 2023
The attack involved only the theft of files rather than theft followed by encryption. After exfiltrating hundreds of files, the attacker then uploaded thousands of PREVENT-LEAKAGE.txt files.

Asylum Ambuscade: A Cybercrime Group with Espionage Ambitions

09 June 2023
The threat actor known as Asylum Ambuscade has been observed straddling cybercrime and cyber espionage operations since at least early 2020. "It is a crimeware group that targets bank customers and cryptocurrency traders in various regions, including North America and Europe," ESET said in an analysis published Thursday. "Asylum Ambuscade also does espionage against government entities in Europe

Brown & Brown, Inc. appoints Barry Hensley as CSO and Rob Burch as CISO

09 June 2023
Brown & Brown, Inc. has announced the appointment of Barry Hensley as Chief Security Officer and Rob Burch as Chief Information Security Officer.

North Africa Targeted by Stealth Soldier Backdoor in Espionage Attacks

09 June 2023
A previously undisclosed backdoor named Stealth Soldier is targeting Libyan organizations. Security experts have identified three distinct infection chains involving three different versions of Stealth Soldier malware. The recent campaign underscores the growing complexity of cyberespionage activities.

New York City sues Hyundai, Kia claiming cars easy to steal

09 June 2023
Hyundai and Kia cars were stolen 977 times in New York City in the first four months of 2023, and authorities have had enough. This represents a roughly 660 percent increase in such thefts as compared to those same months in 2022.

Australian Capital Territory Government Falls Victim to Barracuda’s ESG Vulnerability

09 June 2023
In a press conference on June 8, ACT government chief digital officer Bettina Konti said there is a likelihood that some personal information is involved but the harms assessment needs to be completed for that to be clear.

Report: 55% of organizations have experienced a SaaS security incident

09 June 2023
A new survey found while the use of cloud services is increasing, the pace of adoption is dependent on the speed of meeting security and operational expectations.

Cisco Counterfeiter Pleads Guilty to $100m Scheme

09 June 2023
Onur Aksoy, 39, of Miami, pleaded guilty to conspiring with others to traffic in counterfeit goods, to commit mail fraud, and to commit wire fraud and mail fraud. He made over $100m from importing and selling counterfeit Cisco networking devices.

New Custom Backdoor 'Stealth Soldier' Targets North Africa with Espionage Attacks

09 June 2023
"Stealth Soldier malware is an undocumented backdoor that primarily operates surveillance functions such as file exfiltration, screen and microphone recording, keystroke logging, and stealing browser information," Check Point said in a report.

5 Reasons Why Access Management is the Key to Securing the Modern Workplace

09 June 2023
The way we work has undergone a dramatic transformation in recent years. We now operate within digital ecosystems, where remote work and the reliance on a multitude of digital tools is the norm rather than the exception. This shift – as you likely know from your own life – has led to superhuman levels of productivity that we wouldn't ever want to give up. But moving fast comes at a cost. And for

US DOJ Indicts 6 for $6M Business Email Compromise Scam

09 June 2023
U.S. federal prosecutors unsealed indictments Wednesday against six Houston-area men for an alleged six-month spree of business email compromise thefts adding up to nearly $6 million.

Wealthy New Jersey Township Hit with Cyberattack, Mayor Says

09 June 2023
Katya Wowk, Montclair’s communications director, told Recorded Future News that the incident is not related to the MOVEit vulnerability that has led to attacks on dozens of organizations in recent weeks.

Darkweb credit card marts in decline across Asia

09 June 2023
The number of stolen Asian credit card numbers on dark web markets has fallen sharply, Group-IB told Singapore's ATxSG conference. Instead, criminals have escalated their attempts to steal corporate documents – with India being the prime target.

Clop Ransomware Gang Likely Aware of MOVEit Transfer Vulnerability Since 2021

09 June 2023
It's worth noting that Cl0p carried out similar mass exploitation attacks on other managed file transfer applications such as SolarWinds Serv-U Managed File Transfer, Accellion FTA, and GoAnywhere MFT since December 2020.

Cyber Extortionists Seek Out Fresh Victims in LatAm and Asia

09 June 2023
Cyber-extortion gangs shifted their focus away from North America and Europe and towards Latin America and Asia during 2022, possibly influenced by Russia’s invasion of Ukraine, according to Orange Cyberdefense.

“Picture in Picture” Technique Exploited in New Deceptive Phishing Attack

09 June 2023
In a recent phishing campaign, hackers have employed sophisticated obfuscation tactics to deceive unsuspecting users into visiting malicious websites and disclosing sensitive information.