Latest Cybersecurity News and Articles
06 June 2023
These apps aren't distributed through the Google Play Store. Instead, users searching for apps like Netflix, PDF viewers, security software, and cracked versions of YouTube on a search engine are redirected to an ad page hosting the malware.
06 June 2023
Senior corporate executives are increasingly being targeted by sophisticated cyberattacks that target their corporate and home office environments and even extend to family members, according to a study from BlackCloak and Ponemon Institute.
06 June 2023
Google has released the monthly security update for the Android platform, adding fixes for 56 vulnerabilities, five of them with a critical severity rating and one exploited since at least last December.
06 June 2023
Ransomware accounted for 24% of cybersecurity incidents analyzed by Verizon. The company saw the number of ransomware attacks being higher in the past two years than in the previous five years combined.
06 June 2023
The scam works via an advanced fee fraud, tricking victims into believing they've won cryptocurrency rewards but requiring them to pay a small activation fee to access their rewards.
06 June 2023
David van Weel, NATO’s assistant secretary general for emerging security challenges, told the 15th annual International Conference on Cyber Conflict (CyCon) that NATO members will begin recognizing cyberspace as “a permanently contested environment.”
06 June 2023
CloudSEK used the IoCs provided in Dr. Web’s report to uncover more SpinOk infections, extending the list of bad apps to 193 after discovering an additional 92 apps. Roughly half of those were available on Google Play.
06 June 2023
Thousands of adware apps for Android have been found to masquerade as cracks or modded versions of popular apps to redirect users to serve unwanted ads to users as part of a campaign ongoing since October 2022.
"The campaign is designed to aggressively push adware to Android devices with the purpose to drive revenue," Bitdefender said in a technical report shared with The Hacker News. "However,
06 June 2023
Tracked as CVE-2023-3079, the vulnerability has been described as a type confusion bug in the V8 JavaScript engine. Clement Lecigne of Google's Threat Analysis Group (TAG) has been credited with reporting the issue on June 1, 2023.
06 June 2023
A financially motivated Brazil threat actor is allegedly targeting individuals who speak Spanish or Portuguese. The primary objective of these attacks is to steal online banking credentials from the victims. The threat actors used CMD-based scripts, Autolt scripts, and LOLBaS to avoid detection by traditional security measures.
06 June 2023
Cyclops ransomware is notable for targeting all major desktop operating systems, including Windows, macOS, and Linux. It's also designed to terminate any potential processes that could interfere with encryption.
06 June 2023
As the digital revolution changes the claims process, both carriers and customers are increasingly concerned about data privacy, according to a report by LexisNexis Risk Solutions.
06 June 2023
Attacks on critical infrastructure and other OT systems are on the rise as digital transformation and OT/IT convergence continue to accelerate. Water treatment facilities, energy providers, factories, and chemical plants — the infrastructure that undergirds our daily lives could all be at risk. Disrupting or manipulating OT systems stands to pose real physical harm to citizens, environments, and
06 June 2023
“We have been informed that we are one of the companies impacted by Zellis’ cybersecurity incident, which occurred via one of their third-party suppliers called MOVEit,” reads a statement issued by British Airways.
06 June 2023
Although CCP certifications will remain valid until they expire at the latest on December 31, 2026, the move is being made to make way for the launch of new chartered titles in late July this year.
06 June 2023
The recent MOVEit Transfer zero-day attacks have been linked to a known ransomware group that has exploited a critical SQL injection vulnerability to steal data from dozens of organizations. While Microsoft linked it to the Cl0p ransomware group, Mandiant attributed the attacks to UNC4857. Either update the software or, if updating is not feasible for your organization, it is recommended to disable HTTP(s) traffic to MOVEit Transfer.
06 June 2023
For defense contractors, who work with some of the country’s most sensitive information, establishing effective cybersecurity protocols takes on an added layer of importance due to the national security concern.
06 June 2023
Google on Monday released security updates to patch a high-severity flaw in its Chrome web browser that it said is being actively exploited in the wild.
Tracked as CVE-2023-3079, the vulnerability has been described as a type confusion bug in the V8 JavaScript engine. Clement Lecigne of Google's Threat Analysis Group (TAG) has been credited with reporting the issue on June 1, 2023.
"Type
06 June 2023
The Caribbean island is dealing with a cyberattack that has disrupted internet access and other infrastructure for weeks. It has a population of about 360,000 and is controlled by France, serving as the outermost region of the European Union.
06 June 2023
There was a time when sextortion schemes typically involved digital material that was either coerced or stolen from a victim. The FBI is warning now that deepfakes are changing the nature of the crime.