Latest Cybersecurity News and Articles


Over 60K Adware Apps Posing as Cracked Versions of Popular Apps Target Android Devices

06 June 2023
These apps aren't distributed through the Google Play Store. Instead, users searching for apps like Netflix, PDF viewers, security software, and cracked versions of YouTube on a search engine are redirected to an ad page hosting the malware.

Cybercriminals target C-suite, family members with sophisticated attacks

06 June 2023
Senior corporate executives are increasingly being targeted by sophisticated cyberattacks that target their corporate and home office environments and even extend to family members, according to a study from BlackCloak and Ponemon Institute.

Android security update fixes Mali GPU flaw exploited by spyware

06 June 2023
Google has released the monthly security update for the Android platform, adding fixes for 56 vulnerabilities, five of them with a critical severity rating and one exploited since at least last December.

Verizon 2023 DBIR: Human Error Involved in Many Breaches, Ransomware Cost Surges

06 June 2023
Ransomware accounted for 24% of cybersecurity incidents analyzed by Verizon. The company saw the number of ransomware attacks being higher in the past two years than in the previous five years combined.

Impulse Team Ran Years-Long Mostly-Undetected Cryptocurrency Scam

06 June 2023
The scam works via an advanced fee fraud, tricking victims into believing they've won cryptocurrency rewards but requiring them to pay a small activation fee to access their rewards.

NATO: Military cyber defenders need to be present on networks during peacetime

06 June 2023
David van Weel, NATO’s assistant secretary general for emerging security challenges, told the 15th annual International Conference on Cyber Conflict (CyCon) that NATO members will begin recognizing cyberspace as “a permanently contested environment.”

SpinOk Android Malware Found in More Apps With 30 Million Installs

06 June 2023
CloudSEK used the IoCs provided in Dr. Web’s report to uncover more SpinOk infections, extending the list of bad apps to 193 after discovering an additional 92 apps. Roughly half of those were available on Google Play.

Over 60K Adware Apps Posing as Cracked Versions of Popular Apps Target Android Devices

06 June 2023
Thousands of adware apps for Android have been found to masquerade as cracks or modded versions of popular apps to redirect users to serve unwanted ads to users as part of a campaign ongoing since October 2022. "The campaign is designed to aggressively push adware to Android devices with the purpose to drive revenue," Bitdefender said in a technical report shared with The Hacker News. "However,

Zero-Day Alert: Google Issues Patch for New Chrome Vulnerability - Update Now!

06 June 2023
Tracked as CVE-2023-3079, the vulnerability has been described as a type confusion bug in the V8 JavaScript engine. Clement Lecigne of Google's Threat Analysis Group (TAG) has been credited with reporting the issue on June 1, 2023.

Brazilian Threat Actor Targets Spanish and Portuguese Speaking Users

06 June 2023
A financially motivated Brazil threat actor is allegedly targeting individuals who speak Spanish or Portuguese. The primary objective of these attacks is to steal online banking credentials from the victims. The threat actors used CMD-based scripts, Autolt scripts, and LOLBaS to avoid detection by traditional security measures. 

Cyclops Ransomware Gang Offers GoLang-Based Info-Stealer to Cybercriminals

06 June 2023
Cyclops ransomware is notable for targeting all major desktop operating systems, including Windows, macOS, and Linux. It's also designed to terminate any potential processes that could interfere with encryption.

Virtual claims raise alarms among insurance carriers and customers

06 June 2023
As the digital revolution changes the claims process, both carriers and customers are increasingly concerned about data privacy, according to a report by LexisNexis Risk Solutions.

5 Reasons Why IT Security Tools Don't Work For OT

06 June 2023
Attacks on critical infrastructure and other OT systems are on the rise as digital transformation and OT/IT convergence continue to accelerate. Water treatment facilities, energy providers, factories, and chemical plants — the infrastructure that undergirds our daily lives could all be at risk. Disrupting or manipulating OT systems stands to pose real physical harm to citizens, environments, and

British Airways, BBC and Boots Were Impacted the by Zellis Data Breach

06 June 2023
“We have been informed that we are one of the companies impacted by Zellis’ cybersecurity incident, which occurred via one of their third-party suppliers called MOVEit,” reads a statement issued by British Airways.

UK Closes CCP Cyber Certification Scheme

06 June 2023
Although CCP certifications will remain valid until they expire at the latest on December 31, 2026, the move is being made to make way for the launch of new chartered titles in late July this year.

MOVEit Transfer Exploit Connected to Ransomware Group

06 June 2023
The recent MOVEit Transfer zero-day attacks have been linked to a known ransomware group that has exploited a critical SQL injection vulnerability to steal data from dozens of organizations. While Microsoft linked it to the Cl0p ransomware group, Mandiant attributed the attacks to UNC4857. Either update the software or, if updating is not feasible for your organization, it is recommended to disable HTTP(s) traffic to MOVEit Transfer.

How defense contractors can move from cybersecurity to cyber resilience

06 June 2023
For defense contractors, who work with some of the country’s most sensitive information, establishing effective cybersecurity protocols takes on an added layer of importance due to the national security concern.

Zero-Day Alert: Google Issues Patch for New Chrome Vulnerability - Update Now!

06 June 2023
Google on Monday released security updates to patch a high-severity flaw in its Chrome web browser that it said is being actively exploited in the wild. Tracked as CVE-2023-3079, the vulnerability has been described as a type confusion bug in the V8 JavaScript engine. Clement Lecigne of Google's Threat Analysis Group (TAG) has been credited with reporting the issue on June 1, 2023. "Type

Caribbean island of Martinique dealing with cyberattack that disrupted government services

06 June 2023
The Caribbean island is dealing with a cyberattack that has disrupted internet access and other infrastructure for weeks. It has a population of about 360,000 and is controlled by France, serving as the outermost region of the European Union.

Deepfakes are adding an insidious edge to some sextortion schemes, FBI says

06 June 2023
There was a time when sextortion schemes typically involved digital material that was either coerced or stolen from a victim. The FBI is warning now that deepfakes are changing the nature of the crime.