Latest Cybersecurity News and Articles


State-Sponsored Actors Leading Cause of Cyber Concern in Public Sector

09 May 2023
A new SolarWinds report details how foreign hackers have become the largest concern among government entities, and how zero-trust strategies have become the most popular defense.

White House announces plan to encourage safe AI use

09 May 2023
The Biden-Harris Administration has announced plans to encourage safe artificial intelligence (AI) development to improve national security. 

Building Automation System Exploit Brings KNX Security Back in Spotlight

09 May 2023
A public exploit targeting building automation systems has brought KNX security back into the spotlight, with industrial giant Schneider Electric releasing a security bulletin to warn customers about the potential risks.

FTC proposes ban to stop Meta from sharing data received from minors

09 May 2023
The FTC proposed to change a 2020 privacy order with Meta after the FTC alleges that the company has failed to fully comply with the order.

Hackers Targeting Southeast Asian Gambling Firms via Chat Apps

09 May 2023
"These attacks use a specific tactic: targeting the victim companies' support agents via chat applications – in particular, the Comm100 and LiveHelp100 apps," ESET said in a report shared with The Hacker News.

Feds Take Down 13 More DDoS-for-Hire Services

09 May 2023
The U.S. Federal Bureau of Investigation (FBI) this week seized 13 domain names connected to “booter” services that let paying customers launch crippling distributed denial-of-service (DDoS) attacks. Ten of the domains are reincarnations of DDoS-for-hire services the FBI seized in December 2022, when it charged six U.S. men with computer crimes for allegedly operating booters.

A generative AI guidebook was released for CISOs

09 May 2023
A guide for Chief Information Security Officers (CISOs) was released to manage risks associated with generative AI being used in the workplace.

Operation ChattyGoblin: Hackers Targeting Gambling Firms via Chat Apps

09 May 2023
A gambling company in the Philippines was the target of a China-aligned threat actor as part of a campaign that has been ongoing since October 2021. Slovak cybersecurity firm ESET is tracking the series of attacks against Southeast Asian gambling companies under the name Operation ChattyGoblin. "These attacks use a specific tactic: targeting the victim companies' support agents via chat

Researchers Uncover SideWinder's Latest Server-Based Polymorphism Technique

09 May 2023
"In this campaign, the SideWinder advanced persistent threat (APT) group used a server-based polymorphism technique to deliver the next stage payload," the BlackBerry Research and Intelligence Team said in a technical report published Monday.

From DevOps to DevSecOps: Strengthen Product Security with Collaborative Tools

09 May 2023
In the fast-paced cybersecurity landscape, product security takes center stage. DevSecOps swoops in, seamlessly merging security practices into DevOps, empowering teams to tackle challenges. Let's dive into DevSecOps and explore how collaboration can give your team the edge to fight cyber villains. Application security and product security Regrettably, application security teams often intervene

LockBit 3.0 Leaks 600 GB of Data Stolen From Indian Lender

09 May 2023
The LockBit 3.0 ransomware group on Monday leaked 600 gigabytes of critical data stolen from Indian lender Fullerton India, two weeks after the group demanded a $3 million ransom from the company.

DrIBAN Toolkit Targets Italian Corporate Banking

09 May 2023
Experts at Cleafy disclosed nearly a four-year-long online fraud campaign that infected Windows systems in organizations using drIBAN, a web inject kit. Criminals attempted to alter legitimate banking transfers by changing the beneficiary details and redirecting the funds to their accounts. Organizations are suggested to be well aware of the evolving threats and make continuous efforts to enhance their security posture.

Private Code Signing Keys From Taiwanese PC Maker Leaked on the Dark Web

09 May 2023
"Confirmed, Intel OEM private key leaked, causing an impact on the entire ecosystem," Alex Matrosov, founder and CEO of firmware security firm Binarly, said in a tweet over the weekend.

The WhatsApp of secure computation

09 May 2023
The idea with E2E encryption is that data is kept confidential between the encryptor and the intended receiver. This might seem an obvious requirement, but not all so-called secure systems offer this level of protection.

New KEKW Clipper Malware Masquerades as PyPI Packages to Infect Users

09 May 2023
A newly discovered malware named KEKW has been found to be distributed through malicious open-source Python .whl (Wheel) files. This malware combines infostealers with clipper activities, allowing it to steal sensitive information from compromised systems and hijack cryptocurrency transactions.

Microsoft enforces number matching to fight MFA fatigue attacks

09 May 2023
In such attacks (also known as push bombing or MFA push spam), cybercriminals flood the targets with mobile push notifications asking them to approve attempts to log into their corporate accounts using stolen credentials.

To enable ethical hackers, a law reform is needed

09 May 2023
Organizations need to be able to match the ingenuity and resources of cybercriminals to better defend themselves against the increasing number of threats and attacks that could paralyze their business.

New Method to Bypass Existing Detection Rules of PaperCut Flaw

09 May 2023
VulCheck developed a new PoC exploit against the critical PaperCut bug earmarked CVE-2023-27350 that is capable of evading all known detection rules. The bug affects PaperCut MF or NG versions 8.0 and above, whose exploitation paves the way for unauthenticated RCE attacks. The bug has previously been exploited in ransomware attacks by Cl0p and LockBit groups.

Researchers Uncover SideWinder's Latest Server-Based Polymorphism Technique

09 May 2023
The advanced persistent threat (APT) actor known as SideWinder has been accused of deploying a backdoor in attacks directed against Pakistan government organizations as part of a campaign that commenced in late November 2022. "In this campaign, the SideWinder advanced persistent threat (APT) group used a server-based polymorphism technique to deliver the next stage payload," the BlackBerry

Microsoft Warns of State-Sponsored Attacks Exploiting Critical PaperCut Vulnerability

09 May 2023
Iranian nation-state groups have now joined financially motivated actors in actively exploiting a critical flaw in PaperCut print management software, Microsoft said. The tech giant's threat intelligence team said it observed both Mango Sandstorm (Mercury) and Mint Sandstorm (Phosphorus) weaponizing CVE-2023-27350 in their operations to achieve initial access. "This activity shows Mint