The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Microsoft on Wednesday revealed that a China-based threat actor known asStorm-0558acquired the inactive consumer signing key to forge tokens and access Outlook…
IBM's 2023 installment of their annual "Cost of a Breach" report has thrown up some interesting trends. Of course, breaches being costly is no longer news at t…
An unknown threat actor has been observed weaponizing high-severity security flaws in the MinIO high-performance object storage system to achieve unauthorized …
Threat actors are exploiting poorly secured Microsoft SQL (MS SQL) servers to deliver Cobalt Strike and a ransomware strain called FreeWorld.Cybersecurity firm…
Cybersecurity and intelligence agencies from Australia, Canada, New Zealand, the U.K., and the U.S. on Thursday disclosed details of a mobile malware strain ta…
A new phishing attack likely targeting civil society groups in South Korea has led to the discovery of a novel remote access trojan calledSuperBear.The intrusi…
As cyber threats continue to evolve, adversaries are deploying a range of tools to breach security defenses and compromise sensitive data. Surprisingly, one of…
An open-source .NET-based information stealer malware dubbedSapphireStealeris being used by multiple entities to enhance its capabilities and spawn their own b…
How often do cyberattacks happen? How frequently do threat actors target businesses and governments around the world? The BlackBerry® Threat Research and Intel…
A coordinated law enforcement effort codenamedOperation Duck Hunthas felledQakBot, a notorious Windows malware family that's estimated to have compromised over…
A suspected Chinese-nexus hacking group exploited arecently disclosed zero-day flawin Barracuda Networks Email Security Gateway (ESG) appliances to breach gove…
Unpatched Citrix NetScaler systems exposed to the internet are being targeted by unknown threat actors in what's suspected to be a ransomware attack.Cybersecur…
Cloud hosting firm Leaseweb recently disclosed a security breach after its Customer Portal suffered downtime.…Leaseweb Hosting Provider Admits Security Breach …
Cyber attacks on e-commerce applications are a common trend in 2023 as e-commerce businesses become more omnichannel, they build and deploy increasingly more A…
The leak of theLockBit 3.0 ransomwarebuilder last year has led to threat actors abusing the tool to spawn new variants.Russian cybersecurity company Kaspersky …
Risk and financial advisory solutions provider Kroll on Friday disclosed that one of its employees fell victim to a "highly sophisticated" SIM swapping attack.…
In recent times, the world of cybersecurity has been rocked by a series of audacious…Lapsus$ Teen Hackers Convicted: Unraveling the Grand Theft Auto 6 Leak and…
The SmokeLoader malware is being used to deliver a new Wi-Fi scanning malware strain calledWhiffy Reconon compromised Windows machines."The new malware strain …
A ransomware campaign by the recently emerged Monti ransomware group is targeting victims with a new Linux variant of its malware. The threat group is the late…
A malicious toolset dubbedSpacecolonis being deployed as part of an ongoing campaign to spread variants of the Scarab ransomware across victim organizations gl…
Threat actors are leveraging access to malware-infected Windows and macOS machines to deliver a proxy server application and use them as exit nodes to reroute …
A cybersecurity researcher from SUSE, a Linux distribution manufacturer, has made public a serious security flaw in the Mozilla VPN client for Linux.
Cybersecurity researchers have detailed an updated version of an advanced fingerprinting and redirection toolkit calledWoofLockerthat's engineered to conduct t…
"Variants of CL0p were initially only found on Windows systems, but the gang also developed a Linux variant toward the end of 2022, reflecting the diversity of…