The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Over one million WordPress websites are estimated to have been infected by an ongoing campaign to deploy malware calledBalada Injectorsince 2017.The massive ca…
Taiwanese PC company MSI (short for Micro-Star International) officially confirmed it was the victim of a cyber attack on its systems.The company said it "prom…
The Iranian nation-state group known asMuddyWaterhas been observed carrying out destructive attacks on hybrid environments under the guise of a ransomware oper…
A North Korean government-backed threat actor has been linked to attacks targeting government and military personnel, think tanks, policy makers, academics, an…
Every year hundreds of millions of malware attacks occur worldwide, and every year businesses deal with the impact of viruses, worms, keyloggers, and ransomwar…
The threat actor behind the information-stealing malware known asTyphon Rebornhas resurfaced with an updated version (V2) that packs in improved capabilities t…
Cybersecurity researchers have taken the wraps off a previously undocumented ransomware strain calledRorschachthat's both sophisticated and fast."What makes Ro…
The adversary behind thesupply chain attack targeting 3CXdeployed a second-stage implant specifically singling out a small number of cryptocurrency companies.R…
Data storage devices maker Western Digital on Monday disclosed a "network security incident" that involved unauthorized access to its systems.Thebreachis said …
Multi-cloud data storage, once merely a byproduct of the great cloud migration, has now become a strategy for data management. "Multi-cloud by design," and its…
Multiple threat actors have been observed using two new variants of theIcedID malwarein the wild with more limited functionality that removes functionality rel…
A new information-stealing malware has set its sights on Apple's macOS operating system to siphon sensitive information from compromised devices.DubbedMacSteal…
Microsoft on Friday shared guidance to help customers discover indicators of compromise (IoCs) associated with a recently patched Outlook vulnerability.Tracked…
A malicious Python package on the Python Package Index (PyPI) repository has been found to use Unicode as a trick to evade detection and deploy an info-stealin…
In 2022 alone, global cyberattacks increased by 38%, resulting in substantial business loss, including financial and reputational damage. Meanwhile, corporate …
German and South Korean government agencies have warned about cyber attacks mounted by a threat actor tracked asKimsukyusing rogue browser extensions to steal …
In a sudden turn of events, Baphomet, the current administrator of BreachForums, said in an update on March 21, 2023, that the hacking forum has been officiall…
Amid theongoing warbetween Russia and Ukraine, government, agriculture, and transportation organizations located in Donetsk, Lugansk, and Crimea have been atta…
Amid theongoing warbetween Russia and Ukraine, government, agriculture, and transportation organizations located in Donetsk, Lugansk, and Crimea have been atta…
As many as 55 zero-day vulnerabilities were exploited in the wild in 2022, with most of the flaws discovered in software from Microsoft, Google, and Apple.Whil…
Vulnerability management is vital to a robust, proactive endpoint security strategy, enabling organizations to identify and address security weaknesses before …
The ChatGPT-powered Blackmamba malware, which can operate on macOS, Windows, and Linux systems, works as a keylogger, with the ability to send stolen credentia…
2022 was the year when inflation hit world economies, except in one corner of the global marketplace – stolen data. Ransomware payments fell by over 40% in 202…
The threat actors behind the CatB ransomware operation have been observed using a technique calledDLL search order hijackingto evade detection and launch the p…