The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
A new post-exploitation framework called EXFILTRATOR-22 (aka EX-22) has emerged in the wild with the goal of deploying ransomware within enterprise networks wh…
Romanian cybersecurity company Bitdefender hasreleaseda free universal decryptor for a nascent file-encrypting malware known as MortalKombat.MortalKombat is a …
LastPass, which in December 2022 disclosed a severe data breach that allowed threat actors to access encrypted password vaults, said it happened as a result of…
In today's world, almost every part of our life is directly or indirectly linked to the Internet. As cyberattacks grow increasingly more advanced, sensitive da…
Government entities in Asia-Pacific and North America are being targeted by an unknown threat actor with an off-the-shelf malware downloader known as PureCrypt…
Popular cryptocurrency exchange platform Coinbase disclosed that it experienced a cybersecurity attack that targeted its employees.The companysaidits "cyber co…
The cyber espionage threat actor tracked asEarth Kitsunehas been observed deploying a new backdoor called WhiskerSpy as part of a social engineering campaign.E…
The cyber espionage threat actor tracked asEarth Kitsunehas been observed deploying a new backdoor called WhiskerSpy as part of a social engineering campaign.E…
Web hosting services provider GoDaddy on Friday disclosed a multi-year security breach that enabled unknown threat actors to install malware and siphon source …
Suspected North Korean nation-state actors targeted a journalist in South Korea with a malware-laced Android app as part of a social engineering campaign.The f…
Chinese-speaking individuals in Southeast and East Asia are the targets of a new rogue Google Ads campaign that delivers remote access trojans such as FatalRAT…
More than 500 hosts have been newly compromised en masse by the ESXiArgs ransomware strain, most of which are located in France, Germany, the Netherlands, the …
A new financially motivated campaign that commenced in December 2022 has seen the unidentified threat actor behind it deploying a novel ransomware strain dubbe…
Warnings of a major globe-spanning ransomware attack began circulating on social media in early February, but at first there were few details save for reports …
Cybersecurity researchers have unearthed a new piece of evasive malware dubbedBeepthat's designed to fly under the radar and drop additional payloads onto a co…
One thing is clear. The "business value"of data continues to grow, making it an organization's primary piece of intellectual property.From a cyber risk perspec…
The popular social media networking giant Reddit has appeared as the latest victim of a…Reddit Discloses Security Breach Affecting Internal Docs on Latest Hack…
After the U.S. Cybersecurity and Infrastructure Security Agency (CISA) released a decryptor for affected victims to recover fromESXiArgs ransomware attacks, th…
Organizations using Microsoft's Defender for Endpoint will now be able to isolate Linux devices from their networks to contain intrusions and whatnot.
State-backed hackers from North Korea are conducting ransomware attacks against healthcare and critical infrastructure facilities to fund illicit activities, U…
Here are three of the worst breaches, attacker tactics and techniques of 2022, and the security controls that can provide effective, enterprise security protec…
In a first-of-its-kind coordinated action, the U.K. and U.S. governments on Thursday levied sanctions against seven Russian nationals for their affiliation to …
Popular social news aggregation platform Reddit has disclosed that it was the victim of a security incident that enabled unidentified threat actors to gain una…
Have you ever stopped to think about the potential consequences of a cyberattack on your organization? It's getting more intense and destructive every day, and…