The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Decentralized multi-chain crypto wallet BitKeep on Wednesday confirmed a cyber attack that allowed threat actors to distribute fraudulent versions of its Andro…
Microsoft's decision to block Visual Basic for Applications (VBA) macros by default for Office files downloaded from the internet has led many threat actors to…
Cybersecurity breaches are becoming more and more common, with no signs of slowing down. In…Why Continuous Security Scanning is so Important for Your Business …
The pay-per-install (PPI) malware downloader service known as PrivateLoader is being used to distribute a previously documented information-stealing malware du…
The Zerobot botnet, first detected earlier this month, is expanding the types of Internet of Things (IoT) devices it can compromise by going after Apache syste…
The Vice Society ransomware actors have switched to yet another custom ransomware payload in their recent attacks aimed at a variety of sectors."This ransomwar…
An exhaustive analysis ofFIN7has unmasked the cybercrime syndicate's organizational hierarchy, alongside unraveling its role as an affiliate for mounting ranso…
An exhaustive analysis ofFIN7has unmasked the cybercrime syndicate's organizational hierarchy, alongside unraveling its role as an affiliate for mounting ranso…
Multiple high-severity vulnerabilities have been disclosed in Passwordstate password management solution that could be exploited by an unauthenticated remote a…
Threat actors affiliated with a ransomware strain known as Play are leveraging a never-before-seen exploit chain that bypasses blocking rules for ProxyNotShell…
The Computer Emergency Response Team of Ukraine (CERT-UA) this weekdisclosedthat users of the Delta situational awareness program received phishing emails from…
A Rust variant of a ransomware strain known asAgendahas been observed in the wild, making it the latest malware to adopt the cross-platform programming languag…
Government entities in Ukraine have been breached as part of a new campaign that leveraged trojanized versions of Windows 10 installer files to conduct post-ex…
Reality has a way of asserting itself, irrespective of any personal or commercial choices we make, good or bad. For example, just recently, the city services o…
A previously undocumented Android malware campaign has been observed leveraging money-lending apps to blackmail victims into paying up with personal informatio…
Microsoft on Tuesday disclosed it took steps to implement blocking protections and suspend accounts that were used to publish malicious drivers that were certi…
Cybersecurity researchers have published the inner workings of a new wiper calledAzov Ransomwarethat's deliberately designed to corrupt data and "inflict impec…
An active malware campaign is targeting the Python Package Index (PyPI) and npm repositories for Python and JavaScript with typosquatted and fake modules that …
With 2022 coming to a close, there is no better time to buckle down and prepare to face the security challenges in the year to come. This past year has seen it…
Security-savvy Linux sysadmins understand that it's best to assume that their systems are breached. Threats targeting Linux systems are becoming increasingly p…
Security-savvy Linux sysadmins understand that it's best to assume that their systems are breached. Threats targeting Linux systems are becoming increasingly p…
The U.S. Department of Health and Human Services (HHS) has cautioned of ongoing Royal ransomware attacks targeting healthcare entities in the country."While mo…
The subgroup of an Iranian nation-state group known asNemesis Kittenhas been attributed as behind a previously undocumented custom malware dubbed Drokbk that u…
The Vice Society cybercrime group has disproportionately targeted educational institutions, accounting for 33 victims in 2022 and surpassing other ransomware f…