The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Cryptocurrency investment companies are the target of a developing threat cluster that uses Telegram groups to seek out potential victims.Microsoft's Security …
A malicious campaign targeting the Middle East is likely linked toBackdoorDiplomacy, an advanced persistent threat (APT) group with ties to China.The espionage…
Ransomware attacks keep increasing in volume and impact largely due to organizations' weak security controls. Mid-market companies are targeted as they possess…
A persistent intrusion campaign has set its eyes on telecommunications and business process outsourcing (BPO) companies at lease since June 2022."The end objec…
A version of an open source ransomware toolkit calledCryptonitehas been observed in the wild with wiper capabilities due to its "weak architecture and programm…
Three different security flaws have been disclosed in American Megatrends (AMI) MegaRACBaseboard Management Controller (BMC) software that could lead to remote…
A new data wiper malware calledCryWiperhas been found targeting Russian government agencies, including mayor's offices and courts."Although it disguises itself…
Platform certificates used by Android smartphone vendors like Samsung, LG, and MediaTek have been found to be abused to sign malicious apps.The findings were f…
The threat actors behind Cuba (aka COLDDRAW) ransomware have received more than $60 million in ransom payments and compromised over 100 entities across the wor…
Popular password management service LastPass said it's investigating a second security incident that involved attackers accessing some of its customer informat…
A malicious Android SMS application discovered on the Google Play Store has been found to stealthily harvest text messages with the goal of creating accounts o…
A threat actor with a suspected China nexus has been linked to a set of espionage attacks in the Philippines that primarily relies on USB devices as an initial…
When the headlines focus on breaches of large enterprises like the Optus breach, it’s easy for smaller businesses to think they’re not a target for hackers. Su…
Ukraine has come under a fresh onslaught of ransomware attacks that mirror previous intrusions attributed to the Russia-based Sandworm nation-state group.Slova…
The operators of the RansomExx ransomware have become the latest to develop a new variant fully rewritten in the Rust programming language, following other str…
Companies based in the U.S. have been at the receiving end of an "aggressive" Qakbot malware campaign that leads to Black Basta ransomware infections on compro…
As many as 34 Russian-speaking gangs distributing information-stealing malware under the stealer-as-a-service model stole no fewer than 50 million passwords in…
Cybersecurity continues to be a hot topic. More and more organizations are getting hit by ransomware attacks, critical open software vulnerabilities are making…
Ethical hacking is analyzing a system without permission to try and discover vulnerabilities that hackers can use. On the other hand, penetration testing attem…
When creating cybersecurity policies, organizations often focus on known security standards as well as their…Five Steps to Secure Your Critical Assets from Cyb…
Data leaks are extremely prominent in the cyber world due to lack of proper or adequate security implementation. Securing databases is an essential practice to…
Dropbox has revealed details of a phishing attack to which it fell victim. In the attack, a threat actor was able to steal code from the company after gatherin…
No one is immune to cybercrime. Individuals and businesses are increasingly becoming targets of cyberattacks.…Cybersecurity 2022: 5 Top Considerations Every Us…
A now-patched vulnerability in VMware Workspace ONE Access has been observed being exploited to deliver both cryptocurrency miners and ransomware on affected m…