Collected every two hours from specialised publications — each link leads to the original article.
The Iranian nation-state group known asMuddyWaterhas been observed carrying out destructive attacks on hybrid environments under the guise of a ransomware oper…
As many as 55 zero-day vulnerabilities were exploited in the wild in 2022, with most of the flaws discovered in software from Microsoft, Google, and Apple.Whil…
The ChatGPT-powered Blackmamba malware, which can operate on macOS, Windows, and Linux systems, works as a keylogger, with the ability to send stolen credentia…
The notorious Emotet malware, in itsreturn after a short hiatus, is now being distributed viaMicrosoft OneNote email attachmentsin an attempt to bypass macro-b…
Microsoft's decision to block Visual Basic for Applications (VBA) macros by default for Office files downloaded from the internet has led many threat actors to…
The Vice Society ransomware actors have switched to yet another custom ransomware payload in their recent attacks aimed at a variety of sectors."This ransomwar…
Threat actors affiliated with a ransomware strain known as Play are leveraging a never-before-seen exploit chain that bypasses blocking rules for ProxyNotShell…
With 2022 coming to a close, there is no better time to buckle down and prepare to face the security challenges in the year to come. This past year has seen it…
A malicious campaign targeting the Middle East is likely linked toBackdoorDiplomacy, an advanced persistent threat (APT) group with ties to China.The espionage…
Several vulnerabilities have been discovered in the Linux kernel that may lead to privilege escalation, denial of service or information leaks: CVE-2021-33655
Linux disk/nic frontends data leaks [XSA-403, CVE-2022-26365, CVE-2022-33740, CVE-2022-33741, CVE-2022-33742] (#2104747) ---- update to xen-4.15.3 x86: MMIO St…
An emerging threat cluster originating from North Korea has been linked to developing and using ransomware in cyberattacks targeting small businesses since Sep…
Linux disk/nic frontends data leaks [XSA-403, CVE-2022-26365, CVE-2022-33740, CVE-2022-33741, CVE-2022-3374]
Microsoft on Wednesday detailed a previously undiscovered technique put to use by the TrickBot malware that involves using compromised Internet of Things (IoT)…
Google's Threat Analysis Group (TAG) took the wraps off a newinitial access brokerthat it said is closely affiliated to a Russian cyber crime gang notorious fo…
Microsoft on Wednesday detailed a previously undiscovered technique put to use by the TrickBot malware that involves using compromised Internet of Things (IoT)…
Microsoft has disclosed details of a large-scale, multi-phase phishing campaign that uses stolen credentials to register devices on a victim's network to furth…
Cybersecurity teams from Microsoft on Saturday disclosed they identified evidence of a new destructive malware operation dubbed "WhisperGate" targeting governm…
Threat actors are actively incorporating public cloud services from Amazon and Microsoft into their malicious campaigns to deliver commodity remote access troj…
Microsoft has recently fixed a severe vulnerability that could allow PetiPotam NTLM relay attacks. However,…LockFile Ransomware Exploits PetiPotam To Attack Wi…
A proof-of-concept (PoC) exploit related to a remote code execution vulnerability affecting Windows Print Spooler and patched by Microsoft earlier this month w…
Days afterÂMicrosoft,ÂSecureworks, andÂVolexityÂshed light on a new spear-phishing activity unleashed by the Russian hackers who breached SolarWinds IT managem…
The data is in. According to IBM Security'sÂ2020 Cost of a Data Breach Report, there is a 50% increase in cloud usage for enterprises across all industries. Th…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) on Wednesday issued a joint advisory warning of …