The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
An unknown threat actor is using a variant of the Yashma ransomware to target various entities in English-speaking countries, Bulgaria, China, and Vietnam at l…
A married couple from New York City has pleaded guilty to money laundering charges in connection with the 2016 hack of cryptocurrency stock exchange Bitfinex, …
Cybersecurity researchers have discovered a new bunch of malicious packages on the npm package registry that are designed to exfiltrate sensitive developer inf…
Cybersecurity researchers have discovered a new version of malware calledRilidethat targets Chromium-based web browsers to steal sensitive data and steal crypt…
Hundreds of Citrix NetScaler ADC and Gateway servers have been breached by malicious actors to deploy web shells, according to the Shadowserver Foundation.The …
The frequency and complexity of cyber threats are constantly evolving. At the same time, organizations are now collecting sensitive data that, if compromised, …
The threat actor known asSpace Pirateshas been linked to attacks against at least 16 organizations in Russia and Serbia over the past year by employing novel t…
The Abyss Locker operation is the latest to develop a Linux encryptor to target VMware's ESXi virtual machines platform in attacks on the enterprise.
The threat actors linked to the malware loader known as IcedID have made updates to the BackConnect (BC) module that's used for post-compromise activity on hac…
As part ofCheckmarx's missionto help organizations develop and deploy secure software, the Security Research team started looking at the security posture of ma…
Cybersecurity agencies in Australia and the U.S. havepublisheda joint cybersecurity advisory warning against security flaws in web applications that could be e…
The U.S. Securities and Exchange Commission (SEC) on Wednesday approved new rules that require publicly traded companies to publicize details of a cyber attack…
A deeper analysis of a recently discovered malware calledDecoy Doghas revealed that it's a significant upgrade over thePupy RAT, an open-source remote access t…
The financially motivated threat actors behind theCasbaneirobanking malware family have been observed making use of a User Account Control (UAC) bypass techniq…
If you have attended the Roblox Developers Conference between 2017 and 2020, your data has…Roblox Developers Conference Attendees’ Data Breached on Latest Hack…
Details have emerged about a now-patched flaw in OpenSSH that could be potentially exploited to run arbitrary commands remotely on compromised hosts under spec…
Organizations running Linux distributions need to prepare to defend their systems against ransomware attacks. Steps to ensure resiliency and basics such as acc…
A new variant ofAsyncRATmalware dubbedHotRatis being distributed via free, pirated versions of popular software and utilities such as video games, image and so…
A new malware strain known as BundleBot has been stealthily operating under the radar by taking advantage of.NET single-file deployment techniques, enabling th…
Regardless of the country, local government is essential in most citizens' lives. It provides many day-to-day services and handles various issues. Therefore, t…
Mallox ransomware activities in 2023 have witnessed a 174% increase when compared to the previous year, new findings from Palo Alto Networks Unit 42 reveal."Ma…
An analysis of the indicators of compromise (IoCs) associated with the JumpCloud hack has uncovered evidence pointing to the involvement of North Korean state-…
An unidentified threat actor compromised an application used by multiple entities in Pakistan to deliverShadowPad, a successor to the PlugX backdoor that's com…
The financially motivated threat actor known as FIN8 has been observed using a "revamped" version of a backdoor calledSardonicto deliver theBlackCat ransomware…