July 2024

How Intelligence Sharing Can Help Keep Major Worldwide Sporting Events on Track

How Intelligence Sharing Can Help Keep Major Worldwide Sporting Events on Track 2024-07-05 at 15:02 By Marc Solomon The Olympic Games is only 29 days long, so set up and take down is a very intense period, where the threat actors can take advantage. The post How Intelligence Sharing Can Help Keep Major Worldwide Sporting

How Intelligence Sharing Can Help Keep Major Worldwide Sporting Events on Track Read More »

In Other News: Microsoft Details ICS Flaws, Smart Grill Hacking, Predator Spyware Activity

In Other News: Microsoft Details ICS Flaws, Smart Grill Hacking, Predator Spyware Activity 2024-07-05 at 15:02 By SecurityWeek News Noteworthy stories that might have slipped under the radar: Microsoft details Rockwell HMI vulnerabilities, smart grills hacked, Predator spyware activity drops.  The post In Other News: Microsoft Details ICS Flaws, Smart Grill Hacking, Predator Spyware Activity

In Other News: Microsoft Details ICS Flaws, Smart Grill Hacking, Predator Spyware Activity Read More »

Blueprint for Success: Implementing a CTEM Operation

Blueprint for Success: Implementing a CTEM Operation 2024-07-05 at 14:46 By The attack surface isn’t what it once was and it’s becoming a nightmare to protect. A constantly expanding and evolving attack surface means risk to the business has skyrocketed and current security measures are struggling to keep it protected. If you’ve clicked on this

Blueprint for Success: Implementing a CTEM Operation Read More »

Labour wins race to lead UK, but few would envy the load in its tech in-tray

Labour wins race to lead UK, but few would envy the load in its tech in-tray 2024-07-05 at 14:17 By Lindsay Clark Looming train wrecks face winning party after it promises investment and innovation Analysis  The United Kingdom woke up to the prospect of a new government this morning, but it faces old problems in

Labour wins race to lead UK, but few would envy the load in its tech in-tray Read More »

Some Data Is ‘Breached’ During a Hacking Attack on the Alabama Education Department

Some Data Is ‘Breached’ During a Hacking Attack on the Alabama Education Department 2024-07-05 at 13:16 By Associated Press Alabama’s education superintendent said some data was breached during a hacking attempt at the State Department of Education. The post Some Data Is ‘Breached’ During a Hacking Attack on the Alabama Education Department appeared first on

Some Data Is ‘Breached’ During a Hacking Attack on the Alabama Education Department Read More »

GootLoader Malware Still Active, Deploys New Versions for Enhanced Attacks

GootLoader Malware Still Active, Deploys New Versions for Enhanced Attacks 2024-07-05 at 13:02 By The malware known as GootLoader continues to be in active use by threat actors looking to deliver additional payloads to compromised hosts. “Updates to the GootLoader payload have resulted in several versions of GootLoader, with GootLoader 3 currently in active use,”

GootLoader Malware Still Active, Deploys New Versions for Enhanced Attacks Read More »

Turning Jenkins Into a Cryptomining Machine From an Attacker’s Perspective

Turning Jenkins Into a Cryptomining Machine From an Attacker’s Perspective 2024-07-05 at 12:02 By In this blog entry, we will discuss how the Jenkins Script Console can be weaponized by attackers for cryptomining activity if not configured properly. This article is an excerpt from Trend Micro Research, News and Perspectives View Original Source

Turning Jenkins Into a Cryptomining Machine From an Attacker’s Perspective Read More »

Europol says mobile roaming tech is making its job too hard

Europol says mobile roaming tech is making its job too hard 2024-07-05 at 11:31 By Connor Jones Privacy measures apparently helping criminals evade capture Top Eurocops are appealing for help from lawmakers to undermine a privacy-enhancing technology (PET) they say is hampering criminal investigations – and it’s not end-to-end encryption this time. Not exactly.… This

Europol says mobile roaming tech is making its job too hard Read More »

Infostealing malware masquerading as generative AI tools

Infostealing malware masquerading as generative AI tools 2024-07-05 at 08:01 By Help Net Security Over the past six months, there has been a notable surge in Android financial threats – malware targeting victims’ mobile banking funds, whether in the form of ‘traditional’ banking malware or, more recently, cryptostealers, according to ESET. Vidar infostealer targets Windows

Infostealing malware masquerading as generative AI tools Read More »

Polyfill[.]io Attack Impacts Over 380,000 Hosts, Including Major Companies

Polyfill[.]io Attack Impacts Over 380,000 Hosts, Including Major Companies 2024-07-05 at 08:01 By The supply chain attack targeting widely-used Polyfill[.]io JavaScript library is wider in scope than previously thought, with new findings from Censys showing that over 380,000 hosts are embedding a polyfill script linking to the malicious domain as of July 2, 2024. This

Polyfill[.]io Attack Impacts Over 380,000 Hosts, Including Major Companies Read More »

99% of IoT exploitation attempts rely on previously known CVEs

99% of IoT exploitation attempts rely on previously known CVEs 2024-07-05 at 07:31 By Help Net Security The explosion of Internet of Things (IoT) devices has brought about a wide range of security and privacy challenges, according to Bitdefender and NETGEAR. The report is based on global telemetry of 3.8 million homes and 50 million

99% of IoT exploitation attempts rely on previously known CVEs Read More »

New Golang-Based Zergeca Botnet Capable of Powerful DDoS Attacks

New Golang-Based Zergeca Botnet Capable of Powerful DDoS Attacks 2024-07-05 at 07:31 By Cybersecurity researchers have uncovered a new botnet called Zergeca that’s capable of conducting distributed denial-of-service (DDoS) attacks. Written in Golang, the botnet is so named for its reference to a string named “ootheca” present in the command-and-control (C2) servers (“ootheca[.]pw” and “ootheca[.]top”).

New Golang-Based Zergeca Botnet Capable of Powerful DDoS Attacks Read More »

47% of corporate data stored in the cloud is sensitive

47% of corporate data stored in the cloud is sensitive 2024-07-05 at 07:01 By Help Net Security As the use of the cloud continues to be strategically vital to many organizations, cloud resources have become the biggest targets for cyberattacks, with SaaS applications (31%), cloud storage (30%) and cloud management infrastructure (26%) cited as the

47% of corporate data stored in the cloud is sensitive Read More »

Organizations weigh the risks and rewards of using AI

Organizations weigh the risks and rewards of using AI 2024-07-05 at 06:31 By Help Net Security 78% of organizations are tracking AI as an emerging risk while simultaneously adopting the technology themselves, according to AuditBoard. Organizations prioritize AI risk assessment The report, based on a survey of over 400 security professionals in the US involved

Organizations weigh the risks and rewards of using AI Read More »

Scroll to Top