Uncategorized

Russian-Linked Hackers Target Eastern European NGOs and Media

Russian-Linked Hackers Target Eastern European NGOs and Media 2024-08-15 at 16:01 By Russian and Belarusian non-profit organizations, Russian independent media, and international non-governmental organizations active in Eastern Europe have become the target of two separate spear-phishing campaigns orchestrated by threat actors whose interests align with that of the Russian government. While one of the campaigns […]

Russian-Linked Hackers Target Eastern European NGOs and Media Read More »

Russian man who sold logins to nearly 3,000 accounts gets 40 months in jail

Russian man who sold logins to nearly 3,000 accounts gets 40 months in jail 2024-08-15 at 15:31 By Connor Jones He’ll also have to pay back $1.2 million from fraudulent transactions he facilitated A Russian national is taking a trip to prison in the US after being found guilty of peddling stolen credentials on a

Russian man who sold logins to nearly 3,000 accounts gets 40 months in jail Read More »

Lessons from the Snowflake breach: SaaS security needs collaboration

Lessons from the Snowflake breach: SaaS security needs collaboration 2024-08-15 at 15:04 By Companies should align their SaaS security strategies with their service providers so that everyone is clear on what role they should play in mitigating threats. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source

Lessons from the Snowflake breach: SaaS security needs collaboration Read More »

Identity Threat Detection and Response Solution Guide

Identity Threat Detection and Response Solution Guide 2024-08-15 at 14:31 By The Emergence of Identity Threat Detection and Response Identity Threat Detection and Response (ITDR) has emerged as a critical component to effectively detect and respond to identity-based attacks. Threat actors have shown their ability to compromise the identity infrastructure and move laterally into IaaS,

Identity Threat Detection and Response Solution Guide Read More »

RansomHub Group Deploys New EDR-Killing Tool in Latest Cyber Attacks

RansomHub Group Deploys New EDR-Killing Tool in Latest Cyber Attacks 2024-08-15 at 14:31 By A cybercrime group with links to the RansomHub ransomware has been observed using a new tool designed to terminate endpoint detection and response (EDR) software on compromised hosts, joining the likes of other similar programs like AuKill (aka AvNeutralizer) and Terminator.

RansomHub Group Deploys New EDR-Killing Tool in Latest Cyber Attacks Read More »

Mad Liberator extortion crew emerges on the cyber-crook scene

Mad Liberator extortion crew emerges on the cyber-crook scene 2024-08-15 at 13:31 By Jessica Lyons Anydesk is its access tool of choice A new extortion gang called Mad Liberator uses social engineering and the remote-access tool Anydesk to steal organizations’ data and then demand a ransom payment, according to Sophos X-Ops.… This article is an

Mad Liberator extortion crew emerges on the cyber-crook scene Read More »

Twitter must pay over half a million to unfairly dismissed Irish exec

Twitter must pay over half a million to unfairly dismissed Irish exec 2024-08-15 at 12:31 By Dan Robinson Remember the ‘go hardcore or go home’ email? Turns out: not super compatible with Irish employment law Twitter has been ordered to pay €550,000 ($607,000) compensation for unfair dismissal to a former senior executive in Ireland, said

Twitter must pay over half a million to unfairly dismissed Irish exec Read More »

Cisco slashes thousands of staff, 7% of entire workforce, pivots into AI

Cisco slashes thousands of staff, 7% of entire workforce, pivots into AI 2024-08-15 at 11:32 By Laura Dobberstein Follows the crowd in search for revenue Networking titan Cisco has confirmed in a filing with the Securities Exchange Commission (SEC) that it is eliminating 7 percent of its global workforce as it embarks upon a restructuring

Cisco slashes thousands of staff, 7% of entire workforce, pivots into AI Read More »

GitHub Vulnerability ‘ArtiPACKED’ Exposes Repositories to Potential Takeover

GitHub Vulnerability ‘ArtiPACKED’ Exposes Repositories to Potential Takeover 2024-08-15 at 10:31 By A newly discovered attack vector in GitHub Actions artifacts dubbed ArtiPACKED could be exploited to take over repositories and gain access to organizations’ cloud environments. “A combination of misconfigurations and security flaws can make artifacts leak tokens, both of third party cloud services

GitHub Vulnerability ‘ArtiPACKED’ Exposes Repositories to Potential Takeover Read More »

New Cyber Threat Targets Azerbaijan and Israel Diplomats, Stealing Sensitive Data

New Cyber Threat Targets Azerbaijan and Israel Diplomats, Stealing Sensitive Data 2024-08-15 at 10:31 By A previously unknown threat actor has been attributed to a spate of attacks targeting Azerbaijan and Israel with an aim to steal sensitive data. The attack campaign, detected by NSFOCUS on July 1, 2024, leveraged spear-phishing emails to single out

New Cyber Threat Targets Azerbaijan and Israel Diplomats, Stealing Sensitive Data Read More »

Over 40 million Kakao Pay users’ data somehow ended up with Alipay

Over 40 million Kakao Pay users’ data somehow ended up with Alipay 2024-08-15 at 09:48 By Laura Dobberstein Payment arm of Korean messaging app denies any illegal activity Kakao Pay, a subsidiary of Korea’s WhatsApp analog Kakao, handed over data from more than 40 million users to the Singaporean arm of Chinese payment platform Alipay,

Over 40 million Kakao Pay users’ data somehow ended up with Alipay Read More »

New Gafgyt Botnet Variant Targets Weak SSH Passwords for GPU Crypto Mining

New Gafgyt Botnet Variant Targets Weak SSH Passwords for GPU Crypto Mining 2024-08-15 at 09:01 By Cybersecurity researchers have discovered a new variant of the Gafgyt botnet that’s targeting machines with weak SSH passwords to ultimately mine cryptocurrency on compromised instances using their GPU computational power. This indicates that the “IoT botnet is targeting more

New Gafgyt Botnet Variant Targets Weak SSH Passwords for GPU Crypto Mining Read More »

China-linked cyber-spies infect Russian govt, IT sector

China-linked cyber-spies infect Russian govt, IT sector 2024-08-15 at 06:01 By Jessica Lyons No, no, go ahead, don’t let us stop you, Xi Cyber-spies suspected of connections with China have infected “dozens” of computers belonging to Russian government agencies and IT providers with backdoors and trojans since late July, according to Kaspersky.… This article is

China-linked cyber-spies infect Russian govt, IT sector Read More »

IRS has loads of legacy IT, still has no firm plans to replace it

IRS has loads of legacy IT, still has no firm plans to replace it 2024-08-15 at 00:46 By Brandon Vigliarolo Treasury questions the retirement of the, er, Technology Retirement Office A shuttered IRS office focused on retiring and replacing legacy technology should be reopened, an audit has concluded, so that the US tax collection agency

IRS has loads of legacy IT, still has no firm plans to replace it Read More »

Microsoft tweaks fine print to warn everyone not to take its AI seriously

Microsoft tweaks fine print to warn everyone not to take its AI seriously 2024-08-14 at 23:31 By Thomas Claburn Don’t use LLMs for anything important and don’t try to reverse engineer it Microsoft is notifying folks that its AI services should not be taken too seriously, echoing prior service-specific disclaimers.… This article is an excerpt

Microsoft tweaks fine print to warn everyone not to take its AI seriously Read More »

Scroll to Top