Menu

Gallery

International operation takes down Russian RSOCKS botnet
Microsoft Defender goes cross-platform for the masses
Cookie consent crumbles under fresh UK data law proposals
Password recovery from beyond the grave
Interpol anti-fraud operation busts call centers behind business email scams
RSAC branded a ‘super spreader event’ as attendees share COVID-19 test results
S3 Ep87: Follina, AirTags, ID theft and the Law of Big Numbers [Podcast]
Okta’s Matt Raible: How I became a Java hipster
Elasticsearch server with no password or encryption leaks a million records
Heineken says there’s no free beer, warns of phishing scam
Microsoft continues cyber security spending spree with Miburo buy
Kubernetes users struggle with security, Red Hat survey says
Malaysia-linked DragonForce hacktivists attack Indian targets
Unpatched Exchange server, stolen RDP logins… How miscreants get BlackCat ransomware on your network
Microsoft fixes under-attack Windows zero-day Follina
Follina gets fixed – but it’s not listed in the Patch Tuesday patches!
Former US state agency CIO, IT exec plead guilty to bribery and extortion scheme
Cloudflare says it thwarted record-breaking HTTPS DDoS flood
Man gets two years in prison for selling 200,000 DDoS hits
Murder suspect admits she tracked cheating partner with hidden AirTag
Azure issues not adequately fixed for months, complain bug hunters
UK health privacy watchdog still in talks over who is accessing country’s COVID data store
Detect cloud native security threats with Tracee
Inside the RSAC expo: Buzzword bingo and the bear in the room
Chinese-sponsored gang Gallium upgrades to sneaky PingPull RAT
HelloXD ransomware bulked up with better encryption, nastier payload
You’re invited! Join us for a live walkthrough of the “Follina” story…
OMIGOD: Cloud providers still using secret middleware
World Economic Forum wants a global map of online crime
Threat and risk specialists signal post-COVID conference season is back on
Symbiote Linux malware spotted, and infections are ‘very hard to detect’
Apple M1 chip contains hardware vulnerability that bypasses memory defense
Emotet malware gang re-emerges with Chrome-based credit card heistware
Chinese ‘Aoqin Dragon’ gang runs undetected ten-year espionage spree
Hardware flaws give Bluetooth chipsets unique fingerprints that can be tracked
Russia, China, warn US its cyber support of Ukraine has consequences
What keeps Mandiant Intelligence EVP Sandra Joyce up at night? The coming storm
Cloud services proving handy for cybercriminals, SANS Institute warns
Google has more reasons why it doesn’t like antitrust law that affects Google
Facebook phishing campaign nets millions in IDs and cash
S3 Ep86: The crooks were in our network for HOW long?! [Podcast + Transcript]
Symantec: More malware operators moving in to exploit Follina
Five Eyes alliance’s top cop says techies are the future of law enforcement
Supply chain attacks will get worse: Microsoft Security Response Center boss
Now Windows Follina zero-day exploited to infect PCs with Qbot
SSNDOB Market domains seized, identity theft “brokerage” shut down
Feds raid dark web market selling data on 24 million Americans
Intel offers ‘server on a card’ reference design for network security
MongoDB: From jokes to juggernaut
Beijing-backed baddies target unpatched networking kit to attack telcos
US cyber chiefs: Moving to Shields Down isn’t gonna happen
Ukraine’s secret cyber-defense that blunts Russian attacks: Excellent backups
GitHub adds supply chain security tools for Rust language
Know your enemy! Learn how cybercrime adversaries get in…
IBM buys Randori to address multicloud security messes
Microsoft seizes 41 domains tied to ‘Iranian phishing ring’
Cisco EVP: We need to lift everyone above the cybersecurity poverty line
Maximize your cloud security with isolation zones
Costa Rican government held up by ransomware … again
Yandex CEO Arkady Volozh resigns after being added to EU sanctions list
Feeling highly stressed about your job? You must be a CISO
Even Russia’s Evil Corp now favors software-as-a-service
To cut off all nearby phones with these Chinese chips, this is the bug to exploit
Atlassian announces 0-day hole in Confluence Server – update soon!
Clipminer rakes in $1.7m in crypto hijacking scam
Healthcare organizations face rising ransomware attacks – and are paying up
Atlassian: Unpatched years-old flaw under attack right now to hijack Confluence
FBI, CISA: Don’t get caught in Karakurt’s extortion web
Conti spotted working on exploits for Intel Management Engine flaws
Yet another zero-day (sort of) in Windows “search URL” handling
S3 Ep85: Now THAT’S what I call a Microsoft Office exploit! [Podcast]
Dear Europe, here again are the reasons why scanning devices for unlawful files is not going to fly
Super-spreader FluBot squashed by Europol
ExpressVPN moves servers out of India to escape customer data retention law
US ran offensive cyber ops to support Ukraine, says general
Firefox 101 is out, this time with no 0-day scares (but update anyway!)
Watch out for phishing emails that inject spyware trio
Hospitals are for healing humans. But protecting and healing hospitals needs machines
What if ransomware evolved to hit IoT in the enterprise?
EnemyBot malware adds enterprise flaws to exploit arsenal
Cops’ Killer Bee stings credential-stealing scammer
Microsoft’s identity services huddle under Entra umbrella
CIOs largely believe their software supply chain is vulnerable
Australian digital driving licenses can be defaced in minutes
Mysterious “Follina” zero-day hole in Office – here’s what to do!
Zero-day vuln in Microsoft Office: ‘Follina’ will work even when macros are disabled
Beware the Smish! Home delivery scams with a professional feel…
That critical vulnerability might not be the first you should patch
Indian authorities issue conflicting advice about biometric ID card security
Global tech industry objects to India’s new infosec reporting regime
Ransomware attack sends US county back to 1977
Stolen university credentials up for sale by Russian crooks, FBI warns
Cloud security unicorn cuts 20% of staff after raising $1.3b
Talos names eight deadly sins in widely used industrial software
GitHub saved plaintext passwords of npm users in log files, post mortem reveals
This Windows malware uses PowerShell to inject malicious extension into Chrome
S3 Ep84: Government demand, Mozilla velocity, and Clearview fine [Podcast]
Let’s play everyone’s favorite game: REvil? Or Not REvil?
China offering ten nations help to run their cyber-defenses and networks
How to reprogram Apple AirTags, play custom sounds