Menu

Link

F5 Warns of Critical Bug Allowing Remote Code Execution in BIG-IP Systems
VHD Ransomware Linked to North Korea’s Lazarus Group
See me speak at Cyber Security Nordic – either in Helsinki or online
Smashing Security podcast #273: Password blips, and who’s calling the airport?
China-linked APT Caught Pilfering Treasure Trove of IP
Keeper Connection Manager : Privileged access to remote infrastructure with zero-trust and zero-knowledge security
Attackers Use Event Logs to Hide Fileless Malware
Unpatched DNS Bug Puts Millions of Routers, IoT Devices at Risk
Mozilla: Lack of Security Protections in Mental-Health Apps Is ‘Creepy’
Lockbit ransomware attack cripples parts of German library service
Cops ignored call to nearby robbery, preferring to hunt Pokémon
Bad Actors Are Maximizing Remote Everything
Deep Dive: Protecting Against Container Threats in the Cloud
Ransomware costs show prevention is better than the cure
Security Turbulence in the Cloud: Survey Says…
Cyberespionage APT Now Identified as Three Separate Actors
Elon Musk says Twitter DMs should be end-to-end encrypted
Attacker Breach ‘Dozens’ of GitHub Repos Using Stolen OAuth Tokens
Cyberattacks Rage in Ukraine, Support Military Operations
Smashing Security podcast #272: Going ape over the Kardashians, and the face of romance scams
US offers $10 million reward for information about Russian military hackers implicated in NotPetya attack
Emotet is Back From ‘Spring Break’ With New Nasty Tricks
Millions of Java Apps Remain Vulnerable to Log4Shell
Block over two billion known breached passwords from your AD with Specops Password Policy tools
Firms Push for CVE-Like Cloud Bug System
Nation-state Hackers Target Journalists with Goldbackdoor Malware
Ransomware attack attempted to destabilise Costa Rica, says outgoing president
Ukraine’s postal service prints stamp mocking sunken Russian ship, and gets hit by DDoS attack
Lapsus$ Hackers Target T-Mobile
Zero-Trust For All: A Practical Guide
Skeletons in the Closet: Security 101 Takes a Backseat to 0-days
REvil reborn? Notorious gang’s dark web site redirects to new ransomware operation
Free Yanlouwang decryptor released, after flaw found in ransomware code
Smashing Security podcast #271: Crypto break-in, Google blurring, and mics not muting
Most Email Security Approaches Fail to Block Common Threats
Protect Your Executives’ Cybersecurity Amidst Global Cyberwar
Apple iCloud account attack results in man losing $650,000 from his cryptocurrency wallet
Google: 2021 was a Banner Year for Exploited 0-Day Bugs
Rethinking Cyber-Defense Strategies in the Public-Cloud Age
‘CatalanGate’ Spyware Infections Tied to NSO Group
Funky Pigeon stalls orders after hackers breach its systems
For cutting-edge web application and API protection – Trust Indusface WAAP
Cyberattackers Put the Pedal to the Medal: Podcast
Karakurt Ensnares Conti, Diavol Ransomware Groups in Its Web
US Government warns of new malware attacks on ICS/SCADA systems
Feds: APTs Have Tools That Can Take Over Critical Infrastructure
Smashing Security podcast #270: Bearded Barbie, EDR scams, and hobbyist crime detectives
RaidForums hacking site shut down by police, alleged admin arrested
Feds Shut Down RaidForums Hacking Marketplace
Security blind spots in the era of cloud communication & collaboration. Are you protected?
CitySprint confirms security breach, warns delivery drivers their personal data may be in the hands of hackers
Microsoft Zero-Days, Wormable Bugs Spark Concern
Menswear Brand Zegna Reveals Ransomware Attack
Microsoft Takes Down Domains Used in Cyberattack Against Ukraine
“Pen tester” who helped FIN7 gang cause $1 billion damage, sentenced to five years behind bars
Google Play Bitten by Sharkbot Info-stealer ‘AV Solution’
Companies are more prepared to pay ransoms than ever before, reveals new report
Attackers Spoof WhatsApp Voice-Message Alerts to Steal Info
Authorities Fully Behead Hydra Dark Marketplace
SSRF Flaw in Fintech Platform Allowed for Compromise of Bank Accounts
MacOS Malware: Myth vs. Truth – Podcast
Smashing Security podcast #269: Trezor Deep Throat, a CCTV stalker, and Amazon’s list of banned words
Control IT and SaaS complexity with Axonius
No-Joke Borat RAT Propagates Ransomware, DDoS
The Works hit by hackers, UK retailer shuts some stores after problems with payment tills
Trezor wallets hacked? Don’t be duped by phishing attack email
Two teenagers charged in relation to LAPSUS$ hacking group investigation
Apple Rushes Out Patches for 0-Days in MacOS, iOS
LAPSUS$ hacks Globant. 70GB of data leaked from IT firm
FBI adds LAPSUS$ data extortion gang to its “Most Wanted” list
Belarusian ‘Ghostwriter’ Actor Picks Up BitB for Ukraine-Related Attacks
Automaker Cybersecurity Lagging Behind Tech Adoption, Experts Warn
QNAP Customers Adrift, Waiting on Fix for OpenSSL Bug
A Blockchain Primer and a Bored Ape Headscratcher – Podcast
Smashing Security podcast #268: LinkedIn deepfakes, doxxing Russian spies, and a false alarm
Shutterfly, hit by Conti ransomware group, warns staff their data has been stolen
RCE Bug in Spring Cloud Could Be the Next Log4Shell, Researchers Warn
Cyberattackers Target UPS Backup Power Devices in Mission-Critical Environments
Forcepoint ONE helps firms simplify their security
Lapsus$ ‘Back from Vacation’
Google Chrome Bug Actively Exploited as Zero-Day
MSHTML Flaw Exploited to Attack Russian Dissidents
Log4JShell Used to Swarm VMware Servers with Miners, Backdoors
Exchange Servers Speared in IcedID Phishing Campaign
5.5 years in a US prison for Estonian man linked to $53 million ransomware attacks
US charges Russian agents over cyber attacks on oil refineries and nuclear power plants
Okta Says It Goofed in Handling the Lapsus$ Attack
Critical Sophos Security Bug Allows RCE on Firewalls
DOJ Indicts Russian Gov’t Employees Over Targeting Power Sector
Optimistic father of LAPSUS$ hacking suspect says he’s going to try to stop him using computers
Google Chrome Zero-Day Bugs Exploited Weeks Ahead of Patch
UK Cops Collar 7 Suspected Lapsus$ Gang Members
Microsoft Azure Developers Awash in PII-Stealing npm Packages
Just-Released Dark Souls Game, Elden Ring, Includes Killer Bug
HubSpot Data Breach Ripples Through Crytocurrency Industry
Chinese APT Combines Fresh Hodur RAT with Complex Anti-Detection
Microsoft Help Files Disguise Vidar Malware
Top 3 Attack Trends in API Security – Podcast
Tax-Season Scammers Spoof Fintechs, Including Stash, Public
Smashing Security podcast #267: Virtual kidnapping, two helipads, and a naughty Apple employee