Menu

Link

MoleRats APT Flaunts New Trojan in Latest Cyberespionage Campaign
Ex-Gumshoe Nabs Cybercrooks with FBI Tactics
No Critical Bugs for Microsoft February 2022 Patch Tuesday, 1 Zero-Day
China Suspected of News Corp Cyberespionage Attack
A US hacker blasted North Korea off the internet following missile tests
CISA Orders Federal Agencies to Fix Actively Exploited Windows Bug
Medusa Malware Joins Flubot’s Android Distribution Network
LockBit, BlackCat, Swissport, Oh My! Ransomware Activity Stays Strong
QuaDream, 2nd Israeli Spyware Firm, Weaponizes iPhone Bug
Roaming Mantis Expands Android Backdoor to Europe
Who dropped the DB? Find out with Teleport Database Access
Twitter blackout for Vodafone customers
‘Long Live Log4Shell’: CVE-2021-44228 Not Dead Yet
Argo CD Security Bug Opens Kubernetes Cloud Apps to Attackers
Attackers Target Intuit Users by Threatening to Cancel Tax Accounts
Kronos Still Dragging Itself Back From Ransomware Hell
Low-Detection Phishing Kits Increasingly Bypass MFA
Critical Cisco Bugs Open VPN Routers to Cyberattacks
Wormhole Crypto Platform: ‘Funds Are Safe’ After $314M Heist
BlackCat ransomware – what you need to know
Thousands of Malicious npm Packages Threaten Web Apps
PowerPoint Files Abused to Take Over Computers
Smashing Security podcast #260: New hire mystery, hacktivist ransomware, and digi-dating
Crunch! Ransomware hits KP Nuts, Hula Hoops, and McCoys crisps
KP Snacks Left with Crumbs After Ransomware Attack
Supply-Chain Security Is Not a Problem…It’s a Predicament
Charming Kitten Sharpens Its Claws with PowerShell Backdoor
FBI: Use a Burner Phone at the Olympics
Unpatched Security Bugs in Medical Wearables Allow Patient Tracking, Data Theft
The Account Takeover Cat-and-Mouse Game
Samba ‘Fruit’ Bug Allows RCE, Full Root User Access
Living Off the Land: How to Defend Against Malicious Use of Legitimate Utilities
Public Exploit Released for Windows 10 Bug
Apple Pays $100.5K Bug Bounty for Mac Webcam Hack
NSO Group Pegasus Spyware Aims at Finnish Diplomats
Beware! Facebook accounts being hijacked via Messenger prize phishing chats
Qubit pleads with hacker to return $80 million of stolen funds
Lazarus APT Uses Windows Update to Spew Malware
Zerodium Spikes Payout for Zero-Click Outlook Zero-Days
Conti, DeadBolt Ransomwares Target Delta, QNAP
Shlayer and Bundlore MacOS Malware Strains – How Uptycs EDR Detection Can Help
DDoS attack on Minecraft Twitch tournament disrupted Andorra’s internet access
2FA App Loaded with Banking Trojan Infests 10K Victims via Google Play
Dark Overlord collaborator imprisoned for trading stolen identities
BotenaGo Botnet Code Leaked to GitHub, Impacting Millions of Devices
Shipment-Delivery Scams Become the Favored Way to Spread Malware
How to Secure Your SaaS Stack with a SaaS Security Posture Management Solution
Mac webcam hijack flaw wins man $100,500 from Apple
Smashing Security podcast #259: Techquilibrium and mediocre linguistic escapades
Update now! Apple pushes out security patches for iPhone and Mac zero-day vulnerabilities
TrickBot Crashes Security Researchers’ Browsers in Latest Upgrade
Apple Fixes 2 Zero-Day Security Bugs, One Exploited in the Wild
‘Dark Herring’ Billing Malware Swims onto 105M Android Devices
New Year, New Threats: 4 Tips to Activate Your Best Cyber-Defense
Cybercriminals Love Supply-Chain Chaos: Here’s How to Protect Your Inbox
Linux Bug in All Major Distros: ‘An Attacker’s Dream Come True’
Threat Actors Blanket Androids with Flubot, Teabot Campaigns
Cyberattacks on Squid Game Minecraft Tourney Take Down Andorra’s Internet
Ozzy Osbourne NFTs Used to Bite Off Chunk of Crypto Coin
Segway Hit by Magecart Attack Hiding in a Favicon
MacOS Malware ‘DazzleSpy’ Used in Watering-Hole Attacks
AdSanity, AccessPress Plugins Open Scads of WordPress Sites to Takeover
BRATA Android Trojan Updated with ‘Kill Switch’ that Wipes Devices
Is Google tracking your location even when you think you’ve turned it off? US states sue over “deception”
Linux Servers at Risk of RCE Due to Critical CWP Bugs
MoleRats APT Launches Spy Campaign on Bankers, Politicians, Journalists
Surge in Malicious QR Codes Sparks FBI Alert
Dark Souls 3 Servers Shut Down Due to Critical RCE Bug
Unusual ‘Donald Trump’ Packer Malware Delivers RATs, Infostealers
The Internet’s Most Tempting Targets
Merck Awarded $1.4B Insurance Payout over NotPetya Attack
20K WordPress Sites Exposed by Insecure Plugin REST-API
McAfee Bug Can Be Exploited to Gain Windows SYSTEM Privileges
Spyware Blitzes Compromise, Cannibalize ICS Networks
2FA Bypassed in $34.6M Crypto.com Heist
Critical Cisco StarOS Bug Grants Root Access via Debug Mode
Microsoft: Attackers Tried to Login to SolarWinds Serv-U Via Log4j Bug
Pervasive Apple Safari Bug Exposes Web-Browsing Data, Google IDs
Red Cross Begs Attackers Not to Leak Stolen Data for 515K People
SEC Filing Reveals Fortune 500 Firm Targeted in Ransomware Attack
Jail for prolific romance fraudster who fleeced besotted lonely hearts
Smashing Security podcast #258: Tesla remote hijacks and revolting YouTubers
Destructive Wiper Targeting Ukraine Aimed at Eroding Trust, Experts Say
Box 2FA Bypass Opens User Accounts to Attack
Beijing Olympics App Flaws Allow Man-in-the-Middle Attacks
Cloned Dept. of Labor Site Hawks Fake Government Contracts
Nine-year-old kids are launching DDoS attacks against schools
Will 2022 Be the Year of the Software Bill of Materials?
The Log4j Vulnerability Puts Pressure on the Security World
Cybercriminals Actively Target VMware vSphere with Cryptominers
‘White Rabbit’ Ransomware May Be FIN8’s Latest Tool
Critical ManageEngine Desktop Server Bug Opens Orgs to Malware
Organizations Face a ‘Losing Battle’ Against Vulnerabilities
A bad day in the office for the REvil ransomware gang, as Russia arrests 14 members
Data-wiping malware hitting Ukrainian computers displays fake ransom demand
Top Illicit Carding Marketplace UniCC Abruptly Shuts Down  
Real Big Phish: Mobile Phishing & Managing User Fallibility
Critical Cisco Contact Center Bug Threatens Customer-Service Havoc
‘Be Afraid:’ Massive Cyberattack Downs Ukrainian Gov’t Sites
Talking cyber on the ManageEngine Insights podcast