Why We Must Democratize Cybersecurity

16/02/2024 0 Comments 0 tags

With breaches making the headlines on an almost weekly basis, the cybersecurity challenges we face are becoming visible not only to large enterprises, who have built security capabilities over the

RustDoor macOS Backdoor Targets Cryptocurrency Firms with Fake Job Offers

16/02/2024 0 Comments 0 tags

Several companies operating in the cryptocurrency sector are the target of a newly discovered Apple macOS backdoor codenamed RustDoor. RustDoor was first documented by Bitdefender last week, describing it as a Rust-based

U.S. Government Disrupts Russian-Linked Botnet Engaged in Cyber Espionage

16/02/2024 0 Comments 0 tags

The U.S. government on Thursday said it disrupted a botnet comprising hundreds of small office and home office (SOHO) routers in the country that was put to use by the

Ivanti Pulse Secure Found Using 11-Year-Old Linux Version and Outdated Libraries

15/02/2024 0 Comments 0 tags

A reverse engineering of the firmware running on Ivanti Pulse Secure appliances has revealed numerous weaknesses, once again underscoring the challenge of securing software supply chains. Eclypsiusm, which acquired firmware

Russian Turla Hackers Target Polish NGOs with New TinyTurla-NG Backdoor

15/02/2024 0 Comments 0 tags

The Russia-linked threat actor known as Turla has been observed using a new backdoor called TinyTurla-NG as part of a three-month-long campaign targeting Polish non-governmental organizations in December 2023. “TinyTurla-NG, just like

Critical Exchange Server Flaw (CVE-2024-21410) Under Active Exploitation

15/02/2024 0 Comments 0 tags

Microsoft on Wednesday acknowledged that a newly disclosed critical security flaw in Exchange Server has been actively exploited in the wild, a day after it released fixes for the vulnerability

Chinese Hackers Using Deepfakes in Advanced Mobile Banking Malware Attacks

15/02/2024 0 Comments 0 tags

A Chinese-speaking threat actor codenamed GoldFactory has been attributed to the development of highly sophisticated banking trojans, including a previously undocumented iOS malware called GoldPickaxe that’s capable of harvesting identity documents, facial

How Nation-State Actors Target Your Business: New Research Exposes Major SaaS Vulnerabilities

15/02/2024 0 Comments 0 tags

With many of the highly publicized 2023 cyber attacks revolving around one or more SaaS applications, SaaS has become a cause for genuine concern in many boardroom discussions. More so

Microsoft Rolls Out Patches for 73 Flaws, Including 2 Windows Zero-Days

15/02/2024 0 Comments 0 tags

Microsoft has released patches to address 73 security flaws spanning its software lineup as part of its Patch Tuesday updates for February 2024, including two zero-days that have come under active exploitation.

DarkMe Malware Targets Traders Using Microsoft SmartScreen Zero-Day Vulnerability

15/02/2024 0 Comments 0 tags

A newly disclosed security flaw in the Microsoft Defender SmartScreen has been exploited as a zero-day by an advanced persistent threat actor called Water Hydra (aka DarkCasino) targeting financial market traders. Trend