New Report Reveals Shuckworm’s Long-Running Intrusions on Ukrainian Organizations

15/06/2023 0 Comments 0 tags

The Russian threat actor known as Shuckworm has continued its cyber assault spree against Ukrainian entities in a bid to steal sensitive information from compromised environments. Targets of the recent intrusions, which

New Supply Chain Attack Exploits Abandoned S3 Buckets to Distribute Malicious Binaries

15/06/2023 0 Comments 0 tags

In what’s a new kind of software supply chain attack aimed at open source projects, it has emerged that threat actors could seize control of expired Amazon S3 buckets to

New Research: 6% of Employees Paste Sensitive Data into GenAI tools as ChatGPT

15/06/2023 0 Comments 0 tags

The revolutionary technology of GenAI tools, such as ChatGPT, has brought significant risks to organizations’ sensitive data. But what do we really know about this risk? A new research by Browser Security

LockBit Ransomware Extorts $91 Million from U.S. Companies

15/06/2023 0 Comments 0 tags

The threat actors behind the LockBit ransomware-as-a-service (RaaS) scheme have extorted $91 million following hundreds of attacks against numerous U.S. organizations since 2020. That’s according to a joint bulletin published by the U.S. Cybersecurity

Chinese Hackers Exploit VMware Zero-Day to Backdoor Windows and Linux Systems

14/06/2023 0 Comments 0 tags

The Chinese state-sponsored group known as UNC3886 has been found to exploit a zero-day flaw in VMware ESXi hosts to backdoor Windows and Linux systems. The VMware Tools authentication bypass vulnerability, tracked

Severe Vulnerabilities Reported in Microsoft Azure Bastion and Container Registry

14/06/2023 0 Comments 0 tags

Two “dangerous” security vulnerabilities have been disclosed in Microsoft Azure Bastion and Azure Container Registry that could have been exploited to carry out cross-site scripting (XSS) attacks. “The vulnerabilities allowed

Where from, Where to — The Evolution of Network Security

14/06/2023 0 Comments 0 tags

For the better part of the 90s and early aughts, the sysadmin handbook said, “Filter your incoming traffic, not everyone is nice out there” (later coined by Gandalf as “You

New Golang-based Skuld Malware Stealing Discord and Browser Data from Windows PCs

14/06/2023 0 Comments 0 tags

A new Golang-based information stealer called Skuld has compromised Windows systems across Europe, Southeast Asia, and the U.S. “This new malware strain tries to steal sensitive information from its victims,” Trellix researcher

Microsoft Releases Updates to Patch Critical Flaws in Windows and Other Software

14/06/2023 0 Comments 0 tags

Microsoft has rolled out fixes for its Windows operating system and other software components to remediate major security shortcomings as part of Patch Tuesday updates for June 2023. Of the 73 flaws,

Critical Security Vulnerability Discovered in WooCommerce Stripe Gateway Plugin

14/06/2023 0 Comments 0 tags

A security flaw has been uncovered in the WooCommerce Stripe Gateway WordPress plugin that could lead to the unauthorized disclosure of sensitive information. The flaw, tracked as CVE-2023-34000, impacts versions 7.4.0