Israel-based Spyware Firm QuaDream Targets High-Risk iPhones with Zero-Click Exploit

12/04/2023 0 Comments 0 tags

Threat actors using hacking tools from an Israeli surveillanceware vendor named QuaDream targeted at least five members of civil society in North America, Central Asia, Southeast Asia, Europe, and the

North Korean Hackers Uncovered as Mastermind in 3CX Supply Chain Attack

12/04/2023 0 Comments 0 tags

Enterprise communications service provider 3CX confirmed that the supply chain attack targeting its desktop application for Windows and macOS was the handiwork of a threat actor with North Korean nexus. The findings

Urgent: Microsoft Issues Patches for 97 Flaws, Including Active Ransomware Exploit

12/04/2023 0 Comments 0 tags

It’s the second Tuesday of the month, and Microsoft has released another set of security updates to fix a total of 97 flaws impacting its software, one of which has been actively

Cryptocurrency Stealer Malware Distributed via 13 NuGet Packages

11/04/2023 0 Comments 0 tags

Cybersecurity researchers have detailed the inner workings of the cryptocurrency stealer malware that was distributed via 13 malicious NuGet packages as part of a supply chain attack targeting .NET developers.

[eBook] A Step-by-Step Guide to Cyber Risk Assessment

11/04/2023 0 Comments 0 tags

In today’s perilous cyber risk landscape, CISOs and CIOs must defend their organizations against relentless cyber threats, including ransomware, phishing, attacks on infrastructure, supply chain breaches, malicious insiders, and much

Cybercriminals Turn to Android Loaders on Dark Web to Evade Google Play Security

11/04/2023 0 Comments 0 tags

Malicious loader programs capable of trojanizing Android applications are being traded on the criminal underground for up to $20,000 as a way to evade Google Play Store defenses. “The most

Newly Discovered “By-Design” Flaw in Microsoft Azure Could Expose Storage Accounts to Hackers

11/04/2023 0 Comments 0 tags

A “by-design flaw” uncovered in Microsoft Azure could be exploited by attackers to gain access to storage accounts, move laterally in the environment, and even execute remote code. “It is

CISA Warns of 5 Actively Exploited Security Flaws: Urgent Action Required

11/04/2023 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added five security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. This includes three

Protecting your business with Wazuh: The open source security platform

11/04/2023 0 Comments 0 tags

Today, businesses face a variety of security challenges like cyber attacks, compliance requirements, and endpoint security administration. The threat landscape constantly evolves, and it can be overwhelming for businesses to

Over 1 Million WordPress Sites Infected by Balada Injector Malware Campaign

11/04/2023 0 Comments 0 tags

Over one million WordPress websites are estimated to have been infected by an ongoing campaign to deploy malware called Balada Injector since 2017. The massive campaign, per GoDaddy’s Sucuri, “leverages all known