Patchwork Hackers Target Bhutan with Advanced Brute Ratel C4 Tool

24/07/2024 0 Comments 0 tags

The threat actor known as Patchwork has been linked to a cyber attack targeting entities with ties to Bhutan to deliver the Brute Ratel C4 framework and an updated version

CrowdStrike Explains Friday Incident Crashing Millions of Windows Devices

24/07/2024 0 Comments 0 tags

Cybersecurity firm CrowdStrike on Wednesday blamed an issue in its validation system for causing millions of Windows devices to crash as part of a widespread outage late last week. “On

Microsoft Defender Flaw Exploited to Deliver ACR, Lumma, and Meduza Stealers

24/07/2024 0 Comments 0 tags

A now-patched security flaw in the Microsoft Defender SmartScreen has been exploited as part of a new campaign designed to deliver information stealers such as ACR Stealer, Lumma, and Meduza.

CISA Adds Twilio Authy and IE Flaws to Exploited Vulnerabilities List

24/07/2024 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two security flaws to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation. The vulnerabilities are listed

How to Reduce SaaS Spend and Risk Without Impacting Productivity

24/07/2024 0 Comments 0 tags

There is one simple driver behind the modern explosion in SaaS adoption: productivity. We have reached an era where purpose-built tools exist for almost every aspect of modern business and

Chinese Hackers Target Taiwan and US NGO with MgBot Malware

23/07/2024 0 Comments 0 tags

Organizations in Taiwan and a U.S. non-governmental organization (NGO) based in China have been targeted by a Beijing-affiliated state-sponsored hacking group called Daggerfly using an upgraded set of malware tools.

New ICS Malware ‘FrostyGoop’ Targeting Critical Infrastructure

23/07/2024 0 Comments 0 tags

Cybersecurity researchers have discovered what they say is the ninth Industrial Control Systems (ICS)-focused malware that has been used in a disruptive cyber attack targeting an energy company in the

Magento Sites Targeted with Sneaky Credit Card Skimmer via Swap Files

23/07/2024 0 Comments 0 tags

Threat actors have been observed using swap files in compromised websites to conceal a persistent credit card skimmer and harvest payment information. The sneaky technique, observed by Sucuri on a

Meta Given Deadline to Address E.U. Concerns Over ‘Pay or Consent’ Model

23/07/2024 0 Comments 0 tags

Meta has been given time till September 1, 2024, to respond to concerns raised by the European Commission over its “pay or consent” advertising model or risk-facing enforcement measures, including

Ukrainian Institutions Targeted Using HATVIBE and CHERRYSPY Malware

23/07/2024 0 Comments 0 tags

The Computer Emergency Response Team of Ukraine (CERT-UA) has alerted of a spear-phishing campaign targeting a scientific research institution in the country with malware known as HATVIBE and CHERRYSPY. The