The Interdependence between Automated Threat Intelligence Collection and Humans

16/09/2023 0 Comments 0 tags

The volume of cybersecurity vulnerabilities is rising, with close to 30% more vulnerabilities found in 2022 vs. 2018. Costs are also rising, with a data breach in 2023 costing $4.45M on average

Google Agrees to $93 Million Settlement in California’s Location-Privacy Lawsuit

16/09/2023 0 Comments 0 tags

Google has agreed to pay $93 million to settle a lawsuit filed by the U.S. state of California over allegations that the company’s location-privacy practices misled consumers and violated consumer

DDoS 2.0: IoT Sparks New DDoS Alert

16/09/2023 0 Comments 0 tags

The Internet of Things (IoT) is transforming efficiency in various sectors like healthcare and logistics but has also introduced new security risks, particularly IoT-driven DDoS attacks. This article explores how these attacks

NodeStealer Malware Now Targets Facebook Business Accounts on Multiple Browsers

16/09/2023 0 Comments 0 tags

An ongoing campaign is targeting Facebook Business accounts with bogus messages to harvest victims’ credentials using a variant of the Python-based NodeStealer and potentially take over their accounts for follow-on malicious activities. 

Cybercriminals Combine Phishing and EV Certificates to Deliver Ransomware Payloads

16/09/2023 0 Comments 0 tags

The threat actors behind RedLine and Vidar information stealers have been observed pivoting to ransomware through phishing campaigns that spread initial payloads signed with Extended Validation (EV) code signing certificates.

Iranian Nation-State Actors Employ Password Spray Attacks Targeting Multiple Sectors

16/09/2023 0 Comments 0 tags

Iranian nation-state actors have been conducting password spray attacks against thousands of organizations globally between February and July 2023, new findings from Microsoft reveal. The tech giant, which is tracking

Microsoft Uncovers Flaws in ncurses Library Affecting Linux and macOS Systems

14/09/2023 0 Comments 0 tags

A set of memory corruption flaws have been discovered in the ncurses (short for new curses) programming library that could be exploited by threat actors to run malicious code on vulnerable Linux and

Free Download Manager Site Compromised to Distribute Linux Malware to Users for 3+ Years

14/09/2023 0 Comments 0 tags

A download manager site served Linux users malware that stealthily stole passwords and other sensitive information for more than three years as part of a supply chain attack. The modus

Avoid These 5 IT Offboarding Pitfalls

14/09/2023 0 Comments 0 tags

Employee offboarding is no one’s favorite task, yet it is a critical IT process that needs to be executed diligently and efficiently. That’s easier said than done, especially considering that

N-Able’s Take Control Agent Vulnerability Exposes Windows Systems to Privilege Escalation

14/09/2023 0 Comments 0 tags

A high-severity security flaw has been disclosed in N-Able’s Take Control Agent that could be exploited by a local unprivileged attacker to gain SYSTEM privileges. Tracked as CVE-2023-27470 (CVSS score: 8.8), the issue relates