Data Governance in DevOps: Ensuring Compliance in the AI Era

16/12/2024 0 Comments 0 tags

With the evolution of modern software development, CI/CD pipeline governance has emerged as a critical factor in maintaining both agility and compliance. As we enter the age of artificial intelligence

New Glutton Malware Exploits Popular PHP Frameworks Like Laravel and ThinkPHP

16/12/2024 0 Comments 0 tags

Cybersecurity researchers have discovered a new PHP-based backdoor called Glutton that has been put to use in cyber attacks targeting China, the United States, Cambodia, Pakistan, and South Africa. QiAnXin

New Investment Scam Leverages AI, Social Media Ads to Target Victims Worldwide

16/12/2024 0 Comments 0 tags

Cybersecurity researchers are calling attention to a new kind of investment scam that leverages a combination of social media malvertising, company-branded posts, and artificial intelligence (AI) powered video testimonials featuring

Ukrainian Minors Recruited for Cyber Ops and Reconnaissance in Russian Airstrikes

16/12/2024 0 Comments 0 tags

The Security Service of Ukraine (SBU or SSU) has exposed a novel espionage campaign suspected to be orchestrated by Russia’s Federal Security Service (FSB) that involves recruiting Ukrainian minors for

Germany Disrupts BADBOX Malware on 30,000 Devices Using Sinkhole Action

14/12/2024 0 Comments 0 tags

Germany’s Federal Office of Information Security (BSI) has announced that it has disrupted a malware operation called BADBOX that came preloaded on at least 30,000 internet-connected devices sold across the

Thai Officials Targeted in Yokai Backdoor Campaign Using DLL Side-Loading Techniques

14/12/2024 0 Comments 0 tags

Thai government officials have emerged as the target of a new campaign that leverages a technique called DLL side-loading to deliver a previously undocumented backdoor dubbed Yokai. “The target of

390,000+ WordPress Credentials Stolen via Malicious GitHub Repository Hosting PoC Exploits

13/12/2024 0 Comments 0 tags

A now-removed GitHub repository that advertised a WordPress tool to publish posts to the online content management system (CMS) is estimated to have enabled the exfiltration of over 390,000 credentials.

Critical OpenWrt Vulnerability Exposes Devices to Malicious Firmware Injection

13/12/2024 0 Comments 0 tags

A security flaw has been disclosed in OpenWrt’s Attended Sysupgrade (ASU) feature that, if successfully exploited, could have been abused to distribute malicious firmware packages. The vulnerability, tracked as CVE-2024-54143,

DoJ Indicts 14 North Koreans for $88M IT Worker Fraud Scheme Over Six Years

13/12/2024 0 Comments 0 tags

The U.S. Department of Justice (DoJ) has indicted 14 nationals belonging to the Democratic People’s Republic of Korea (DPRK or North Korea) for their alleged involvement in a long-running conspiracy

How to Generate a CrowdStrike RFM Report With AI in Tines

13/12/2024 0 Comments 0 tags

Run by the team at orchestration, AI, and automation platform Tines, the Tines library contains pre-built workflows shared by real security practitioners from across the community, all of which are