New FakeCall Malware Variant Hijacks Android Devices for Fraudulent Banking Calls

04/11/2024 0 Comments 0 tags

Cybersecurity researchers have discovered a new version of a well-known Android malware family dubbed FakeCall that employs voice phishing (aka vishing) techniques to trick users into parting with their personal

Inside Iran’s Cyber Playbook: AI, Fake Hosting, and Psychological Warfare

01/11/2024 0 Comments 0 tags

U.S. and Israeli cybersecurity agencies have published a new advisory attributing an Iranian cyber group to targeting the 2024 Summer Olympics and compromising a French commercial dynamic display provider to

Microsoft Delays Windows Copilot+ Recall Release Over Privacy Concerns

01/11/2024 0 Comments 0 tags

Microsoft is further delaying the release of its controversial Recall feature for Windows Copilot+ PCs, stating it’s taking the time to improve the experience. The development was first reported by

Microsoft Warns of Chinese Botnet Exploiting Router Flaws for Credential Theft

01/11/2024 0 Comments 0 tags

Microsoft has revealed that a Chinese threat actor it tracks as Storm-0940 is leveraging a botnet called Quad7 to orchestrate highly evasive password spray attacks. The tech giant has given

5 SaaS Misconfigurations Leading to Major Fu*%@ Ups

01/11/2024 0 Comments 0 tags

With so many SaaS applications, a range of configuration options, API capabilities, endless integrations, and app-to-app connections, the SaaS risk possibilities are endless. Critical organizational assets and data are at

Massive Git Config Breach Exposes 15,000 Credentials; 10,000 Private Repos Cloned

01/11/2024 0 Comments 0 tags

Cybersecurity researchers have flagged a “massive” campaign that targets exposed Git configurations to siphon credentials, clone private repositories, and even extract cloud credentials from the source code. The activity, codenamed

New Phishing Kit Xiū gǒu Targets Users Across Five Countries With 2,000 Fake Sites

01/11/2024 0 Comments 0 tags

Cybersecurity researchers have disclosed a new phishing kit that has been put to use in campaigns targeting Australia, Japan, Spain, the U.K., and the U.S. since at least September 2024.

Stop LUCR-3 Attacks: Learn Key Identity Security Tactics in This Expert Webinar

01/11/2024 0 Comments 0 tags

Did you know that advanced threat actors can infiltrate the identity systems of major organizations and extract sensitive data within days? It’s a chilling reality, becoming more common and concerning

New LightSpy Spyware Version Targets iPhones with Increased Surveillance Tactics

31/10/2024 0 Comments 0 tags

Cybersecurity researchers have discovered an improved version of an Apple iOS spyware called LightSpy that not only expands on its functionality, but also incorporates destructive capabilities to prevent the compromised

LottieFiles Issues Warning About Compromised “lottie-player” npm Package

31/10/2024 0 Comments 0 tags

LottieFiles has revealed that its npm package “lottie-player” was compromised as part of a supply chain attack, prompting it to release an updated version of the library. “On October 30th