Over 1 Million Domains at Risk of ‘Sitting Ducks’ Domain Hijacking Technique

01/08/2024 0 Comments 0 tags

Over a million domains are susceptible to takeover by malicious actors by means of what has been called a Sitting Ducks attack. The powerful attack vector, which exploits weaknesses in

Google Chrome Adds App-Bound Encryption to Protect Cookies from Malware

01/08/2024 0 Comments 0 tags

Google has announced that it’s adding a new layer of protection to its Chrome browser through what’s called app-bound encryption to prevent information-stealing malware from grabbing cookies on Windows systems.

Obfuscation: There Are Two Sides To Everything

01/08/2024 0 Comments 0 tags

How to detect and prevent attackers from using these various techniques Obfuscation is an important technique for protecting software that also carries risks, especially when used by malware authors. In

New Android Banking Trojan BingoMod Steals Money, Wipes Devices

01/08/2024 0 Comments 0 tags

Cybersecurity researchers have uncovered a new Android remote access trojan (RAT) called BingoMod that not only performs fraudulent money transfers from the compromised devices but also wipes them in an

Facebook Ads Lead to Fake Websites Stealing Credit Card Information

01/08/2024 0 Comments 0 tags

Facebook users are the target of a scam e-commerce network that uses hundreds of fake websites to steal personal and financial data using brand impersonation and malvertising tricks. Recorded Future’s

DigiCert to Revoke 83,000+ SSL Certificates Due to Domain Validation Oversight

31/07/2024 0 Comments 0 tags

Certificate authority (CA) DigiCert has warned that it will be revoking a subset of SSL/TLS certificates within 24 hours due to an oversight with how it verified if a digital

How To Get the Most From Your Security Team’s Email Alert Budget

31/07/2024 0 Comments 0 tags

We’ll TL;DR the FUDdy introduction: we all know that phishing attacks are on the rise in scale and complexity, that AI is enabling more sophisticated attacks that evade traditional defenses,

Chinese Hackers Target Japanese Firms with LODEINFO and NOOPDOOR Malware

31/07/2024 0 Comments 0 tags

Japanese organizations are the target of a Chinese nation-state threat actor that leverages malware families like LODEINFO and NOOPDOOR to harvest sensitive information from compromised hosts while stealthily remaining under

North Korea-Linked Malware Targets Developers on Windows, Linux, and macOS

31/07/2024 0 Comments 0 tags

The threat actors behind an ongoing malware campaign targeting software developers have demonstrated new malware and tactics, expanding their focus to include Windows, Linux, and macOS systems. The activity cluster,

Cyber Espionage Group XDSpy Targets Companies in Russia and Moldova

31/07/2024 0 Comments 0 tags

Companies in Russia and Moldova have been the target of a phishing campaign orchestrated by a little-known cyber espionage group known as XDSpy. The findings come from cybersecurity firm F.A.C.C.T.,