Cisco Warns of Global Surge in Brute-Force Attacks Targeting VPN and SSH Services

17/04/2024 0 Comments 0 tags

Cisco is warning about a global surge in brute-force attacks targeting various devices, including Virtual Private Network (VPN) services, web application authentication interfaces, and SSH services, since at least March

FTC Fines Mental Health Startup Cerebral $7 Million for Major Privacy Violations

16/04/2024 0 Comments 0 tags

The U.S. Federal Trade Commission (FTC) has ordered the mental telehealth company Cerebral from using or disclosing personal data for advertising purposes. It has also been fined more than $7

Identity in the Shadows: Shedding Light on Cybersecurity’s Unseen Threats

16/04/2024 0 Comments 0 tags

In today’s rapidly evolving digital landscape, organizations face an increasingly complex array of cybersecurity threats. The proliferation of cloud services and remote work arrangements has heightened the vulnerability of digital

Widely-Used PuTTY SSH Client Found Vulnerable to Key Recovery Attack

16/04/2024 0 Comments 0 tags

The maintainers of the PuTTY Secure Shell (SSH) and Telnet client are alerting users of a critical vulnerability impacting versions from 0.68 through 0.80 that could be exploited to achieve full recovery

AWS, Google, and Azure CLI Tools Could Leak Credentials in Build Logs

16/04/2024 0 Comments 0 tags

New cybersecurity research has found that command-line interface (CLI) tools from Amazon Web Services (AWS) and Google Cloud can expose sensitive credentials in build logs, posing significant risks to organizations.

TA558 Hackers Weaponize Images for Wide-Scale Malware Attacks

16/04/2024 0 Comments 0 tags

The threat actor tracked as TA558 has been observed leveraging steganography as an obfuscation technique to deliver a wide range of malware such as Agent Tesla, FormBook, Remcos RAT, LokiBot, GuLoader, Snake

OpenJS Foundation Targeted in Potential JavaScript Project Takeover Attempt

16/04/2024 0 Comments 0 tags

Security researchers have uncovered a “credible” takeover attempt targeting the OpenJS Foundation in a manner that evokes similarities to the recently uncovered incident aimed at the open-source XZ Utils project.

Hive RAT Creators and $3.5M Cryptojacking Mastermind Arrested in Global Crackdown

16/04/2024 0 Comments 0 tags

Two individuals have been arrested in Australia and the U.S. in connection with an alleged scheme to develop and distribute a remote access trojan called Hive RAT (previously Firebird). The

Muddled Libra Shifts Focus to SaaS and Cloud for Extortion and Data Theft Attacks

15/04/2024 0 Comments 0 tags

The threat actor known as Muddled Libra has been observed actively targeting software-as-a-service (SaaS) applications and cloud service provider (CSP) environments in a bid to exfiltrate sensitive data. “Organizations often store a

AI Copilot: Launching Innovation Rockets, But Beware of the Darkness Ahead

15/04/2024 0 Comments 0 tags

Imagine a world where the software that powers your favorite apps, secures your online transactions, and keeps your digital life could be outsmarted and taken over by a cleverly disguised