Cyber security professionals are warning about a new cyber-attack vector: Lumma Stealer malware that uses fake CAPTCHA tests to spread malware on Windows devices. Users are advised to maintain caution when filling out a CAPTCHA challenge. “We have identified more…
Category: CySecurity News – Latest Information Security and Hacking Incidents
Cloudflare Outage Disrupts Website Access in Multiple Regions, Affecting Global Users
A widespread Cloudflare outage is affecting access to websites globally, including BleepingComputer. While some regions can still access these sites, others are experiencing disruptions. Cloudflare has mentioned ongoing scheduled maintenance in Singapore and Nashville, but their status page shows no…
Email Attacks Target 80% of Key Infrastructure Firms, Study Reveals
Strong security for emails is one of the top concerns of CNI dealing companies. According to a recent OPSWAT report, 80% of CNI companies reported an email-related security breach in the past year. Malicious emails are being exploited to…
Ransomware Outfits Are Exploiting Microsoft Azure Tool For Data Theft
Ransomware gangs like BianLian and Rhysida are increasingly using Microsoft’s Azure Storage Explorer and AzCopy to steal data from compromised networks and store it in Azure Blob Storage. Storage Explorer is a graphical management tool for Microsoft Azure, whereas…
The Expanding PKfail Vulnerability in Secure Boot and Its Alarming Impact
The PKfail vulnerability in Secure Boot has grown into a far-reaching security threat, affecting thousands of devices across multiple sectors. Originally believed to be a limited issue, it arises from manufacturers releasing hardware with known compromised software, allowing unauthorized…
Kawasaki Ransomware Attack: 500 GB Alleged Data Leaked, RansomHub Claims
In a recent ransomware attack that hit Kawasaki Motors Europe (KME), the company has confirmed that it suffered the breach causing major service disruptions as threat actors threatened to leak the data. “At the start of September, Kawasaki Motors Europe…
China Linked APT: Raptor Train Botnet Attacks IoT Devices
A new cyber threat has caught the attention of experts, Lumen’s Black Lotus Labs found a new botnet called Raptor Train, made of IOT and small office/home office (SOHO) devices. Experts believe that Raptor Train has links to China-based APT…
Earth Baxia Exploits GeoServer to Launch APAC Spear-Phishing Attacks
An analysis by Trend Micro indicates that the cyber espionage group Earth Baxia has been attempting to target government agencies in Taiwan, as well as potentially other countries in the Asia-Pacific (APAC) region, through spear-phishing campaigns and exploitation of…
Seattle Port Suffers Data Breach, Rhysida Ransomware Suspected
The ransomware attack has significantly disrupted the port’s operations, highlighting the challenges that critical infrastructure providers face in the immediate aftermath of a cybersecurity breach. While recovery efforts are ongoing, the impact continues for some areas. Most affected systems…
Preparing Healthcare for Ransomware Attacks: A 12-Step Approach by Dr. Eric Liederman
Dr. Eric Liederman, CEO of CyberSolutionsMD, emphasizes that healthcare organizations must be prepared for ransomware attacks with a structured approach, describing it as akin to a “12-step program.” He highlights that relying solely on protective measures is insufficient since all…
Say Goodbye to Login Struggles with Apple’s New ‘Passwords App’
With its much-awaited iOS 18, Apple is now launching an app called Passwords, created to help improve one of the oldest but least-tampered-with needs when it comes to digital security: password management. Now, the ‘Passwords’ app is downloadable on…
Construction Firms Targeted in Brute Force Assaults on Accounting Software
Unidentified hackers have targeted construction firms using Foundation accounting software, security experts revealed earlier this week. According to cybersecurity firm Huntress, the hackers hunt for publicly available Foundation installations on the internet and then test combinations of default usernames…
Red Hat OpenShift Users Urged to Patch Critical Build Flaws
Over 3,000 of Red Hat OpenShift’s customers, including a significant portion of the Global Fortune 500, are trusting the platform because of its robust security features and its industry-leading hybrid cloud platform. However, two critical vulnerabilities in OpenShift could…
BMJ Warns: Deepfake Doctors Fueling Health Scams on Social Media
Deepfake videos featuring some of Britain’s most well-known television doctors are circulating on social media to sell fraudulent products, as per report by the British Medical Journal (BMJ). Doctors like Hilary Jones, Rangan Chatterjee, and the late Michael Mosley…
North Korean Hackers Target Energy and Aerospace Industries in Novel Espionage Campaign
As per recent findings from Mandiant, companies operating in the energy and aerospace sectors are being targeted by a cyber-espionage campaign that has connections with North Korea. The outfit behind the campaign, dubbed UNC2970, is most likely linked to…
US Steps up Pressure on Intellexa Spyware Maker with New Sanctions
The US Treasury Department imposed further sanctions on five individuals and one entity connected to the Intellexa Consortium, a reportedly tainted holding company behind notorious spyware known as Predator. US officials say that even though more sanctions were imposed…
UK Leads Global Cybersecurity Dialogue
As part of a three-day meeting with ‘like-minded’ countries, the UK has begun a conversation aimed at tackling the growing threat of cyber attacks and how to combat them. The government intends to initiate a global dialogue with leading…
Columbus Faces Scrutiny for Handling of Ransomware Attack and Lawsuit Against IT Consultant
In July, Columbus, Ohio, experienced a ransomware attack, which initially appeared to be a typical breach. However, the city’s unusual response sparked concern among cybersecurity experts and legal professionals. IT consultant David Leroy Ross, also known as Connor Goodwolf,…
23andMe Agrees to $30 Million Settlement Over Data Breach Impacting 6.9 Million Customers
23andMe has agreed to pay $30 million and provide three years of security monitoring as part of a settlement to resolve a lawsuit alleging the genetics testing company failed to safeguard the personal data of 6.9 million customers compromised…
Here’s How to Remove Malware From Your Chromebook
Imagine this: your Chromebook fails just before you click “Save” after spending hours working on your project. Let’s imagine you want to watch a series, but it keeps crashing, making it impossible for you to get the most out…