American cybersecurity firm KnowBe4 recently discovered that a new hire, brought on as a Principal Software Engineer, was actually a North Korean state actor. This individual attempted to install data-stealing malware on the company’s devices, but the threat was…
Tag: CySecurity News – Latest Information Security and Hacking Incidents
Indian Govt Confirms BSNL User Data Breach
On Wednesday, July 24, Union Minister of State for Communications Chandra Shekar Pemmasani revealed the breach at state-owned telecom operator Bharat Sanchar Nigam Limited (BSNL) in the Lok Sabha. The breach occurred on May 20, the Minister stated in a…
Report: Spyware Maker’s Data Leak Exposes Malware Used on Windows, Mac, Android, and Chromebook Devices
A Minnesota-based spyware company has been hacked, exposing thousands of devices worldwide under its covert surveillance, TechCrunch has learned. A source familiar with the breach provided TechCrunch with files from the company’s servers, detailing device activity logs from phones, tablets,…
CyberCartel: Latest Banking Trojan Threat in Chrome Extensions
In recent years, Latin America (LATAM) has become a favourite target for threat actors, especially those attacking financial organizations. The recent report by Security Intelligence titled “Unveiling the Latest Banking Threats in LATAM,” explains the changing scenario of banking Trojans…
Cyber Heist: Rs 40 Crore Taken from IndusInd Bank
According to Maharashtra Cyber, which reported the recovery of 31.89 crores out of 40 crores allegedly fraudulently transferred from IndusInd Bank to 20 different mule accounts on Friday, the agency said. As a result of the fraud, more than…
North Korean Hacker Indicted for Cyber Attacks on U.S. Hospitals, NASA, and Military Bases
Federal prosecutors announced the indictment of Rim Jong Hyok, a North Korean military intelligence operative, for his role in a conspiracy to hack into American healthcare providers, NASA, U.S. military bases, and international entities. The indictment, unveiled on July…
Telegram Users Cross 900 Million, Company Plans to Launch App Store
Aims to reach 1 Billion followers: Telegram founder Telegram, a famous messaging app crossed 900 million active users recently, it will aim to cross the 1 billion milestone by 2024. According to Pavel Durov, the company’s founder, it also plans…
Teen Hacker Linked to Hacking of Government Agencies, School Websites
A search warrant has been issued for the house of a sixteen-year-old teen who has been implicated in hacking multiple government and private organisation websites by the Philippine National Police’s Anti-Cybercrime Group (PNP-ACG). Brig. Gen. Ronnie Cariaga, director of…
Hacker Alleges Theft of Piramal Group’s Employee Data; Company Denies Breach as “Erroneous and Misleading”
Recent reports have suggested that employee data belonging to Piramal Group, including names and email addresses of both current and former staff members, may have been compromised and offered for sale on the dark web. These allegations have understandably…
Pharmacy Network Sues Change Healthcare Post-Cyberattack
Several pharmacy groups joined several healthcare providers in suing Change Healthcare over the March cyberattack on their system that left it vulnerable to cyberattacks. There is an allegation that some healthcare providers will still have to wait for delayed…
Navigating the Impact of Major IT Outages: Lessons from the CrowdStrike Incident
On Friday, a critical software update by cybersecurity firm CrowdStrike led to a massive outage, affecting around 8.5 million Windows machines globally. This incident serves as a stark reminder of the importance of preparedness for IT disruptions. Experts from…
AI and Vulnerability Management: Industry Leaders Show Positive Signs
Positive trend: AI and vulnerability management We are in a fast-paced industry, and with the rise of technological developments each day, the chances of cyber attacks always arise. Hence, defense against such attacks and cybersecurity becomes paramount. The latest research into…
EvilVideo Exploit: Telegram Zero-Day Vulnerability Allows Disguised APK Attacks
A recent zero-day vulnerability in Telegram for Android, dubbed ‘EvilVideo,’ has been exploited by attackers to send malicious Android APK payloads disguised as video files. This significant security flaw was first brought to light when a threat actor named…
Google Backtracks on Cookie Phaseout: What It Means for Users and Advertisers
In a surprising announcement, Google confirmed that it will not be eliminating tracking cookies in Chrome, impacting the browsing experience of 3 billion users. The decision came as a shock as the company struggled to find a balance between…
Are We Ready For The Next Major Global IT Outage? Here’s All You Need to Know
Last Friday, a glitch in the tech firm led to a global disruption impacting cross-sector activities. Hospitals, health clinics, and banks were impacted; airlines grounded their planes; broadcasting firms were unable to broadcast (Sky News went off the air);…
ERP Firm Data Breach Exposes Over 750 Million Records
A leading Enterprise Resource Planning (ERP) company based in Mexico inadvertently left an unsecured database online, exposing sensitive information on hundreds of thousands of users. This was discovered by cybersecurity researcher Jeremiah Fowler, who reported his findings to Website…
California’s Major Trial Court Falls Victim to Ransomware Attack
It has been reported that the computer system at the largest trial court in this country has been infected by ransomware, causing the system to crash. Superior Court officials said they were investigating the incident. As soon as the court…
AI’s Rapid Code Development Outpaces Security Efforts
As artificial intelligence (AI) advances, it accelerates code development at a pace that cybersecurity teams struggle to match. A recent survey by Seemplicity, which included 300 US cybersecurity professionals, highlights this growing concern. The survey delves into key topics…
LangChain Gen AI Under Scrutiny Experts Discover Significant Flaws
Two vulnerabilities have been identified by Palo Alto Networks researchers (CVE-2023-46229 and CVE-2023-44467) that exist in LangChain, an open-source computing framework for generative artificial intelligence that is available on GitHub. The vulnerabilities that affect various products are CVE-2023-46229. It…
Play Ransomware Group is Targeting VMWare ESXi Environments
Play ransomware is the latest ransomware gang to launch a specific Linux locker for encrypting VMware ESXi virtual machines. Trend Micro, whose analysts discovered the new ransomware variation, claims the locker is designed to verify whether it is operating…