News
  • "Hacker Claims Breach of FBI's Critical Infrastructure Portal"

    A hacker claims to have posed as the CEO of a financial institution and gained access to InfraGard's database of over 80,000 members. InfraGard is an outreach program run by the FBI that shares sensitive information on national security and cybersecurity…

  • "Crooks Use HTML Smuggling to Spread QBot Malware via SVG Files"

    Talos researchers discovered a phishing campaign using Scalable Vector Graphics (SVG) images embedded in HTML email attachments to distribute the QBot malware. HTML smuggling is an evasive malware delivery method that involves using legitimate HTML5 and…

  • "As Legislation Evolves, Businesses Need a Firm Understanding of Secure Payment Options"

    According to PCI Pal, despite the constant evolution of the financial landscape, consumers still want a smooth and secure payment journey above all else. Alessandro Dalla Volta, VP of Product at PCI Pal, says new technology and payment methods will be at…

  • "Royal Ransomware Puts Novel Spin on Encryption Tactics"

    The Royal ransomware gang is demonstrating sophisticated tactics such as partial and rapid encryption, which researchers believe may reflect the years of experience its members gained as leaders of the now-defunct Conti Group. Royal ransomware appears to…

  • "FBI Seized Domains Linked to 48 DDoS-For-Hire Service Platforms"

    The US Department of Justice (DOJ)  has seized 48 Internet domains and charged six people in connection with the operation of booter or stresser platforms that allow anyone to easily conduct Distributed Denial-of-Service (DDoS) attacks. Booters are…

  • "Senate Unanimously Passes Bill Banning TikTok From Government Devices"

    The Senate just passed a bill by unanimous consent that would ban the social media app TikTok from all government devices amid increased scrutiny over the app's perceived threats to national security.  Lawmakers have been increasingly vocal about…

  • "Hackers Bombard Open-Source Repositories with Over 144,000 Malicious Packages"

    Unknown threat actors have published more than 144,000 packages in the NuGet, PyPI, and npm ecosystems as part of a new campaign. According to Checkmarx and Illustria researchers, the packages were part of a new attack vector in which attackers spammed…

  • "Iran-Linked Cyberspies Expand Targeting to Medical Researchers, Travel Agencies"

    Over the last two years, a cyberespionage group with ties to Iran's Islamic Revolutionary Guard Corps (IRGC) has been observed attacking new targets, including medical researchers, an aerospace engineer, and even a Florida-based realtor. TA453, also…

  • "ALMA Still Recovering From Devastating Cyberattack"

    The Atacama Large Millimeter/Submillimeter Array (ALMA) in Chile is still offline more than a month after a ransomware cyberattack on its computer systems. The disruption is interfering with astronomers' research projects worldwide and costs the…

  • "Splunk Report Finds Public Sector Organizations Lack Cybersecurity Intelligence"

    According to new research from Splunk, public sector organizations lack the cybersecurity intelligence they require, and the problem is far worse than in the private sector. The Splunk 2022 Public Sector Survey reveals that nearly half of public sector…

  • "VMware Fixed Critical VM Escape Bug Demonstrated at GeekPwn Hacking Contest"

    VMware patched three vulnerabilities in various products, including a virtual machine escape flaw exploited at the GeekPwn 2022 hacking competition and tracked as CVE-2022-31705. Yuhao Jiang, an Ant Security researcher, demonstrated a working exploit for…

  • "The DOD Aims for Full Zero Trust Deployment by 2027"

    According to the Department of Defense (DOD) CIO John Sherman, the Pentagon plans to implement a zero trust architecture across its entire enterprise by 2027. The goal is to have zero trust deployed across most of the DOD's enterprise systems. Sherman…