Security News > 2024 > June

Plainsea cybersecurity platform to launch at Infosecurity Europe
2024-06-04 08:00

Plainsea is a cutting-edge platform set to shake up the cybersecurity scene with its European launch at Infosecurity Europe in 2024. As cyber threats continue to evolve at an alarming rate, the demand for efficient and intelligent cybersecurity solutions has never been higher.

DarkGate Malware Replaces AutoIt with AutoHotkey in Latest Cyber Attacks
2024-06-04 06:33

Cyber attacks involving the DarkGate malware-as-a-service (MaaS) operation have shifted away from AutoIt scripts to an AutoHotkey mechanism to deliver the last stages, underscoring continued...

20 free cybersecurity tools you might have missed
2024-06-04 04:30

Free, open-source cybersecurity tools have become indispensable to protecting individuals, organizations, and critical infrastructure from cyber threats. Cloud Console Cartographer: Open-source tool helps security teams transcribe log activity.

Third-party vendors pose serious cybersecurity threat to national security
2024-06-04 04:00

In this Help Net Security video, Paul Prudhomme, Principal Security Analyst at SecurityScorecard, discusses the findings of the 2024 Redefining Resilience: Concentrated Cyber Risk in a Global...

Security challenges mount as companies handle thousands of APIs
2024-06-04 03:30

The huge growth in modern apps and their microservices has created an exponential rise in the number of APIs. Companies with over $10 billion in annual revenue claimed they manage more than 1,000 apps and nearly 1,400 APIs, on average.

Oracle WebLogic Server OS Command Injection Flaw Under Active Attack
2024-06-04 03:25

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a security flaw impacting the Oracle WebLogic Server to the Known Exploited Vulnerabilities (KEV) catalog, citing...

Hudson Rock yanks report fingering Snowflake employee creds snafu for mega-leak
2024-06-04 02:25

Snowflake said if any customer data was taken from its servers, it may have been obtained by thieves who got hold of individual customers' account credentials - via targeted phishing, some other leak, or malware, for example - and not by a general compromise of Snowflake's security. On Friday, in its now-deleted write-up, Hudson Rock wrote that data thieves claimed to have signed into a Snowflake employee's ServiceNow work account and used this access to siphon databases belonging to as many as 400 Snowflake corporate clients.

Collection agency FBCS ups data breach tally to 3.2 million people
2024-06-03 23:11

Debt collection agency Financial Business and Consumer Solutions now says over 3.2 million people have been impacted by a data breach that occurred in February. In late April, the firm reported that roughly 1.9 million people in the U.S. had sensitive personal information compromised in a data breach incident on February 14, 2024.

Data firm execs convicted for helping fraudsters target the elderly
2024-06-03 22:37

A former senior executive and former sales manager of Epsilon Data Management LLC were convicted of selling data of millions of Americans to perpetrators of mail fraud schemes. As announced late last week by the U.S. Department of Justice, the two men, Robert Reger and David Lytle, were found guilty of conspiracy and multiple counts of mail and wire fraud for their roles in a scheme that provided targeted consumer lists to fraudsters over a decade.

Microsoft India’s X account hijacked in Roaring Kitty crypto scam
2024-06-03 22:30

The official Microsoft India account on Twitter, with over 211,000 followers, was hijacked by cryptocurrency scammers to impersonate Roaring Kitty, the handle used by notorious meme stock trader Keith Gill. Microsoft India's X account has a gold check as an officially verified organization on the platform, lending the hijackers' posts more legitimacy.