Security News

US accuses Army vet cyber-Casanova of sharing Russia-Ukraine war secrets
2024-03-05 17:06

Another US military man is facing a potentially significant stretch in prison after allegedly sending secret national defense information overseas. Information categorized as Secret refers to data that could reasonably be expected to cause "Serious damage", and Confidential information could lead to cause "Damage" to US national security.

Rhadamanthys Malware: Swiss Army Knife of Information Stealers Emerges
2023-12-18 14:31

The developers of the information stealer malware known as Rhadamanthys are actively iterating on its features, broadening its information-gathering capabilities and also incorporating a plugin...

Chocolate Swiss Army Knife
2023-11-24 20:00

About Bruce Schneier I am a public-interest technologist, working at the intersection of security, technology, and people. I've been writing about security issues on my blog since 2004, and in my monthly newsletter since 1998.

Bruschetta-Board: Multi-protocol Swiss Army knife for hardware hackers
2023-09-12 03:00

Bruschetta-Board is a device for all hardware hackers looking for a fairly-priced all-in-one debugger and programmer that supports UART, JTAG, I2C & SPI protocols and allows to interact with different targets' voltages. A handy feature of Bruschetta-Board is the fact it mounts level shifters.

Rhysida ransomware leaks documents stolen from Chilean Army
2023-06-15 22:42

Threat actors behind a recently surfaced ransomware operation known as Rhysida have leaked online what they claim to be documents stolen from the network of the Chilean Army.The leak comes after the Chilean Army confirmed on May 29 that its systems were impacted in a security incident detected over the weekend on May 27, according to a statement shared by Chilean cybersecurity firm CronUp.

US sanctions orgs behind North Korea’s ‘illicit’ IT worker army
2023-05-23 16:38

The Treasury Department's Office of Foreign Assets Control announced sanctions today against four entities and one individual for their involvement in illicit IT worker schemes and cyberattacks generating revenue to finance North Korea's weapons development programs. North Korea's illicit revenue generation strategy relies heavily on a massive "Army" of thousands of IT workers who hide their identities to get hired by companies overseas, the OFAC said in a press release published on Tuesday.

US alleges China created troll army that tried to have dissidents booted from Zoom
2023-04-18 04:37

"In the two schemes, the defendants created and used fake social media accounts to harass and intimidate PRC dissidents residing abroad," states the Department's announcement of the charges. The DoJ alleges the Group ran a troll farm that "Created thousands of fake online personas on social media sites, including Twitter, to target Chinese dissidents through online harassment and threats."

Swiss Army's Threema messaging app was full of holes – at least seven
2023-01-11 08:01

A supposedly secure messaging app preferred by the Swiss government and army was infested with bugs - possibly for a long time - before an audit by ETH Zurich researchers. Threema downplayed the bugs in a blog post about the research.

Lockheed Martin's Army cyber training platform goes civilian
2022-11-29 17:45

Locheed Martin has bagged a government contract to train 17,000 remote US Army civilian employees on security readiness, and wants to also extend the offer to private entities. MR2 is also able to synchronize data between the military's segmented classified and non-classified communication networks and "Allows cyber operators to get a full view of capability and skill levels across the entire workforce, removing the need to consult multiple systems and networks," Lockheed Martin said.

Russia-based Pushwoosh tricks US Army and others into running its code – for a while
2022-11-15 01:30

US government agencies including the Army and Centers for Disease Control and Prevention pulled apps running Pushwoosh code after learning the software company - which presents itself as American - is actually Russian, according to Reuters. Pushwoosh is a software company that provides code and data analysis for developers so they can automate custom push notifications based on smartphone users' online activity.