Security News

CISA warns of Windows flaw used in infostealer malware attacks
2024-09-16 19:53

​CISA has ordered U.S. federal agencies to secure their systems against a recently patched Windows MSHTML spoofing zero-day bug exploited by the Void Banshee APT hacking group. [...]

Cybercriminals Exploit HTTP Headers for Credential Theft via Large-Scale Phishing Attacks
2024-09-16 04:23

Cybersecurity researchers have warned of ongoing phishing campaigns that abuse refresh entries in HTTP headers to deliver spoofed email login pages that are designed to harvest users' credentials....

Windows vulnerability abused braille “spaces” in zero-day attacks
2024-09-15 18:16

A recently fixed "Windows MSHTML spoofing vulnerability" tracked under CVE-2024-43461 is now marked as previously exploited after it was used in attacks by the Void Banshee APT hacking group. [...]

Port of Seattle hit by Rhysida ransomware in August attack
2024-09-13 22:54

Port of Seattle, the United States government agency overseeing Seattle's seaport and airport, confirmed on Friday that the Rhysida ransomware operation was behind a cyberattack impacting its...

Ivanti warns high severity CSA flaw is now exploited in attacks
2024-09-13 17:39

Ivanti confirmed on Friday that a high severity vulnerability in its Cloud Services Appliance (CSA) solution is now actively exploited in attacks. [...]

17-Year-Old Arrested in Connection with Cyber Attack Affecting Transport for London
2024-09-13 13:29

British authorities on Thursday announced the arrest of a 17-year-old male in connection with a cyber attack affecting Transport for London (TfL). "The 17-year-old male was detained on suspicion...

Security measures fail to keep up with rising email attacks
2024-09-13 04:30

Organizations must reassess their email security posture as incidents continue to escalate, leading to financial losses. Key findings reveal a significant increase in email attacks, with many...

UK arrests teen linked to Transport for London cyber attack
2024-09-12 16:36

U.K.'s National Crime Agency says it arrested a 17-year-old teenager who is suspected of being connected to the cyberattack on Transport for London, the city's public transportation agency. [...]

Iranian Cyber Group OilRig Targets Iraqi Government in Sophisticated Malware Attack
2024-09-12 10:49

Iraqi government networks have emerged as the target of an "elaborate" cyber attack campaign orchestrated by an Iran state-sponsored threat actor called OilRig. The attacks singled out Iraqi...

Microsoft says it broke some Windows 10 patching – as it fixes flaws under attack
2024-09-11 01:27

CISA wants you to leap on Citrix and Ivanti issues. Adobe, Intel, SAP also bid for patching priorities Patch Tuesday Another Patch Tuesday has dawned, as usual with the unpleasant news that there...