Security News

Embargo ransomware escalates attacks to cloud environments
2024-09-27 15:09

Microsoft warns that ransomware threat actor Storm-0501 has recently switched tactics and now targets hybrid cloud environments, expanding its strategy to compromise all victim assets. [...]

Microsoft Identifies Storm-0501 as Major Threat in Hybrid Cloud Ransomware Attacks
2024-09-27 11:11

The threat actor known as Storm-0501 has targeted government, manufacturing, transportation, and law enforcement sectors in the U.S. to stage ransomware attacks. The multi-stage attack campaign is...

New RomCom malware variant 'SnipBot' spotted in data theft attacks
2024-09-26 21:26

A new variant of the RomCom malware called SnipBot, has been used in attacks that pivot on the network to steal data from compromised systems. [...]

N. Korean Hackers Deploy New KLogEXE and FPSpy Malware in Targeted Attacks
2024-09-26 12:28

Threat actors with ties to North Korea have been observed leveraging two new malware strains dubbed KLogEXE and FPSpy. The activity has been attributed to an adversary tracked as Kimsuky, which is...

Watering Hole Attack on Kurdish Sites Distributing Malicious APKs and Spyware
2024-09-26 10:43

As many as 25 websites linked to the Kurdish minority have been compromised as part of a watering hole attack designed to harvest sensitive information for over a year and a half. French...

Companies mentioned on the dark web at higher risk for cyber attacks
2024-09-26 03:00

The presence of any data relating to an organization on the dark web demonstrably increases its risk of a cyber attack, according to Searchlight Cyber. Dark web insights and breach correlation...

Ivanti vTM auth bypass flaw exploited in attacks, CISA warns (CVE-2024-7593)
2024-09-25 09:41

CVE-2024-7593, a critical authentication bypass vulnerability affecting Ivanti Virtual Traffic Manager (vTM) appliances, is actively exploited by attackers. The confirmation comes from the...

AutoCanada says ransomware attack "may" impact employee data
2024-09-24 21:34

AutoCanada is warning that employee data may have been exposed in an August cyberattack claimed by the Hunters International ransomware gang. [...]

Critical Ivanti vTM auth bypass bug now exploited in attacks
2024-09-24 17:03

CISA has tagged another critical Ivanti security vulnerability, which can let threat actors create rogue admin users on vulnerable Virtual Traffic Manager (vTM) appliances, as actively exploited...

Hackers deploy AI-written malware in targeted attacks
2024-09-24 16:25

While cybercriminals have used generative AI technology to create convincing emails, government agencies have warned about the potential abuse of AI tools to creating malicious software, despite...