Security News

10 nasty bugs put thousands of fuel storage tanks at risk of attacks
2024-09-24 15:30

Thousands of devices remain vulnerable and the US is most exposed to the threat Tens of thousands of fuel storage tanks in critical infrastructure facilities remain vulnerable to zero-day attacks...

Israel’s Pager Attacks and Supply Chain Vulnerabilities
2024-09-24 11:05

Israel’s brazen attacks on Hezbollah last week, in which hundreds of pagers and two-way radios exploded and killed at least 37 people, graphically illustrated a threat that cybersecurity experts...

65% of websites are unprotected against simple bot attacks
2024-09-24 03:30

Companies across industries are seeing more bot-driven attacks, both basic and advanced, according to DataDome. An analysis of over 14,000 websites uncovered alarming gaps in protection against...

How to manage shadow IT and reduce your attack surface
2024-09-23 14:01

In today's fast-paced business environment, employees increasingly turn to unauthorized IT solutions, called Shadow IT, to streamline their work and boost productivity. This article explores the...

Offensive cyber operations are more than just attacks
2024-09-23 04:00

In this Help Net Security interview, Christopher Jones, Chief Technology Officer and Chief Data Officer at Nightwing, talks about some key misconceptions and complexities surrounding offensive...

Hacktivist Group Twelve Targets Russian Entities with Destructive Cyber Attacks
2024-09-21 14:39

A hacktivist group known as Twelve has been observed using an arsenal of publicly available tools to conduct destructive cyber attacks against Russian targets. "Rather than demand a ransom for...

Clever Social Engineering Attack Using Captchas
2024-09-20 15:32

This is really interesting. It’s a phishing attack targeting GitHub users, tricking them to solve a fake Captcha that actually runs a script that is copied to the command line. Clever.

Ivanti warns of another critical CSA flaw exploited in attacks
2024-09-19 18:39

Today, Ivanti warned that threat actors are exploiting another Cloud Services Appliance (CSA) security flaw in attacks targeting a limited number of customers. [...]

Australian Police conducted supply chain attack on criminal collaborationware
2024-09-18 02:32

Sting led to cuffing of alleged operator behind Ghost – an app for drug trafficking, money laundering, and violence-as-a-service Australia's Federal Police (AFP) yesterday arrested and charged a...

Construction firms breached in brute force attacks on accounting software
2024-09-17 19:42

Hackers are brute-forcing passwords for highly privileged accounts on exposed Foundation accounting servers, widely used in the construction industry, to breach corporate networks. [...]