Security News

Commando Cat Cryptojacking Attacks Target Misconfigured Docker Instances
2024-06-07 05:10

The threat actor known as Commando Cat has been linked to an ongoing cryptojacking attack campaign that leverages poorly secured Docker instances to deploy cryptocurrency miners for financial...

New Gitloker attacks wipe GitHub repos in extortion scheme
2024-06-06 17:53

The threat actor behind this campaign-who has the Gitloker handle on Telegram and is posing as a cyber incident analyst-is likely compromising targets' GitHub accounts using stolen credentials. "I hope this message finds you well. This is an urgent notice to inform you that your data has been compromised, and we have secured a backup," the ransom notes read. When BleepingComputer contacted GitHub earlier today for more details regarding the Gitloker extortion campaign, a spokesperson was not immediately available for comment.

Muhstik Botnet Exploiting Apache RocketMQ Flaw to Expand DDoS Attacks
2024-06-06 13:14

The distributed denial-of-service (DDoS) botnet known as Muhstik has been observed leveraging a now-patched security flaw impacting Apache RocketMQ to co-opt susceptible servers and expand its...

Third-Party Cyber Attacks: The Threat No One Sees Coming – Here's How to Stop Them
2024-06-06 11:30

Learn about critical threats that can impact your organization and the bad actors behind them from Cybersixgill’s threat experts. Each story shines a light on underground activities, the threat...

Webinar: Exposure management and your attack surface
2024-06-06 08:00

Your business, attack surface, and threat landscape are not static-they are constantly changing. New vulnerabilities are disclosed hourly, new exploits for old vulnerabilities are publicly released, and threat actors update their techniques continuously.

Advance Auto Parts stolen data for sale after Snowflake attack
2024-06-05 21:56

Threat actors claim to be selling 3TB of data from Advance Auto Parts, a leading automotive aftermarket parts provider, stolen after breaching the company's Snowflake account. The threat actor selling Advance's data for $1.5 million on a hacking forum told BleepingComputer that the data had been stolen in recent attacks targeting cloud storage company Snowflake customers since at least mid-April 2024.

Qilin ransomware gang linked to attack on London hospitals
2024-06-05 17:57

A ransomware attack that hit pathology services provider Synnovis on Monday and impacted several major NHS hospitals in London has now been linked to the Qilin ransomware operation. Memos sent by officials of hospitals affected by the Synnovis ransomware attack revealed on Tuesday that this "Ongoing critical incident" has had a "Major impact" on their procedures and operations.

Celebrity TikTok Accounts Compromised Using Zero-Click Attack via DMs
2024-06-05 06:22

Popular video-sharing platform TikTok has acknowledged a security issue that has been exploited by threat actors to take control of high-profile accounts on the platform. The development was first...

How AI-powered attacks are accelerating the shift to zero trust strategies
2024-06-05 04:00

In this Help Net Security interview, Jenn Markey, Advisor to The Entrust Cybersecurity Institute, discusses the increasing adoption of enterprise-wide zero trust strategies in response to evolving cyber threats. Two-thirds of organizations featured in the 2024 State of Zero Trust & Encryption study cited cyber-risk concerns as the main drivers for implementing a zero-trust strategy.

Major London hospitals disrupted by Synnovis ransomware attack
2024-06-04 16:05

A ransomware attack affecting pathology and diagnostic services provider Synnovis has impacted healthcare services at multiple major NHS hospitals in London.While Synnovis has yet to issue a public statement regarding the June 3 ransomware attack, memos sent by partner hospitals affected by the attack revealed that this "Ongoing critical incident" has had a "Major impact" on healthcare services across southeast London.