Security News

Citrix shares mitigations for ongoing Netscaler password spray attacks
2024-12-13 22:10

Citrix Netscaler is the latest target in widespread password spray attacks targeting edge networking devices and cloud platforms this year to breach corporate networks. [...]

CISA confirms critical Cleo bug exploitation in ransomware attacks
2024-12-13 21:24

CISA confirmed today that a critical remote code execution bug in Cleo Harmony, VLTrader, and LexiCom file transfer software is being exploited in ransomware attacks. [...]

Starbucks, Supermarkets Targeted in Ransomware Attack
2024-12-13 19:00

In December, ransomware group Termite claimed responsibility for the attacks.

Ultralytics Supply-Chain Attack
2024-12-13 16:33

Last week, we saw a supply-chain attack against the Ultralytics AI library on GitHub. A quick summary: On December 4, a malicious version 8.3.41 of the popular AI library ultralytics ­—which has...

New IOCONTROL malware used in critical infrastructure attacks
2024-12-12 20:46

Iranian threat actors are utilizing a new malware named IOCONTROL to compromise Internet of Things (IoT) devices and OT/SCADA systems used by critical infrastructure in Israel and the United States. [...]

Cleo patches critical zero-day exploited in data theft attacks
2024-12-12 17:03

Cleo has released security updates for a zero-day flaw in its LexiCom, VLTransfer, and Harmony software, currently exploited in data theft attacks. [...]

Europol Dismantles 27 DDoS Attack Platforms Across 15 Nations; Admins Arrested
2024-12-12 06:15

A global law enforcement operation has failed 27 stresser services that were used to conduct distributed denial-of-service (DDoS) attacks and took them offline as part of a multi-year...

US Sanctions Chinese Cybersecurity Firm for 2020 Ransomware Attack
2024-12-11 18:23

Chinese cybersecurity firm Sichuan Silence has been sanctioned for exploiting a vulnerability in Sophos firewalls used at critical infrastructure organizations in the U.S.

Microsoft enforces defenses preventing NTLM relay attacks
2024-12-11 12:59

Since making Kerberos the default Windows authentication protocol in 2000, Microsoft has been working on eventually retiring NTLM, its less secure and obsolete counterpart. Until NTLM gets...

US names Chinese national it alleges was behind 2020 attack on Sophos firewalls
2024-12-11 05:02

Also sanctions his employer – an outfit called Sichuan Silence linked to Ragnarok ransomware The US Departments of Treasury and Justice have named a Chinese business and one of its employees as...