Security News
![Getting off the Attack Surface Hamster Wheel: Identity Can Help](/static/build/img/news/getting-off-the-attack-surface-hamster-wheel-identity-can-help-small.jpg)
IT professionals have developed a sophisticated understanding of the enterprise attack surface – what it is, how to quantify it and how to manage it. The process is simple: begin by thoroughly...
![CISA Flags 6 Vulnerabilities - Apple, Apache, Adobe , D-Link, Joomla Under Attack](/static/build/img/news/cisa-flags-6-vulnerabilities-apple-apache-adobe-d-link-joomla-under-attack-small.jpg)
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added six security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. This...
![CISA warns agencies of fourth flaw used in Triangulation spyware attacks](/static/build/img/news/cisa-warns-agencies-of-fourth-flaw-used-in-triangulation-spyware-attacks-small.jpg)
The Known Exploited Vulnerabilities catalog, or KEV for short, contains security issues that have been actively exploited in the wild. CISA has given federal agencies until January 29 to patch the six actively exploited flaws or stop using the vulnerable products.
![Hackers target Microsoft SQL servers in Mimic ransomware attacks](/static/build/img/news/hackers-target-microsoft-sql-servers-in-mimic-ransomware-attacks-small.jpg)
A group of financially motivated Turkish hackers targets Microsoft SQL servers worldwide to encrypt the victims' files with Mimic ransomware. "The timeline for the events was about one month from initial access to the deployment of MIMIC ransomware on the victim domain."
![Paraguay warns of Black Hunt ransomware attacks after Tigo Business breach](/static/build/img/news/paraguay-warns-of-black-hunt-ransomware-attacks-after-tigo-business-breach-small.jpg)
The Paraguay military is warning of Black Hunt ransomware attacks after Tigo Business suffered a cyberattack last week impacting cloud and hosting services in the company's business division. "On January 4, we were victims of a security incident in our Tigo Business Paraguay infrastructure as a service, which has affected the normal supply of some specific services to a limited group of clients in the corporate segment." reads a statement from Tigo Business.
![Why Public Links Expose Your SaaS Attack Surface](/static/build/img/news/why-public-links-expose-your-saas-attack-surface-small.jpg)
Collaboration is a powerful selling point for SaaS applications. Microsoft, Github, Miro, and others promote the collaborative nature of their software applications that allows users to do more....
![Toronto Zoo: Ransomware attack had no impact on animal wellbeing](/static/build/img/news/toronto-zoo-ransomware-attack-had-no-impact-on-animal-wellbeing-small.jpg)
Toronto Zoo, the largest zoo in Canada, says that a ransomware attack that hit its systems on early Friday had no impact on the animals, its website, or its day-to-day operations. "Currently, our animal wellbeing, care and support systems have not been impacted by this incident and we are continuing with normal Zoo operations including being open to guests," it said.
![Turkish hackers Sea Turtle expand attacks to Dutch ISPs, telcos](/static/build/img/news/turkish-hackers-sea-turtle-expand-attacks-to-dutch-isps-telcos-small.jpg)
The Turkish state-backed cyber espionage group tracked as Sea Turtle has been carrying out multiple spying campaigns in the Netherlands, focusing on telcos, media, internet service providers, and Kurdish websites. Previously, Sea Turtle, also known as Teal Kurma and Cosmic Wolf, focused on the Middle Eastern region, as well as Sweden and the United States, using techniques like DNS hijacking and traffic redirection to perform man-in-the-middle attacks against government and non-government organizations, media, ISPs, and IT service providers.
![US mortgage lender loanDepot confirms ransomware attack](/static/build/img/news/us-mortgage-lender-loandepot-confirms-ransomware-attack-small.jpg)
Leading U.S. mortgage lender loanDepot confirmed today that a cyber incident disclosed over the weekend was a ransomware attack that led to data encryption. LoanDepot is a major nonbank mortgage lender in the United States, with over $140 billion in serviced loans and roughly 6,000 employees.
![Capital Health attack claimed by LockBit ransomware, risk of data leak](/static/build/img/news/capital-health-attack-claimed-by-lockbit-ransomware-risk-of-data-leak-small.jpg)
The LockBit ransomware operation has claimed responsibility for a November 2023 cyberattack on the Capital Health hospital network and threatens to leak stolen data and negotiation chats by tomorrow. The LockBit ransomware gang has now claimed responsibility for the attack on Capital Health by listing the healthcare company on its data leak extortion portal yesterday.