Security News

Overreliance on GenAI to develop software compromises security
2024-11-20 04:00

GenAI is quickly changing the software development process by automating tasks that once took developers hours, if not days, to complete, bolstering efficiency and productivity, according to Legit...

North Korean hackers employ new tactics to compromise crypto-related businesses
2024-11-07 11:47

North Korean hackers are targeting crypto-related businesses with phishing emails and novel macOS-specific malware. The crypto-related phishing campaign Since July 2024, phishing emails seemingly...

Lottie Player supply chain compromise: Sites, apps showing crypto scam pop-ups
2024-10-31 12:35

A supply chain compromise involving Lottie Player, a widely used web component for playing site and app animations, has made popular decentralized finance apps show pop-ups urging users to connect...

Microsoft Detects Growing Use of File Hosting Services in Business Email Compromise Attacks
2024-10-09 04:22

Microsoft is warning of cyber attack campaigns that abuse legitimate file hosting services such as SharePoint, OneDrive, and Dropbox that are widely used in enterprise environments as a defense...

Over 5,000 Fake Microsoft Notifications Fueling Email Compromise Campaigns
2024-10-04 16:41

Check Point documented 5,000 emails coming from legitimate-looking organizational domains.

Ransomware attackers hop from on-premises systems to cloud to compromise Microsoft 365 accounts
2024-09-30 13:51

Storm-0501, an affiliate of several high-profile ransomware-as-a-service outfits, has been spotted compromising targets’ cloud environments and on-premises systems. “Storm-0501 is the latest...

Active Directory compromise: Cybersecurity agencies provide guidance
2024-09-26 14:20

Active Directory (AD), Microsoft’s on-premises directory service for Windows domain networks, is so widely used for enterprise identity and access management that compromising it has become almost...

Wherever There's Ransomware, There's Service Account Compromise. Are You Protected?
2024-09-19 17:34

Until just a couple of years ago, only a handful of IAM pros knew what service accounts are. In the last years, these silent Non-Human-Identities (NHI) accounts have become one of the most...

New "Raptor Train" IoT Botnet Compromises Over 200,000 Devices Worldwide
2024-09-18 16:00

Cybersecurity researchers have uncovered a never-before-seen botnet comprising an army of small office/home office (SOHO) and IoT devices that are likely operated by a Chinese nation-state threat...

Malicious npm Packages Mimicking 'noblox.js' Compromise Roblox Developers’ Systems
2024-09-02 03:36

Roblox developers are the target of a persistent campaign that seeks to compromise systems through bogus npm packages, once again underscoring how threat actors continue to exploit the trust in...