Security News

Spending watchdog blasts UK govt over sloth-like progress to shore up IT defenses
2025-01-29 07:24

Think government cybersecurity is bad? Guess again. It’s alarmingly so The UK government is significantly behind on its 2022 target to harden systems against cyberattacks by 2025, with a new...

US freezes foreign aid, halting cybersecurity defense and policy funds for allies
2025-01-27 22:16

Uncle Sam will 'no longer blindly dole out money,' State Dept says US Secretary of State Marco Rubio has frozen nearly all foreign aid cash for a full-on government review, including funds to...

Defense strategies to counter escalating hybrid attacks
2025-01-23 05:30

In this Help Net Security interview, Tomer Shloman, Sr. Security Researcher at Trellix, talks about attack attribution, outlines solutions for recognizing hybrid threats, and offers advice on how...

Using cognitive diversity for stronger, smarter cyber defense
2025-01-15 05:00

In this Help Net Security interview, Mel Morris, CEO of Corpora.ai, discusses how cognitive biases affect decision-making during cybersecurity incidents. Morris shares insights on the challenges...

'Bitter' cyberspies target defense orgs with new MiyaRAT malware
2024-12-17 22:29

A cyberespionage threat group known as 'Bitter' was observed targeting defense organizations in Turkey using a novel malware family named MiyaRAT. [...]

Bitter APT Targets Turkish Defense Sector with WmRAT and MiyaRAT Malware
2024-12-17 11:07

A suspected South Asian cyber espionage threat group known as Bitter targeted a Turkish defense sector organization in November 2024 to deliver two C++-malware families tracked as WmRAT and...

Microsoft enforces defenses preventing NTLM relay attacks
2024-12-11 12:59

Since making Kerberos the default Windows authentication protocol in 2000, Microsoft has been working on eventually retiring NTLM, its less secure and obsolete counterpart. Until NTLM gets...

CERT-UA Warns of Phishing Attacks Targeting Ukraine’s Defense and Security Force
2024-12-10 09:12

The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new set of cyber attacks that it said were aimed at defense companies in the country as well as its security and defense...

Hackers Use Corrupted ZIPs and Office Docs to Evade Antivirus and Email Defenses
2024-12-04 04:48

Cybersecurity researchers have called attention to a novel phishing campaign that leverages corrupted Microsoft Office documents and ZIP archives as a way to bypass email defenses. "The ongoing...

Hackers abuse Avast anti-rootkit driver to disable defenses
2024-11-23 15:07

A new malicious campaign is using a legitimate but old and vulnerable Avast Anti-Rootkit driver to evade detection and take control of the target system by disabling security components. [...]