Security News

Chinese cyberspies use new SSH backdoor in network device hacks
2025-02-04 17:39

A Chinese hacking group is hijacking the SSH daemon on network appliances by injecting malware into the process for persistent access and covert operations. [...]

Bitwarden makes it harder to hack password vaults without MFA
2025-01-27 21:00

Open-source password manager Bitwarden is adding an extra layer of security for accounts that are not protected by two-factor authentication, requiring email verification before allowing access to...

U.S. Sanctions Chinese Cybersecurity Firm Over Treasury Hack Tied to Salt Typhoon
2025-01-18 06:06

The U.S. Treasury Department's Office of Foreign Assets Control (OFAC) has imposed sanctions against a Chinese cybersecurity company and a Shanghai-based cyber actor for their alleged links to the...

US sanctions Chinese firm, hacker behind telecom and Treasury hacks
2025-01-17 16:57

The U.S. Department of the Treasury's Office of Foreign Assets Control (OFAC) has sanctioned Yin Kecheng, a Shanghai-based hacker for his role in the recent Treasury breach and a company...

FCC orders telecoms to secure their networks after Salt Tyhpoon hacks
2025-01-17 16:05

The Federal Communications Commission (FCC) has ordered U.S. telecommunications carriers to secure their networks following last year's Salt Typhoon security breaches. [...]

Stolen Path of Exile 2 admin account used to hack player accounts
2025-01-13 20:33

Path of Exile 2 developers confirmed that a hacked admin account allowed a threat actor to change the password and access at least 66 accounts, finally explaining how PoE 2 accounts have been...

US Treasury hack linked to Silk Typhoon Chinese state hackers
2025-01-09 16:49

​Chinese state-backed hackers, tracked as Silk Typhoon, have been linked to the U.S. Office of Foreign Assets Control (OFAC) hack in early December. [...]

PowerSchool hack exposes student, teacher data from K-12 districts
2025-01-08 04:26

Education software giant PowerSchool has confirmed it suffered a cybersecurity incident that allowed a threat actor to steal the personal information of students and teachers from school districts...

CISA says recent government hack limited to US Treasury
2025-01-06 20:58

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) said today that the Treasury Department breach disclosed last week did not impact other federal agencies. [...]

China-Linked Cyber Threat Group Hacks US Treasury Department
2025-01-02 19:45

Threat actors entered Treasury Department systems through BeyondTrust. The breach may be related to the Salt Typhoon attacks reported throughout the year.