Security News

Schneider Electric confirms dev platform breach after hacker steals data
2024-11-04 19:22

Schneider Electric has confirmed a developer platform was breached after a threat actor claimed to steal 40GB of data from the company's JIRA server. [...]

Sophos Versus the Chinese Hackers
2024-11-04 12:02

Really interesting story of Sophos’s five-year war against Chinese hackers.

Sophos reveals 5-year battle with Chinese hackers attacking network devices
2024-10-31 22:16

Sophos disclosed today a series of reports dubbed "Pacific Rim" that detail how the cybersecurity company has been sparring with Chinese threat actors for over 5 years as they increasingly...

Microsoft: Chinese hackers use Quad7 botnet to steal credentials
2024-10-31 20:03

Microsoft warns that Chinese threat actors use the Quad7 botnet, compromised of hacked SOHO routers, to steal credentials in password-spray attacks. [...]

Hackers target critical zero-day vulnerability in PTZ cameras
2024-10-31 18:23

Hackers are attempting to exploit two zero-day vulnerabilities in PTZOptics pan-tilt-zoom (PTZ) live streaming cameras used in industrial, healthcare, business conferences, government, and...

LiteSpeed Cache WordPress plugin bug lets hackers get admin access
2024-10-31 16:19

The free version of the popular WordPress plugin LiteSpeed Cache has fixed a dangerous privilege elevation flaw on its latest release that could allow unauthenticated site visitors to gain admin...

North Korean hackers pave the way for Play ransomware
2024-10-31 10:42

North Korean state-sponsored hackers – Jumpy Pisces, aka Andariel, aka Onyx Sleet – have been spotted burrowing into enterprise systems, then seemingly handing matters over to the Play ransomware...

North Korean govt hackers linked to Play ransomware attack
2024-10-30 15:55

The North Korean state-sponsored hacking group tracked as 'Andariel' has been linked to the Play ransomware operation, using the RaaS to work behind the scenes and evade sanctions. [...]

Hackers steal 15,000 cloud credentials from exposed Git config files
2024-10-30 14:00

A global large-scale dubbed "EmeraldWhale" exploited misconfigured Git configuration files to steal over 15,000 cloud account credentials from thousands of private repositories. [...]

Russian hackers deliver malicious RDP configuration files to thousands
2024-10-30 10:44

Midnight Blizzard – a cyber espionage group that has been linked to the Russian Foreign Intelligence Service (SVR) – is targeting government, academia, defense, and NGO workers with phishing...