Security News

Iran-linked crew used custom 'cyberweapon' in US critical infrastructure attacks
2024-12-13 23:56

IOCONTROL targets IoT and OT devices from a ton of makers, apparently An Iranian government-linked cybercriminal crew used custom malware called IOCONTROL to attack and remotely control US and...

New IOCONTROL malware used in critical infrastructure attacks
2024-12-12 20:46

Iranian threat actors are utilizing a new malware named IOCONTROL to compromise Internet of Things (IoT) devices and OT/SCADA systems used by critical infrastructure in Israel and the United States. [...]

CISA, FBI Issue Guidance for Securing Communications Infrastructure
2024-12-04 14:17

The caution comes after Chinese-state-affiliated breaches of American telecommunication networks. Organizations with Cisco infrastructure should take particular note.

Volunteer DEF CON hackers dive into America's leaky water infrastructure
2024-11-24 15:27

Six sites targeted for security clean-up, just 49,994 to go A plan for hackers to help secure America's critical infrastructure has kicked off with six US water companies signing up to let coders...

Microsoft disrupts ONNX phishing-as-a-service infrastructure
2024-11-21 17:00

​Microsoft has seized 240 domains used by customers of ONNX, a phishing-as-a-service (PhaaS) platform, to target companies and individuals across the United States and worldwide since at least 2017. [...]

The story behind the Health Infrastructure Security and Accountability Act
2024-10-29 16:00

Health care breaches lead to legislation Partner Content Breaches breed regulation; which hopefully in turn breeds meaningful change.…

U.S. and Allies Warn of Iranian Cyberattacks on Critical Infrastructure in Year-Long Campaign
2024-10-18 11:00

Cybersecurity and intelligence agencies from Australia, Canada, and the U.S. have warned about a year-long campaign undertaken by Iranian cyber actors to infiltrate critical infrastructure...

Iranian hackers act as brokers selling critical infrastructure access
2024-10-16 23:16

Iranian hackers are breaching critical infrastructure organizations to collect credentials and network data that can be sold on cybercriminal forums to enable cyberattacks from other threat actors. [...]

Microsoft and DOJ disrupt Russian FSB hackers' attack infrastructure
2024-10-03 17:58

Microsoft and the Justice Department have seized over 100 domains used by the Russian ColdRiver hacking group to target United States government employees and nonprofit organizations from Russia...

CISA: Network switch RCE flaw impacts critical infrastructure
2024-10-02 15:02

U.S. cybersecurity agency CISA is warning about two critical vulnerabilities that allow authentication bypass and remote code execution in Optigo Networks ONS-S8 Aggregation Switch products used...