Security News

Russian military hackers linked to critical infrastructure attacks
2024-09-05 17:59

The United States and its allies have linked a group of Russian military intelligence hackers (tracked as Cadet Blizzard and Ember Bear) to Unit 29155 of Russia's Main Directorate of the General...

SANS Institute Unveils Critical Infrastructure Strategy Guide for 2024: A Call to Action for Securing ICS/OT Environments
2024-08-30 06:19

A comprehensive guide authored by Dean Parsons emphasizes the growing need for specialized ICS security measures in the face of rising cyber threats. With a staggering 50% increase in ransomware...

Food security: Accelerating national protections around critical infrastructure
2024-08-21 03:30

In this Help Net Security video, Mike Lexa, CISO and Global VP of IT Infrastructure and Operations at CNH, discusses how the federal government is taking food security more seriously and what steps must be taken to prioritize security measures. What might happen if our food systems were disrupted?

SOCI Act 2024: Thales Report Reveals Critical Infrastructure Breaches in Australia
2024-08-19 21:20

The Critical Infrastructure Edition of the 2024 Data Threat Report, by technology organisation Thales, found that ransomware incidents at critical infrastructure organisations are on the rise globally - even as these organisations explore the applications and data risks of AI. In a conversation with TechRepublic, Thales' ANZ Director of Data Security Erick Reyes said ransomware attackers are most likely to target critical infrastructure organisations that hold critical data. Critical infrastructure organisations juggling ransomware and AI. Thales' report found that 42% of critical infrastructure organisations in all global markets surveyed were breached at some point in the past - 7% lower than all industries.

Researchers Uncover New Infrastructure Tied to FIN7 Cybercrime Group
2024-08-19 05:43

Cybersecurity researchers have discovered new infrastructure linked to a financially motivated threat actor known as FIN7. The two clusters of potential FIN7 activity "indicate communications...

DigiCert to delay cert revocations for critical infrastructure
2024-07-31 20:18

DigiCert urges critical infrastructure operators to request a delay if they cannot reissue their certificates, as required by an ongoing certificate mass-revocation process announced on Tuesday. [...]

Critical Flaw in Acronis Cyber Infrastructure Exploited in the Wild
2024-07-29 16:17

Cybersecurity company Acronis is warning that a now-patched critical security flaw impacting its Cyber Infrastructure product has been exploited in the wild. The flaw impacts the following versions of Acronis Cyber Infrastructure -.

Critical Acronis Cyber Infrastructure vulnerability exploited in the wild (CVE-2023-45249)
2024-07-29 12:38

CVE-2023-45249, a critical vulnerability affecting older versions of Acronis Cyber Infrastructure, is being exploited by attackers. Acronis Cyber Infrastructure is an IT infrastructure solution that provides storage, compute, and network resources.

Acronis warns of Cyber Infrastructure default password abused in attacks
2024-07-26 16:39

Acronis warned customers to patch a critical Cyber Infrastructure security flaw that lets attackers bypass authentication on vulnerable servers using default credentials. Acronis Cyber Protect is a unified multi-tenant platform that combines remote endpoint management, backup, and virtualization capabilities and helps run disaster recovery workloads and store enterprise backup data securely.

BIND 9.20 released: Enhanced DNSSEC support, application infrastructure improvements
2024-07-25 06:51

BIND 9.20, a stable branch suitable for production use, has been released. In BIND 9.16, the developers introduced a new networking manager using libuv as an asynchronous event handler on top of the existing application infrastructure.