Security News

RansomHub extortion gang linked to now-defunct Knight ransomware
2024-06-05 12:39

Security researchers analyzing the relatively new RansomHub ransomware-as-a-service believe that it has evoloved from the currently defunct Knight ransomware project. RansomHub has a short history and operated mainly as a data theft and extortion group that sells stolen files to the highest bidder.

4 cuffed following probe into holiday scheme for cybercrooks
2024-06-05 12:06

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Chinese State-Backed Cyber Espionage Targets Southeast Asian Government
2024-06-05 11:20

An unnamed high-profile government organization in Southeast Asia emerged as the target of a "complex, long-running" Chinese state-sponsored cyber espionage operation codenamed Crimson Palace....

Online Privacy and Overfishing
2024-06-05 11:00

In the mid-20th century, scientists began noticing that the number of fish in the ocean-so vast as to underlie the phrase "There are plenty of fish in the sea"-had started declining rapidly due to overfishing. Just as certain fish populations in the world's oceans have fallen 80 percent, from previously having fallen 80 percent, from previously having fallen 80 percent, our expectations of privacy have similarly fallen precipitously.

Unpacking 2024's SaaS Threat Predictions
2024-06-05 11:00

Early in 2024, Wing Security released its State of SaaS Security report, offering surprising insights into emerging threats and best practices in the SaaS domain. Now, halfway through the year,...

Are Password Managers Safe to Use? (Benefits, Risks & Best Practices)
2024-06-05 10:50

Password managers are a safer way to manage and secure passwords than any other approach. The user simply logs into the password manager using a master password.

TotalRecall shows how easily data collected by Windows Recall can be stolen
2024-06-05 10:12

Ethical hacker Alexander Hagenah has created TotalRecall, a tool that demonstrates how malicious individuals could abuse Windows' newly announced Recall feature to steal sensitive information. Copilot+ Recall takes snapshots of the computer's screen ever few seconds, encrypts and stores the snapshots locally, uses optical character recognition to extract relevant information that users may search for later, and and stores this data locally in an SQLite database, in plain text.

Rebranded Knight Ransomware Targeting Healthcare and Businesses Worldwide
2024-06-05 10:10

An analysis of a nascent ransomware strain called RansomHub has revealed it to be an updated and rebranded version of Knight ransomware, itself an evolution of another ransomware known as Cyclops....

Zyxel Releases Patches for Firmware Vulnerabilities in EoL NAS Models
2024-06-05 07:10

Zyxel has released security updates to address critical flaws impacting two of its network-attached storage (NAS) devices that have currently reached end-of-life (EoL) status. Successful...

Microsoft paid Tenable a bug bounty for an Azure flaw it says doesn't need a fix, just better documentation
2024-06-05 06:44

Tenable thinks these tags can be abused by a rogue Azure customer to access other customers' stuff - a cross-tenant attack - if those victims rely on Service Tags in their firewall rules. "We appreciate the collaboration with Tenable to responsibly disclose the inherent risk in using Service Tags as a single mechanism for vetting secure network traffic," a Microsoft spokesperson told The Register.