Security News

Bayer and 12 other major drug companies caught up in Cencora data loss
2024-05-27 02:59

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

Hackers phish finance orgs using trojanized Minesweeper clone
2024-05-26 14:16

Hackers are utilizing code from a Python clone of Microsoft's venerable Minesweeper game to hide malicious scripts in attacks on European and US financial organizations. Ukraine's CSIRT-NBU and CERT-UA attribute the attacks to a threat actor tracked as 'UAC-0188,' who is using the legitimate code to hide Python scripts that download and install the SuperOps RMM. Superops RMM is a legitimate remote management software that gives remote actors direct access to the compromised systems.

Week in review: Google fixes yet another Chrome zero-day exploit, YouTube as a cybercrime channel
2024-05-26 08:00

Google fixes yet another Chrome zero-day exploited in the wildFor the eighth time this year, Google has released an emergency update for its Chrome browser that fixes a zero-day vulnerability with an in-the-wild exploit. GitHub fixes maximum severity Enterprise Server auth bypass bugA critical, 10-out-of-10 vulnerability allowing unrestricted access to vulnerable GitHub Enterprise Server instances has been fixed by Microsoft-owned GitHub.

Arc browser’s Windows launch targeted by Google ads malvertising
2024-05-25 15:17

A new Google Ads malvertising campaign, coinciding with the launch of the Arc web browser for Windows, was tricking people into downloading trojanized installers that infect them with malware payloads. The Arc browser is a new web browser featuring an innovative user interface design that sets it apart from traditional browsers.

Indian man stole $37 million in crypto using fake Coinbase Pro site
2024-05-25 14:11

An Indian national pleaded guilty to wire fraud conspiracy for stealing over $37 million through a fake Coinbase website used to steal credentials. Tomar and his co-conspirators created a fake website to mimic the Coinbase Pro website in June 2021 using the "Coinbasepro.com" domain.

Experts Find Flaw in Replicate AI Service Exposing Customers' Models and Data
2024-05-25 09:11

Cybersecurity researchers have discovered a critical security flaw in an artificial intelligence (AI)-as-a-service provider Replicate that could have allowed threat actors to gain access to...

#AI
Man behind deepfake Biden robocall indicted on felony charges, faces $6M fine
2024-05-24 23:21

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.

ICQ messenger shuts down after almost 28 years
2024-05-24 22:42

The ICQ messaging app is shutting down on June 26th, marking the end of a much-beloved communication application. ICQ launched in 1996, just a short time before AOL Instant Messenger, and was loved for its ease of use, 1-on-1 or group chats, and the ability to communicate with people all over the world in real-time for free.

Hacker defaces spyware app’s site, dumps database and source code
2024-05-24 22:34

A hacker has defaced the website of the pcTattletale spyware application, found on the booking systems of several Wyndham hotels in the United States, and leaked over a dozen archives containing database and source code data. Described by its developers as an "Employee and child monitoring software," pcTattletale is a consumer-grade spyware solution that was leaking guest details and customer information captured from the hotels' check-in systems because of an API security vulnerability, according to TechCrunch.

Best Buy and Geek Squad were most impersonated orgs by scammers in 2023
2024-05-24 22:23

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.