Security News

New Zealand to world: China attacked us, too!
2024-03-26 03:30

The government of South Pacific island nation New Zealand has revealed that it, too, has been attacked by China. A Tuesday announcement penned by attorney-general and minister of defence Judith Collins reveals that in 2021 the nation's Government Communications Security Bureau and National Cyber Security Center "Completed a robust technical assessment following a compromise of the Parliamentary Counsel Office and the Parliamentary Service in 2021, and has attributed this activity to a PRC state-sponsored group known as APT40."

US fines man $9.9 million for thousands of disturbing robocalls
2024-03-25 23:28

A U.S. federal court has issued a $9,918,000 penalty and an injunction against an individual named Scott Rhodes for making thousands of "Spoofed" robocalls to consumers across the country. Robocalls are automated phone calls that use automated dialing software to deliver a pre-recorded message to many recipients.

Panera Bread experiencing nationwide IT outage since Saturday
2024-03-25 23:18

Since Saturday, U.S. food chain giant Panera Bread has been experiencing a nationwide outage that has impacted its IT systems, including online ordering, POS systems, phones, and various internal systems. "Our team is still working on getting the systems online. Please look for resolution once this is fixed and follow up with us later in the week. Thanks," Panera Bread added earlier today.

It's not just you: ChatGPT is down for many worldwide
2024-03-25 22:19

OpenAI's ChatGPT is down for many people worldwide, with users facing multiple problems, including being unable to access their accounts, having their chat history come up empty, and the chat screens not loading properly. Others have told BleepingComputer that they cannot access GPT-4 as the site states that they do not have a ChatGPT Plus subscription, even though they do.

US charges Chinese nationals with cyber-spying on pretty much everyone for Beijing
2024-03-25 22:15

Plus: Alleged front sanctioned, UK blames PRC for Electoral Commission theft, and does America need a Cyber Force? The United States on Monday accused seven Chinese men of breaking into computer...

US sanctions crypto exchanges used by Russian darknet market, banks
2024-03-25 21:20

The U.S. Treasury Department's Office of Foreign Assets Control has sanctioned three cryptocurrency exchanges for working with OFAC-designated Russian dark web markets and banks. The first, Bitpapa IC FZC LLC, is a peer-to-peer virtual currency exchange that caters to Russian nationals and has facilitated millions of dollars in transactions with two OFAC-designated Russian entities, Hydra Market and Garantex.

CISA urges software devs to weed out SQL injection vulnerabilities
2024-03-25 18:26

CISA and the FBI urged executives of technology manufacturing companies to prompt formal reviews of their organizations' software and implement mitigations to eliminate SQL injection security vulnerabilities before shipping.In SQL injection attacks, threat actors "Inject" maliciously crafted SQL queries into input fields or parameters used in database queries, exploiting vulnerabilities in the application's security to execute unintended SQL commands, such as exfiltrating, manipulating, or deleting sensitive data stored in the database.

Over 170K users caught up in poisoned Python package ruse
2024-03-25 18:00

More than 170,000 users have been affected by an attack using fake Python infrastructure with "Successful exploitation of multiple victims." The attacker hinged on various supply chain attack techniques to distribute malware-infected Python PyPI packages.

Hackers poison source code from largest Discord bot platform
2024-03-25 18:00

The Top.gg Discord bot community with over 170,000 members has been impacted by a supply-chain attack aiming to infect developers with malware that steals sensitive information. One of the more recent victims of the attacker is Top.gg, a popular search-and-discovery platform for Discord servers, bots, and other social tools geared towards gaming, boosting engagement, and improving functionality.

Hackers poison source code for largest Discord bot platform
2024-03-25 18:00

The Top.gg Discord bot community with over 170,000 members has been impacted by a supply-chain attack aiming to deliver malware that steals sensitive information. One of the more recent victims of the attacker is Top.gg, a popular search-and-discovery platform for Discord servers, bots, and other social tools geared towards gaming, boosting engagement, and improving functionality.