Security News

LogMeOnce vs Bitwarden (2024): Which Password Manager is Better?
2024-02-16 15:31

Large organizations can contact both LogMeOnce and Bitwarden for curated pricing to get an enterprise-level solution. Feature comparison: LogMeOnce vs. Bitwarden Zero-knowledge principles and overall security.

North Korean hackers now launder stolen crypto via YoMix tumbler
2024-02-16 14:31

The North Korean hacker collective Lazarus, infamous for having carried out numerous large-scale cryptocurrency heists over the years, has switched to using YoMix bitcoin mixer to launder stolen proceeds. Some of the largest cryptocurrency theft operations Lazarus conducted in recent years include the March 2022 Ronin Network hack that yielded $625 million, the Harmony Horizon hack in June 2022 that resulted in losses of $100 million, and the July 2023 Alphapo heist from where the hackers pocketed $60 million worth of crypto.

RustDoor macOS Backdoor Targets Cryptocurrency Firms with Fake Job Offers
2024-02-16 13:27

Several companies operating in the cryptocurrency sector are the target of a newly discovered Apple macOS backdoor codenamed RustDoor. RustDoor was first documented by Bitdefender last week,...

Cutting kids off from the dark web – the solution can only ever be social
2024-02-16 12:01

The murder of 16-year-old schoolgirl Brianna Ghey has kickstarted a debate around limiting children's access to the dark web in the UK, with experts highlighting the difficulty in achieving this. Ciaran Martin, the National Cyber Security Centre's first CEO and current Oxford University professor, weighed into the discussion on Thursday, saying that there is no single technology-based solution and that there should be a greater focus on the dark web in the country's schools.

U.S. authorities disrupt Russian intelligence’s botnet
2024-02-16 10:54

In January 2024, an operation dismantled a network of hundreds of SOHO routers controlled by GRU Military Unit 26165, also known as APT 28, Sofacy Group, Forest Blizzard, Pawn Storm, Fancy Bear, and Sednit. The Department's court-authorized operation leveraged the Moobot malware to copy and delete stolen and malicious data and files from compromised routers.

Why We Must Democratize Cybersecurity
2024-02-16 10:50

With breaches making the headlines on an almost weekly basis, the cybersecurity challenges we face are becoming visible not only to large enterprises, who have built security capabilities over the...

Malicious 'SNS Sender' Script Abuses AWS for Bulk Smishing Attacks
2024-02-16 10:49

A malicious Python script known as SNS Sender is being advertised as a way for threat actors to send bulk smishing messages by abusing Amazon Web Services (AWS) Simple Notification Service (SNS)....

U.S. State Government Network Breached via Former Employee's Account
2024-02-16 07:40

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has revealed that an unnamed state government organization's network environment was compromised via an administrator account...

U.S. Government Disrupts Russia-Linked Botnet Engaged in Cyber Espionage
2024-02-16 06:49

The U.S. government on Thursday said it disrupted a botnet comprising hundreds of small office and home office (SOHO) routers in the country that was put to use by the Russia-linked APT28 actor to...

Gmail & Yahoo DMARC rollout: When cyber compliance gives a competitive edge
2024-02-16 06:00

As Gmail and Yahoo take steps to enforce stricter email authentication, organizations that are proactive in their DMARC compliance will not only enhance their security posture but also gain a significant advantage: improved email deliverability translates into better engagement rates, bolstering sales and revenue. Thus, DMARC compliance is not merely about meeting a standard but seizing an opportunity to stand out in a crowded digital marketplace.