Security News

Exposed Secrets are Everywhere. Here's How to Tackle Them
2024-01-05 10:03

Picture this: you stumble upon a concealed secret within your company's source code. Instantly, a wave of panic hits as you grasp the possible consequences. This one hidden secret has the power to...

Orange Spain Faces BGP Traffic Hijack After RIPE Account Hacked by Malware
2024-01-05 10:01

Mobile network operator Orange Spain suffered an internet outage for several hours on January 3 after a threat actor used administrator credentials captured by means of stealer malware to hijack...

Alert: Ivanti Releases Patch for Critical Vulnerability in Endpoint Manager Solution
2024-01-05 07:42

Ivanti has released security updates to address a critical flaw impacting its Endpoint Manager (EPM) solution that, if successfully exploited, could result in remote code execution (RCE) on...

Sandworm's Kyivstar attack should serve as a reminder of the Kremlin crew's 'global reach'
2024-01-05 07:30

Russia's Sandworm crew appear to have been responsible for knocking out mobile and internet services to about 24 million users in Ukraine last month with an attack on telco giant Kyivstar. The telco did not immediately respond to The Register's inquiries, but a Kyivstar spokesperson said it was working with the SBU to investigate the attack, and added that "No facts of leakage of personal and subscriber data have been revealed."

Russian Hackers Had Covert Access to Ukraine's Telecom Giant for Months
2024-01-05 07:27

Ukrainian cybersecurity authorities have disclosed that the Russian state-sponsored threat actor known as Sandworm was inside telecom operator Kyivstar's systems at least since May 2023. The...

January 2024 Patch Tuesday forecast: A Focus on Printing
2024-01-05 06:09

This article aims to provide a quick summary of some of the latest trends, announcements, and changes associated with IT patch operations while looking at the upcoming Patch Tuesday and what software updates to expect. December 2023 Patch Tuesday provided the smallest set of updates in recent memory.

New Bandook RAT Variant Resurfaces, Targeting Windows Machines
2024-01-05 05:16

A new variant of remote access trojan called Bandook has been observed being propagated via phishing attacks with an aim to infiltrate Windows machines, underscoring the continuous evolution of...

Breaking down the state of authentication
2024-01-05 05:00

In this Help Net Security video, Bassam Al-Khalidi, co-CEO of Axiad, discusses the results of Axiad's recent State of Authentication Survey. 39% indicated phishing is the most feared cyberattack, while 49% said it is the attack most likely to happen.

Escalating cyber threats: Bots, fraud farms, and cryptojacking surge, urgently requiring attention
2024-01-05 04:30

Cybercriminals turn to ready-made bots for quick attacks. Bots and human fraud farms were responsible for billions of attacks in the H1 of 2023 and into Q3, according to Arkose Labs.

Budget cuts take a toll on IT decision makers’ mental health
2024-01-05 04:00

60% of IT decision-makers agreed that budget cuts have negatively impacted their mental health and wellbeing, according to Integrity360. To add to that, 55% noted that the current economic climate has reduced access to mental health and wellbeing resources within their organization.