Security News

Hackers employ nuanced tactics to evade detection
2024-01-02 05:00

Threat actors evolved tactics, opting for a more nuanced approach that spread attacks across a broader timeframe to blend in with legitimate traffic and evade detection during peak holiday shopping times, according to Cequence Security. The data suggests that sophisticated attackers began their "Attack runs" earlier in the year to lay the groundwork for holiday sales to try and avoid the retailers' security lockdowns as much as possible.

Wi-Fi 7’s mission-critical role in enterprise, industrial networking
2024-01-02 04:30

Wi-Fi 7 is three times faster than Wi-Fi 6 because it supports 4K QAM and channel widths up to 320 MHz versus 160 MHz for Wi-Fi 5 and Wi-Fi 6. Wi-Fi 7 will enable consumer, enterprise, Industry 4.0, medical, smart city and other applications that are impractical or impossible with other wired and wireless technologies, providing twice the bandwidth of Wi-Fi 6 and providing features such as deterministic network support.

Cybercriminals set their sights on crypto markets
2024-01-02 04:00

The cryptocurrency market has grown significantly, attracting both enthusiasts and investors. The rise of cryptocurrencies has also brought forth an unprecedented need for cybersecurity measures.

The law enforcement operations targeting cybercrime in 2023
2024-01-01 16:05

In 2023, we saw numerous law enforcement operations targeting cybercrime operations, including cryptocurrency scams, phishing attacks, credential theft, malware development, and ransomware attacks. While some of these operations were more successful than others, law enforcement has been increasingly using hack-back tactics to infiltrate operations and disrupt them.

The biggest cybersecurity and cyberattack stories of 2023
2024-01-01 15:09

The company states that the attackers only breached a small number of accounts during the credential-stuffing attacks. The increasing DDoS attacks and their impact led the U.S. Cybersecurity and Infrastructure Security Agency to release an advisory about these incidents.

New Variant of DLL Search Order Hijacking Bypasses Windows 10 and 11 Protections
2024-01-01 14:00

Security researchers have detailed a new variant of a dynamic link library (DLL) search order hijacking technique that could be used by threat actors to bypass security mechanisms and achieve...

New Terrapin Flaw Could Let Attackers Downgrade SSH Protocol Security
2024-01-01 09:37

Security researchers from Ruhr University Bochum have discovered a vulnerability in the Secure Shell (SSH) cryptographic network protocol that could allow an attacker to downgrade the connection's...

New JinxLoader Targeting Users with Formbook and XLoader Malware
2024-01-01 06:52

A new Go-based malware loader called JinxLoader is being used by threat actors to deliver next-stage payloads such as Formbook and its successor XLoader. The disclosure comes from cybersecurity...

Android game dev’s Google Drive misconfig highlights cloud security risks
2023-12-31 15:09

Japanese game developer Ateam has proven that a simple Google Drive configuration mistake can result in the potential but unlikely exposure of sensitive information for nearly one million people over a period of six years and eight months. Setting Google Drive to "Anyone with the link can view" makes it viewable only to those with the exact URL, typically reserved for collaboration between people working with non-sensitive data.

New Black Basta decryptor exploits ransomware flaw to recover files
2023-12-30 15:14

Researchers have created a decryptor that exploits a flaw in Black Basta ransomware, allowing victims to recover their files for free. The decryptor allows Black Basta victims from November 2022 to this month to potentially recover their files for free.