Security News

Europol warns 443 online shops infected with credit card stealers
2023-12-22 14:50

Europol has notified over 400 websites that their online shops have been hacked with malicious scripts that steal debit and credit cards from customers making purchases. These attacks can go undetected for weeks or even several months, and depending on the popularity of the breached e-commerce platforms, cybercriminals can collect large numbers of payment card details.

Fake VPN Chrome extensions force-installed 1.5 million times
2023-12-22 13:30

Three malicious Chrome extensions posing as VPN infected were downloaded 1.5 million times, acting as browser hijackers, cashback hack tools, and data stealers. ReasonLabs notified Google of its findings, and the tech giant removed the offending extensions from the Chrome Web Store, but only after those had amassed a total of 1.5 million downloads.

Operation RusticWeb: Rust-Based Malware Targets Indian Government Entities
2023-12-22 13:19

Indian government entities and the defense sector have been targeted by a phishing campaign that's engineered to drop Rust-based malware for intelligence gathering. The activity, first detected in...

Decoy Microsoft Word Documents Used to Deliver Nim-Based Malware
2023-12-22 12:46

A new phishing campaign is leveraging decoy Microsoft Word documents as bait to deliver a backdoor written in the Nim programming language. "Malware written in uncommon programming languages puts...

Data Exfiltration Using Indirect Prompt Injection
2023-12-22 12:05

In Writer, users can enter a ChatGPT-like session to edit or create their documents. In this chat session, the LLM can retrieve information from sources on the web to assist users in creation of their documents.

UAC-0099 Using WinRAR Exploit to Target Ukrainian Firms with LONEPAGE Malware
2023-12-22 07:46

The threat actor known as UAC-0099 has been linked to continued attacks aimed at Ukraine, some of which leverage a high-severity flaw in the WinRAR software to deliver a malware strain called...

Microsoft Warns of New 'FalseFont' Backdoor Targeting the Defense Sector
2023-12-22 05:34

Organizations in the Defense Industrial Base (DIB) sector are in the crosshairs of an Iranian threat actor as part of a campaign designed to deliver a never-before-seen backdoor called FalseFont....

New insights into the global industrial cybersecurity landscape
2023-12-22 05:30

In this Help Net Security video, William Noto, VP and Industry Principal for Claroty, discusses their recent global survey of 1,100 IT and OT security professionals who work in critical infrastructure sectors. When it comes to ransomware attacks, the impact on OT environments is catching up to the impact on IT environments, according to Claroty.

Future of wireless technology: Key predictions for 2024
2023-12-22 05:00

Wi-Fi technology continues to evolve in ways that anticipate the needs of consumers, businesses, enterprise verticals, smart cities, and service providers, according to the Wireless Broadband Alliance. Fibre broadband deployments will continue to expand in most developed and developing markets, creating a need for an upgrade of home Wi-Fi networks to pass on the increased bandwidth to the device, which will drive the rapid adoption of Wi-Fi 6E and Wi-Fi 7.

11 GenAI cybersecurity surveys you should read
2023-12-22 04:30

As the integration of these technologies continues, a vigilant approach to ethical considerations and regulatory compliance is essential to ensure that the benefits of generative AI in cybersecurity are realized responsibly and sustainably. In this article, you will find excerpts from generative AI surveys we covered in 2023.