Security News

2021 Hacker Report: Hackers are not just driven by money
2021-03-10 05:30

HackerOne released its 2021 Hacker Report that reveals a 63% increase in the number of hackers submitting vulnerabilities in 2020. Reports for vulnerabilities caused by trends like moving to the cloud have proliferated in the past year, with misconfiguration vulnerabilities rising by 310%. Other key findings 38% of hackers spent more time hacking since the COVID-19 pandemic started.

Report: Russian Hackers Exploit Lithuanian Infrastructure
2021-03-05 12:54

Hacker groups linked to Russian intelligence conducted cyber-attacks against top Lithuanian officials and decision-makers last year and used the Baltic nation's technology infrastructure as a base to hit targets elsewhere, a report by Lithuania's intelligence service said Thursday. The annual national security threat assessment report claimed that, among others, the Russian cyber-espionage group APT29 with alleged links to Russia's intelligence services "Exploited" Lithuania's information technology infrastructure "To carry out attacks by APT29 against foreign entities developing a COVID-19 vaccine."

Report: Quality, not quantity, is the hallmark of the latest waves of phishing attacks
2021-03-04 15:24

Cybercriminals have changed tactics since COVID-19, with surgically precise social engineering attacks targeting business apps replacing batch-and-blast phishing. A survey of IT professionals and leaders from email security firm GreatHorn finds big changes afoot in the world of email-targeting cyberattacks: The daily quantity of attacks has decreased, but those that remain are more precise and easier to miss.

SolarWinds reports $3.5 million in expenses from supply-chain attack
2021-03-02 17:42

SolarWinds has reported expenses of $3.5 million from last year's supply-chain attack, including costs related to incident investigation and remediation. Further expenses were recorded by SolarWinds after paying for legal, consulting, and other professional services related to the December hack and provided to customers for free.

Chinese Hackers Hijacked NSA-Linked Hacking Tool: Report
2021-02-22 21:07

New research has found evidence that a Chinese-affiliated threat group has hijacked a hacking tool previously used by the Equation Group. "Although we don't show any conclusive evidence that there is there any connection between China and the ShadowBrokers, we do show conclusive evidence that this Chinese group had in their possession a tool that was made by Equation Group, and not only that they had this tool, but they also repurposed it and used it, probably to attack many targets, including American targets," Yaniv Balmas, head of cyber research with Check Point Software, said.

Forrester report highlights Zero Trust Edge model for networking and security infrastructure
2021-02-19 15:43

In a new report, analysts from Forrester touted the Zero Trust Edge model as a way for organizations to unify networking and security infrastructure while also securing and enabling remote workers. "The Zero Trust Edge model is a safer on-ramp to the internet for organizations' physical locations and remote workers. A ZTE network is a virtual network that spans the internet and is directly accessible from every major city in the world. It uses Zero Trust Network Access to authenticate and authorize users as they connect to it and through it," Holmes wrote.

Kia Motors Hit With $20M Ransomware Attack – Report
2021-02-18 20:05

Kia Motors America has publicly acknowledged an "Extended system outage," but ransomware gang DoppelPaymer claimed it has locked down the company's files in a cyberattack that includes a $20 million ransom demand. The ransom note from DoppelPaymer, first published by BleepingComputer, said the attack was on Hyundai Motor America, the parent company of Kia Motors America, based in Irvine, Calif. It went on to say that the company has two to three weeks to pay up 404 Bitcoins, which is around $20 million as of this writing.

State of malware: 3 key findings in the latest Malwarebytes report
2021-02-16 13:44

The 2021 State of Malware Report from Malwarebytes found that cybercriminals are learning from the past to build smarter software and starting to modularize their products to make distribution easier. The report examined what malware was most active during 2020, as well as trends in attacks on specific devices such as Android phones and Mac laptops.

North Korea 'Tried to Hack' Pfizer for Vaccine Info - South's Spies: Reports
2021-02-16 11:50

North Korean hackers tried to break into the computer systems of pharmaceutical giant Pfizer in a search for information on a coronavirus vaccine and treatment technology, South Korea's spy agency said Tuesday, according to reports. The impoverished, nuclear-armed North has been under self-imposed isolation since closing its borders in January last year to try to protect itself from the virus that first emerged in neighbouring China and has gone on to sweep the world, killing more than two million people.

Report Highlights Cyber Risks to US Election Systems
2021-02-12 13:19

Election systems in the U.S. are vulnerable to cyber intrusions similar to the one that hit federal agencies and numerous businesses last year and remain a potential target for foreign hacking, according to a report released Wednesday. The report by the Center for Internet Security, a nonprofit that partners with the federal government on election security initiatives, focuses on how hardware and software components can provide potential entryways for hackers.