Security News

Researchers Discover Severe Security Flaws in Major E2EE Cloud Storage Providers
2024-10-21 06:59

Cybersecurity researchers have discovered severe cryptographic issues in various end-to-end encrypted (E2EE) cloud storage platforms that could be exploited to leak sensitive data. "The...

Researchers Uncover Cicada3301 Ransomware Operations and Its Affiliate Program
2024-10-17 13:54

Cybersecurity researchers have gleaned additional insights into a nascent ransomware-as-a-service (RaaS) called Cicada3301 after successfully gaining access to the group's affiliate panel on the...

WeChat devs introduced security flaws when they modded TLS, say researchers
2024-10-17 08:31

No attacks possible, but enough issues to cause concern Messaging giant WeChat uses a network protocol that the app's developers modified – and by doing so introduced security weaknesses,...

Researchers Uncover Hijack Loader Malware Using Stolen Code-Signing Certificates
2024-10-15 06:43

Cybersecurity researchers have disclosed a new malware campaign that delivers Hijack Loader artifacts that are signed with legitimate code-signing certificates. French cybersecurity company...

Crypto-apocalypse soon? Chinese researchers find a potential quantum attack on classical encryption
2024-10-14 06:30

With an off-the-shelf D-Wave machine Chinese researchers claim they have found a way to use D-Wave's quantum annealing systems to develop a promising attack on classical encryption.…

Researchers Uncover Major Security Vulnerabilities in Industrial MMS Protocol Libraries
2024-10-09 15:33

Details have emerged about multiple security vulnerabilities in two implementations of the Manufacturing Message Specification (MMS) protocol that, if successfully exploited, could have severe...

Researchers Warn of Ongoing Attacks Exploiting Critical Zimbra Postjournal Flaw
2024-10-02 05:56

Cybersecurity researchers are warning about active exploitation attempts targeting a newly disclosed security flaw in Synacor's Zimbra Collaboration. Enterprise security firm Proofpoint said it...

Cybersecurity Researchers Warn of New Rust-Based Splinter Post-Exploitation Tool
2024-09-25 12:38

Cybersecurity researchers have flagged the discovery of a new post-exploitation red team tool called Splinter in the wild. Palo Alto Networks Unit 42 shared its findings after it discovered the...

Researchers Find Over 22,000 Removed PyPI Packages at Risk of Revival Hijack
2024-09-04 13:00

A new supply chain attack technique targeting the Python Package Index (PyPI) registry has been exploited in the wild in an attempt to infiltrate downstream organizations. It has been codenamed...

Security Researcher Sued for Disproving Government Statements
2024-09-04 11:03

This story seems straightforward. A city is the victim of a ransomware attack. They repeatedly lie to the media about the severity of the breach. A security researcher repeatedly proves their...