Security News

Ransomware attackers hop from on-premises systems to cloud to compromise Microsoft 365 accounts
2024-09-30 13:51

Storm-0501, an affiliate of several high-profile ransomware-as-a-service outfits, has been spotted compromising targets’ cloud environments and on-premises systems. “Storm-0501 is the latest...

Critical Flaws in Tank Gauge Systems Expose Gas Stations to Remote Attacks
2024-09-30 11:55

Critical security vulnerabilities have been disclosed in six different Automatic Tank Gauge (ATG) systems from five manufacturers that could expose them to remote attacks. "These vulnerabilities...

CUPS vulnerabilities affecting Linux, Unix systems can lead to RCE
2024-09-27 10:17

After much hyping and following prematurely leaked information by a third party, security researcher Simone Margaritelli has released details about four zero-day vulnerabilities in the Common UNIX...

CISA: Hackers target industrial systems using “unsophisticated methods”
2024-09-25 16:18

​CISA warned today of threat actors trying to breach critical infrastructure networks by targeting Internet-exposed industrial devices using "unsophisticated" methods like brute force attacks and...

Evaluating the Effectiveness of Reward Modeling of Generative AI Systems
2024-09-11 11:03

New research evaluating the effectiveness of reward modeling during Reinforcement Learning from Human Feedback (RLHF): “SEAL: Systematic Error Analysis for Value ALignment.” The paper introduces...

Microsoft to start force-upgrading Windows 22H2 systems next month
2024-09-10 14:40

Microsoft announced that Windows 11 installs reaching the end of support next month, on October 8, will be force-upgraded to Windows 11 23H2. [...]

Transport for London staff faces systems disruptions after cyberattack
2024-09-06 19:49

​Transport for London, the city's public transportation agency, revealed today that its staff has limited access to systems and email due to measures implemented in response to a Sunday cyberattack. [...]

New Rust-Based Ransomware Cicada3301 Targets Windows and Linux Systems
2024-09-03 13:16

Cybersecurity researchers have unpacked the inner workings of a new ransomware variant called Cicada3301 that shares similarities with the now-defunct BlackCat (aka ALPHV) operation. "It appears...

Malicious npm Packages Mimicking 'noblox.js' Compromise Roblox Developers’ Systems
2024-09-02 03:36

Roblox developers are the target of a persistent campaign that seeks to compromise systems through bogus npm packages, once again underscoring how threat actors continue to exploit the trust in...

Cicada3301 ransomware’s Linux encryptor targets VMware ESXi systems
2024-09-01 14:14

A new ransomware-as-a-service (RaaS) operation named Cicada3301 has already listed 19 victims on its extortion portal, as it quickly attacked companies worldwide. [...]