9/27-28/2023

U.S., Japan Authorities Warn of China-Linked Hacking Group BlackTech Attacking Cisco Routers

Budworm APT Evolves Toolset, Targets Telecoms and Government

Microsoft Breach Led to Chinese Theft of 60,000 U.S. State Dept Emails

China’s National Security Minister Rates Fake News Among the Most Pressing Cyber Threats of the Present Day

TikTok Employees Say Executive Moves to U.S. Show China Parent’s Influence

China’s Chip Equipment Firms See Revenue Surge as Beijing Seeks Semiconductor Self-Reliance

Five Alleged Russian Spies Appear in London Court

Krebs: ‘Snatch’ Ransom Group Exposes Visitor IP Addresses

Why Do Employees Keep Ignoring Workplace Cybersecurity Rules?

FBI: Dual Ransomware Attack Victims Now Get Hit Within 48 Hours

4 Legal Surprises You May Encounter After a Cybersecurity Incident

The Anatomy of a Facebook Account Heist

Security Researcher Stopped at U.S. Border for Investigating Crypto Scam

The Maker of ShotSpotter Is Buying the World’s Most Infamous Predictive Policing Tech
U.S. Gov’t Contractor Maximus Says MOVEit Hackers Accessed Health Data of ‘at Least’ 8 Million Individuals

MOVEit Maker Announces New Critical Vulnerability Affecting a Different File Transfer Tool

Building Automation Giant Johnson Controls Hit by Ransomware Attack

Russian Flight Booking System Suffers ‘Massive’ Cyberattack

Dallas: Royal Ransomware Gang Infiltrated Networks Weeks Before Striking

Ransomed.vc Group Hits NTT Docomo After Sony Breach Claims

Android Banking Trojan Zanubis Evolves to Target Peruvian Users

Bing Chat Responses Infiltrated by Ads Pushing Malware

GitHub Repositories Hit by Password-Stealing Commits Disguised as Dependabot Contributions

SSH Keys Stolen by Stream of Malicious PyPI and npm Packages

Cisco Catalyst SD-WAN Manager Flaw Allows Remote Server Access

Cisco Urges Admins to fix IOS Software Zero-Day Exploited in Attacks

Google Releases Patch for Actively Exploited Zero-Day Vulnerability

9/26/2023

Chinese Hackers TAG-74 Targets South Korean Organizations in a Multi-Year Campaign

Rising Cyberattacks on Schools Put Students at Risk

Why the Public Sector Is an Easy Target for Ransomware

Half of Cyber-Attacks Go Unreported

4 Pillars for Building a Responsible Cybersecurity Disclosure Program

CISA Publishes Hardware Bill of Materials Framework

GPUs From All Major Suppliers Are Vulnerable to New Pixel-Stealing Attack

CIA Builds Its Own Artificial Intelligence Tool in Rivalry With China

Tech Giants Launch Post-Quantum Cryptography Coalition

Microsoft is Rolling out Support for Passkeys in Windows 11

Palo Alto Networks in Advanced Talks to Buy Talon and Dig in a $1B Security Sweep
SickKids Impacted by BORN Ontario Data Breach That Hit 3.4 Million

New AtlasCross Hackers Use American Red Cross as Phishing Lure

Philippines State Health Org Struggling to Recover From Ransomware Attack

Sony Investigates Cyberattack as Hackers Fight Over Who’s Responsible

New ZeroFont Phishing Tricks Outlook Into
Showing Fake AV-Scans


ZenRAT Malware Uncovered in Bitwarden Impersonation

ShadowSyndicate Investigation Reveals RaaS Ties

ROBOT Crypto Attack on RSA is Back as Marvin Arrives

Hackers Actively Exploiting Openfire Flaw to Encrypt Servers

Critical JetBrains TeamCity Flaw Could Expose Source Code and Build Pipelines to Attackers

Google Assigns New Maximum Rated CVE to libwebp Bug Exploited in Attacks

9/25/2023

Voting Equipment Giants Team Up For Security

Ukrainian Military Targeted in Phishing Campaign Leveraging Drone Manuals

China-Linked EvilBamboo Targets Mobiles

Your Boss’s Spyware Could Train AI to Replace You

Google is Retiring Its Gmail Basic HTML View in January 2024

The Hot Seat: CISO Accountability in a New Era of SEC Regulation
MOVEit: BORN Ontario Child Registry Data Breach Affects 3.4 Million People

Hackers Threaten to Sell Stolen Sony Data on Dark Web

Progressive Leasing Warns That Sensitive Information Was Stolen During Cyberattack

Web3 Platform Mixin Network Hit by $200m Crypto Hack

Xenomorph Android Malware Now Targets U.S. Banks and Crypto Wallets

9/22-24/2023

Russian Hackers Seek War Crimes Evidence, Ukraine Cyber Chief Says

Government of Bermuda Links Cyberattack to Russian Hackers

Recently Patched Apple, Chrome Zero-Days Exploited in Spyware Attacks

New Apple Zero-Days Exploited to Target Egyptian ex-MP with Predator Spyware

Evasive Gelsemium Hackers Spotted in Attack Against Asian Gov’t

‘Power, Influence, Notoriety’: The Gen-Z Hackers Who Struck MGM, Caesars

Over 700 Dark Web Ads Offer DDoS Attacks Via IoT in 2023

The Shocking Data on Kia and Hyundai Thefts in the U.S.

LastPass: ‘Horse Gone Barn Bolted’ is Strong Password (Krebs)

Cisco’s Splunk Deal Shows Allure of AI in Cybersecurity

ESA Gets the Job of Building Europe’s Secure Satcomms Network

Ransomware Groups are Increasingly Targeting Small Businesses

SMBs Face Growing Cybersecurity Threats, but Basic Measures Can Lower Risks

CISA and NFL Collaborate to Secure Super Bowl LVIII

U.S. Government IT Staffer Arrested on Espionage Charges

Nigerian Man Pleads Guilty to Attempted $6 Million BEC Email Heist
Iranian Nation-State Actor OilRig Targets Israeli Organizations

National Student Clearinghouse Data Breach Impacts 890 Schools

Auckland University of Technology Operating Despite Cyberattack

Hong Kong Consumer Council Falls Victim to Ransom Hackers, Data Breach

Fake Celebrity Photo Leak Videos Flood TikTok With Temu Referral Codes

Lingerie Group Wacoal Hit by Cyber Attack

Hotel Hackers Redirect Guests to Fake Booking.com to Steal Cards

Crypto Firm Nansen Asks Users to Reset Passwords After Vendor Breach

Dallas Says Royal Ransomware Breached Its Network Using Stolen Account

T-Mobile Denies New Data Breach Rumors, Points to Authorized Retailer

Deadglyph: New Advanced Backdoor with Distinctive Malware Tactics

New Variant of Banking Trojan BBTok Targets Over 40 Latin American Banks

Akira Ransomware Mutates to Target Linux Systems, Adds TTPs

High-Severity Flaws Uncovered in Atlassian Products and ISC BIND Server

How Much Cybersecurity Expertise Do Boards Really Have? Not Much.

9/21/2023

UK-U.S. Confirm Agreement for Personal Data Transfers

Iranian Cyberattack Targets Israelis, Leaking Personal Information

Mysterious ‘Sandman’ Threat Actor Targets Telecom Providers Across Three Continents with LuaDream Malware

Ukrainian Hacker Suspected to be Behind “Free Download Manager” Malware Attack

India’s Biggest Tech Centers Named as Cyber Crime Hotspots

Cisco Makes Largest Ever Acquisition, Buying Cybersecurity Company Splunk for $28 Billion in Cash

Five Easy Wins in Cyber Security

GitHub Passkeys Generally Available for Passwordless Sign-Ins
Pizza Hut Australia: Data Breach Reveals Distressing Info: People Who Order Pineapple on Pizza

Air Canada Says Hackers Accessed Limited Employee Records During Cyberattack

University of Minnesota Confirms Data Breach

Donut Ransomware Gang Claims Attack on UK IT Services Provider Agilitas

Crown Point Schools (IN) 2022 Ransomware Attack Cost $1M to Resolve

Apple Emergency Updates Fix 3 New Zero-Days Exploited in Attacks

CISA’s Catalog of Must-Patch Vulnerabilities Crosses the 1,000 Bug Mark After 2 Years

9/20/2023

China Accuses U.S. Of Hacking Huawei Servers Since 2009

Voting Machine Companies Use Cybersecurity Stress Tests to Take on Election Conspiracy Theorists

Donald Trump Jr.’s X Account Apparently Hacked, Announces Father’s Death

MGM Says Its Hotels, Casinos ‘Operating Normally’ After Cyberattack

Companies Remain Reluctant to Admit Paying Off Hackers

1Password Rolls Out Public Passkey Support to Its Mobile Apps and Web Extensions

Signal Messenger Introduces PQXDH Quantum-Resistant Encryption

Finnish Authorities Shutter Dark Web Drugs Marketplace

Robocall Scammers Sentenced in U.S. After Netting $1.2M via India-Based Call Centers

Sysadmin and Spouse Admit to Part in ‘Massive’ Pirated Avaya Licenses Scam

Israeli Cyber Firm Legit Security Raises $40 Million in Private Funding

Free Download Manager Releases Script to Check for Linux Malware
TransUnion Denies It Was Hacked, Links Leaked Data to 3rd Party

T-Mobile Users Say Other People’s Account Information Is Appearing in Their App

Arlo’s New Security Tags Can Disable Your Security System With a Doorbell Tap

Pittsburg (KS) Cyberattack Disrupts Crawford Co. Jail

Claimants in Celsius Crypto Bankruptcy Targeted in Phishing Attack

Sophisticated Phishing Campaign Targeting Chinese Users with ValleyRAT and Gh0st RAT

Snatch Gang ‘Consistently Evolved’ in Targeting Multiple Industries, Feds Say

P2PInfect Botnet Activity Surges 600x with Stealthier Malware Variants

Fresh Wave of Malicious npm Packages Threaten Kubernetes Configs and SSH Keys

Fake WinRAR Proof-of-Concept Exploit Drops VenomRAT Malware

Critical Security Flaws Exposed in Nagios XI Network Monitoring Software

9/19/2023

War Crimes Tribunal International Criminal Court (ICC) Says It Has Been Hacked

Chinese Spies Infected Dozens of Networks With Sogu Thumb Drive Malware

Russian Allegedly Smuggled U.S. Weapons Electronics to Moscow

Marvell Disputes Claim That Cavium Backdoored Chips for Uncle Sam

Hackers Who Breached Casino Giants MGM, Caesars Also Hit 3 Other Firms, Okta Says

Krebs: Who’s Behind the 8Base Ransomware Website?

Dragos Raises $74 Million in Series D Extension Round
Threat Actor ‘USDoD’ Claims Major TransUnion Data Breach

Transparent Tribe Uses Fake YouTube Android Apps to Spread CapraRAT Malware

Hackers Backdoor Telecom Providers With New HTTPSnoop Malware

Operation Rusty Flag: Azerbaijan Targeted in New Rust-Based Malware Campaign

Inside the Code of a New XWorm Variant

Trend Micro Fixes Endpoint Protection Zero-Day Used in Attacks

GitLab Urges Users to Install Security Updates for Critical Pipeline Flaw

9/18/2023

FBI Chief Says China Has Bigger Hacking Program Than the Competition Combined

New SprySOCKS Linux Malware Used in Cyber Espionage Attacks

Kuwait’s Finance Ministry Says Cyber Attack Hits One of Its Systems

How North Korean Cyber Group Kimsuky Impersonated a Washington D.C. Analyst

Financially Motivated UNC3944 Threat Actor Shifts Focus to Ransomware Attacks

Former CIO Accuses Penn State of Faking Cybersecurity Compliance

How to Get Your Board on Board With Cybersecurity

6 Actions CEOs Must Take During a Cyberattack

Using AI In Cybersecurity: Exploring The Advantages And Risks

California Passes Bill to Set Up One-Stop Data Deletion Shop
Microsoft Worker Accidentally Exposes 38TB of Sensitive Data in Github Blunder

Can’t Find the Right Clorox Product? A Recent Cyberattack Is Causing Some Shortages

Skidmore College Confirms Ransomware Attack That Breached Personal Data of 121k

Sightpath Medical (MN) Data Breach Affects Patients of Sutter North Surgery Center

Another $40m Dispersed to Western Union Fraud Victims

Fraudsters Steal Over $1m in Three Weeks Through ‘Pig Butchering’ Crypto Scam

Hook: New Android Banking Trojan That Expands on ERMAC’s Legacy

Bumblebee Malware Returns in New Attacks Abusing WebDAV Folders

New AMBERSQUID Cryptojacking Operation Targets Uncommon AWS Services

Thousands of Juniper Devices Vulnerable to Unauthenticated RCE Flaw

9/15-17/2023

China’s Malicious Cyber Activity Informing War Preparations, Pentagon Says

Massive MGM and Caesars Hacks Epitomize a Vicious Ransomware Cycle

MGM Casino’s ESXi Servers Allegedly Encrypted in Ransomware Attack

Cybercriminals Combine Phishing and EV Certificates to Deliver Ransomware Payloads

NCSC: Why Cyber Extortion Attacks No Longer Require Ransomware

Cloud to Blame for Almost all Security Vulnerabilities

Security Chief Took Extreme Steps to Hide From Hacking Threats

You Need to Update Your Browser, Like, Yesterday

TikTok Flooded by ‘Elon Musk’ Cryptocurrency Giveaway Scams

TikTok Faces Massive €345 Million Fine Over Child Data Violations in E.U.

Google Agrees to $93 Million Settlement in California’s Location-Privacy Lawsuit
Several Colombian Government Ministries Hampered by Ransomware Attack

ORBCOMM Ransomware Attack Causes Trucking Fleet Management Outage

Retool Blames Breach on Google Authenticator MFA Cloud Sync Feature

Shell Says Its Australian BG Group Business Hit by MOVEit Breach

Pirated Software Likely Cause of Airbus Breach

North Korea’s Lazarus Group Suspected in $31 Million CoinEx Heist

Scattered Spider Traps 100+ Victims in Its Web as It Moves Into Ransomware

NodeStealer Malware Now Targets Facebook Business Accounts on Multiple Browsers

BlackCat Ransomware Hits Azure Storage with Sphynx Encryptor

Google Extends Security Update Support for Chromebooks to 10 Years

9/14/2023

Iranian Hackers Breach Defense Orgs in Password Spray Attacks

Russian Journalist’s iPhone Compromised by NSO Group’s Zero-Click Spyware

Krebs: FBI Hacker Dropped Stolen Airbus Data on 9/11

The Cyberattack That Sent Las Vegas Back in Time

MGM Casino Hack Shows Challenge in Defending Connected Tech

Caesars Entertainment Says Customer Data Stolen in Cyberattack

The Twisted Eye in the Sky Over Buenos Aires

Elon Musk in Hot Water With FTC Over Twitter Privacy Issues
Manchester Police Officers’ Data Breached in Third-Party Attack

Auckland Transport Authority Hit by Suspected Ransomware Attack

Upstate New York Nonprofit Hospitals Still Facing Issues After LockBit Ransomware Attack

Fake Cisco Webex Google Ads Abuse Tracking Templates to Push Malware

N-Able’s Take Control Agent Vulnerability Exposes Windows Systems to Privilege Escalation

Windows 11 ‘ThemeBleed’ RCE Bug Gets Proof-of-Concept Exploit

Microsoft Uncovers Flaws in ncurses Library Affecting Linux and macOS Systems

9/13/2023

The U.S. Congress Has Trust Issues. Generative AI Is Making It Worse

White House Calls for Stronger Open-Source Security

White House Urging Dozens of Countries to Publicly Commit to Not Pay Ransoms

Chilling Lack of Cyber Experts in UK Government, Finds Parliamentary Inquiry

China Says It Hasn’t Banned iPhones or Foreign Devices for Government Staff

France Demands Apple Pull iPhone 12 Due to High RF Radiation Levels

New Windows 11 Feature Blocks NTLM-Based Attacks Over SMB

Federal Mandates on Medical-Device Cybersecurity Get Serious

Rail Cybersecurity Is a Complex Environment

Cybersecurity Skills Gap: Roadies & Gamers Are Untapped Talent
MGM Resorts Breached by ‘Scattered Spider’ Hackers

Caesars Entertainment Paid Millions to Hackers in Attack

Hackers Steal $53 Million Worth of Cryptocurrency From CoinEx

Rollbar Discloses Data Breach After Hackers Stole Access Tokens

Airbus Suffers Data Leak Turbulence to Cybercrooks’ Delight

New Kubernetes Vulnerabilities Enable Remote Attacks on Windows Endpoints

Rust-Written 3AM Ransomware: A Sneak Peek into a New Malware Family

Researchers Detail 8 Vulnerabilities in Azure HDInsight Analytics Service

Mozilla Patches Firefox, Thunderbird Against Zero-Day Exploited in Attacks

Krebs: Adobe, Apple, Google & Microsoft Patch 0-Day Bugs

9/12/2023

China-Linked Hackers Breached a Power Grid—Again: RedFly

CISA Offers Free Security Scans for Public Water Utilities

Fighting Individual Ransomware Strains Fruitless, UK Agencies Suggest

The Cybersecurity Risks In Education Cannot Be Ignored

The Double-Edged Sword of Cyber Espionage

Cyber-criminals “Jailbreak” AI Chatbots For Malicious Ends

Europol: Financial Crime Makes “Billions” and Impacts “Millions”

10 Years Ago, Apple Finally Convinced Us to Lock Our Phones

Apple Backports BLASTPASS Zero-Day Fix to Older iPhones

OpenSSL 1.1.1 Reaches End of Life for All but the Well-Heeled
Critical GitHub Vulnerability Exposes 4,000+ Repositories to Repojacking Attack

Texas Medical Liability Trust Announces Data Breach

Sophisticated Phishing Campaign Deploying Agent Tesla, OriginBotnet, and RedLine Clipper

Beware: MetaStealer Malware Targets Apple macOS in Recent Attacks

Free Download Manager Site Redirected Linux Users to Malware for Years

Ransomware Access Broker Steals Accounts via Microsoft Teams Phishing

Adobe Warns of Critical Acrobat and Reader Zero-Day Exploited in Attacks

Mozilla Patches Firefox, Thunderbird Against Zero-Day Exploited in Attacks

Windows Systems Targeted in Multi-Stage Malware Attack

Grab Those Updates: Microsoft Flings Out Fixes for Already-Exploited Bugs

9/11/2023

Ransomware Attack Wipes Out Four Months of Sri Lankan Government Data

Lazarus Group Targets macOS in Supply Chain Assault

Charming Kitten’s New Backdoor ‘Sponsor’ Targets Brazil, Israel, and U.A.E.

Vietnamese Hackers Deploy Python-Based Stealer via Facebook Messenger

CISA Warns Govt Agencies to Secure iPhones Against Spyware Attacks

Pentagon Urges Collaboration in Cyber Defense

FBI and White House Likely Coerced Social Media Platforms Into Removing Posts, Appeals Court Rules

AI Chatbots Are Invading Your Local Government—and Making Everyone Nervous

Board Members Struggling to Understand Cyber Risks

Microsoft Will Block 3rd-Party Printer Drivers in Windows Update
MGM Resorts Shuts Down Some Computer Systems After Cyber Attack

Save the Children Feared Hit by Ransomware, 7TB Stolen

Huge DDoS Attack Against U.S. Financial Institution Thwarted

Hinds County (MS) Computer System Remains Under Ransomware Attack

Cuba Ransomware Group Unleashes Undetectable Malware

New HijackLoader Modular Malware Loader Making Waves in the Cybercrime World

New Wiki-Eve Attack Can Steal Numerical Passwords Over WiFi

Cybercriminals Using PowerShell to Steal NTLMv2 Hashes from Compromised Windows

Google Fixes Another Chrome Zero-Day Bug Exploited in Attacks

9/8-10/2023

Top U.S. Spies Meet With Privacy Experts Over Surveillance ‘Crown Jewel’

China Unleashes AI-Powered Image Generation For Influence Operations

Google TAG Exposes North Korean Campaign Targeting Researchers

U.S. Hospitals Paid $100M to Russian Ransomware Hackers

Your Wyze Webcam Might Have Let Other Owners Peek Into Your House

Temu Is Collecting User Data Including Text Messages and Bank Info, Claims Grizzly Research

Your New Car Is a Privacy Nightmare

Google Rolls Out Privacy Sandbox to Use Chrome Browsing History for Ads

3 Strategies to Defend Against Resurging Infostealers
Dymocks Booksellers Suffers Data Breach Impacting 836K Customers

Traderie, a Marketplace for In-Game Items, Alerts Users to Data Breach

Maidstone: Secondary School Hit by Cyber Attack

Millions Infected by Spyware Hidden in Fake Telegram Apps on Google Play

Associated Press Warns That AP Stylebook Data Breach Led to Phishing Attack

Microsoft Teams Phishing Attack Pushes DarkGate Malware

Cybercriminals Weaponizing Legitimate Advanced Installer Tool in Crypto-Mining Attacks

Cisco Warns of VPN Zero-Day Exploited by Ransomware Gangs

Notepad++ 8.5.7 Released With Fixes for Four Security Vulnerabilities

9/7/2023

Iranian Hackers Breach U.S. Aviation Org via Zoho, Fortinet Bugs

Chinese Social Media Campaigns Are Successfully Impersonating U.S. Voters, Microsoft Warns

North Korea Hackers Going After Russian Targets, Microsoft Says

Google: State Hackers Attack Security Researchers With New Zero-Day

U.S. and UK Mount Aggressive Crackdown on Trickbot and Conti Ransomware Gangs

Hundreds of Scam Pages Uncovered in Major Investment Fraud Campaign

Surge in Hospital Hacks Endangers Patients, Cyber Official Says

The International Criminal Court Will Now Prosecute Cyberwar Crimes

Facebook Trains Its AI on Your Data. Opting Out May Be Futile

UK Government Backs Down on Anti-Encryption Stance

Russian Businessman Gets 9 Years in Us Prison for Hack-And-Trade Scheme

CEO, Ex-NSA Hacker Says ‘People Hate’ This Advice—but It’s Your ‘Single Biggest’ Protection From Scams: Multi-Factor Authentication

Does Generative AI Comply With Asimov’s 3 Laws of Robotics?
Hackers Claim to Publish Prominent Israeli Hospital’s Patient Data

Hong Kong Tech Hub Cyberport Alerts Police, Privacy Watchdog After Reports of Ransomware Attack Exposing 400GB of Data

Bienville Orthopaedic Specialists (MS) Data Breach Leaks as Many as 240,000 Social Security Numbers

Mac Users Beware: Malvertising Campaign Spreads Atomic Stealer macOS Malware

Windows Cryptomining Attacks Target Graphic Designer’s High-Powered GPUs

Google Looker Studio Abused in Cryptocurrency Phishing Attacks

Rockstar Games Reportedly Sold Games With Razor 1911 Cracks on Steam

Alert: Apache Superset Vulnerabilities Expose Servers to Remote Code Execution Attacks

CISA Warns of Critical Apache RocketMG Bug Exploited in Attacks

Cisco BroadWorks Impacted by Critical Authentication Bypass Flaw

Apple Zero-Click iMessage Exploit Used to Infect iPhones with Spyware

Apple Discloses 2 New Zero-Days Exploited to Attack iPhones, Macs

9/6/2023

Russia-Backed APT28 Tried to Attack a Ukrainian Critical Power Facility

China Bans iPhone Use for Government Work

How China Demands Tech Firms Reveal Hackable Flaws in Their Products

A Rube Goldberg Chain of Failures Led to Earlier Breach of Microsoft-Hosted Government Emails

Krebs: Experts Fear Crooks are Cracking Keys Stolen in LastPass Breach

‘Modern Cars Are a Privacy Nightmare,’ the Worst Mozilla’s Seen

Flipper Zero Can Be Used to Launch iOS Bluetooth Spam Attacks

CrowdStrike CEO Talks Generative AI, Cybersecurity and New ‘Virtual Security Analyst’

Generative AI Could Revolutionize Email—for Hackers

Google to Make Disclosure of AI-Generated Content Mandatory for Election Advertisers

Cyber Company IronNet Furloughs Workers, Explores Bankruptcy

Guy Who Ran Bitcoins4Less Tells Feds He Had Less Than Zero Laundering Protections
Dunghill Leak Ransomware Gang Claims Credit for Sabre Data Breach

Coffee Meets Bagel Says Recent Outage Caused by Destructive Cyberattack

J&J’s Patient Assistance Program Suffers Data Breach, IBM Says

University of Michigan Requires Password Resets After Cyberattack

Toyota Says Filled Disk Storage Halted Japan-Based Factories

Investigation Underway Into Cybersecurity Breach at Hillsborough County Schools (FL)

Mirai Variant Infects Low-Cost Android TV Boxes for DDoS Attacks

Experts Uncover Underground Phishing “Empire” W3LL

Phishing Campaigns Deliver New SideTwist Backdoor and Agent Tesla Variant

High-Severity Vuln Discovered in Open-Source Content Management System PHPFusion

9 Alarming Vulnerabilities Uncovered in SEL’s Power Management Products

Zero-Day Alert: Latest Android Patch Update Includes Fix for Newly Actively Exploited Flaw

9/5/2023

Researchers Warn of Cyber Weapons Used by Lazarus Group’s Andariel Cluster

Russia Undertakes Disinformation Campaign Across Africa

The Strange Afterlife of Wagner’s Yevgeny Prigozhin

United Airlines Lifts Ground Stop After IT Issue

Buggy, Vulnerable Open-Source Code Seeps Into Business Tech

Huawei Files Lawsuit in Portugal Over Ban on Supplying 5G Equipment
Chipmaker NXP Confirms Data Breach Involving Customers’ Information

Atlas VPN Zero-Day Vulnerability Leaks Users’ Real IP Address

New BLISTER Malware Update Fueling Stealthy Network Infiltration

New Python Variant of Chaes Malware Targets Banking and Logistics Industries

Mend.io SAML Vulnerability Exposed

ASUS Routers Vulnerable to Critical Remote Code Execution Flaws

9/4/2023

Sensitive Data about UK Military Sites Potentially Leaked by LockBit

UK Electoral Commission Failed Basic Security Test Before Hack

X (Twitter) to Collect Biometric Data from Premium Users to Combat Impersonation

Artificial Intelligence: Transforming Healthcare, Cybersecurity, and Communications

Realism Reigns on AI at Black Hat and DEF CON

Cybersecurity for Startups: Best Tips and Strategies
Freecycle Confirms Massive Data Breach Impacting 7 Million Users

German Financial Agency Site Disrupted by DDoS Attack Since Friday

Crypto Gambling Site Stake Sees $41M Withdrawn in Confirmed Hack

Claxton-Hepburn Medical Center (NY) Reschedules Outpatient Appointments Following Cyber Attack

Medical Data Breach: Ayush Jharkhand Hacked

Hackers Exploit MinIO Storage System Vulnerabilities to Compromise Servers

9/1-3/2023

UK Ministry of Defence Hit by Russia-Linked Hackers as Security Secrets Are Leaked in Data Posted Online

Smishing Triad: China-Based Fraud Network Exposed

New SuperBear Trojan Emerges in Targeted Phishing Attack on South Korean Activists

Krebs: Why is .US Being Used to Phish So Many of Us?

Fake YouPorn Extortion Scam Threatens to Leak Your Sex Tape

How to Remove Your Personal Info From Google by Using Its ‘Results About You’ Tool

2 Polish Men Are Arrested for Radio Hack That Disrupted Trains

Cops Drill Into Chat Apps, Sink Plot to Smuggle Tons of Coke Into Europe

Children’s Snack Recalled After Its Website Caught Serving Porn

Proposed SEC Cybersecurity Rule Will Put Unnecessary Strain on CISOs
Golf Gear Giant Callaway Data Breach Exposes Info of 1.1 Million

University of Sydney Data Breach Impacts Recent Applicants

Cognizant / TMG Data Breach Impacts the Confidential Customer Information of Over 192k People

Maker of ‘Smart’ Chastity Cage Left Users’ Emails, Passwords, and Locations Exposed

Debenham High School IT System Hit by Cyber Attack

Threat Actors Targeting Microsoft SQL Servers to Deploy FreeWorld Ransomware

Chrome Extensions Can Steal Plaintext Passwords From Websites

Okta Warns of Social Engineering Attacks Targeting Super Administrator Privileges

PoC Exploit Released for Critical VMware Aria’s SSH Auth Bypass Vulnerability

Microsoft Reminds of Windows 11 21H2 Forced Updates Before End of Service