Tag: cyber
-
What’s worth automating in cyber hygiene, and what’s not
Cyber hygiene sounds simple. Patch your systems, remove old accounts, update your software. But for large organizations, this gets messy fast. Systems number in the thousands. … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2025/04/29/automating-cyber-hygiene/
-
Massive Attack: 4,800+ IPs Used to Target Git Configuration Files
A recent surge in cyber reconnaissance has put thousands of organizations at risk after GreyNoise, a global threat intelligence platform, detected an alarming spike in attempts to access sensitive Git configuration files. Between April 20 and 21, GreyNoise observed the daily count of unique IPs targeting these files soar past 4,800-a record-breaking figure and a…
-
‘Source of data’: are electric cars vulnerable to cyber spies and hackers?
British defence firms have reportedly warned staff not to connect their phones to Chinese-made EVsMobile phones and desktop computers are longstanding targets for cyber spies but how vulnerable are electric cars?On Monday the i newspaper claimed that British defence firms working for the UK government have warned staff against connecting or pairing their phones with…
-
Kritische Geschäftsabläufe: KI-gesteuerte Cyber-Angriffe nehmen zu
First seen on datensicherheit.de Jump to article: www.datensicherheit.de/kritisch-geschaeftsablaeufe-ki-cyber-angriffe-zunahme
-
CISA Adds Broadcom Brocade Fabric OS Flaw to Known Exploited Vulnerabilities List
Tags: advisory, cisa, cyber, cybersecurity, exploit, flaw, government, infrastructure, kev, vulnerabilityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent security advisory after adding a critical Broadcom Brocade Fabric OS vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog. The flaw, tracked as CVE-2025-1976, affects Broadcom’s widely deployed Brocade Fabric OS and has drawn increased concern from government and enterprise security teams due to its…
-
Cyber-Zwischenfall bei einem Energieversorgungsunternehmen in Kanada
Emera and Nova Scotia Power Responding to Cybersecurity Incident First seen on businesswire.com Jump to article: www.businesswire.com/news/home/20250428562798/en/Emera-and-Nova-Scotia-Power-Responding-to-Cybersecurity-Incident
-
Krebs: People should be ‘outraged’ at efforts to shrink federal cyber efforts
At the RSA Conference, former CISA chief Chris Krebs said recent efforts by China-linked hacking groups makes it more important than ever to grow the federal cyber workforce. First seen on therecord.media Jump to article: therecord.media/krebs-outrage-efforts-to-shrink-federal-cyber-workforce
-
Organisations Unprepared For Age of Quantum Computing
New research by ISACA has found that quantum computing, and the changes it will bring, is broadly welcomed by over half of cyber and IT professionals as a way of creating new opportunities for business. A further 44% believe quantum will create revolutionary innovations. But despite the expected impact of quantum computing, organisations are not…
-
MIWIC25: Caroline Kamper, Strategic Cyber Threat Intelligence Analyst, SecAlliance
Organised by Eskenzi PR in media partnership with the IT Security Guru, the Most Inspiring Women in Cyber Awards aim to shed light on the remarkable women in our industry. The following is a feature on one of 2024’s Top 20 women selected by an esteemed panel of judges. Presented in a Q&A format, the nominee’s answers are…
-
Cyber experts urge Trump to abandon Chris Krebs investigation
Dozens of cyber industry luminaries, many from the election security community, said the investigation could discourage important cyber work. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/chris-krebs-trump-investigation-letter-experts-eff/746558/
-
Trump moves threaten US cyber defenses, says former CISA director Easterly
First seen on scworld.com Jump to article: www.scworld.com/brief/trump-moves-threaten-us-cyber-defenses-says-former-cisa-director-easterly
-
RSAC 2025 preview: Industry tackles agentic AI, identity shifts, and cyber policy turbulence
First seen on scworld.com Jump to article: www.scworld.com/news/rsac-2025-preview-industry-tackles-agentic-ai-identity-shifts-and-cyber-policy-turbulence
-
Why our industry must shift from prevention to cyber resilience
First seen on scworld.com Jump to article: www.scworld.com/perspective/why-our-industry-must-shift-from-prevention-to-cyber-resilience
-
FBI Reports ₹1.38 Lakh Crore Loss in 2024, a 33% Surge from 2023
The FBI’s Internet Crime Complaint Center (IC3) has reported a record-breaking loss of $16.6 billion (approximately ₹1.38 lakh crore) due to cyber-enabled crimes in 2024, marking a staggering 33% increase from the previous year. Established 25 years ago, IC3 has evolved into the primary hub for reporting cyber fraud and threats, processing over 9 million…
-
Fog Ransomware Reveals Active Directory Exploitation Tools and Scripts
Cybersecurity researchers from The DFIR Report’s Threat Intel Group uncovered an open directory hosted at 194.48.154.79:80, believed to be operated by an affiliate of the Fog ransomware group, which emerged in mid-2024. This publicly accessible server revealed a sophisticated arsenal of tools and scripts tailored for reconnaissance, exploitation, credential theft, lateral movement, and persistence. The…
-
Python-Based Discord RAT Enables Remote Control and Disruption Through a Simple Interface
A newly analyzed Python-based Remote Access Trojan (RAT) has emerged as a significant cybersecurity threat, utilizing Discord as its command-and-control (C2) platform. Disguised as a benign script, this malware transforms the popular communication tool into a hub for malicious operations, allowing attackers to remotely control infected systems with alarming ease. By exploiting Discord’s encrypted traffic…
-
M&S betting on customer patience as cyber-attack threatens to ruin 2025’s strong start
Fashion revival and warm weather had boosted the retailer but the attack has halted website sales<ul><li><a href=”https://www.theguardian.com/business/2025/apr/28/m-and-s-cyber-attack-crisis-orders-data-marks-spencer-website-apps-refund”>When will orders be back, and is my data at risk?</li><li><a href=”https://www.theguardian.com/business/2025/apr/28/m-and-s-marks-spencer-warehouse-staff-cyber-attack”>Hundreds of warehouse staff to stay at home</li></ul>Marks & Spencer was enjoying a strong start to 2025 thanks to a fashion revival and the warm spring weather. That…
-
M&S pauses deliveries of some food items to Ocado after cyber-attack
Hack has wiped more than £500m off Marks & Spencer’s stock market value of M&S in the past week<ul><li><a href=”https://www.theguardian.com/business/2025/apr/28/m-and-s-cyber-attack-crisis-orders-data-marks-spencer-website-apps-refund”>When will M&S orders be back, and is my data at risk?</li><li><a href=”https://www.theguardian.com/business/2025/apr/28/m-and-s-betting-on-customer-patience-as-cyber-attack-threatens-to-ruin-strong-start-to-2025″>M&S betting on customer patience amid 2025’s strong start</li></ul>Marks & Spencer has been forced to pause deliveries of some packaged food items to the…
-
M&S cyber-attack: when will orders be back, and is my data at risk?
Marks & Spencer has halted orders on its website and apps, giving customers a refund for those placed after Wednesday<ul><li><a href=”https://www.theguardian.com/business/2025/apr/28/m-and-s-marks-spencer-warehouse-staff-cyber-attack”>M&S tells hundreds of warehouse staff to stay at home</li></ul>The cyber-attack at Marks & Spencer is <a href=”https://www.theguardian.com/business/2025/apr/28/m-and-s-marks-spencer-warehouse-staff-cyber-attack”>continuing to cause chaos for shoppers, with no clarity yet as to when the retailer’s systems will be…
-
Blackpoint Cyber Extends MDR Service to Improve Cyber Resiliency
Blackpoint Cyber today at the 2025 RSA Conference unveiled a unified security posture and response platform that is based on the company’s managed detection and response (MDR) service. Company CTO Manoj Srivastava said the CompassOne platform provides organizations the tool to discover assets along with the guidance needed to improve their security posture. The overall..…
-
Blackpoint Cyber Launches CompassOne Unified Platform: 5 Things To Know
The launch of the new CompassOne unified platform makes Blackpoint Cyber ‘the first company to do full-on managed security posture plus MDR,’ CEO Jon Murchison tells CRN. First seen on crn.com Jump to article: www.crn.com/news/security/2025/blackpoint-cyber-launches-compassone-unified-platform-5-things-to-know
-
Cybersecurity vendors are themselves under attack by hackers, SentinelOne says
“It’s practically taboo” for cyber firms to talk about being targeted, but SentinelLabs said in a new report that it has observed multiple threats. First seen on cyberscoop.com Jump to article: cyberscoop.com/cybersecurity-vendors-are-under-attack-sentinelone-says/
-
RansomHub Ransomware Deploys Malware to Breach Corporate Networks
The eSentire’s Threat Response Unit (TRU) in early March 2025, a sophisticated cyberattack leveraging SocGholish malware, also known as FakeUpdates, was uncovered targeting corporate networks. This attack, orchestrated by affiliates of RansomHub-a notorious Ransomware-as-a-Service (RaaS) group emerging in 2024-demonstrates a calculated approach to infiltrate high-profile organizations. SocGholish Malware as Initial Vector RansomHub markets its illicit…
-
19 APT Hackers Target Asia-based Company Servers Using Exploited Vulnerabilities and Spear Phishing Email
Tags: apt, attack, cyber, email, espionage, exploit, government, hacker, infrastructure, phishing, spear-phishing, threat, vulnerabilityThe NSFOCUS Fuying Laboratory’s global threat hunting system identified 19 sophisticated Advanced Persistent Threat (APT) attack campaigns, predominantly targeting regions across South Asia, East Asia, Eastern Europe, and South America. These incursions highlighted a continuation of targeted cyber espionage and sabotage activities, primarily focusing on government agencies, critical infrastructure, and prominent industry sectors through a…
-
FBI seeks public tips about Salt Typhoon
The bureau’s public alert follows months of conversations with the telecom industry about the far-reaching cyber espionage campaign by a Chinese nation-state threat actor. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/fbi-china-salt-typhoon-hack-telecom-tips/746490/
-
Advanced Multi-Stage Carding Attack Hits Magento Site Using Fake GIFs and Reverse Proxy Malware
A multi-stage carding attack has been uncovered targeting a Magento eCommerce website running an outdated version 1.9.2.4. This version, unsupported by Adobe since June 2020, left the site vulnerable due to unpatched security flaws. The malware employed a deceptive .gif file, tampered browser sessionStorage data, and a malicious reverse proxy server to steal credit card…
-
Cyber-espionage campaign found targeting exiled Uyghurs
A highly tailored malware campaign was aimed at senior members of the World Uyghur Congress exile group, according to researchers at the Citizen Lab. First seen on therecord.media Jump to article: therecord.media/uyghurs-spearphishing-campaign-citizen-lab
-
Hannibal Stealer: Cracked Variant of Sharp and TX Malware Targets Browsers, Wallets, and FTP Clients
A new cyber threat, dubbed Hannibal Stealer, has surfaced as a rebranded and cracked variant of the Sharp and TX stealers, originally promoted by the reverse engineering group ‘llcppc_reverse.’ Developed in C# and leveraging the .NET Framework, this information-stealing malware poses a significant risk by targeting a wide array of sensitive data. Hannibal Stealer focuses…
-
Rack Ruby Framework Vulnerabilities Let Attackers Inject and Manipulate Log Content
Researchers Thai Do and Minh Pham have exposed multiple critical vulnerabilities in the Rack Ruby framework, a cornerstone of Ruby-based web applications with over a billion global downloads. Identified as CVE-2025-25184, CVE-2025-27111, and CVE-2025-27610, these flaws pose significant risks to applications built on frameworks like Ruby on Rails and Sinatra. Rack, acting as a modular…

