Tag: cyber
-
Coyote Malware Launches Stealthy Attack on Windows Systems via LNK Files
FortiGuard Labs has issued a high-severity alert regarding the Coyote Banking Trojan, a sophisticated malware targeting Microsoft Windows users. Over the past month, researchers have identified malicious LNK files employing PowerShell commands to execute scripts and connect to remote servers, initiating a multi-stage attack. The primary objective of this Trojan is to harvest sensitive information…
-
New 0-Day Vulnerability in Arm Mali GPU Kernel Driver Exploited in the Wild
On February 3, 2025, Arm disclosed a vulnerability in the Mali GPU Kernel Driver that allows improper GPU processing operations. This issue affects Valhall GPU Kernel Driver versions ranging from r48p0 to r49p1 and r50p0 to r52p0, as well as the Arm 5th Gen GPU Architecture Kernel Driver within the same version ranges. The flaw…
-
CryptoDNA: AI-Powered Cryptojacking Defense Against DDoS Threats in Healthcare IoT
Tags: ai, attack, cyber, cybersecurity, data, ddos, defense, healthcare, Internet, iot, monitoring, network, service, threat, vulnerabilityThe integration of Internet of Things (IoT) and Internet of Medical (IoM) devices has revolutionized healthcare, enabling real-time monitoring, remote diagnostics, and data-driven decision-making. However, these advancements have also introduced significant cybersecurity vulnerabilities, particularly Distributed Denial-of-Service (DDoS) attacks. These attacks overwhelm networks with illegitimate requests, disrupting critical services and jeopardizing patient safety. In response to…
-
Microsoft Introduces AI-Generated Team Avatars for Personalization
Tech giant Microsoft has unveiled a groundbreaking feature for its Microsoft Teams platform: AI-generated avatars designed to revolutionize meeting personalization. This innovative feature allows users to represent themselves in meetings as digital avatars, offering a dynamic alternative to traditional video conferencing, especially for those who prefer not to turn on their cameras. The new […]…
-
OneMore Secure AB und Northwave Cyber Security gehen strategische Partnerschaft ein
Mit der Einführung neuer EU-Gesetze, einschließlich der NIS2-Richtlinie, steigen die Anforderungen an Sicherheit und Risikomanagement in der Lieferkette. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/onemore-secure-ab-und-northwave-cyber-security-gehen-strategische-partnerschaft-ein/a39643/
-
Globe Life Ransomware Attack Exposes Personal and Health Data of 850,000+ Users
Globe Life Inc., a prominent insurance provider, has confirmed a major data breach that exposed the personal and health-related information of over 850,000 users. The company disclosed the incident in a recent filing with the U.S. Securities and Exchange Commission (SEC), reporting that the breach resulted from an extortion attempt by an unknown threat actor.…
-
NVIDIA GPU Display Drivers Vulnerability Lets Attackers Access Files Remotely
NVIDIA has issued a critical security update to address multiple vulnerabilities in its GPU Display Driver and vGPU software, affecting both Windows and Linux systems. These vulnerabilities, disclosed in January 2025, pose risks such as denial of service (DoS), data tampering, information disclosure, and even code execution. Users are strongly advised to update their drivers…
-
PyPl Added Project Archival To Stop Attackers to Weaponize Malicious Packages
The Python Package Index (PyPI) has introduced a new feature that allows maintainers to mark projects as archived, signaling that the project is no longer actively maintained or expected to receive updates. This marks a significant step forward in supporting transparency and security in the Python ecosystem, enabling users to make informed decisions regarding their…
-
Linux 6.14 Released What’s New
The Linux Kernel 6.14-rc1 (release candidate 1) has been officially announced by Linus Torvalds, marking the conclusion of the merge window. Described as notably >>tiny
-
APT37 Hackers Exploit Group Chats to Deliver Malicious LNK Files
In 2024, South Korea witnessed an alarming surge in Advanced Persistent Threat (APT) attacks, with the state-sponsored APT37 group emerging as a significant threat actor. Leveraging sophisticated techniques, the group targeted individuals and organizations through malicious Hancom Office HWP documents and LNK files distributed via K Messenger group chats. These attacks primarily aimed to evade…
-
ChatGPT’s Deep Research Breakthrough Enables Faster-Than-Human Task Handling
OpenAI has introduced >>Deep Research,
-
Devil-Traff: Emerging Malicious SMS Platform Powering Phishing Attacks
In the ever-evolving landscape of cybercrime, bulk SMS platforms like Devil-Traff have emerged as powerful tools for phishing campaigns, exploiting trust and compromising security on a massive scale. Employees in organizations today face an increasing volume of communications emails, instant messages, and ticket updates, providing fertile ground for phishing scams to blend seamlessly into routine…
-
INDOHAXSEC Hacker Group Allegedly Breaches Malaysia’s National Tuberculosis Registry
The Indonesian hacker group >>INDOHAXSEC
-
39% of IT leaders fear major incident due to excessive workloads
Enterprise security operations teams find themselves stretched thin and contending with an escalating cyber threat landscape today. Many are understaffed and underfunded, leaving CISOs on edge about the consequences for the enterprise, and their careers.A recent survey from Adaptavist about fallout from last summer’s CrowdStrike outage found that two out of five (39%) IT leaders…
-
Parrot 6.3 Release, What’s New
The cybersecurity realm received an exciting update this week with the release ofParrot 6.3, the latest version of the Parrot Security operating system. As one of the most trusted Linux distributions tailored for ethical hackers, penetration testers, and security researchers, Parrot OS continues to set the benchmark for flexibility, performance, and innovation. So, what’s new…
-
The CISO’s role in advancing innovation in cybersecurity
Tags: access, advisory, ai, attack, best-practice, business, ceo, ciso, conference, cyber, cybersecurity, finance, network, phone, risk, startup, strategy, technology, threat, toolCybersecurity leaders have an advantage when it comes to innovation given their front seat facing new and old threats. That is why many CISOs are playing an active role in shaping emerging solutions, which also gives them a clear understanding of where current solutions fall short.”CISOs can play a part in supporting innovation by shaping…
-
New Process Hollowing Attack Vectors Uncovered in Windows 11 (24H2)
A significant evolution in the cybersecurity landscape has emerged with the uncovering of new vulnerabilities in Windows 11 (24H2). Process Hollowing, a widely used technique often referred to as RunPE, has encountered new challenges in this operating system version due to changes in the Windows loader, impacting both security researchers and attackers alike. Process Hollowing…
-
BeyondTrust Zero-Day Breach 17 SaaS Customers API Key Compromised
BeyondTrust, a leading provider of identity and access management solutions, disclosed a zero-day breach impacting 17 Remote Support SaaS customers. The incident, detected on December 5, 2024, has been linked to the compromise of an infrastructure API key used to access specific Remote Support SaaS instances. The breach allowed attackers to reset local application passwords…
-
Microsoft Advertisers Account Hacked Using Malicious Google Ads
Tags: attack, credentials, cyber, cybercrime, cybersecurity, exploit, google, login, malicious, malware, microsoft, network, phishing, riskCybersecurity experts have uncovered a sophisticated phishing campaign targeting Microsoft advertising accounts. The attack, orchestrated through malicious Google Ads, aims to steal login credentials of users accessing Microsoft’s advertising platform. This incident highlights the growing risk of malvertising, where cybercriminals exploit legitimate ad networks to deceive users. How the Attack Works The phishing campaign leverages…
-
The Hidden Cyber Trap: How Compromised Websites and Malicious AdTech Manipulate Users
In the cybersecurity world, analysts often focus on the adversary’s tactics, techniques, and procedures (TTPs), but what happens First seen on securityonline.info Jump to article: securityonline.info/the-hidden-cyber-trap-how-compromised-websites-and-malicious-adtech-manipulate-users/
-
SparkRAT: A Persistent Cross-Platform Cyber Threat Targeting macOS and Beyond
Since its initial release on GitHub in 2022 by user XZB-1248, SparkRAT has evolved into a widely used First seen on securityonline.info Jump to article: securityonline.info/sparkrat-a-persistent-cross-platform-cyber-threat-targeting-macos-and-beyond/
-
Hackers Hijack JFK File Release: Malware Phishing Surge
Veriti Research has uncovered a potentially growing cyber threat campaign surrounding the release of the declassified JFK, RFK, and MLK files. Attackers are capitalizing on public interest in these historical documents to launch potential malware campaigns, phishing schemes, and exploit attempts. Our research indicates that cybercriminals are quick to react to major public events, and……
-
Core Features in NSFOCUS RSAS R04F04 1-2
In the new NSFOCUS RSAS version R04F04, we optimized several core features and functions. In this post, we will focus on the optimization of the product interface function process during the vulnerability scanning process. Efficient Asset Management Vulnerabilities are asset-based, so it is necessary to sort out the existing assets of users and manage them…The…
-
Adversarial Misuse of Generative AI: How APTs Are Experimenting with AI for Cyber Operations
A new Google Threat Intelligence Group (GTIG) report titled “Adversarial Misuse of Generative AI” provides a detailed analysis First seen on securityonline.info Jump to article: securityonline.info/adversarial-misuse-of-generative-ai-how-apts-are-experimenting-with-ai-for-cyber-operations/
-
Why Secrets Management Can Ease Your Security Woes
Is Your Organization Truly Safe from Cyber Threats? Businesses across sectors rely on cloud technologies to drive operational efficiency and competitive advantage. Yet, this digital transformation brings with it hidden dangers, particularly. As organizations entrust more of their critical operations to the cloud, they expose themselves to new security risks. One important area that’s often……
-
SOPHOS meldet Stagnation: Cyber-Kriminelle gegenüber KI offenbar weiterhin skeptisch
First seen on datensicherheit.de Jump to article: www.datensicherheit.de/sophos-meldung-stagnation-cyber-kriminelle-ki-fortsetzung-skepsis
-
Welsh woman fined for flatulence-fueled cyber harassment
Court said her approach to child access dispute with partner’s ex really stinks First seen on theregister.com Jump to article: www.theregister.com/2025/01/31/wales_flatulence_harassment/

