Tag: government
-
Russia-aligned hackers target Tajikistan in new espionage campaign
The hackers used phishing emails containing government-themed lure documents to gain access to targeted systems. First seen on therecord.media Jump to article: therecord.media/russia-hackers-target-tajikistan-espionage
-
Chinese Hackers Exploit Trimble Cityworks Flaw to Infiltrate U.S. Government Networks
Tags: access, china, cisco, cve, exploit, flaw, government, hacker, malware, network, remote-code-execution, threat, vulnerabilityA Chinese-speaking threat actor tracked as UAT-6382 has been linked to the exploitation of a now-patched remote-code-execution vulnerability in Trimble Cityworks to deliver Cobalt Strike and VShell.”UAT-6382 successfully exploited CVE-2025-0944, conducted reconnaissance, and rapidly deployed a variety of web shells and custom-made malware to maintain long-term access,” Cisco Talos researchers First seen on thehackernews.com Jump…
-
Ivanti EPMM flaw exploited by Chinese hackers to breach govt agencies
Tags: breach, china, endpoint, exploit, flaw, government, hacker, ivanti, mobile, remote-code-executionChinese hackers have been exploiting a remote code execution flaw in Ivanti Endpoint Manager Mobile (EPMM) to breach high-profile organizations worldwide. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/ivanti-epmm-flaw-exploited-by-chinese-hackers-to-breach-govt-agencies/
-
Chinese hackers breach US local governments using Cityworks zero-day
Chinese-speaking hackers have exploited a now-patched Trimble Cityworks zero-day to breach multiple local governing bodies across the United States. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/chinese-hackers-breach-us-local-governments-using-cityworks-zero-day/
-
SideWinder APT Caught Spying on India’s Neighbor Gov’ts
A recent spear-phishing campaign against countries in South Asia aligns with broader political tensions in the region. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/sidewinder-apt-spying-indias-neighbor-govts
-
Top 12 US cities for cybersecurity job and salary growth
Tags: access, ai, apple, attack, blockchain, business, country, crowdstrike, cyber, cybersecurity, data, defense, finance, fintech, government, group, infrastructure, insurance, iot, jobs, metric, microsoft, nvidia, office, okta, privacy, software, startup, strategy, supply-chain, technology, training, warfareWhile major hubs like San Francisco naturally come to mind, and perform well based on the metrics we evaluated, there are many lesser-known cities that may be just as promising, if not more. These emerging destinations can offer easier access to job opportunities, more sustainable career paths, higher pay, and a lower cost of living.Here’s…
-
Versa Concerto 0-Day Flaw Enables Remote Code Execution by Bypassing Authentication
Tags: authentication, cyber, flaw, government, network, remote-code-execution, risk, service, vulnerability, zero-daySecurity researchers have uncovered multiple critical vulnerabilities in Versa Concerto, a widely deployed network security and SD-WAN orchestration platform used by large enterprises, service providers, and government entities. Despite responsible disclosure efforts over a 90-day period, these vulnerabilities remain unpatched, creating significant risk for organizations using this platform. The issues include authentication bypass flaws, arbitrary…
-
US-Regierung von unbefugtem Zugriff auf Messenger-Dienst betroffen
Messaging app seen in use by Mike Waltz suspends service after hackers claim breach First seen on nbcnews.com Jump to article: www.nbcnews.com/tech/security/telemessage-suspends-services-hackers-say-breached-app-rcna204925
-
Russia to enforce location tracking app on all foreigners in Moscow
The Russian government has introduced a new law that makes installing a tracking app mandatory for all foreign nationals in the Moscow region. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/government/russia-to-enforce-location-tracking-app-on-all-foreigners-in-moscow/
-
Russian Intelligence Hackers Stalk Western Logistics Firms
Tags: cctv, cybersecurity, government, hacker, hacking, intelligence, Internet, military, russia, technologyWestern Governments Publish Warning Over Unit 26165 Activities. A slew of Western cybersecurity agencies warned Wednesday that Russian intelligence is targeting logistics and technology companies in a prolonged hacking campaign that includes an emphasis on internet-connected cameras situated along border crossings and military installations. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/russian-intelligence-hackers-stalk-western-logistics-firms-a-28449
-
Nearly 70,000 impacted by Coinbase breach involving $20 million ransom demand
In documents filed with regulators in Maine on Tuesday, Coinbase said the information leaked included details like photos of passports and government IDs, as well as account information such as balances and transaction history. First seen on therecord.media Jump to article: therecord.media/nearly-70000-impacted-coinbase-breach
-
‘Deep concern’ for domestic abuse survivors as cybercriminals expected to publish confidential refuge addresses
A data extortion incident impacting the British government’s Legal Aid Agency could have serious implications for vulnerable people. First seen on therecord.media Jump to article: therecord.media/concern-domestic-survivors-breach-london
-
SideWinder APT Hackers Exploits Legacy Office Vulnerabilities to Deploy Malware Undetected
Tags: apt, credentials, cyber, exploit, government, hacker, malware, microsoft, military, office, threat, vulnerabilityThe Acronis Threat Research Unit (TRU) has revealed an advanced campaign believed to be orchestrated by the SideWinder advanced persistent threat (APT) group. This operation, running through early 2025, has primarily targeted high-value government and military institutions across Sri Lanka, Bangladesh, and Pakistan, exploiting unpatched legacy Microsoft Office vulnerabilities to deploy credential-stealing malware while evading…
-
BSI-Chefin: Neue US-Regierung macht BSI-Aufgaben dringlicher
Nicht nur die Cloudnutzung ist von den neuen Beziehungen zu den USA betroffen. Es geht auch um Smartphone-Betriebssysteme und Starlink auf Schiffen. First seen on golem.de Jump to article: www.golem.de/news/bsi-chefin-neue-us-regierung-macht-bsi-aufgaben-dringlicher-2505-196423.html
-
Over 1.5 Million Indian Websites Targeted in Coordinated Attacks
In a significant escalation of cyber warfare, over 1.5 million Indian websites have been targeted in a series of coordinated cyberattacks attributed to seven Advanced Persistent Threat (APT) groups, primarily based in Pakistan. These attacks, following the Pahalgam terror strike and India’s subsequent Operation Sindoor, aimed at critical infrastructure and government websites across the country.…
-
India Launches e-Zero FIR System to Fast-Track Financial Cybercrime Cases
Indian Ministry of Home Affairs (MHA) has introduced the e-Zero FIR system, a digital-forward solution to ensure justice for victims of financial cybercrimes. Announced by India’s Union Home Minister and Minister of Cooperation Amit Shah on May 19, 2025, this initiative is part of the government’s Cyber Secure Bharat initiative. First seen on thecyberexpress.com Jump…
-
Cyberthreat to Alabama state government ‘neutralized’
After a cyberattack first identified about 10 days ago, Alabama’s IT leaders said the “threat has been neutralized and Alabama’s core operations are safe and stable.” First seen on therecord.media Jump to article: therecord.media/alabama-cyberattack-neutralized
-
Major tech vendors call for streamlining US foreign cyber aid
A new coalition will push policymakers to change how the government oversees foreign purchases of U.S. cyber resources. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/foreign-cyber-aid-tech-companies-coalition/748599/
-
South Asian Ministries Hit by SideWinder APT Using Old Office Flaws and Custom Malware
High-level government institutions in Sri Lanka, Bangladesh, and Pakistan have emerged as the target of a new campaign orchestrated by a threat actor known as SideWinder.”The attackers used spear phishing emails paired with geofenced payloads to ensure that only victims in specific countries received the malicious content,” Acronis researchers Santiago Pontiroli, Jozsef Gegeny, and Prakas…
-
Dutch government passes law to criminalize cyber-espionage
The Netherlands has updated its digital security laws to criminalize cyber-espionage and increase penalties for computer-related offenses. First seen on therecord.media Jump to article: therecord.media/netherlands-law-criminalizes-cyber-espionage
-
‘Whatever we did was not enough’: How Salt Typhoon slipped through the government’s blind spots
Seven sources tell CyberScoop that a lack of coordination and miscommunication between federal agencies and the telecommunications industry left critical networks exposed to the Chinese hacking group. First seen on cyberscoop.com Jump to article: cyberscoop.com/salt-typhoon-us-government-response/
-
‘People were buying crossbows faster than I’d like’ how prepping went mainstream in Britain
Once, getting ready for the apocalypse was for the paranoid. Now, in the face of cyber-attacks, climate breakdown and nuclear threats, the UK government recommends it. Should everyone have a survival kit?This is a great time to be a shopkeeper, if that shop is for those worried about the breakdown of civilisation. “It started with…
-
Chinese cyber spooks lure laid-off US government workers
A Washington DC-based think tank has published evidence that Chinese intelligence services have been running a network of digital ‘front’ companies targeting laid-off government workers as recruits First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366624172/Chinese-cyber-spooks-lure-laid-off-US-government-workers
-
4 ways to safeguard CISO communications from legal liabilities
Tags: ciso, communications, corporate, cyber, data, defense, governance, government, incident, jobs, law, privacy, regulation, risk, vulnerabilityPay attention to the medium: CISOs also need to pay attention to what they say based on the medium in which they are communicating. Pay attention to “how we communicate, who we’re communicating with, what platforms we’re communicating on, and whether it’s oral or written,” Angela Mauceri, corporate director and assistant general counsel for cyber…
-
‘People are buying crossbows faster than I’d like’ how prepping went mainstream in Britain
Once, getting ready for the apocalypse was for the paranoid. Now, in the face of cyber-attacks, climate breakdown and nuclear threats, the UK government recommends it. Should everyone have a survival kit?This is a great time to be a shopkeeper, if that shop is for those worried about the breakdown of civilisation. “It started with…
-
Japanese Parliament Passes Active Cyber Defense Law
New Cyber Law Enables Agencies to Neutralize Attackers’ Servers Located Abroad. The Japanese Parliament passed the long-delayed active cyber defense bill on Friday, paving the way for government agencies to monitor external telecommunications and preemptively respond to signs of cyberattacks, including neutralizing attackers’ servers. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/japanese-parliament-passes-active-cyber-defense-law-a-28430
-
‘Operation RoundPress’ Targets Ukraine in XSS Webmail Attacks
A cyber-espionage campaign is targeting Ukrainian government entities with a series of sophisticated spear-phishing attacks that exploit XSS vulnerabilities. First seen on darkreading.com Jump to article: www.darkreading.com/threat-intelligence/operation-roundpress-ukraine-xss-webmail-attacks
-
Hackers Nab 15 Years of UK Legal Aid Applicant Data
Ministry of Justice Discloses April 23 Breach. Hackers stole from the U.K. Ministry of Justice personal information pertaining to criminal defendants in need of an attorney, the British government disclosed Monday. The ministry on Monday said it detected on April 23 a breach that targeted the Legal Aid Agency. First seen on govinfosecurity.com Jump to…
-
DDoSecrets Adds 410GB of TeleMessage Breach Data to Index
DDoSecrets indexes 410GB of breached TeleMessage data, including messages and metadata, from hack tied to unsecured Signal clone used by US government officials. First seen on hackread.com Jump to article: hackread.com/ddosecrets-adds-410gb-telemessage-breach-data-index/
-
UK government confirms massive data breach following hack of Legal Aid Agency
A large cache of sensitive data about people who applied for legal aid in the U.K. is potentially in the possession of cybercriminals, the government said. First seen on therecord.media Jump to article: therecord.media/uk-legal-aid-agency-data-breach

