Category: Uncategorized
-
Nigerian Pleads Guilty in US to Million-Dollar BEC Scheme Role Ionut Arghire
Kosi Goodness Simon-Ebo, a Nigerian national, pleaded guilty in a US court to his involvement in a million-dollar BEC fraud scheme. The post Nigerian Pleads Guilty in US to Million-Dollar BEC Scheme Role appeared first on SecurityWeek. Read More
-

Ukrainian Military Targeted in Phishing Campaign Leveraging Drone Manuals [email protected] (The Hacker News)
Ukrainian military entities are the target of a phishing campaign that leverages drone manuals as lures to deliver a Go-based open-source post-exploitation toolkit called Merlin. “Since drones or Unmanned Aerial Vehicles (UAVs) have been an integral tool used by the Ukrainian military, malware-laced lure files themed as UAVs service manuals have begun to surface,” Securonix…
-
900 US Schools Impacted by MOVEit Hack at National Student Clearinghouse Eduard Kovacs
Nearly 900 US schools are impacted by the MOVEit hack at the educational nonprofit National Student Clearinghouse. The post 900 US Schools Impacted by MOVEit Hack at National Student Clearinghouse appeared first on SecurityWeek. Read More
-

Watch the Webinar — AI vs. AI: Harnessing AI Defenses Against AI-Powered Risks [email protected] (The Hacker News)
Generative AI is a double-edged sword, if there ever was one. There is broad agreement that tools like ChatGPT are unleashing waves of productivity across the business, from IT, to customer experience, to engineering. That’s on the one hand. On the other end of this fencing match: risk. From IP leakage and data privacy risks…
-

Are You Willing to Pay the High Cost of Compromised Credentials? [email protected] (The Hacker News)
Weak password policies leave organizations vulnerable to attacks. But are the standard password complexity requirements enough to secure them? 83% of compromised passwords would satisfy the password complexity and length requirements of compliance standards. That’s because bad actors already have access to billions of stolen credentials that can be used to compromise additional accounts byRead More
-
City of Dallas Details Ransomware Attack Impact, Costs Ionut Arghire
City of Dallas has approved an $8.5 million budget to restore systems following a Royal ransomware attack in May 2023. The post City of Dallas Details Ransomware Attack Impact, Costs appeared first on SecurityWeek. Read More
-

From Watering Hole to Spyware: EvilBamboo Targets Tibetans, Uyghurs, and Taiwanese [email protected] (The Hacker News)
Tibetan, Uyghur, and Taiwanese individuals and organizations are the targets of a persistent campaign orchestrated by a threat actor codenamed EvilBamboo to gather sensitive information. “The attacker has created fake Tibetan websites, along with social media profiles, likely used to deploy browser-based exploits against targeted users,” Volexity security researchers Callum Roxan, PaulRead More
-
In-the-Wild Exploitation Expected for Critical TeamCity Flaw Allowing Server Takeover Ionut Arghire
A critical vulnerability in the TeamCity CI/CD server could allow unauthenticated attackers to execute code and take over vulnerable servers. The post In-the-Wild Exploitation Expected for Critical TeamCity Flaw Allowing Server Takeover appeared first on SecurityWeek. Read More
-
Predator Spyware Delivered to iOS, Android Devices via Zero-Days, MitM Attacks Eduard Kovacs
Predator spyware delivered to iPhones and Android devices using iOS and Chrome zero-day vulnerabilities and MitM attacks. The post Predator Spyware Delivered to iOS, Android Devices via Zero-Days, MitM Attacks appeared first on SecurityWeek. Read More
-

New Report Uncovers Three Distinct Clusters of China-Nexus Attacks on Southeast Asian Government [email protected] (The Hacker News)
An unnamed Southeast Asian government has been targeted by multiple China-nexus threat actors as part of espionage campaigns targeting the region over extended periods of time. “While this activity occurred around the same time and in some instances even simultaneously on the same victims’ machines, each cluster is characterized by distinct tools, modus operandi and…
