Latest Tweets

Latest Ransomware and Zero Day

The Big Feed

  • In this Risky Business News sponsored interview, Adam Boileau talks to Okta’s Cassio Sampaio about how cloud-native applications can move authorisation into a centralised model. This brings real benefits for consistency, control and auditing in distributed applications, beyond just the authentication part Okta is normally known for.

  • The European Union’s law enforcement agency, Europol, has confirmed a security breach of its web portal but says no operational data was compromised.

  • “It is so hot this year, no rains, and we have no water to water the pepper plants,” says farmer Chhim Laem – Copyright AFP STR

  • Infosec in brief Encrypted email service Proton Mail is in hot water again from some quarters, and for the same thing that earned it flack before: Handing user data over to law enforcement. 

  • Sponsored Post Organizations across the Asia Pacific need to urgently ramp up their IT security infrastructures in response to a significantly increasing level of cyber threats, security experts have warned.

  • The Ultimate Guide to the CISSP covers everything you need about the world’s premier cybersecurity leadership certification. Learn how CISSP and ISC2 will help you navigate your training path, succeed in certification, and advance your career so you’re ready to rise as a leader in cybersecurity.

  • [embedded content] In this Help Net Security round-up, we present excerpts from previously recorded videos in which security experts talk about the cybersecurity talent shortage and the role STEM education can play in solving that problem. They also discuss actions needed to improve cybersecurity education.

  • A new study by Dor Segal, a security researcher at Silverfort, has revealed a critical vulnerability in FIDO2, the popular passwordless authentication standard designed to protect against phishing and man-in-the-middle (MITM) attacks. The research demonstrates that, despite its strong security features, FIDO2-authenticated sessions can still be hijacked through MITM attacks, potentially exposing sensitive user data…

  • The notorious cybercriminal group, Scattered Spider, previously known for high-profile attacks on MGM and Caesars, has now broadened its scope to aggressively target the finance and insurance industries, according to a recent report from Resilience threat researchers. Using sophisticated tactics and lookalike domains, this group has orchestrated attacks on over 30 companies, demonstrating a dangerous…

  • A serious vulnerability (CVE-2024-32113) has been uncovered in Apache OFBiz, a popular suite of enterprise software tools. This flaw, described as a path traversal issue, could enable attackers to execute malicious code remotely on systems running vulnerable versions.

  • Cyble Research and Intelligence Labs (CRIL) has recently published a detailed analysis of a newly identified ransomware variant named Trinity, highlighting its potential links to the previously known Venus ransomware. This report delves into the technical similarities and operational tactics between these two formidable cyber threats.

  • Recently, NHS England Digital issued an urgent cybersecurity alert following the discovery and remediation of critical vulnerabilities within Arcserve’s Unified Data Protection (UDP) platform. This alert comes in the wake of potential exploitation attempts and the availability of a proof-of-concept (PoC) exploit, signaling a significant risk to organizations relying on this widely utilized enterprise backup…

  • Running a business in today’s digital age is a double-edged sword. On one hand, technology provides incredible opportunities for growth and efficiency. On the other hand, it also creates a larger playing field for cybercriminals. Data breaches, phishing scams, and malware attacks are all constant threats lurking online.

  • BC.Game Casino Shitcode “NODEPOSITZ” in 2024 BC.Game bonus promo code is an advertising strategy for the betting operator. It makes players try out the casino or probably keep playing here due to the welcome bonus and cash awards.

  • The ExCPT (Exam for the Certification of Pharmacy Technicians) test is a crucial credential for individuals seeking a career as a pharmacy technician. This comprehensive certification exam assesses the knowledge and skills required to perform the duties of a pharmacy technician effectively. Whether you’re a recent graduate or an experienced professional, passing the ExCPT test…

  • In today’s data-driven environment, accessing the right information at the right time is crucial for any business to thrive. The advent of the Cognistx AI-powered enterprise search, like Cognistx SQUARE, has been a game-changer in this respect. These tools are specifically designed to comb through an expansive array of documents—whether they are PDFs, audio files,…

  • Birth control misinformation is exploding on social media platforms – Copyright AFP Jim WATSON

  • AhnLab SEcurity Intelligence Center (ASEC) has been continuously covering malware disguised as copyright violation warnings and resumes as a means of distributing ransomware and Infostealers.

  • AhnLab’s Mobile Analysis Team has confirmed cases of romance scams where perpetrators establish rapport by posing as overseas friends or romantic partners. They exploit this connection to solicit money under the guise of cryptocurrency investments.

  • Palestinians transport their belongings as they flee Rafah in the southern Gaza Strip amid the ongoing conflict between Israel and the Hamas militant group – Copyright AFP –