Ascension Health Hacked – Ransomware Attack Compromised 5.6 Million Patients Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ascension Health, one of the largest health systems in the United States, has reported a significant data security breach that could potentially affect around 5.6 million patient records, including patients and employees. The organization announced that unauthorized activity was detected …

Mastercard Completes Acquisition of Cybersecurity Firm Recorded Future for $2.6 Billion

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Mastercard (NYSE: MA) has officially finalized the acquisition of Recorded Future, a leading provider of AI-driven threat intelligence. Mastercard Operating in over 200 countries and territories worldwide, Mastercard is a global leader in enabling digital economies that empower individuals, businesses, …

Critical PHP Zero-Day Vulnerability in Craft CMS Lets Hackers Gain Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant security vulnerability in Craft CMS, one of the most widely used PHP-based content management systems, has been uncovered, allowing unauthenticated remote code execution (RCE) under default configurations. The vulnerability, identified as CVE-2024-56145, was disclosed by security researchers and …

Researchers Exploit Reflected Input with HTTP Range Header To Bypass Browser Restriction

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered a technique that takes previously unexploitable reflected input vulnerabilities and turns them into fully functional attacks through clever use of HTTP Range headers. The findings highlight a new potential threat vector for web applications once considered …

WhatsApp Wins NSO Pegasus Spyware Hacking Case After 5-Year Legal Battle

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

After five years of contentious litigation, Meta Platforms Inc., the parent company of WhatsApp, emerged victorious in its lawsuit against NSO Group, the controversial Israeli firm behind the Pegasus spyware. The landmark decision, handed down by a federal court in …

McDonald’s Delivery App Vulnerability Let Anyone Place an Order for Just $0.01

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability was found in McDonald’s McDelivery, one of India’s top food delivery apps, allowing unlimited orders for just $0.01. The flaws were identified by a researcher who conducted a detailed investigation into the app, successfully uncovering a range …

Authorities Arrested LockBit Ransomware Developer & Team Core Member

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

U.S. authorities have unveiled charges against Rostislav Panev, a dual Russian-Israeli national, for his alleged role as a key developer of the notorious LockBit ransomware group. Panev, 51, was arrested in Israel in August and is currently awaiting extradition to …

Malicious Apps On Amazon Appstore Records Screen & Intercept OTP’s

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Recently, researchers have discovered a relatively harmless app called “BMI CalculationVsn” on the Amazon App Store, masquerading as a normal health tool to steal data. This application performs malicious actions like screen recording, retrieving a list of all installed apps, …

NetWalker Ransomware Operator Sentenced For Hacking Hundreds Of Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A Romanian man, Daniel Christian Hulea, 30, was sentenced to 20 years in prison for his role in the NetWalker ransomware attacks, a sophisticated cybercrime operation that targeted hundreds of organizations worldwide. The U.S. Department of Justice announced the sentencing, …

Hackers Selling Cracked Version of Acunetix Tool as Araneida Scanner

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors reportedly sell a cracked version of Acunetix, a powerful commercial web application vulnerability scanner, for malicious purposes. The cracked software, known as the “Araneida Scanner,” is being marketed as a cloud-based attack tool on various cybercrime forums and …