CISA Warns of Five Vulnerabilities Actively Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning regarding five critical vulnerabilities that are being actively exploited in the wild. Organizations using affected products are urged to apply vendor-provided mitigations or discontinue use if no solutions …

SambaSpy Attacking Windows Users With Weaponized PDF Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors often make use of weaponized PDF files as they enable them to deliver malware and execute attacks through phishing schemes.  These PDFs can contain embedded malicious code, links, and scripts that exploit vulnerabilities in PDF readers, making them …

Cyber Attack on Security Firm Dr.Web Forces Servers Disconnection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a recent cyberattack, Russian cybersecurity firm Doctor Web (Dr.Web) was forced to disconnect all its servers to mitigate the threat and ensure the safety of its infrastructure. Cyber Attack on Security Firm Dr.Web Forces Servers Disconnection The attack, which …

Top 10 Best Cyber Security Companies in 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity leaders face immense pressure to protect their organizations from increasingly sophisticated cyber threats. With over 1,636 cyberattacks occurring weekly per organization and 98% of web applications found vulnerable to attacks, IT teams often struggle to keep their defenses robust …

SOC Analysts Can Now Use ANY.RUN Malware Sandbox with Splunk

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Splunk users can now leverage ANY.RUN’s sandbox and threat intelligence directly within their Splunk SOAR environment. This allows for the analysis of suspicious files and URLs within the ANY.RUN sandbox while enriching investigations with threat data from TI Lookup.  It …

Ghost Cybercrime Platform Dismantled, Admin Charged

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Law enforcement agencies have successfully dismantled “Ghost,” a sophisticated encrypted communication platform allegedly designed exclusively for criminal use. The operation, codenamed “Kraken,” resulted in the arrest of the platform’s alleged mastermind and administrator, a 32-year-old man from New South Wales, …

Chinese Hackers Hijacked Routers & IoT Devices to Create Botnet, NSA Warns

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A joint cybersecurity advisory issued by the Federal Bureau of Investigation (FBI), Cyber National Mission Force (CNMF), and National Security Agency (NSA) has revealed that hackers linked to the People’s Republic of China (PRC) have compromised thousands of Internet-connected devices. …

UNC2970 Hackers Targeting Job Seekers with Weaponized PDF Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Trojanized PDF readers are malicious software that are disguised as legitimate PDF viewing applications.  They are primarily used by the threat actors to deliver malware by exploiting vulnerabilities in the PDF format and tricking users into executing malicious code. Recently, …

What is Block Cipher?

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Block ciphers are a fundamental component of modern cryptography, crucial in securing data across various digital platforms. Unlike stream ciphers, which encrypt data one bit at a time, block ciphers process data in fixed-size blocks, typically 64 or 128 bits. …

Beware of New AliGater Attacking Outdated Windows Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Malvertising (malicious advertising) refers to the practice of embedding harmful code within online advertisements, which can lead to malware infections on users’ devices.  This technique often exploits legitimate advertising networks, making it difficult for both users and publishers to detect …