SugarGh0st RAT Attacking Organizations & Individuals in AI Research

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity company Proofpoint has found a new operation using the SugarGh0st Remote Access Trojan (RAT) that is going after AI research organizations in the United States. The operation, linked to a threat cluster known as UNK_SweetSpecter, went after businesses, …

New Cyber Attack Targeting Facebook Business Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The email campaign impersonates the Facebook Ads Team to trick users into clicking a malicious link, as the email leverages social engineering tactics like sender name spoofing and urgency to appear legitimate.  Grammatical errors and a suspicious link embedded in …

CISA Reveals Guidance For Implementation of Encrypted DNS Protocols

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

“Encrypted DNS Implementation Guidance,” a detailed document from the Cybersecurity and Infrastructure Security Agency (CISA), tells government agencies how to improve their cybersecurity by using encrypted Domain Name System (DNS) protocols. This advice is in line with Memorandum M-22-09 from …

Two Brothers Arrested for Attacking Blockchain & Stealing $25M

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Jason Peraire-Bueno, 28, of New York, and Anton Peraire-Bueno, 24, of Boston have been charged with wire fraud, plot to commit wire fraud, and conspiracy to commit money laundering. The charges are related to a complicated plan to take advantage …

Microsoft to Mandate Multi-Factor Authentication for All Azure Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has said that all Azure users will have to use multi-factor authentication (MFA) starting in July. This is a big step to make the cloud safer. This project is part of a larger attempt by Microsoft to improve security …

Darkgate Malware Weaponizing XLSX, HTML And PDF To Attack Windows Machines

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers often target XLSX, HTML, and PDF files as they are widely used, and their trustable file formats also attract them. This makes it easier to deliver them successfully to recipients who may not be aware. Forcepoint researchers recently asserted …

Top 10 Best Managed Service Providers (MSP) for CISO, CTO & IT Managers – 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

MSP or managed service providers, is an application designed to streamline the delivery and management of IT services to multiple customers.  It is a centralized platform that automates administrative tasks such as user provisioning, software licensing, and patch management.  Streamlines …

PoC Exploit Released for Ivanti EPMM MobileIron Core

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly disclosed vulnerability, CVE-2024-22026, has been found in Ivanti Endpoint Manager Mobile (EPMM), formerly MobileIron Core. This vulnerability allows a local attacker to gain root access to affected systems. The severity of this vulnerability is currently undetermined. CVE-2024-22026: Local …

Hackers Exploiting Microsoft’s Quick Assist Tool To Deliver Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers often target remote assist tools because they create a direct channel to access desired systems with minimum effort.  These tools have been built for remote control and access purposes, which makes them very appealing targets for attackers looking to …