Hackers Spread BIOPASS Malware via Chinese Online Gambling Sites

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers are warning about a new malware that’s striking online gambling companies in China via a watering hole attack to deploy either Cobalt Strike beacons or a previously undocumented …

Kaseya Releases Patches for Flaws Exploited in Widespread Ransomware Attack

Blog WriterThe Hacker News - Original news source is thehackernews.com

Florida-based software vendor Kaseya on Sunday rolled out software updates to address critical security vulnerabilities in its Virtual System Administrator (VSA) software that was used as a jumping off point …

New SaaS Security Report Dives into the Concerns and Plans of CISOs in 2021

Blog WriterThe Hacker News - Original news source is thehackernews.com

For years, security professionals have recognized the need to enhance SaaS security. However, the exponential adoption of Software-as-a-Service (SaaS) applications over 2020 turned slow-burning embers into a raging fire.  Organizations …

Magecart Hackers Hide Stolen Credit Card Data Into Images for Evasive Exfiltration

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybercrime actors part of the Magecart group have latched on to a new technique of obfuscating the malware code within comment blocks and encoding stolen credit card data into images and other …

Hackers Use New Trick to Disable Macro Security Warnings in Malicious Office Files

Blog WriterThe Hacker News - Original news source is thehackernews.com

While it’s a norm for phishing campaigns that distribute weaponized Microsoft Office documents to prompt victims to enable macros in order to trigger the infection chain directly, new findings indicate …

Experts Uncover Malware Attacks Targeting Corporate Networks in Latin America

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers on Thursday took the wraps off a new, ongoing espionage campaign targeting corporate networks in Spanish-speaking countries, specifically Venezuela, to spy on its victims. Dubbed “Bandidos” by ESET …

Critical Flaws Reported in Sage X3 Enterprise Management Software

Blog WriterThe Hacker News - Original news source is thehackernews.com

Four security vulnerabilities have been uncovered in the Sage X3 enterprise resource planning (ERP) product, two of which could be chained together as part of an attack sequence to enable adversaries to …

Security Awareness Training is Broken. Human Risk Management (HRM) is the Fix

Blog WriterThe Hacker News - Original news source is thehackernews.com

Humans are an organization’s strongest defence against evolving cyber threats, but security awareness training alone often isn’t enough to transform user behaviour. In this guide, usecure looks at why Human …