New Cryptokat Ransomware Released Allegedly Claiming Fast Encryption

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new ransomware, dubbed CryptoKat, has emerged on the dark web, stirring significant concern within the cybersecurity community. The ransomware was first reported by the cybersecurity analyst MonThreat on their …

Network Admins Beware! SharpRhino Ransomware Attacking Mimic As Angry IP Scanner

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hunters International has deployed a novel C# malware dubbed SharpRhino as an initial infection vector and persistent Remote Access Trojan (RAT).  Delivered through a typosquatting domain that looks like an …

North Korean Hackers Attacking Windows Users With Weaponized npm Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Scalable package scanning within PyPi and npm using GuardDog software identified two malicious packages linked to a DPRK-aligned threat actor cluster dubbed “Stressed Pungsan.”  The cluster strongly aligns with Microsoft’s …

Windows Smart App Control & SmartScreen Flaw Let Hackers Hijack Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers often target Window Smart App Control and SmartScreen security flaws to launch malicious code and applications for their illicit purposes. Threat actors aiming to undermine Windows security features can …

Google Patches Actively Exploited Android Kernel Zero-Day Patched

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Android Security Bulletin for August 2024 details vulnerabilities addressed by the 2024-08-05 security patch level.  The most critical issue is a high-severity vulnerability in the Framework component, which could …

New Threat Detection Model Detects Threats in Serverless Cloud With 0.003 False Alarm

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers have introduced a novel threat detection model designed specifically for serverless cloud environments. This innovative approach leverages cloud providers’ native monitoring tools to detect anomalous behavior in serverless applications, …

Threat Actors Announced Doubleface Ransomware, Claims Fully Undetectable

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new ransomware variant named Doubleface has been announced by its creators. The ransomware, which boasts a range of sophisticated features, claims to be fully undetectable by major antivirus software. …

Jfrog Artifactory Flaw Let Attackers Poison Artifact Caches

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability identified as CVE-2024-6915 has been discovered in JFrog Artifactory, a widely used repository manager. This flaw, categorized under CWE-20 (Improper Input Validation), allows attackers to poison artifact …

Researchers Jailbreaked Text-To-Image LLM Models Using Atlas Agent

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

LLM agents, combining large language models with memory and tool usage, have shown promise in diverse domains. While successful in fields like software engineering and industrial automation, their potential in …

Apache OFBiz Zero-Day Vulnerability Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical zero-day vulnerability in Apache OFBiz, an open-source enterprise resource planning (ERP) system, has been discovered that could allow unauthenticated attackers to execute arbitrary code remotely. The flaw, tracked …