Nevada IT Systems Hit by Cyberattack – State Office Closed for Two Days

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant cyberattack disrupted Nevada’s state government network on August 24, forcing all state office branches to shut down operations for 48 hours. The intrusion began with the exploitation of …

Cisco Nexus 3000 and 9000 Series Vulnerability Let Attackers Trigger DoS Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco has issued a High-severity security advisory alerting customers to a critical vulnerability in the Intermediate System-to-Intermediate System (IS-IS) feature of NX-OS Software for Cisco Nexus 3000 and 9000 Series …

Farmers Insurance Cyber Attack – 1.1 Million Customers Data Exposed in Salesforce Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Farmers Insurance Exchange and its subsidiaries recently disclosed a significant security incident that compromised personal information of approximately 1.1 million customers through an unauthorized access to a third-party vendor’s database. …

Hackers Attempted to Misuse Claude AI to Launch Cyber Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Anthropic has thwarted multiple sophisticated attempts by cybercriminals to misuse its Claude AI platform, according to a newly released Threat Intelligence report. Despite layered safeguards designed to prevent harmful outputs, …

UTG-Q-1000 Group Weaponizing Subsidy Schemes to Exfiltrate Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The emergence of sophisticated cybercriminal organizations continues to pose significant threats to individuals and institutions worldwide, with the UTG-Q-1000 group representing one of the most concerning developments in recent cybersecurity …

ShadowSilk Leveraging Penetration-Testing Tools, Public Exploits to Attack Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ShadowSilk first surfaced in late 2023 as a sophisticated threat cluster targeting government entities across Central Asia and the broader APAC region. Exploiting known public vulnerabilities and widely available penetration-testing …

FreePBX Servers Hacked in 0-Day Attack – Admins are Urged to Disable Internet Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical zero-day exploit targeting exposed FreePBX 16 and 17 systems. Threat actors are abusing an unauthenticated privilege escalation vulnerability in the commercial Endpoint Manager module, allowing remote code execution …

New TamperedChef Attack With Weaponized PDF Editor Steals Sensitive Data and Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated malware campaign that weaponizes a seemingly legitimate PDF editor to steal sensitive data and login credentials from unsuspecting users across Europe. The attack uncovered by Truesec, dubbed “TamperedChef,” …

CrowdStrike Set to Acquire Onum in $290 Million Deal to Enhance Falcon Next-Gen SIEM

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Global cybersecurity leader CrowdStrike announced its intention to acquire Onum, a pioneer in real-time telemetry pipeline management, in a deal reportedly valued at $290 million. The acquisition, unveiled Wednesday, aims …

NX Build Tool Hacked with Malware That Checks for Claude or Gemini to Find Wallets and Secrets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Over 1,400 developers discovered today that a malicious post-install script in the popular NX build kit silently created a repository named s1ngularity-repository in their GitHub accounts.  This repository contains a …