Palo Alto Networks to Acquire Cloud Security Start-up Dig

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

One of the top companies in the cybersecurity industry, Palo Alto Networks, has recently finalized the acquisition of Dig Security, an up-and-coming startup that specializes in providing advanced security solutions …

Within 5 Minutes, Hackers Were Able to Get AWS Credentials From GitHub

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Recent reports indicate that a new campaign under the name EleKtra-Leak has been identified to target AWS IAM (Identity and Access Management) credentials within minutes of their public exposure on …

Russian New Hacking Tool Creates Hundreds Of Fake Social Media Profiles In Seconds

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Kopeechka service, which refers to “penny” in Russian, is a new tool criminals use to quickly and easily generate hundreds of fake social media accounts. The service, operational since …

Boeing Breached by LockBit Ransomware Gang? Investigation Inprogress

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Boeing, a major player in the aerospace industry, says it is “assessing” claims made by the LockBit ransomware group that it has taken a “tremendous amount” of confidential information from the …

815 Million Indians’ Aadhaar Data Exposed on the Dark Web

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A massive data breach has occurred, resulting in the leak of personal information belonging to 815 million Indian citizens on the dark web.  The compromised data includes personally identifiable information, …

TA571 Hacker Group Deliver IcedID Malware Via Password-protected Zip Archive

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers often use password-protected Zip Archive files for malware distribution to evade detection by security software.  They let the malware infiltrate the target system without detection by encrypting the file, …

Hackers Infect Windows Users with Weaponized MSIX App Packages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

MSIX helps developers package Windows apps for easy installation. While it’s user-friendly, it demands access to code signing certificates, making it an attractive target for resourceful threat actors. Additionally, MSIX …

NGINX ingress Security Flaw Let Attackers Kubernetes API Server Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Three vulnerabilities have been discovered in NGINX ingress controllers, which were associated with arbitrary command execution, code injection, and sanitization bypass. The severity of these vulnerabilities ranges between 7.6 (High) …