24 Jun

Don’t panic, but it’s only a matter of time before critical ‘CitrixBleed 2’ is under attack

Citrix patched a critical vulnerability in its NetScaler ADC and NetScaler Gateway products that is already being compared to the infamous CitrixBleed flaw exploited by

Author rabih
24 Jun

Beware of fake SonicWall VPN app that steals users’ credentials

Unknown miscreants are distributing a fake SonicWall app to steal users’ VPN credentials. In a Monday threat intel alert, the firewall and VPN slinger said

Author rabih
24 Jun

The vulnerability management gap no one talks about

Partner content Recently, I’ve been diving deep into security control data across dozens of organizations, and what I’ve found has been both fascinating and alarming.

Author rabih
24 Jun

Four REvil ransomware crooks walk free, escape gulag fate, after admitting guilt

Four convicted members of the once-supreme ransomware operation REvil are leaving captivity after completing most of their five-year sentences. The quartet were arrested in 2022

Author rabih
24 Jun

‘Psylo’ browser tries to obscure digital fingerprints by giving every tab its own IP address

Psylo, which bills itself as a new kind of private web browser, debuted last Tuesday in Apple’s App Store, one day ahead of a report

Author rabih
24 Jun

‘Psylo’ browser tries to obscure digital fingerprints by giving very tab its own IP address

Psylo, which bills itself as a new kind of private web browser, debuted last Tuesday in Apple’s App Store, one day ahead of a report

Author rabih
23 Jun

Typhoon-like gang slinging TLS certificate ‘signed’ by the Los Angeles Police Department

A stealthy, ongoing campaign to gain long-term access to networks bears all the markings of intrusions conducted by China’s ‘Typhoon’ crews and has infected at

Author rabih
23 Jun

Iran cyberattacks against US biz more likely following air strikes

The US Department of Homeland Security has warned American businesses to guard their networks against Iranian government-sponsored cyberattacks along with “low-level” digital intrusions by pro-Iran

Author rabih
23 Jun

Second attack on McLaren Health Care in a year affects 743k people

McLaren Health Care is in the process of writing to 743,131 individuals now that it fully understands the impact of its July 2024 cyberattack. The

Author rabih
23 Jun

Experts count staggering costs incurred by UK retail amid cyberattack hell

Britain’s Cyber Monitoring Centre (CMC) estimates the total cost of the cyberattacks that crippled major UK retail organizations recently could be in the region of

Author rabih
23 Jun

Former US Army Sergeant pleads guilty after amateurish attempt at selling secrets to China

Infosec in brief A former US Army sergeant has admitted he attempted to sell classified data to China. Joseph Daniel Schmidt last Friday pled guilty

Author rabih
20 Jun

Netflix, Apple, BofA websites hijacked with fake help-desk numbers

Scammers are hijacking the search results of people needing 24/7 support from Apple, Bank of America, Facebook, HP, Microsoft, Netflix, and PayPal in an attempt

Author rabih
20 Jun

Looks like Aflac is the latest insurance giant snagged in Scattered Spider’s web

Aflac is the latest insurance company to disclose a security breach following a string of others earlier this week, all of which appear to be

Author rabih
20 Jun

Qilin ransomware top dogs treat their minions to on-call lawyers for fierier negotiations

The latest marketing ploy from the ransomware crooks behind the Qilin operation involves offering affiliates access to a crack team of lawyers to ramp up

Author rabih
20 Jun

Attack on Oxford City Council exposes 21 years of election worker data

Oxford City Council says a cyberattack earlier this month resulted in 21 years of data being compromised. It said “some historic data on legacy systems”

Author rabih
19 Jun

Boffins devise voice-altering tech to jam ‘vishing’ schemes

Researchers based in Israel and India have developed a defense against automated call scams. ASRJam is a speech recognition jamming system that uses a sound

Author rabih
19 Jun

Uncle Sam seeks time in tower dump data grab case after judge calls it ‘unconstitutional’

The United States is requesting [PDF] a month-long extension to the deadline for its final decision regarding an appeal against a judge’s ruling that obtaining

Author rabih
19 Jun

Glazed and confused: Hole lotta highly sensitive data nicked from Krispy Kreme

Krispy Kreme finally revealed the number of people affected by its November cyberattack, and it’s easy to see why analyzing the incident took the well-resourced

Author rabih
Load moreLoadingAll items loaded