NIST Seeks Input on Cyber Risk Management Draft

The public draft – titled Incident Response Recommendations and Considerations for Cybersecurity Risk Management: A CSF 2.0 Community Profile, was published by NIST on April 3. The agency is seeking public comments on the draft through May 20.

Cyware News – Latest Cyber News – ​Read More

Palo Alto Networks Releases Urgent Fixes for Exploited PAN-OS Vulnerability

Palo Alto Networks has released hotfixes to address a maximum-severity security flaw impacting PAN-OS software that has come under active exploitation in the wild.
Tracked as CVE-2024-3400 (CVSS score: 10.0), the critical vulnerability is a case of command injection in the GlobalProtect feature that an unauthenticated attacker could weaponize to execute arbitrary code with root

The Hacker News – ​Read More

Cyberattacks Cost Financial Firms $12 Billion, Says IMF

Financial services firms have been hit with $12bn in losses over the last two decades as a result of cyber attacks, according to a recently published report from the International Monetary Fund (IMF).

Cyware News – Latest Cyber News – ​Read More

Cybercriminal Campaign Spreads Infostealers, Highlighting Risks to Web3 Gaming

The campaign targets Web3 gamers, exploiting their potential lack of cyber hygiene in the pursuit of profits. It represents a significant cross-platform threat, utilizing a variety of malware to compromise users’ systems.

Cyware News – Latest Cyber News – ​Read More

Russia Tops Global Cybercrime Index, New Study Reveals

Russia is the most significant source of global cybercrime and serves as the top hub for digital threat actors worldwide, according to the newly released World Cybercrime Index.

Cyware News – Latest Cyber News – ​Read More

CISA Makes its “Malware Next-Gen” Analysis System Publicly Available

Malware Next-Gen was originally designed to allow U.S. federal, state, local, tribal, and territorial government agencies to submit suspicious files and receive automated malware analysis through static and dynamic analysis tools.

Cyware News – Latest Cyber News – ​Read More

US Data Breach Reports Surge 90% Annually in Q1

The first three months of 2024 saw 841 publicly reported “data compromises” – up 90% on the same period last year, according to the Identity Theft Resource Center (ITRC).

Cyware News – Latest Cyber News – ​Read More

Update: Hackers Deploy Python Backdoor in Palo Alto Zero-Day Attack

Threat actors have been exploiting the newly disclosed zero-day flaw in Palo Alto Networks PAN-OS software dating back to March 26, 2024, nearly three weeks before it came to light yesterday.

Cyware News – Latest Cyber News – ​Read More

US Claims to Have Recovered $1.4bn in COVID Fraud

The COVID-19 Fraud Enforcement Task Force (CFETF) was set up in 2021 to tackle what is believed to be fraud on a vast scale, taking advantage of generous government loans and relief payments during the pandemic.

Cyware News – Latest Cyber News – ​Read More

GSMA Releases Mobile Threat Intelligence Framework

GSM Association’s Fraud and Security Group (FASG) has published the first version of a framework for describing, in a structured way, how adversaries attack and use mobile networks, based on the tactics, techniques, and procedures (TTPs) used.

Cyware News – Latest Cyber News – ​Read More