Mallox Ransomware Deployed via MS-SQL Honeypot Attack

Upon analyzing Mallox samples, researchers identified two distinct affiliates using different approaches. One focused on exploiting vulnerable assets, while the other aimed at broader compromises of information systems on a larger scale.

Cyware News – Latest Cyber News – ​Read More

Google is planning on a fix to prevent accidental password deletion in Chrome

A default Google Chrome setting in Android could delete credentials saved in the Password Manager. But a potential fix is on the way.

Latest stories for ZDNET in Security – ​Read More

Student, Personnel Information Stolen in City of Helsinki Cyberattack

The City of Helsinki says usernames, email addresses, and personal information was stolen in a recent cyberattack.

The post Student, Personnel Information Stolen in City of Helsinki Cyberattack appeared first on SecurityWeek.

SecurityWeek – ​Read More

FCC Reveals Royal Tiger, its First Tagged Robocall Threat Actor

The FCC’s new robocall bad actor classification system, called Consumer Communications Information Services Threat (C-CIST), aims to help authorities identify and track threat actors abusing telecommunications infrastructure.

Cyware News – Latest Cyber News – ​Read More

Researchers Identify New Campaigns from Scattered Spider

The Scattered Spider, a group of hackers, has been actively attacking the finance and insurance industries worldwide, using tactics like domain impersonation, SIM swapping, and partnering with the BlackCat ransomware group to breach high-value firms.

Cyware News – Latest Cyber News – ​Read More

AI’s Rapid Growth Puts Pressure on CISOs to Adapt to New Security Risks

The increased use of AI further complicates CISO role as industries begin to realize the full potential of GenAI and its impact on cybersecurity, according to a report by Trellix.

Cyware News – Latest Cyber News – ​Read More

MITRE EMB3D Threat Model Officially Released

MITRE announced the public availability of the EMB3D threat model for embedded devices used in critical infrastructure.

The post MITRE EMB3D Threat Model Officially Released appeared first on SecurityWeek.

SecurityWeek – ​Read More

FCC Warns of ‘Royal Tiger’ Robocall Scammers

The FCC has issued a public notice on robocall scammer group ‘Royal Tiger’, the first designated threat actor.

The post FCC Warns of ‘Royal Tiger’ Robocall Scammers appeared first on SecurityWeek.

SecurityWeek – ​Read More

Cybercriminals Steal One-Time Passcodes for SIM Swap Attacks and Raiding Bank Accounts

Cybercriminals are using an automated service called “Estate” to steal one-time passcodes and hijack user accounts, including bank accounts, crypto wallets, and other sensitive services, by tricking them into revealing the codes over the phone.

Cyware News – Latest Cyber News – ​Read More

Red Teaming: The Key Ingredient for Responsible AI

Red teaming involves employing ethical hackers to rigorously test AI systems for security and safety issues. It is crucial for developing responsible AI that balances innovation and compliance with ethical standards and regulatory requirements.

Cyware News – Latest Cyber News – ​Read More