Ransomware in 2024: More Attacks, More Leaks, and Increased Sophistication

The ransomware scourge is still growing and still successful for attackers, Rapid7’s Ransomware Radar Report 2024 shows.

The post Ransomware in 2024: More Attacks, More Leaks, and Increased Sophistication appeared first on SecurityWeek.

SecurityWeek – ​Read More

Chameleon Malware Now Targeting Employees Masquerading as a CRM app

Researchers have revealed a new tactic used by threat actors behind the Chameleon Android banking trojan, targeting Canadian users with a disguised Customer Relationship Management (CRM) app.

Cyware News – Latest Cyber News – ​Read More

Secure by Default: What It Means for the Modern Enterprise

What does “secure by default” mean for the average company as you implement security systems and protocols?

The post Secure by Default: What It Means for the Modern Enterprise appeared first on SecurityWeek.

SecurityWeek – ​Read More

North Korean Hackers Leverage Malicious NPM Packages for Initial Access

North Korean hackers, identified as Moonstone Sleet, have been distributing malicious JavaScript packages on the npm registry to infect Windows systems. The two packages, harthat-api and harthat-hash, were uploaded on July 7, 2024.

Cyware News – Latest Cyber News – ​Read More

The Role of AI in Cybersecurity Operations

AI can analyze data quickly, detect patterns of malicious behavior, and automate routine tasks like alert triaging and log analysis. However, human oversight is still necessary to ensure the accuracy and relevance of AI-generated insights.

Cyware News – Latest Cyber News – ​Read More

New Go-based Backdoor GoGra Targets South Asian Media Organization

An unnamed media organization in South Asia was targeted in November 20233 using a previously undocumented Go-based backdoor called GoGra.
“GoGra is written in Go and uses the Microsoft Graph API to interact with a command-and-control (C&C) server hosted on Microsoft mail services,” Symantec, part of Broadcom, said in a report shared with The Hacker News.
It’s currently not clear how it’s

The Hacker News – ​Read More

Dark Reading News Desk Live From Black Hat USA 2024

The Dark Reading team once again welcomes the world’s top cybersecurity experts to the Dark Reading News Desk live from Black Hat USA 2024. Tune into the livestream.

darkreading – ​Read More

The Prevalence of DarkComet in Dynamic DNS

A recent analysis using HYAS Insight threat intelligence revealed a trend in dynamic DNS registrations originating from Turkey in 2024, with DarkComet malware representing over 50% of the malicious domains identified.

Cyware News – Latest Cyber News – ​Read More

CrowdStrike Reveals Root Cause of Global System Outages

Cybersecurity company CrowdStrike has published its root cause analysis detailing the Falcon Sensor software update crash that crippled millions of Windows devices globally.
The “Channel File 291” incident, as originally highlighted in its Preliminary Post Incident Review (PIR), has been traced back to a content validation issue that arose after it introduced a new Template Type to enable

The Hacker News – ​Read More

Replacement for Action Fraud, UK’s Cybercrime Reporting Service, Delayed Again Until 2025

The new service, known as the Fraud and Cyber Crime Reporting and Analysis System (FCCRAS), will enhance the reporting process by allowing users to upload additional information like metadata, screenshots, and images.

Cyware News – Latest Cyber News – ​Read More