‘The Mask’ Espionage Group Resurfaces After 10-Year Hiatus

Researchers recently spotted the Spanish-speaking threat actor — with nearly 400 previous victims under its belt — in a new campaign in Latin America and Central Africa.

darkreading – ​Read More

2 (or 5) Bugs in F5 Asset Manager Allow Full Takeover, Hidden Accounts

F5 customers should patch immediately, though even that won’t protect them from every problem with their networked devices.

darkreading – ​Read More

87% of DDoS Attacks Targeted Windows OS Devices in 2023

Post Content

darkreading – ​Read More

Why Reddit’s new content policy is a big win for your privacy

Reddit will continue to sell user data, but it’s enacting restrictions on companies that want to commercialize that data for free. Here’s what’s changing.

Latest stories for ZDNET in Security – ​Read More

Aggressive Cloud-Security Player Wiz Scores $1B in Funding Round

The latest round of investment prices the fast-growing cloud native application protection platform (CNAPP) at $12 billion with a simple mandate: Grow quickly through acquisition.

darkreading – ​Read More

Accenture Lands $789 Million Contract to Bolster U.S. Navy Cybersecurity

Accenture Federal Services wins $789 million U.S. Navy SHARKCAGE cybersecurity contract.

The post Accenture Lands $789 Million Contract to Bolster U.S. Navy Cybersecurity appeared first on SecurityWeek.

SecurityWeek – ​Read More

LockBit Claims Wichita as Its Victim 2 Days After Ransomware Attack

The city is still investigating the attack, and neither the group nor city officials have offered details about the ransomware demands.

darkreading – ​Read More

New TunnelVision Attack Allows Hijacking of VPN Traffic via DHCP Manipulation

Researchers have detailed a Virtual Private Network (VPN) bypass technique dubbed TunnelVision that allows threat actors to snoop on victim’s network traffic by just being on the same local network.
The “decloaking” method has been assigned the CVE identifier CVE-2024-3661 (CVSS score: 7.6). It impacts all operating systems that implement a DHCP client and has

The Hacker News – ​Read More

Vast Network of Fake Web Shops Defrauds 850,000 & Counting

China-based cybercriminal group “BogusBazaar” created tens of thousands of fraudulent online stores based on expired domains to steal payment credentials.

darkreading – ​Read More