10 pesky Windows 11 24H2 bugs still haunting PCs despite several patches

Before diving into the Windows 11 2024 update, know that you may encounter some problems. Here’s the bug report now.

Latest stories for ZDNET in Security – ​Read More

Hackers Repurpose RansomHub’s EDRKillShifter in Medusa, BianLian, and Play Attacks

A new analysis has uncovered connections between affiliates of RansomHub and other ransomware groups like Medusa, BianLian, and Play.
The connection stems from the use of a custom tool that’s designed to disable endpoint detection and response (EDR) software on compromised hosts, according to ESET. The EDR killing tool, dubbed EDRKillShifter, was first documented as used by RansomHub actors in

The Hacker News – ​Read More

How to protect your site from DDoS attacks – before it’s too late

DDoS attacks don’t take much technical expertise to launch these days. Defending against them is more complicated.

Latest stories for ZDNET in Security – ​Read More

Russian media, academia targeted in espionage campaign using Google Chrome zero-day exploit

“We have discovered and reported dozens of zero-day exploits actively used in attacks, but this particular exploit is certainly one of the most interesting we’ve encountered,” researchers from Kaspersky said in their analysis published Tuesday.

The Record from Recorded Future News – ​Read More

Two Serbian journalists reportedly targeted with Pegasus spyware

Two investigative journalists in Serbia were targeted with advanced commercial spyware last month, Amnesty International said Thursday.

The Record from Recorded Future News – ​Read More

The Importance of Allyship For Women in Cyber

Interview with Taylor Pyle, a Cybersecurity Engineer at Viasat on her experience with both cyber and mentorship.

The post The Importance of Allyship For Women in Cyber appeared first on SecurityWeek.

SecurityWeek – ​Read More

APT36 Spoofs India Post Website to Infect Windows and Android Users with Malware

An advanced persistent threat (APT) group with ties to Pakistan has been attributed to the creation of a fake website masquerading as India’s public sector postal system as part of a campaign designed to infect both Windows and Android users in the country.
Cybersecurity company CYFIRMA has attributed the campaign with medium confidence to a threat actor called APT36, which is also known as

The Hacker News – ​Read More

Defense Contractor MORSE to Pay $4.6M to Settle Cybersecurity Failure Allegations

US defense contractor MORSE Corp has agreed to pay $4.6 million to settle allegations over its cybersecurity failures. 

The post Defense Contractor MORSE to Pay $4.6M to Settle Cybersecurity Failure Allegations appeared first on SecurityWeek.

SecurityWeek – ​Read More

Ransomware Groups Increasingly Adopting EDR Killer Tools

ESET uncovers a link between RansomHub, Play, Medusa, and BianLian ransomware gangs as more groups adopt tools to disable EDR software.

The post Ransomware Groups Increasingly Adopting EDR Killer Tools appeared first on SecurityWeek.

SecurityWeek – ​Read More

New Report Explains Why CASB Solutions Fail to Address Shadow SaaS and How to Fix It

Whether it’s CRMs, project management tools, payment processors, or lead management tools – your workforce is using SaaS applications by the pound. Organizations often rely on traditional CASB solutions for protecting against malicious access and data exfiltration, but these fall short for protecting against shadow SaaS, data damage, and more.
A new report, Understanding SaaS Security Risks: Why

The Hacker News – ​Read More