CosmicBeetle Deploys Custom ScRansom Ransomware, Partnering with RansomHub

The threat actor known as CosmicBeetle has debuted a new custom ransomware strain called ScRansom in attacks targeting small- and medium-sized businesses (SMBs) in Europe, Asia, Africa, and South America, while also likely working as an affiliate for RansomHub.
“CosmicBeetle replaced its previously deployed ransomware, Scarab, with ScRansom, which is continually improved,” ESET researcher Jakub

The Hacker News – ​Read More

Adobe Patches Critical, Code Execution Flaws in Multiple Products

Patch Tuesday: Adobe releases patches for 28 security vulnerabilities and warned of code execution risks on Windows and macOS platforms.

The post Adobe Patches Critical, Code Execution Flaws in Multiple Products appeared first on SecurityWeek.

SecurityWeek – ​Read More

Mustang Panda Feeds Worm-Driven USB Attack Strategy

A fresh wave of attacks on APAC government entities involves both self-propagating malware spreading via removable drives and a spear-phishing campaign.

darkreading – ​Read More

Epic AI Fails And What We Can Learn From Them

Large language models (LLMs) are trained on vast amounts of data to learn patterns and recognize relationships in language usage. But they can’t discern fact from fiction.

The post Epic AI Fails And What We Can Learn From Them appeared first on SecurityWeek.

SecurityWeek – ​Read More

Microsoft Is Disabling Default ActiveX Controls in Office 2024 to Improve Security

Microsoft has been on the warpath against legacy Office features that are providing entry points for bad actors since 2018.

Security | TechRepublic – ​Read More

Platform Engineering Is Security Engineering

For modern applications built on Kubernetes and microservices, platform engineering is not just about building functional systems but also about embedding security into the fabric of those systems.

darkreading – ​Read More

Small Business, Big Threats: INE Security Launches Initiative to Train SMBs to Close a Critical Skills Gap

Cary, North Carolina, 10th September 2024, CyberNewsWire

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

SAP Releases 16 New Security Notes on September 2024 Patch Day

SAP has released patches for multiple missing authorization check and information disclosure vulnerabilities on its September 2024 Security Patch Day.

The post SAP Releases 16 New Security Notes on September 2024 Patch Day appeared first on SecurityWeek.

SecurityWeek – ​Read More

The Role of VPNs in Protecting Online Privacy

If you use the Internet, online privacy should be a growing concern as individuals share more personal information…

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

P0 Security Banks $15M for Security Cloud Access

San Francisco secure cloud access startup gets backing from SYN Ventures, Zscaler, and Lightspeed Venture Partners.

The post P0 Security Banks $15M for Security Cloud Access appeared first on SecurityWeek.

SecurityWeek – ​Read More