New Campaigns Distribute Malware via Open Source Hacking Tools

Trend Micro and ReversingLabs uncovered over 100 GitHub accounts distributing malware embedded in open source hacking tools.

The post New Campaigns Distribute Malware via Open Source Hacking Tools appeared first on SecurityWeek.

SecurityWeek – ​Read More

N. Korean Hackers Use PylangGhost Malware in Fake Crypto Job Scam

North Korean hackers deploy PylangGhost malware through fake crypto job interviews targeting blockchain professionals with phishing and remote access tools.

Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto – ​Read More

Encryption Backdoors: The Security Practitioners’ View

After decades of failed attempts to access encrypted communications, governments are shifting from persuasion to coercion—security experts say the risks are too high.

The post Encryption Backdoors: The Security Practitioners’ View appeared first on SecurityWeek.

SecurityWeek – ​Read More

Krispy Kreme Confirms Data Breach After Ransomware Attack

Krispy Kreme is sending notifications to thousands of people impacted by the data breach that came to light at the end of 2024.

The post Krispy Kreme Confirms Data Breach After Ransomware Attack appeared first on SecurityWeek.

SecurityWeek – ​Read More

Chain IQ, UBS Data Stolen in Ransomware Attack

A ransomware group has claimed the theft of millions of files from procurement service provider Chain IQ and 19 other companies.

The post Chain IQ, UBS Data Stolen in Ransomware Attack appeared first on SecurityWeek.

SecurityWeek – ​Read More

Choosing a Clear Direction in the Face of Growing Cybersecurity Demands

In a rapidly changing AI environment, CISOs are worried about investing in the wrong solution or simply not investing because they can’t decide what the best option is.

The post Choosing a Clear Direction in the Face of Growing Cybersecurity Demands appeared first on SecurityWeek.

SecurityWeek – ​Read More

High-Severity Vulnerabilities Patched by Cisco, Atlassian

Cisco has resolved a high-severity vulnerability in Meraki MX and Meraki Z devices. Atlassian pushed patches for multiple third-party dependencies.

The post High-Severity Vulnerabilities Patched by Cisco, Atlassian appeared first on SecurityWeek.

SecurityWeek – ​Read More

Russian APT29 Exploits Gmail App Passwords to Bypass 2FA in Targeted Phishing Campaign

Threat actors with suspected ties to Russia have been observed taking advantage of a Google account feature called application specific passwords (or app passwords) as part of a novel social engineering tactic designed to gain access to victims’ emails.
Details of the highly targeted campaign were disclosed by Google Threat Intelligence Group (GTIG) and the Citizen Lab, stating the activity

The Hacker News – ​Read More

Facebook’s new passkey support could let you ditch your password once and for all

You’ll soon be able to protect your Facebook account with a secure and convenient passkey, though only mobile devices will be supported.

Latest stories for ZDNET in Security – ​Read More

Swedish Truck Giant Scania Investigating Hack

A hacker is selling allegedly valuable data stolen from Scania, but the truck maker believes impact is very limited.

The post Swedish Truck Giant Scania Investigating Hack appeared first on SecurityWeek.

SecurityWeek – ​Read More