Russian Actors Weaponize Legitimate Services in Multi-Malware Attack

The threat actor, likely located in the Commonwealth of Independent States (CIS), strategically targeted a spectrum of operating systems and computer architectures in the credential harvesting campaign, including Windows and macOS.

Cyware News – Latest Cyber News – ​Read More

FTC Fires ‘Shot Across the Bow’ at Automakers Over Connected-Car Data Privacy

The FTC issued a strong warning to automakers about their data collection and sharing practices, particularly regarding the sale of sensitive geolocation data, and emphasized that it will take enforcement action to protect consumer privacy.

Cyware News – Latest Cyber News – ​Read More

D-Link Routers Vulnerable to Takeover Via Exploit for Zero-Day

A vulnerability in the HNAP login request protocol that affects a family of devices gives unauthenticated users root access for command execution.

darkreading – ​Read More

Report: Data Breaches in US Schools Exposed 37.6M Records

According to Comparitech, data breaches in US schools have exposed over 37.6 million records since 2005, with a significant surge in 2023 due to vulnerabilities in the MOVEit file transfer software affecting over 800 institutions.

Cyware News – Latest Cyber News – ​Read More

Threat Actors Abuse GitHub to Distribute Multiple Information Stealers

Russian-speaking threat actors are caught abusing a GitHub profile to distribute information stealers posing as legitimate software.

The post Threat Actors Abuse GitHub to Distribute Multiple Information Stealers appeared first on SecurityWeek.

SecurityWeek – ​Read More

SideCopy APT Campaign Found Targeting Indian Universities

Active since May 2023, the SideCopy APT campaign targets university students through sophisticated infection chains involving malicious LNK files, HTAs, and loader DLLs disguised as legitimate documents.

Cyware News – Latest Cyber News – ​Read More

Australia: AFL Players Call for Data Protection Overhaul as Concerns Include Drug Test Results

AFL players are concerned about the risk of their personal and sensitive information, such as drug test results and psychologist session notes, being leaked onto the dark web due to inadequate data protection measures.

Cyware News – Latest Cyber News – ​Read More

CISA, FBI, and DHS Unveil Cybersecurity Guide For Civil Society Groups

The publication Mitigating Cyber Threats with Limited Resources: Guidance for Civil Society is designed to provide high-risk communities with actionable steps to bolster their cybersecurity defenses.

Cyware News – Latest Cyber News – ​Read More

Intel Publishes 41 Security Advisories for Over 90 Vulnerabilities 

Intel has published 41 new May 2024 Patch Tuesday advisories covering a total of more than 90 vulnerabilities. 

The post Intel Publishes 41 Security Advisories for Over 90 Vulnerabilities  appeared first on SecurityWeek.

SecurityWeek – ​Read More

AI Is an Expert Liar

AI systems trained to excel at tasks can learn to lie and deceive in order to gain an advantage, posing serious risks to society such as fraud, election tampering, and even the potential loss of human control over AI.

Cyware News – Latest Cyber News – ​Read More