Chinese Hackers Target Family Members to Surveil Hard Targets

According to the indictment, between 2015 and 2024, the APT31 group, linked to China’s Ministry of State Security, targeted thousands of U.S. and Western politicians, foreign policy experts, academics, journalists, and democracy activists.

Cyware News – Latest Cyber News – ​Read More

Cisco Warns of Password-Spraying Attacks Targeting Secure Firewall Devices

The company published a document containing recommendations against password spray attacks aimed at Remote Access VPN (RAVPN) services. The IT giant pointed out that the attacks are also targeting third-party VPN concentrators.

Cyware News – Latest Cyber News – ​Read More

Update: Harvard Pilgrim Health Network Updates Data Breach Total to Nearly 2.9 Million

Harvard Pilgrim said the files involved may contain personal data and protected health information on current and former subscribers and dependents, as well as current contracted providers.

Cyware News – Latest Cyber News – ​Read More

Attackers Increasingly Exploit Enterprise Tech Zero-Days

The discovery and exploitation of zero-day vulnerabilities in enterprise-specific software and appliances appears to be outpacing the leveraging of zero-day bugs overall, judging by Google’s latest research.

Cyware News – Latest Cyber News – ​Read More

Iran’s Evolving Cyber-Enabled Influence Operations to Support Hamas

Understanding Iran’s techniques, coupled with comprehensive threat intel, can give organizations an edge in identifying and defending against these attacks.

darkreading – ​Read More

Retail Chain Hot Topic Hit by New Credential Stuffing Attacks

Breach notification letters sent to potentially impacted customers this week reveal that attackers targeted Hot Topic Rewards accounts in automated attacks using login information obtained from an unknown source.

Cyware News – Latest Cyber News – ​Read More

Massachusetts Health Insurer Data Breach Impacts 2.8 Million

Harvard Pilgrim Health Care says the personal information of over 2.8 million individuals was stolen in a year-old ransomware attack.

The post Massachusetts Health Insurer Data Breach Impacts 2.8 Million appeared first on SecurityWeek.

SecurityWeek – ​Read More

Cisco Addressed High-Severity Flaws in IOS and IOS XE Software

Cisco this week released patches to address multiple IOS and IOS XE software vulnerabilities. An unauthenticated attacker can exploit several issues fixed by the IT giant to cause a denial-of-service (DoS) condition.

Cyware News – Latest Cyber News – ​Read More

Exposing a New BOLA Vulnerability in Grafana

This vulnerability, assigned as CVE-2024-1313 with a CVSS score of 6.5, allows low-privileged Grafana users to delete dashboard snapshots belonging to other organizations using the snapshot’s keys, impacting the integrity of the system.

Cyware News – Latest Cyber News – ​Read More

SydeLabs raises $2.5M seed to develop an intent-based firewall guard for AI

SydeLabs launched its red teaming solution, SydeBox, on March 1, 2024, and has since seen adoption from 15+ enterprises that have detected over 10,000 vulnerabilities across 50+ applications/models.Read More

Security News | VentureBeat – ​Read More