Belarus-linked Hackers Target Ukrainian Organizations with PicassoLoader Malware

GhostWriter, also known as UAC-0057, used PicassoLoader and Cobalt Strike Beacon to infect victims, including local government offices and groups associated with USAID’s Hoverla project.

Cyware News – Latest Cyber News – ​Read More

IAM for MSPs Provider Evo Security Raises $6 Million

TechOperators leads a $6 million Series A funding round for Evo Security, a provider of IAM solutions for MSPs.

The post IAM for MSPs Provider Evo Security Raises $6 Million appeared first on SecurityWeek.

SecurityWeek – ​Read More

Ransomware and BEC Make Up 60% of Cyber Incidents

According to Cisco Talos, ransomware and BEC attacks made up 60% of all incidents in Q2 2024, with technology being the most targeted sector at 24%. Other highly targeted sectors included retail, healthcare, pharmaceuticals, and education.

Cyware News – Latest Cyber News – ​Read More

How Cyber Insurance Coverage is Evolving

While purchasing cyber insurance won’t completely prevent data breaches, it does improve the cyber posture as it requires strict underwriting processes. However, only a quarter of companies currently have standalone cyber insurance policies.

Cyware News – Latest Cyber News – ​Read More

Elon Musk’s X now trains Grok on your data by default – here’s how to opt out

Your posts and interactions on X are being used to train Grok, but you can put a stop to it.

Latest news – ​Read More

SeleniumGreed Cryptomining Campaign Exploiting Publicly Exposed Grid Services

Researchers at Wiz have identified an ongoing campaign targeting exposed Selenium Grid services for illicit cryptocurrency mining. The campaign, known as SeleniumGreed, is exploiting older versions of Selenium to run a modified XMRig miner.

Cyware News – Latest Cyber News – ​Read More

What to expect from Made by Google 2024: Pixel 9 Pro Fold, Watch, Android 15, AI, and more

Google’s next big product launch takes place on August 13. Here’s everything you can expect from the event.

Latest news – ​Read More

Progress Patches Critical Telerik Report Server Vulnerability

Progress Software calls attention to a critical remote code execution flaw in the Telerik Report Server product.

The post Progress Patches Critical Telerik Report Server Vulnerability appeared first on SecurityWeek.

SecurityWeek – ​Read More

How CISOs Enable ITDR Approach Through the Principle of Least Privilege

Least privilege begins by addressing dormant user accounts and then scrutinizing access privileges, using Context-based access control (CBAC), Attribute-based access control (ABAC), and Role-based access control (RBAC) to determine user access.

Cyware News – Latest Cyber News – ​Read More

This AI-Powered Cybercrime Service Bundles Phishing Kits with Malicious Android Apps

A Spanish-speaking cybercrime group named GXC Team has been observed bundling phishing kits with malicious Android applications, taking malware-as-a-service (MaaS) offerings to the next level.
Singaporean cybersecurity company Group-IB, which has been tracking the e-crime actor since January 2023, described the crimeware solution as a “sophisticated AI-powered phishing-as-a-service platform”

The Hacker News – ​Read More