FCC Drafts Rules to Strengthen Cyber of Emergency Systems

The Federal Communications Commission (FCC) has proposed draft final rules to enhance the security of public alert and warning systems in the face of emerging cybersecurity threats.

Cyware News – Latest Cyber News – ​Read More

US Supreme Court Ruling on Chevron Doctrine May Upend Future Cybersecurity Regulation

The ruling may lead to legal challenges against recent cybersecurity regulations, including the 2023 cyber incident reporting requirements by the Securities and Exchange Commission (SEC).

Cyware News – Latest Cyber News – ​Read More

FakeBat Loader Malware Spreads Widely Through Drive-by Download Attacks

The loader-as-a-service (LaaS) known as FakeBat has become one of the most widespread loader malware families distributed using the drive-by download technique this year, findings from Sekoia reveal.
“FakeBat primarily aims to download and execute the next-stage payload, such as IcedID, Lumma, RedLine, SmokeLoader, SectopRAT, and Ursnif,” the company said in a Tuesday analysis.
Drive-by attacks

The Hacker News – ​Read More

Cybersecurity is Now a Top Concern for Auto Industry, Report Finds

According to a survey by Rockwell Automation, vehicle and automotive supply manufacturers ranked cybersecurity as their biggest external concern. Cyberattacks resulted in $11.8 billion in damages during the first half of 2023 alone.

Cyware News – Latest Cyber News – ​Read More

Polyglot Files Enable Cyber Attack Chains and Methods for Detection & Disarmament

Hackers are using polyglot files, which can fit into multiple file formats and evade detection by endpoint detection and response systems. Research indicates that some commercial EDR tools have a 0% detection rate for malicious polyglots.

Cyware News – Latest Cyber News – ​Read More

South Africa National Healthcare Lab Still Reeling from Ransomware Attack

The cyberattack disrupted national laboratory services, which could slow response to disease outbreaks such as mpox, experts warn.

darkreading – ​Read More

Israeli Entities Targeted by Cyberattack Using Donut and Sliver Frameworks

Cybersecurity researchers have discovered an attack campaign that targets various Israeli entities with publicly-available frameworks like Donut and Sliver.
The campaign, believed to be highly targeted in nature, “leverage target-specific infrastructure and custom WordPress websites as a payload delivery mechanism, but affect a variety of entities across unrelated verticals, and rely on

The Hacker News – ​Read More

South Korean ERP Vendor’s Server Hacked to Spread Xctdoor Malware

An unnamed South Korean enterprise resource planning (ERP) vendor’s product update server has been found to be compromised to deliver a Go-based backdoor dubbed Xctdoor.
The AhnLab Security Intelligence Center (ASEC), which identified the attack in May 2024, did not attribute it to a known threat actor or group, but noted that the tactics overlap with that of Andariel, a sub-cluster within the

The Hacker News – ​Read More

3 Ways to Chill Attacks on Snowflake

Multifactor authentication is a good first step, but businesses should look to collect and analyze data to hunt for threats, manage identities more closely, and limit the impact of attacks.

darkreading – ​Read More

Fintech Frenzy: Affirm & Others Emerge as Victims in Evolve Breach

A ransomware attack has become a supply chain issue, thanks to the victim’s partnerships with other financial services companies.

darkreading – ​Read More