Windows Zero-Day Attack Linked to North Korea’s Lazarus APT

The vulnerability, tracked as CVE-2024-38193 and marked as ‘actively exploited’ by Microsoft, allows SYSTEM privileges on the latest Windows operating systems.

The post Windows Zero-Day Attack Linked to North Korea’s Lazarus APT appeared first on SecurityWeek.

SecurityWeek – ​Read More

Carespring Data Breach Exposes Personal and Medical Information of Nearly 77,000 Patients

Data includes names, dates of birth, physical addresses, Social Security Numbers, medical and diagnosis information, and health insurance details.

The post Carespring Data Breach Exposes Personal and Medical Information of Nearly 77,000 Patients appeared first on SecurityWeek.

SecurityWeek – ​Read More

National Public Data Says Breach Impacts 1.3 Million People

National Public Data (NPD) has confirmed suffering a data breach, but the company says the incident only affects 1.3 million people in the US.

The post National Public Data Says Breach Impacts 1.3 Million People appeared first on SecurityWeek.

SecurityWeek – ​Read More

Azure Domains and Google Abused to Spread Disinformation and Malware

Azure domains and Google have been exploited to spread disinformation and malware in a sophisticated campaign that involves using several Microsoft Azure and OVH cloud subdomains along with Google search notifications.

Cyware News – Latest Cyber News – ​Read More

New UULoader Malware Distributes Gh0st RAT and Mimikatz in East Asia

A new type of malware called UULoader is being used by threat actors to deliver next-stage payloads like Gh0st RAT and Mimikatz.
The Cyberint Research Team, which discovered the malware, said it’s distributed in the form of malicious installers for legitimate applications targeting Korean and Chinese speakers.
There is evidence pointing to UULoader being the work of a Chinese speaker due to the

The Hacker News – ​Read More

Cybercriminals Exploit Popular Software Searches to Spread FakeBat Malware

Cybersecurity researchers have uncovered a surge in malware infections stemming from malvertising campaigns distributing a loader called FakeBat.
“These attacks are opportunistic in nature, targeting users seeking popular business software,” the Mandiant Managed Defense team said in a technical report. “The infection utilizes a trojanized MSIX installer, which executes a PowerShell script to

The Hacker News – ​Read More

Human Nature Is Causing Our Cybersecurity Problem

By moving beyond guidelines and enforcing accountability, encouraging innovation, and prioritizing the safety and well-being of our communities in the digital age, we can build a more secure software future.

darkreading – ​Read More

AI SPERA and Hackers Central Partner to Expand Mexico’s Security Market with ‘Criminal IP ASM’

Torrance, United States / California, 19th August 2024, CyberNewsWire

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

A Critical Look at the State Department’s Risk Management Profile

The US needs to seize this moment to set a global standard for responsible and ethical AI, ensuring that technological progress upholds and advances human rights.

darkreading – ​Read More

City of Flint Scrambling to Restore Services Following Ransomware Attack

The City of Flint, Michigan, has been struggling with network and online service disruptions after being hit by ransomware last week.

The post City of Flint Scrambling to Restore Services Following Ransomware Attack appeared first on SecurityWeek.

SecurityWeek – ​Read More