BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Ransomware Attacks Impact 20% of Sensitive Data in Healthcare Orgs
/in General NewsRecent cyber incidents demonstrate the healthcare industry continues to be a prime target for ransomware hackers, according to Rubrik. New research by Rubrik Zero Labs reveals that ransomware attacks produce larger impacts against healthcare targets.
Cyware News – Latest Cyber News – Read More
Cybersecurity in a Race to Unmask a New Wave of AI-Borne Deepfakes
/in General NewsKevin Mandia, CEO of Mandiant at Google Cloud, calls for content “watermarks” as the industry braces for a barrage of mind-bending AI-generated fake audio and video traffic.
darkreading – Read More
Monday.com Removes “Share Update” Feature Abused for Phishing Attacks
/in General NewsThe phishing emails pretended to come from a “Human Resources” department, asking users to either acknowledge the “organization’s workplace sex policy” or submit feedback as part of a “2024 Employee Evaluation.”
Cyware News – Latest Cyber News – Read More
Widely Used Telit Cinterion Modems Open to SMS-based Device Takeover Attacks
/in General NewsThe vulnerabilities were found in the Cinterion EHS5-E series modem, but other Telit Cinterion products with similar software and hardware architecture are also likely impacted, including
Cinterion BGS5, EHS5/6/7, PDS5/6/8, ELS61/81, and PLS62.
Cyware News – Latest Cyber News – Read More
In Other News: European Parliament Breach, DocGo Hack, VMware Advisories Moved
/in General NewsNoteworthy stories that might have slipped under the radar: European Parliament application breached, DocGo hacked, VMware advisories moved to Broadcom portal.
The post In Other News: European Parliament Breach, DocGo Hack, VMware Advisories Moved appeared first on SecurityWeek.
SecurityWeek – Read More
CISA Explains Why it Doesn’t Call Out Tech Vendors by Name
/in General NewsThe CISA isn’t inclined to call out technology vendors when their fundamental errors impact customers — officials contend they can make a greater impact by discerning and generalizing those mistakes for a broader audience.
Cyware News – Latest Cyber News – Read More
Exploited Chrome Zero-Day Patched by Google
/in General NewsA Chrome 124 update patches the second Chrome zero-day that has been found to be exploited in malicious attacks in 2024.
The post Exploited Chrome Zero-Day Patched by Google appeared first on SecurityWeek.
SecurityWeek – Read More
What’s the Right EDR for You?
/in General NewsA guide to finding the right endpoint detection and response (EDR) solution for your business’ unique needs.
Cybersecurity has become an ongoing battle between hackers and small- and mid-sized businesses. Though perimeter security measures like antivirus and firewalls have traditionally served as the frontlines of defense, the battleground has shifted to endpoints. This is why endpoint
The Hacker News – Read More
Malicious Android Apps Pose as Google, Instagram, WhatsApp, Spread via Smishing
/in General NewsMalicious Android apps masquerading as Google, Instagram, Snapchat, WhatsApp, and X (formerly Twitter) have been observed to steal users’ credentials from compromised devices.
“This malware uses famous Android app icons to mislead users and trick victims into installing the malicious app on their devices,” the SonicWall Capture Labs threat research team said in a recent report.
The
The Hacker News – Read More
CISA Starts CVE “Vulnrichment” Program
/in General NewsThe US Cybersecurity and Infrastructure Agency (CISA) has announced the creation of “Vulnrichment,” a new project that aims to fill the CVE enrichment gap created by NIST National Vulnerability Database’s recent slowdown.
Cyware News – Latest Cyber News – Read More