Category: Information Security

NAIC PeopleSoft cyberattack flowchart showing ShinyHunters data breach impact on insurance assets 0

NAIC PeopleSoft Cyberattack: ShinyHunters Claims Massive Breach

Unidentified threat actors successfully breached the National Association of Insurance Commissioners (NAIC). They exploited a critical vulnerability within Oracle PeopleSoft. Consequently, the organization temporarily suspended assigning investment ratings to insurance assets. Furthermore, they disabled...

AirDrop Quick Share vulnerabilities impact mobile devices and Bluetooth proximity sharing 0

AirDrop and Quick Share Vulnerabilities Exposed

Over five billion devices currently support rapid proximity file sharing. Popular mechanisms include Apple’s AirDrop and Google’s Quick Share. Consequently, these features simplify sharing photos and documents without exchanging contact information. However, researchers from...

TONResolver malware attacks infection chain diagram and Booking.com phishing email examples 0

TONResolver Malware Targets Booking.com Partners in Japan

Guest complaints usually demand immediate attention from hospitality professionals. Consequently, malicious actors recently exploited this urgency. They targeted Booking.com partners across Japan using deceptive emails. Attackers sent these messages posing as dissatisfied guests. They...

CL-STA-1062 cyber espionage campaign using TinyRCT backdoor malware against infrastructure 0

CL-STA-1062 Cyber Espionage Targets Southeast Asia

The Silent Infiltration Strategy A multi-year intelligence operation rarely reveals itself through a single catastrophic breach. Instead, it emerges through a clandestine sequence of quiet infiltrations. Consequently, Unit 42 researchers linked such a campaign...

Malicious Edge extensions from the StegoAd campaign using steganography to hide credential-stealing and ad-fraud code 0

StegoAd: 119 Malicious Edge Extensions Removed

Researchers have uncovered a network of malicious extensions inside the official Microsoft Edge store. These add-ons masqueraded as useful tools and operated for years alongside legitimate extensions. Disguised as ad blockers, weather widgets, video...

Australian infrastructure cyberattack warning by ASIO regarding critical network sabotage 0

Australian Infrastructure Cyberattack: ASIO Warning

Cyberattacks against critical infrastructure increasingly resemble strategic positioning rather than isolated breaches. Consequently, threat actors prepare for future disruptions. The Australian Security Intelligence Organisation (ASIO) recently reported a severe incident. Foreign Advanced Persistent Threat...