Information Security News Blog
Analysts at Palo Alto Networks have issued a warning about the banking trojan Mispadu, exploiting a recent vulnerability to bypass Windows SmartScreen and compromise users in Mexico. This malware variant, identified in 2019, has...
Recent reports suggest that Microsoft is revisiting its exclusivity strategy and plans to introduce last year’s AAA title, “Starfield,” to its competitor Sony’s platform. The intention is to launch a PlayStation 5 version following...
Developers of Linux are actively engaged in rectifying a critical vulnerability, which under certain conditions allows malicious actors to install malware at the firmware level of the motherboard. Such infections, also known as “bootkits,”...
Between November and December 2023, the hacking collective known as ResumeLooters purloined over two million email addresses and other personal data from 65 websites, primarily targeting job search platforms. The malefactors focused their efforts...
In its recent report, Google spotlighted the activities of various firms engaged in the development of spyware programs, urging the United States and its allies to intensify their efforts against the cyber espionage industry....
Hewlett Packard Enterprise (HPE) is investigating a potential breach following online claims regarding the sale of stolen HPE credentials and other confidential company information. The HPE investigation revealed that the data was sourced from...
According to a joint report by human rights organizations Access Now and Citizen Lab, the telephones of 35 journalists, activists, human rights defenders, and civil society representatives in Jordan were targeted with the Pegasus...
The widespread exploitation of a vulnerability in Ivanti Connect Secure and Policy Secure servers, identified as CVE-2024-21893, is raising alarms among cybersecurity professionals. This grave flaw, affecting software versions 9.x and 22.x, enables malefactors...
Clorox, an American manufacturer of household chemicals and professional cleaning agents, was subjected to an extortion attack during the summer, resulting in significant disruptions in supplies and order processing. The incident occurred on August...
The company Snyk has identified four vulnerabilities in virtualization systems collectively dubbed Leaky Vessels. These flaws enable malefactors to breach the confines of isolated containers and access data on the host operating system. Containers...
Interpol announced that during an international operation, law enforcement agencies apprehended 31 suspected cybercriminals and identified over 1,300 malicious servers used for conducting phishing attacks and disseminating malware. According to Interpol’s statement, Operation Synergia,...
Cloudflare recently unveiled details of an incident in which state-sponsored spies are believed to have gained access to Atlassian’s internal system using credentials stolen during a security breach at Okta in October. According to...