Category: News

Back-to-Back PlayStation 5 Hacks Hit on the Same Day

Cyberattackers stole PS5 root keys and exploited the kernel, revealing rampant insecurity in gaming devices.

Designing a Proactive Ransomware Playbook for Today’s Threat Landscape

Asset inventories and risk assessments are critical tools in defending against the increasing scourge of ransomware.

Cyber-Mercenary Group Void Balaur Attacks High-Profile Targets for Cash

A Russian-language threat group is available for hire, to steal data on journalists, political leaders, activists and from organizations in every sector.

Congress Mulls Ban on Big Ransom Payouts

A bill introduced this week would regulate ransomware response by the country’s critical financial sector.

Tiny Font Size Fools Email Filters in BEC Phishing

The One Font BEC campaign targets Microsoft 365 users and uses sophisticated obfuscation tactics to slip past security protections to harvest credentials.

Critical Citrix Bug Shuts Down Network, Cloud App Access

The distributed computing vendor patched the flaw, affecting Citrix ADC and Gateway, along with another flaw impacting availability for SD-WAN appliances.

Massive Zero-Day Hole Found in Palo Alto Security Appliances

Researchers have a working exploit for the vulnerability (now patched), which allows for unauthenticated RCE and affects an estimated 70,000+ VPN/firewalls.

New Android Spyware Poses Pegasus-Like Threat

PhoneSpy already has stolen data and tracked the activity of targets in South Korea, disguising itself as legitimate lifestyle apps.

Microsoft Nov. Patch Tuesday Fixes Six Zero-Days, 55 Bugs

Experts urged users to prioritize patches for Microsoft Exchange and Excel, those favorite platforms so frequently targeted by cybercriminals and nation-state actors.

Not Punny: Angling Direct Breach Cripples Retailer for Days  

A U.K. fishing retailer’s site has been hijacked and redirected to Pornhub.