Category: News

LockBit Jumps Its Own Countdown, Publishes Bangkok Air Files

The ransomware gang claims to have pulled off successful attacks against two airlines and one airport with help from its Accenture attack.

BEC Scammers Seek Native English Speakers on Underground

Cybercrooks are posting help-wanted ads on dark web forums, promising to do the technical work of compromising email accounts but looking for native English speakers to carry out the social-engineering…
Read more

Feds Warn of Ransomware Attacks Ahead of Labor Day

Threat actors recently have used long holiday weekends — when many staff are taking time off — as a prime opportunity to ambush organizations.

Fortress Home Security Open to Remote Disarmament

A pair of unpatched security vulnerabilities can allow unauthenticated cyberattackers to turn off window, door and motion-sensor monitoring.

Cream Finance DeFi Platform Rooked For $29M

Cream is latest DeFi platform to get fleeced in rash of attacks.

Proxyware Services Open Orgs to Abuse – Report

Services that let consumers resell their bandwidth for money are ripe for abuse, researchers warn.

WooCommerce Pricing Plugin Allows Malicious Code-Injection

The popular Dynamic Pricing and Discounts plugin from Envato can be exploited by unauthenticated attackers.

QNAP Is Latest to Get Dinged by OpenSSL Bugs Fallout

The NAS maker issued two security advisories about the RCE and DoS flaws, adding to a flurry of advisories from the vast array of companies whose products use OpenSSL.

Top 3 APIs Vulnerabilities: Why Apps are Owned by Cyberattackers

Jason Kent, hacker-in-residence at Cequence, talks about how cybercriminals target apps and how to thwart them.

LockFile Ransomware Uses Never-Before Seen Encryption to Avoid Detection

Researchers from Sophos discovered the emerging threat in July, which exploits the ProxyShell vulnerabilities in Microsoft Exchange servers to attack systems.