LATEST POST

FEATURE

Palo Alto Networks warns of another firewall vulnerability under attack by hackers

Vulnerabilities
801 views 3 secs

TechCrunch reports: U.S. cybersecurity giant Palo Alto Networks has warned that hackers are exploiting another vulnerability in its firewall software to break into unpatched customer networks. Attackers are exploiting a recently disclosed vulnerability in PAN-OS, the operating system that runs Palo Alto Networks firewalls, the California-based company confirmed on Tuesday. Cybersecurity firm Assetnote first discovered the vulnerability, […]

FEATURE

Pro-Russian hackers attack Italian websites after president compares invasion of Ukraine to Nazis

Cyberattack
850 views 5 secs

Associated Press reports: A pro-Russian hacker group attacked Italian government websites on Tuesday in what it said was a reaction to a speech by Italian President Sergio Mattarella that compared Russia’s invasion of Ukraine to the Nazis ‘ “wars of conquest.” The NoName57 hacker group, which announced the attacks on social media, hit the websites of the defense, interior and transport ministries, as […]

FEATURE

Warning issued to 2,500,000,000 Gmail users over ‘devastating scam’ which allows hackers to steal banking and sensitive data

Consumer Alerts
375 views 30 secs

Back in May 2024, the FBI issued a warning about the increasing threat of cybercriminals using AI in their scams to make it difficult for users to spot. Unilad reports: Cybercriminals are seemingly using all the right tricks to take advantage of innocent web users and recently, they have been targeting Gmail customers, which sees them use AI […]

FEATURE

Stealthy Malware in WordPress Sites Enables Remote Code Execution by Hackers

Vulnerabilities
749 views 19 secs

GBHackers reports that researchers have uncovered malware targeting WordPress websites, leveraging hidden backdoors to enable remote code execution (RCE): One notable case involved attackers embedding malicious scripts within the Must-Use Plugins (mu-plugins) directory, a special WordPress folder that automatically loads plugins on every page load without requiring activation. By placing obfuscated PHP code in this directory, attackers […]

FEATURE

Thousands of Polish lawyers affected by data breach

Data Breach News
720 views 52 secs

The personal data of thousands of Polish lawyers and trainee lawyers has been leaked online, exposing social security numbers and password hashes, cybersecurity sources have reported. The breach, first reported by CyberDefence24, occurred on February 14 at around 8:00 PM, with some 10,337 names and 9,037 social security—or PESEL numbers—leaked. The Supreme Bar Council (Naczelna […]

FEATURE

Data Breach Prompts Coast Guard to Take Personnel and Pay System Offline

Data Breach News
751 views 54 secs

Military.com reports: The Coast Guard‘s personnel and pay system was taken offline Friday and will remain down until at least Feb. 19 while officials investigate a data breach that affected more than 1,100 members. Coast Guard officials said Friday that the service’s Direct Access system, which manages pay and personnel matters, including orders, was hacked Friday, exposing sensitive […]

FEATURE

Brightline to pay $7M to resolve Fortra hack lawsuit

Legal News
843 views 2 mins

2023 was a bad year for commercial file transfer software apps because the Clop ransomware gang kept managing to find zero-day vulnerabilities to exploit. One of their campaigns involved Fortra’s GoAnywhere software. Even though Fortra issued a patch for CVE-2023-0669 within a week of discovery, there were many victims, including Brightline. Now TechTarget reports that […]

FEATURE

New Lazarus Group campaign sees North Korean hackers spreading undetectable malware through GitHub and open source packages

Data Breach News
724 views 2 secs

The North Korean state-sponsored threat actor known as Lazaraus Group is now running a campaign targeting software and Web3 developers with “undetectable” malware. MSN reports: Cybersecurity researchers at STRIKE from SecurityScorecard said they observed malware being embedded into GitHub repositories and NPM packages, where unsuspecting developers pick them up and integrate into their own projects. The […]