New Microsoft 365 phishing scam exploits fake support numbers to steal credentials. Learn how attackers bypass security and how to stay protected.
Police seize malicious crypto exchange, PRC-based spies backdoor Juniper routers, and actors target global industries via critical PHP flaw.
The Black Basta ransomware operation created an automated brute-forcing framework dubbed 'BRUTED' to breach edge networking devices like firewalls and VPNs. [...]
Google is fixing the issue, but it might take a few days. If you reset your device, it might be longer.
2025-03-13 • Infoblox • Jason Hill Open article on Malpedia
2025-03-14 • Trend Micro • Adam O'Connor, Ian Kenefick, Jack Walsh, Laura Medina, Lucas Silva • js.fakeupdates, win.ransomhub Open article on Malpedia
U.S. bipartisan lawmakers say the U.K. order gagging Apple from disclosing the demand is unconstitutional. © 2024 TechCrunch. All rights reserved. For personal use only.
Cisco has patched a denial of service (DoS) vulnerability that lets attackers crash the Border Gateway Protocol (BGP) process on IOS XR routers with a single BGP update message. [...]
2025-03-13 • Tinyhack.com • tinyhack • elf.akira Open article on Malpedia
Leaders in cyber risk response, insurance, and law discuss the current threat landscape and beyond at the 2025 CyberLaw Forum.
Users searching for pirated software are the target of a new malware campaign that delivers a previously undocumented clipper malware called MassJacker, according to findings from CyberArk....
A new malware campaign has been observed leveraging social engineering tactics to deliver an open-source rootkit called r77. The activity, condemned OBSCURE#BAT by Securonix, enables threat actors...
Barracuda observed threat actors impersonating the Clop ransomware group via email to extort payments, claiming to have exfiltrated sensitive data
The U.K. government’s secret order to Apple demanding it backdoor the end-to-end encrypted version of its iCloud storage service has now been challenged by two civil rights groups, Liberty and...
The U.S. Federal Communications Commission (FCC) is conducting its first comprehensive review of submarine cable rules since 2001... The post FCC proposes new cybersecurity mandates for submarine...
Researchers from Forescout Technologies‘ Forescout Research – Vedere Labs identified a series of intrusions exploiting two Fortinet vulnerabilities... The post Forescout details SuperBlack...
ColorTokens Inc., a global enterprise microsegmentation company, announced on Thursday a partnership with Wipro Limited, a technology services... The post ColorTokens, Wipro partner to boost cyber...
EmberOT, a provider of industrial asset and network monitoring solutions, announced on Thursday the launch of Version 3.2.... The post EmberOT debuts version 3.2 with improved security features,...
ASRock Industrial, adhering to IEC 62443-4-1 security development lifecycle processes, proudly announces that its iEP-5010G Industrial IoT controller... The post ASRock Industrial’s iEP-5010G...
At the eighth edition of the certification conference, the European Union Agency for Cybersecurity (ENISA) celebrates the first... The post European Cybersecurity Certification: Celebrating...
A dual Russian-Israeli national, suspected of being a key developer for the LockBit ransomware operation, has been extradited to the United States to face charges. [...]
Sir Jeremy Fleming spoke during Palo Alto Networks’ Ignite event in London on March 13
Three unusual malware samples analyzed here include an ISS backdoor developed in a rare language, a bootkit and a Windows implant of a post-exploit framework. The post Off the Beaten Path: Recent...
The UK, France, Sweden, and EU have made fresh attacks on end-to-end encryption. Some of the attacks are more “crude” than those in recent years, experts say.
While relatively rare, real-world incidents impacting operational technology highlight that organizations in critical infrastructure can’t afford to dismiss the OT threat
2025-03-11 • Juniper Networks • Cybersecurity R&D • elf.tsh Open article on Malpedia
2025-03-11 • Hunt.io • Hunt.io Open article on Malpedia
2025-03-13 • Group-IB • Group-IB • win.emmenhtal, win.lumma Open article on Malpedia
Check out how to protect your org against the Medusa ransomware gang. Plus, another cryptographic algorithm that resists quantum attacks will be standardized. Meanwhile, Tenable did a deep dive on...
2025-03-13 • Medium walmartglobaltech • Jason Reaves • win.sectop_rat Open article on Malpedia