Apache has released another Log4j version, 2.17.1 fixing a newly discovered remote code execution (RCE) vulnerability in 2.17.0, tracked as CVE-2021-44832. Prior to today, 2.17.0 was...
BlackTech cyber-espionage APT (advanced persistent threat) group has been spotted targeting Japanese companies using novel malware that researchers call ‘Flagpro’. The threat actor uses Flagpro in...
The RedLine information-stealing malware targets popular web browsers such as Chrome, Edge, and Opera, demonstrating why storing your passwords in browsers is a bad idea. This...
Many LastPass users report that their master passwords have been compromised after receiving email warnings that someone tried to use them to log into their accounts...
An Iranian cyber-security firm said it discovered a first-of-its-kind rootkit that hides inside the firmware of HP iLO devices and which has been used in real-world...
The year 2021 was a wild year in the cybersecurity space. As companies rushed to adapt to pandemic-inspired changes, cybercriminals found new ways to capitalize on...
Extortion, increasingly high ransom demands and sensitive data leaks continued in the second half of 2021, impacting organizations such as Kaseya and MediaMarkt. Ransomware attacks showed...
Amedia, the largest local news publisher in Norway, announced on Tuesday that several of its central computer systems were shut down in what it is calling...
It has been found that the eCh0raix ransomware group is targeting QNAP network-attached storage (NAS) devices. The group attempts to take control of devices while acquiring...
In 93% of cases, external attackers can breach the organization’s network perimeter and gain access to local network resources, and it takes an average of two...