Researchers from cybersecurity firm Cybereason has released a “vaccine” that can be used to remotely mitigate the critical ‘Log4Shell’ Apache Log4j code execution vulnerability running rampant...
A new phishing campaign that targets German e-banking users has been underway in the last couple of weeks, involving QR codes in the credential-snatching process. The...
Swedish carmaker Volvo Cars has disclosed that unknown attackers have stolen research and development information after hacking some of its servers. “Volvo Cars has become aware...
Swedish video game developer Mojang Studios has released an emergency Minecraft security update to address a critical bug in the Apache Log4j Java logging library used...
Google has disrupted the Glupteba botnet that already controls more than 1 million Windows systems worldwide. Glupteba is blockchain-enabled, modular malware, active since 2011. What happened? Google took over...
SideCopy, a Pakistani threat actor, has been targeting the Indian and Afghan governments with espionage attacks. The group has stolen sensitive Google, Twitter, and Facebook credentials...
Cloud sprawl happens when development teams spin up new cloud resources, forget about them, then move on to the next urgent task. Migrating to the cloud...
The watchdog made several recommendations in an audit of the Cybersecurity Maturity Model Certification effort. The Defense Department needs to improve communication with industry and develop...
The update will include a focus on supply chains for both hardware and software. The National Institute of Standards and Technology is preparing to again update...
Ethical hackers have reported over 66,000 valid vulnerabilities through HackerOne this year, an increase of 22% from 2020. The annual Hacker-Powered Security Report from bug bounty platform HackerOne, published on...