North Korean state-sponsored hackers Lazarus Group have been exploiting a ManageEngine ServiceDesk vulnerability (CVE-2022-47966) to target internet backbone infrastructure and...
Threat analysts have observed a new campaign named ‘OiVaVoii’, targeting company executives and general managers with malicious OAuth apps and custom phishing lures sent from hijacked...
Finland’s Ministry for Foreign Affairs says devices of Finnish diplomats have been hacked and infected with NSO Group’s Pegasus spyware in a cyber-espionage campaign. “Finnish diplomats...
Finland’s National Cyber Security Centre (NCSC-FI) warns of an ongoing phishing campaign attempting to hijack Facebook accounts by impersonating victims’ friends in Facebook Messenger chats. In...
Exploit broker Zerodium has announced a pay jump to 400,000 for zero-day vulnerabilities that allow remote code execution (RCE) in Microsoft Outlook email client. The new...
QNAP force-updated customer’s Network Attached Storage (NAS) devices with firmware containing the latest security updates to protect against the DeadBolt ransomware, which has already encrypted over...
Data Privacy Day is not just a day anymore. For the first time, it’s Data Privacy Week — a week-long effort to empower individuals and enterprises...
When it comes to cybersecurity, the K-12 education sector has room to grow. According to a study on K-12 cloud security by ManagedMethods, 86% of surveyed district-level school...
One challenge for supply chain security practitioners is choosing which of the multitude of guidance documents and best practice frameworks to use when building a cyber...
Amid national efforts to increase the amount of electric vehicles in the United States, a new potential vulnerability has emerged: electric vehicle (EV) charging stations. In...
According to a Department of Homeland Security (DHS) intelligence memo sent to law enforcement around the United States, DHS ranks the risk of a cyberattack on...
Recent Comments