The US government has warned that advanced persistent threat (APT) actors have fashioned tools capable of hijacking industrial devices deployed in critical infrastructure sectors. The bespoke hacking...
A major revision of the payments card industry’s PCI DSS standard includes measures designed to encourage e-commerce providers to build better defenses against JavaScript-based card-skimming attacks....
Cybercriminals are attempting to trick American users of digital payment apps into making instant money transfers in social engineering attacks using text messages with fake bank fraud alerts....
A new information-stealing malware called ZingoStealer has been discovered with powerful data-stealing features and the ability to load additional payloads or mine Monero. The new malware...
The design of the tool, which allows full system access to certain operational technology in environments such as power plants and water treatment facilities, can also...
A cybercrime campaign targeting the African banking sector is leveraging phishing emails and HTML smuggling techniques to deploy malware. A series of attacks has been reported...
The Cybersecurity and Infrastructure Security Agency (CISA) has added ten new security bugs to its list of actively exploited vulnerabilities, including a high severity local privilege...
The commission is joining the fray in a budding turf fight at the Cybersecurity and Infrastructure Security Agency that also involves sector risk management agencies like...
The verdict is in for the last holdout in a scandalous scheme to defraud the government. As officials within the Department of Homeland Security’s Office of...
A security researcher said they seized credentials for an internal AWS service by exploiting a local file read vulnerability on a Relational Database Service (RDS) EC2...
Recent Comments