Cyber News - Page 18

Home > Cyber News

This category contains informative articles and news.
Cyber News about data breaches, online privacy and security, computer security threats, cybersecurity reports, vulnerability reports. News about the latest malware attacks.
Hot news about the security of Microsoft (Patch Tuesdays), Google, Android, Apple, Linux, and other big companies and software vendors.

CYBER NEWS
Dell BIOS Vulnerabilities Could Cause Remote Code Execution (CVE-2022-24415)

Dell BIOS Vulnerabilities Could Cause Remote Code Execution (CVE-2022-24415)

Security researchers reported several new vulnerabilities in Dell BIOS that could lead to remote code execution attacks. The said, highly severe vulnerabilities are tracked as CVE-2022-24415, CVE-2022-24416, CVE-2022-24419, CVE-2022-24420, and CVE-2022-24421, with a severity rating of 8.2 out of 10…

CYBER NEWS
New Browser-in-the-Browser Technique Makes Phishing Indistinguishable

New Browser-in-the-Browser Technique Makes Phishing Indistinguishable

Browser-in-the-browser (BitB) is a new type of attack that can be leveraged to simulate a browser window within the browser to spoof a legitimate domain. The technique can be used to perform credible phishing attacks. Browser-in-the-Browser Phishing Technique Explained Discovered…

CYBER NEWS
A new rootkit has been detected in the wild, targeting Oracle Solaris systems and aiming at ATMs.

Researchers Observe New CAKETAP Rookit Deployed against ATMs

A new rootkit has been detected in the wild, targeting Oracle Solaris systems and aiming at ATMs. According to Mandiant research and analysis, the so-called UNC2891 threat actors initiated rootkit intrusions that appeared to be financially motivated, in some cases…

CYBER NEWS
DirtyMoe worming malware

DirtyMoe Worming Malware Endangers Hundreds of Thousands Computers Per Day

DirtyMoe is the name of a new malware sample with worming capabilities (with cryptomining as a primary purpose) analyzed by Avast researchers. The analysis reveals that the worming module targets older, well-known vulnerabilities, such as Eternal blue and Hot Potato.…

CYBER NEWS
Protestware Projects on GitHub Push Pro-Ukraine Ads and Data Wipers

Protestware Projects on GitHub Push Pro-Ukraine Ads and Data Wipers

Have you heard of protestware? Researchers have been tracking the so-called protestware projects across GitHub with recently added code that displays “Stand with Ukraine” messages. The same researchers are also tracking several code packages, recently modified to delete files on…

CYBER NEWS
The Most Prevalent Ransomware Variants in Q4 of 2021

The Most Prevalent Ransomware Variants in Q4 of 2021

A new Intel 471 whitepaper throws light on the ransomware variants detected in the fourth quarter of 2021. 722 ransomware attacks were detected during the fourth quarter of last year, which is an increase of 110 attacks recorded from the…

CYBER NEWS
caddywiper

CaddyWiper: Another Destructive Wiper Targeting Ukraine

Security researchers disclose another data wiper aimed at Ukraine, CaddyWiper. CaddyWiper Was Compiled Hours Before Deployment CaddyWiper is a destructive malware discovered by ESET researchers. The wiper was first observed on March 14, around 9:38 UTC, and according to caddy.exe…

CYBER NEWS
CVE-2022-25636: Linux Kernel Netfilter Vulnerability

CVE-2022-25636: Linux Kernel Netfilter Vulnerability

Security researcher Nick Gregory recently discovered and reported a new Linux kernel vulnerability. Tracked as CVE-2022-25636, the issue impacts Linux kernel versions 5.4 through 5.6.10. The vulnerability is triggered by a heap-of-bounds write in the Netfilter subcomponent of the kernel,…

CYBER NEWS
Russia Issues Its Own TLS Certificate Authority

Russia Issues Its Own TLS Certificate Authority

Russia currently offers its own TLS (Transport Layer Security) CA (certificate authority) that should fix the issue of renewing certificates issued by other countries. Russia’s New TLS Certificate Authority The event is connected to the numerous sanctions imposed by western…

CYBER NEWS
cryptocurrency crime

The State of Cryptocurrency Crime and Ransomware Revenue

“The criminal crypto world combines old and new ways to manipulate markets,” say Chainanalysis and Avast experts. According to a recent Chainanalysis write-up, North Korean hackers had a very successful 2021 year. As a result of launching at least seven…

CYBER NEWS
Nokoyawa Ransomware Is Here to Replace Hive

New Nokoyawa Ransomware Is Here to Replace Hive

Security researchers report the discovery of a new ransomware which displays similarities to Hive. The latter has been considered one of the most prominent ransomware families of 2021, successfully breaching more than 300 organizations in just four months, Trend Micro’s…

CYBER NEWS
March 2022 Patch Tuesday Fixes Three Critical Vulnerabilities (CVE-2022-23277)

March 2022 Patch Tuesday Fixes Three Critical Vulnerabilities (CVE-2022-23277)

71 security vulnerabilities were fixed by Microsoft in its March 2022 Patch Tuesday, three of which rated critical and the rest rated as important. The Three Critical Vulnerabilities in March 2022 Patch Tuesday Fortunately, none of them is listed as…

CYBER NEWS
https://en.wikipedia.org/wiki/Mandiant

Google Acquires Mandiant in an All-Cash, $5.5 Billion Deal

Google is buying cybersecurity company Mandiant in an all-cash deal, valued at $5.4 billion. The news comes from an announcement the two companies recently made. According to Google’s press release, Google has signed “a definitive agreement to acquire Mandiant Inc.”,…

CYBER NEWS
Flaws in PTC’s Axeda Agent Affect Medical, ATM Devices (CVE-2022-25247)

Flaws in PTC’s Axeda Agent Affect Medical, ATM Devices (CVE-2022-25247)

A new set of supply chain vulnerabilities have been discovered affecting PTC’s Axeda agent, affecting various vendors in a range of industries, including healthcare and financial. Axeda offers a scalable foundation to build and deploy enterprise-grade applications for connected products,…

CYBER NEWS
CVE-2022-0847: Dirty Pipe Kernel Vulnerability Is Easy to Exploit

CVE-2022-0847: Dirty Pipe Kernel Vulnerability Is Easy to Exploit

A new dangerous Linux vulnerability is lurking in unpatched distributions. Called Dirty Pipe and tracked as CVE-2022-0847, the vulnerability is located in the kernel (since version 5.8), creating the possibility for threat actors to overwrite arbitrary data into any read-online…

CYBER NEWS
CVE-2022-0492: Privilege Escalation Linux Kernel Vulnerability

CVE-2022-0492: Privilege Escalation Linux Kernel Vulnerability

A new high-severity Linux kernel vulnerability could have been abused to escape a container in order to execute arbitrary commands on the host. The vulnerability is tracked as CVE-2022-0492, and has been detailed by Palo Alto Unit 42 Networks researchers.…

CYBER NEWS
CVE-2022-26485

CVE-2022-26485, CVE-2022-26486: Critical Firefox Zero-Days Exploited in the Wild

Two out-of-band updates were just released to address a couple of zero-day vulnerabilities in Mozilla Firefox. Mozilla says that both vulnerabilities are being actively exploited in the wild, meaning that patching should be done as soon as possible. Due to…

CYBER NEWS
Daxin backdoor

China-Linked Daxin Backdoor Shows Unseen Advanced Capabilities

Another stealthy, rootkit backdoor used for espionage has been uncovered. The malware, dubbed Daxin and Backdoor.Daxin, is capable of carrying out attacks against hardened networks, said Symantec Threat Hunter team researchers. A Look into Daxin Backdoor Daxin is described as…

CYBER NEWS
SockDetour Fileless Backdoor Targets U.S.-based Defense Contractors

SockDetour Fileless Backdoor Targets U.S.-based Defense Contractors

Security researchers detected a new advanced persistent threat campaign, which was first identified in relation to the Zoho ManageEngine ADSelfService Plus vulnerability CVE-2021-40539 and ServiceDesk Plus vulnerability CVE-2021-44077. According to Palo Alto Unit 42, the threat actors behind the campaign…

CYBER NEWS
HermeticWiper Malware Deployed in Attacks Against Ukraine

HermeticWiper Malware Deployed in Attacks Against Ukraine

A new data wiper malware has been discovered, reportedly used in attacks against machines in Ukraine, following the news of Russia launching a military operation against the country. HermeticWiper Malware Used in Attacks Against Ukraine The wiper malware has been…

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree