The Rhysida ransomware group claims it was responsible for the cyberattack at US luxury yacht dealer MarineMax earlier this month. MarineMax, which posted multibillion-dollar revenues last year, disclosed a cyberattack to the Securities and Exchange Commission (SEC) on March 10, saying portions of i…
Category: Cyber Security News
Federal authorities are warning healthcare sector entities about email bomb attacks, which can overwhelm inboxes and servers. (Image: Getty) Imagine a hospital’s email system suddenly filled with thousands of spam messages sent by bots. The unexpected traffic degrades network server performance, and…
An unpatchable vulnerability in Appleβs M-series chips has been reported. The Apple M-series chip vulnerability could potentially leak secret encryption keys. This flaw, embedded deep within the architecture of the chips, poses a challenge for the tech giant in terms of addressing security concerns…
93% of IT professionals believe security threats are increasing in volume or severity, a significant rise from 47% last year, according to Thales. The number of enterprises experiencing ransomware attacks surged by over 27% in the past year. Despite this escalating threat, less than half of organiza…
A hacker allegedly connected to the People’s Republic of China has been exploiting two popular vulnerabilities to attack U.S. defense contractors, U.K. government entities and institutions in Asia. A new report from Google-owned security firm Mandiant spotlighted the work of a threat actor the…
As AI gets baked into enterprise tech stacks, AI applications are becoming prime targets for cyber attacks. In response, many cybersecurity teams are adapting existing cybersecurity practices to mitigate these new threats. One such practice measure is red teaming: the effort to expose weaknesses in…
A malware campaign offering malware-as-a-service (MaaS) is targeting Android users based in India.According to Broadcom, the campaign distributes malicious APK packages and seeks out banking information, SMS messages, and other sensitive information from a victim’s device. This campaign is acti…
An international freight technology company said it has cut off a portion of its business in Canada after a cyberattack. The company β Radiant Logistics β did not respond to requests for comment about whether it was dealing with a ransomware attack. In documents filed with U.S. regulators, the compa…
An Australian IT contractor has been sentenced to 30 months jail for ripping off the National Maritime Museum. The nonprofit museum celebrates Australia’s maritime heritage β a matter of some import for the island nation, which therefore attracts government funding. Among the museum’s exhibits is a…
Ivanti addressed a critical remote code execution vulnerability, tracked as CVE-2023-41724 (CVSS score of 9.6), impacting Standalone Sentry solution. An unauthenticated attacker can exploit this vulnerability to execute arbitrary commands on the underlying operating system of the appliance within th…
An analysis of 100,000+ Windows malware samples has revealed the most prevalent techniques used by malware developers to successfully evade defenses, escalate privileges, execute the malware, and assure its persistence. Malware tactics and techniques The analyzed malware samples were most often deli…
A new denial-of-service attack dubbed ‘Loop DoS’ targeting application layer protocols can pair network services into an indefinite communication loop that creates large volumes of traffic. Devised by researchers at the CISPA Helmholtz-Center for Information Security, the attack uses…
Atlassian addressed multiple vulnerabilities in its Bamboo, Bitbucket, Confluence, and Jira products. The most severe vulnerability, tracked as CVE-2024-1597 (CVSS score of 10), is a SQL injection flaw that impacts the org.postgresql:postgresql third-party dependency of Bamboo Data Center…
New and sophisticated tax phishing scams are targeting taxpayers, warns Microsoft. These scams impersonate trusted sources and use urgency tactics to steal personal and financial data. Taxpayers beware! Phishing scams are on the rise again as tax season heats up. Microsoft Threat Intelligence has is…
Threat actors are attempting to compromise Social Security numbers with a tax phishing attack targeting small business owners and self-employed filers.Worryingly, the social engineering scammers are likely operating with little more than a cheap email list of self-employed US residents, according to…