Security

China-linked attackers Salt Typhoon infiltrate US internet service providers

The Beijing-linked threat actors breached several internet service providers in the US, according to an exclusive report by The Wall Street Journal.
Read more about China-linked attackers Salt Typhoon infiltrate US internet service providers

Hackers hiding malware in fake “deleted Diddy files”

Malicious attackers are trying to capitalize on public interest surrounding charges against the rap star Sean “Diddy” Combs. A new PDiddySploit malware has been detected by Veriti researchers.
Read more about Hackers hiding malware in fake “deleted Diddy files”

Over 90 million French records exposed: mysterious data hoarder leaves instances open

1
A massive leak has exposed 95 million records belonging to French citizens. The compromised phone numbers, email addresses, and partial payment information leave them vulnerable to targeted cyberattacks.
Read more about Over 90 million French records exposed: mysterious data hoarder leaves instances open

Apple silently axes dozens of VPN apps in Russia

Apple is silently removing VPN apps from its App Store in Russia, outpacing official reports from Russia’s communications regulator Roskomandzor, reveals a report by online freedom advocate GreatFire.
Read more about Apple silently axes dozens of VPN apps in Russia

Mozilla is “taking a leaf out of Google’s playbook”

Mozilla, known for its “privacy-focused” browser, Firefox, has quietly rolled out a new feature that allows the browser to track users' behavior as they search the web, sparking a new complaint.
Read more about Mozilla is “taking a leaf out of Google’s playbook”

AI threats pushing cyber pros to seek legal safeguards

Cybersecurity executives at the world’s leading firms say they are taking legal steps to protect themselves from “unprecedented” pressures of a shifting threat landscape.
Read more about AI threats pushing cyber pros to seek legal safeguards

Popular podcast platform leaks data of tens of millions of its customers

One of India’s most popular podcast and audiobook platforms, KukuFM, left a publicly accessible instance and exposed more people than the entire population of Poland.
Read more about Popular podcast platform leaks data of tens of millions of its customers

White House closer to ban sale of any ‘connected car’ using software made in China

The Biden administration has proposed a new rule restricting the import or sale of connected cars in the US that use Chinese or Russian technology. The rule is based on fears that the data collected by the software poses a threat to national security.
Read more about White House closer to ban sale of any ‘connected car’ using software made in China

Combating phishing attacks through awareness and simulation

In 2008, I started operating as a hacker for hire. Since the hottest thing on the market is always catching a cheater, I was hired to investigate whether my client’s fiancé was faithful or if he was having secret conversations on a German social networking site.
Read more about Combating phishing attacks through awareness and simulation

Singaporean crypto exchange BingX offers 10% bounty after $44M hack

Following blockchain data analysts' warnings about suspicious outflows from BingX, the cryptocurrency exchange confirmed the breach and offered 10% to hackers. More than $44 million was allegedly stolen.
Read more about Singaporean crypto exchange BingX offers 10% bounty after $44M hack

Popular US car rental company Hertz didn’t spot this access control vulnerability

What looked like a phishing email was just bad cybersecurity practices from a popular US car rental company.
Read more about Popular US car rental company Hertz didn’t spot this access control vulnerability

Linux for kids: teaching the next generation

Education for kids isn't what it used to be, especially regarding the technology we use. We live in a world where exhausted parents have replaced baby pacifiers with smartphones and tablets to keep kids distracted, which doesn’t provide any meaningful mental stimulation beyond hand-eye coordination.
Read more about Linux for kids: teaching the next generation

One-third of the US population’s background info is now public

1
Cybernews exclusive research has revealed that a massive data leak at MC2 Data, a background check firm, affects a staggering amount of US citizens.
Read more about One-third of the US population’s background info is now public

DDoS overtakes ransomware as most active cyber threat in Europe

Almost half of cyberattacks in the European Union are denial of service attacks (DDoS), putting NoName057 at the top of the most active threat actors’ list.
Read more about DDoS overtakes ransomware as most active cyber threat in Europe

Walmart customers accused of drug trafficking in a Google Ads scam

Scammers combined Google Ads with Walmart Lists to trick customers into believing they were trafficking druglord money and now have to pay for the imaginary crime.
Read more about Walmart customers accused of drug trafficking in a Google Ads scam

Cashless toll payments end with massive data leak

Nearly a million Colombians and businesses were affected after the GoPass payment app exposed drivers’ sensitive data to anyone on the internet.
Read more about Cashless toll payments end with massive data leak

FBI warns about China-controlled botnet affecting thousands of Americans

The FBI has warned that cyber actors linked to China have compromised over 260,000 internet-connected devices, mostly routers, to create a massive botnet. It’s used for malicious activities, such as distributed denial of service attacks, or as a proxy to conceal identities.
Read more about FBI warns about China-controlled botnet affecting thousands of Americans

Think twice before you click: this captcha might steal your money

Windows users risk losing funds from crypto wallets and other personal data from a new form of attack involving captcha verification.
Read more about Think twice before you click: this captcha might steal your money

Chrome extension hides malware to steal crypto: new operation uncovered

A crude malicious Chrome extension for stealing personal data and crypto can slip through malware detection systems, despite its simplicity. This significant leak provides unique insights into the effectiveness of malicious campaigns and the limitations of current spam and malware detection systems.
Read more about Chrome extension hides malware to steal crypto: new operation uncovered

Hospitals need “tribal approach” to protect against hackers, says expert

Cyberattacks on healthcare institutions can quickly turn deadly. And while larger organizations are starting to adapt to the new cyber reality, smaller local hospitals are mostly left to fend for themselves. Closer collaboration might help to solve the crisis.
Read more about Hospitals need “tribal approach” to protect against hackers, says expert