Security

First search result leads to malware: crooks now paying for ads

Cybercriminals are finding new ways to poison search results. They’re filling Google with paid ads using so-called ‘malvertising’ campaigns, which lead unaware users to malicious sites that exploit their data and trust.
Read more about First search result leads to malware: crooks now paying for ads

Nice Suzuki, sport: shame dealer left your data up for grabs

Two Suzuki-authorized dealer websites were found to be leaking sensitive information. Files that should be secure and kept private were left publicly accessible.
Read more about Nice Suzuki, sport: shame dealer left your data up for grabs

Only Fans hacked by Anonymous Sudan

Anonymous Sudan is raising eyebrows again, this time by claiming to have taken down the online adult content subscription service known as Only Fans.
Read more about Only Fans hacked by Anonymous Sudan

Malware risk in AI software packages, warns analyst

ChatGPT’s API program, designed to incorporate artificial intelligence (AI) functionality into pre-existing apps and software, comes with a risk, warns analyst.
Read more about Malware risk in AI software packages, warns analyst

American students bombarded with job scam emails

Threat actors have been impersonating bioscience, healthcare, and biotechnology companies to defraud job seekers in North America.
Read more about American students bombarded with job scam emails

TD Ameritrade, Ernst & Young, PWC MOVEit negotiations fail, data published

The Cl0p ransomware gang is offering more than 3TB of sensitive data for sale – allegedly stolen from TD Ameritrade and Ernst & Young in the MOVEit zero-day attacks – all as retaliation for the companies' lack of negotiation skills. Pricewaterhouse Coopers was also slammed by the gang after it was assigned its very own leak URL containing all of PWC published files.
Read more about TD Ameritrade, Ernst & Young, PWC MOVEit negotiations fail, data published

FIA World Endurance Championship driver passports leaked

Le Mans Endurance Management exposed the data of hundreds of drivers by leaking their IDs and drivers’ licenses, the Cybernews research team has discovered.
Read more about FIA World Endurance Championship driver passports leaked

Criminals launch subscription-based WormGPT without ethical constraints

Cybercriminals are now fluent in the AI-based tool WormGPT, which automates phishing emails and facilitates business email compromise (BEC) attacks using exceptional grammar in multiple languages.
Read more about Criminals launch subscription-based WormGPT without ethical constraints

Linux-friendly email program hit by zero-day bug

Zimbra has issued a warning that its email platform and supporting software are prone to a security glitch that’s being actively exploited by threat actors, a cyber watchdog warned today.
Read more about Linux-friendly email program hit by zero-day bug

Russian cyber gang Armageddon leaves 30 minutes to react

Russian cyber gang Armageddon's current tactics have been revealed in Ukraine.
Read more about Russian cyber gang Armageddon leaves 30 minutes to react

Chart-topping fake Threads app taken down by Apple

Apple has taken down a fake Threads app in Europe, which was topping the charts of the most downloaded apps.
Read more about Chart-topping fake Threads app taken down by Apple

Konstantin Klyagin, QAwerk: “due to ever-more complex software, we expect growth of software testing services"

That complex software includes advancing technologies like AI and ML. Integrating this tech into the workspace has significant potential for...
Read more about Konstantin Klyagin, QAwerk: “due to ever-more complex software, we expect growth of software testing services"

Cl0p hacker operating from Russia-Ukraine war front line – exclusive

As the Cl0p ransomware gang continues to sow anxiety worldwide, affecting prominent companies like the BBC and Deutsche Bank, at least one of the gang’s masterminds, Cybernews discovered, is still residing in Ukraine.
Read more about Cl0p hacker operating from Russia-Ukraine war front line – exclusive

ING confirms customer data leak, MOVEit fallout

ING Bank confirms to Cybernews that some customer information was accessed by the hackers responsible for a rash of global attacks exploiting the MOVEit file transfer system.
Read more about ING confirms customer data leak, MOVEit fallout

Deutsche Bank, ING, and Postbank impacted by MOVEit hack

Four major European banks – Deutsche Bank, ING Bank, Postbank, and Comdirect – are reporting customer data leaks. They're the result of using the same third-party vendor, breached in the Cl0p MOVEit hacks.
Read more about Deutsche Bank, ING, and Postbank impacted by MOVEit hack

Choice Hotels: Radisson guest info breached in MOVEit attacks

Choice Hotels International confirms guest data from its Radisson Hotel Americas chain has been compromised as part of the massive MOVEit file transfer system hack carried out by the Cl0p ransom gang.
Read more about Choice Hotels: Radisson guest info breached in MOVEit attacks

MacOS devices under threat as data thief emerges from shadows

Cybersecurity firm Guardz has confirmed the existence of a new infostealer program on the dark web. Known as ShadowVault, the malicious entity is available to hire for $500 a month.
Read more about MacOS devices under threat as data thief emerges from shadows

Gates Corporation hit by ransomware

A century-old Colorado company has fallen victim to a ransomware attack. As a result, its sensitive HR documents were exposed to attackers.
Read more about Gates Corporation hit by ransomware

Online scams reported every five seconds in UK

The “whole-of-society” approach has prevented millions of cyber attacks in the UK, according to the country’s National Cyber Security Centre (NCSC).
Read more about Online scams reported every five seconds in UK

Law Foundation of Silicon Valley hit by ransomware: 42K+ clients and staff exposed

A law firm in Silicon Valley working with under-represented individuals has disclosed a data breach affecting tens of thousands of people.
Read more about Law Foundation of Silicon Valley hit by ransomware: 42K+ clients and staff exposed