Cybersecurity

Russian Cyber Espionage Group Deploys LitterDrifter USB Worm in Targeted Attacks

Nov 18, 2023NewsroomCyber Attack / USB Worm Russian cyber espionage actors affiliated with the Federal Security Service (FSB) have been observed using a USB propagating worm called LitterDrifter in attacks targeting Ukrainian entities. Check Point, which detailed Gamaredon’s (aka Aqua Blizzard, Iron Tilden, Primitive Bear, Shuckworm, and Winterflounder) latest tactics, branded the group as engaging […]

Cybersecurity

NTMC database exposed personal info to open web: report

The National Telecommunication Monitoring Centre (NTMC) in Bangladesh has exposed a database to the open web. The types of data that leaked online were extensive, American technology magazine WIRED reports. The list of data is long: names, professions, blood groups, parents’ names, phone numbers, the length of calls, vehicle registrations, passport details and fingerprint photos, […]

Cybersecurity

FTC targets telecom provider for inmates after massive data breach

The Federal Trade Commission said Thursday that it wants to require a prison communications provider to improve its security practices and incident reporting policies after the company failed to protect sensitive information about “hundreds of thousands” of users and did not notify all victims of the breach. The draft complaint and proposed order against Virginia-based […]

Cybersecurity

Cyber-Criminals Exploit Gaza Crisis With Fake Charity

Cybersecurity researchers have uncovered a charity attack exploiting the ongoing events in Gaza and Israel. Cyber-criminals targeted 212 individuals across 88 organizations, attempting to manipulate sympathy for children in Palestine to solicit fraudulent donations.  The attackers, posing as a group from “help-palestine[.]com,” urged recipients to contribute to a campaign supposedly providing vital support to families in […]

Cybersecurity

SEC Aims to Avoid Cyber Disclosure Rule ‘Compliance Burdens’

Standards, Regulations & Compliance Official Says Disclosure Rule Includes Exceptions, Extensions for Smaller Companies Chris Riotta (@chrisriotta) • November 16, 2023     The new U.S. SEC reporting rule for material cyber incidents goes into effect Dec. 18 for large public companies. (Image: Shutterstock) The U.S. Securities and Exchange Commission is providing extra time for […]

Cybersecurity

Beware: Malicious Google Ads Trick WinSCP Users into Installing Malware

Nov 17, 2023NewsroomMalvertising / Malware Threat actors are leveraging manipulated search results and bogus Google ads that trick users who are looking to download legitimate software such as WinSCP into installing malware instead. Cybersecurity company Securonix is tracking the ongoing activity under the name SEO#LURKER. “The malicious advertisement directs the user to a compromised WordPress […]