Cybersecurity

Ransomware tactics evolve, become scrappier – Help Net Security

As we enter 2024, ransomware remains the most significant cyberthreat facing businesses, according to Malwarebytes. Malwarebytes reveals that the United States accounted for almost half of all ransomware attacks in 2023. “Small and medium-sized organizations face a deluge of cyber threats daily including ransomware, malware and phishing attacks. This new data spotlights the pervasive cat-and-mouse […]

Cybersecurity

China Targets US Hacking Ops in Media Offensive

China has escalated its media campaign alleging US hacking operations, following condemnation from the US, UK and EU in July 2021 over Chinese cyber activities. According to a report published by cybersecurity experts at SentinelLabs today, this offensive strategy involves cooperation between Chinese cybersecurity firms, government agencies and state media to amplify accusations against the […]

Cybersecurity

Bugcrowd Attains $102M Strategic Growth Funding Round

Governance & Risk Management , Vulnerability Assessment & Penetration Testing (VA/PT) Company Will Use Investment to Expand Services, Says CEO Dave Gerry David Perera (@daveperera) • February 12, 2024     Bugcrowd will use a $102 million investment to grow services and its platform. Ethical hacking-as-a-service platform Bugcrowd received a $102 million venture capital investment […]

Cybersecurity

Ivanti Vulnerability Exploited to Install ‘DSLog’ Backdoor on 670+ IT Infrastructures

Feb 13, 2024NewsroomVulnerability / Cyber Threat Threat actors are leveraging a recently disclosed security flaw impacting Ivanti Connect Secure, Policy Secure, and ZTA gateways to deploy a backdoor codenamed DSLog on susceptible devices. That’s according to findings from Orange Cyberdefense, which said it observed the exploitation of CVE-2024-21893 within hours of the public release of […]

Cybersecurity

Alert: CISA Warns of Active ‘Roundcube’ Email Attacks – Patch Now

Feb 13, 2024NewsroomVulnerability / Email Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a medium-severity security flaw impacting Roundcube email software to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation. The issue, tracked as CVE-2023-43770 (CVSS score: 6.1), relates to a cross-site scripting (XSS) flaw that stems […]