Cybersecurity

CVEMap: Open-source tool to query, browse and search CVEs – Help Net Security

CVEMap is an open-source command-line interface (CLI) tool that allows you to explore Common Vulnerabilities and Exposures (CVEs). It’s designed to offer a streamlined and user-friendly interface for navigating vulnerability databases. Although CVEs are crucial for pinpointing and discussing security weaknesses, their rapid growth and occasional overstatement of severity often result in misleading information. Security […]

Cybersecurity

Interpol arrests more than 30 cybercriminals in global ‘Synergia’ operation

International law enforcement announced Thursday that they detained 31 suspected cybercriminals and identified 1,300 malicious servers that they used to carry out phishing attacks and distribute malware. Interpol’s so-called Operation Synergia, which ran from September to November 2023, “was launched in response to the clear growth, escalation and professionalization of transnational cybercrime and the need […]

Cybersecurity

Florida Teen Faces Federal Charges in $800,000 Crypto Theft

Cryptocurrency Fraud , Cybercrime , Fraud Management & Cybercrime Teen Could Serve Extended Prison Terms for Wire Fraud, Aggravated Identity Charges Prajeet Nair (@prajeetspeaks) • January 31, 2024     Noah Michael Urban, 19, faces 10 charges related to SIM swapping to steal cryptocurrency. (Image: Volusia County Sheriff’s Office) U.S. federal prosecutors charged a Florida […]

Cybersecurity

Russian APT28 Hackers Targeting High-Value Orgs with NTLM Relay Attacks

Russian state-sponsored actors have staged NT LAN Manager (NTLM) v2 hash relay attacks through various methods from April 2022 to November 2023, targeting high-value targets worldwide. The attacks, attributed to an “aggressive” hacking crew called APT28, have set their eyes on organizations dealing with foreign affairs, energy, defense, and transportation, as well as those involved […]

Cybersecurity

White House rejects efforts to undo SEC cyber disclosure rule

Listen to the article 5 min This audio is auto-generated. Please let us know if you have feedback. The Biden administration came out forcefully this week against a congressional effort to undo the U.S. Securities and Exchange Commission’s recently adopted rule requiring public companies to disclose cybersecurity incidents. President Joe Biden would veto the joint […]

Cybersecurity

DirtyMoe Malware Infects 2,000+ Ukrainian Computers for DDoS and Cryptojacking

Feb 02, 2024NewsroomCryptojacking / Malware The Computer Emergency Response Team of Ukraine (CERT-UA) has warned that more than 2,000 computers in the country have been infected by a strain of malware called DirtyMoe. The agency attributed the campaign to a threat actor it calls UAC-0027. DirtyMoe, active since at least 2016, is capable of carrying […]