Cybersecurity

Category Added in a WPeMatico Campaign

Cybersecurity

N. Korea’s BlueNoroff Blamed for Hacking macOS Machines with ObjCShellz Malware

Nov 07, 2023NewsroomEndpoint Security / Malware The North Korea-linked nation-state group called BlueNoroff has been attributed to a previously undocumented macOS malware strain dubbed ObjCShellz. Jamf Threat Labs, which disclosed details of the malware, said it’s used as part of the RustBucket malware campaign, which came to light earlier this year. “Based on previous attacks […]

Cybersecurity

Medusa Ransomware Group Claims Cyberattack on Canadian Psychological Association

The Canadian Psychological Association (CPA), the primary representative body for psychologists across Canada, has allegedly fallen victim to a cyberattack by the notorious Medusa ransomware group.  This incident highlights the increasing threats posed by cybercriminals targeting organizations with sensitive information. The CPA, established in 1939 and incorporated under the Canada Corporations Act in May 1950, […]

Cybersecurity

Countries pledge to not pay ransoms, but experts question impact

All 50 members of the International Counter Ransomware Initiative endorsed a joint policy statement last week asserting “relevant institutions under our national government authority should not pay ransomware extortion demands.” Cyber authorities representing the collection of 48 countries, the European Union and Interpol, gathered for the third year in Washington, to advance efforts to fight […]

Cybersecurity

Data brokers are selling US service members’ secrets, researchers find

Vast amounts of highly sensitive data on American military service members are up for sale by data brokers, according to a new report examining the national security implications of the practice. The research sheds light on the secretive data broker industry, which gathers exceptionally granular personal information on individual consumers, often selling the data to […]

Cybersecurity

Microsoft Says Exchange ‘Zero Days’ Disclosed by ZDI Already Patched or Not Urgent

Microsoft says four Exchange vulnerabilities disclosed by Trend Micro’s Zero Day Initiative (ZDI) last week have either already been patched or they don’t require immediate attention. ZDI disclosed the existence of four high-severity Exchange vulnerabilities identified by the company’s Piotr Bazydlo after being informed by Microsoft that the issues do not require immediate servicing. According […]

Cybersecurity

SideCopy Exploiting WinRAR Flaw in Attacks Targeting Indian Government Entities

Nov 07, 2023NewsroomVulnerability / Malware The Pakistan-linked threat actor known as SideCopy has been observed leveraging the recent WinRAR security vulnerability in its attacks targeting Indian government entities to deliver various remote access trojans such as AllaKore RAT, Ares RAT, and DRat. Enterprise security firm SEQRITE described the campaign as multi-platform, with the attacks also […]