Cybersecurity

Category Added in a WPeMatico Campaign

Cybersecurity

North Korean Hackers Target South Korean Naval Shipyards

Cyberwarfare / Nation-State Attacks , Fraud Management & Cybercrime , Geo Focus: Asia Nation-State Attacks on Defense Manufacturers Rising Since November 2022 Jayant Chakravarti (@JayJay_Tech) • October 4, 2023     A Daewoo shipyard in the city of Geoje in South Korea (Image: Shutterstock) South Korean national intelligence has sounded alarms about North Korean hackers […]

Cybersecurity

Cyber Mavens Slam Europe’s Cyber Resilience Act

Governance & Risk Management , Legislation & Litigation , Patch Management Experts Warn Vulnerability Disclosure to Government Agencies Increases Hacking Risk Akshaya Asokan (asokan_akshaya) • October 4, 2023     Image: Shutterstock More than four dozen cybersecurity mavens say a proposed European Union mandate for software publishers to inform the trading bloc’s cybersecurity agency of […]

Cybersecurity

Microsoft Warns of Cyber Attacks Attempting to Breach Cloud via SQL Server Instance

Oct 04, 2023NewsroomCloud Security / Cyber Threat Microsoft has detailed a new campaign in which attackers unsuccessfully attempted to move laterally to a cloud environment through an SQL Server instance. “The attackers initially exploited a SQL injection vulnerability in an application within the target’s environment,” security researchers Sunders Bruskin, Hagai Ran Kestenberg, and Fady Nasereldeen […]

Cybersecurity

Red Cross Releases Wartime Hacktivist Rules

The International Committee of the Red Cross (ICRC) has published a new set of rules urging hacktivists to abide by international humanitarian law in times of conflict. Writing in the European Journal of International Law (EJIL), the ICRC warned that cyber-attacks carried out by civilians during wartime are increasingly causing disruption to non-military targets such as […]

Cybersecurity

The evolutionary tale of a persistent Python threat 

In the vast landscape of the open-source ecosystem, shadows occasionally move. While this realm thrives on collaboration and knowledge sharing, it’s also a playground for predators, from novice hackers to well-coordinated nation-state actors. Over recent months, one such threat has been emerging, growing, and refining its arsenal.  Our team at Checkmarx’s Supply Chain Security has […]

Cybersecurity

Coalition to give NGOs free access to cybersecurity services to protect against attacks

THE HAGUE, Netherlands — The CyberPeace Institute announced Wednesday it will set up a portal with a coalition of cyber response teams to help non-governmental organizations, or NGOs, in the Netherlands protect themselves from cyberattacks. The CyberPeace Institute is a Geneva-based nonprofit that monitors cyberattacks and their effect on society. As part of that mission, […]

Cybersecurity

QakBot Threat Actors Still in Action, Using Ransom Knight and Remcos RAT in Latest Attacks

Oct 05, 2023NewsroomRansomware / Malware Despite the disruption to its infrastructure, the threat actors behind the QakBot malware have been linked to an ongoing phishing campaign since early August 2023 that led to the delivery of Ransom Knight (aka Cyclops) ransomware and Remcos RAT. This indicates that “the law enforcement operation may not have impacted […]

Cybersecurity

Cisco Releases Urgent Patch to Fix Critical Flaw in Emergency Responder Systems

Oct 05, 2023NewsroomNetwork Security / Software Patch Cisco has released updates to address a critical security flaw impacting Emergency Responder that allows unauthenticated, remote attackers to sign into susceptible systems using hard-coded credentials. The vulnerability, tracked as CVE-2023-20101 (CVSS score: 9.8), is due to the presence of static user credentials for the root account that […]