Cybersecurity

‘The Manipulaters’ Improve Phishing, Still Fail at Opsec – Krebs on Security

Roughly nine years ago, KrebsOnSecurity profiled a Pakistan-based cybercrime group called “The Manipulaters,” a sprawling web hosting network of phishing and spam delivery platforms. In January 2024, The Manipulaters pleaded with this author to unpublish previous stories about their work, claiming the group had turned over a new leaf and gone legitimate. But new research […]

Cybersecurity

Rackspace records $5M in expenses related to 2022 ransomware attack

Rackspace Technology recorded $5 million in expenses for the first nine months of this year, stemming from the December 2022 ransomware attack of the company’s Hosted Exchange business, according to a 10-Q filing with the Securities and Exchange Commission.  The managed email solution for small- and medium-sized businesses represented about 1% of the company’s revenue […]

Cybersecurity

9 vulnerabilities found in VPN software, including 1 critical issue that could lead to remote code execution

Cisco Talos has disclosed 17 vulnerabilities over the past two weeks, including nine that exist in a popular VPN software.   Attackers could exploit these vulnerabilities in the SoftEther VPN solution for individual and enterprise users to force users to drop their connections or execute arbitrary code on the targeted machine.   Talos’ Vulnerability Research team […]

Cybersecurity

9 Vulnerabilities Patched in SEL Power System Management Products 

Nine vulnerabilities, including potentially serious flaws, were patched recently in a couple of electric power management products made by Schweitzer Engineering Laboratories (SEL). SEL is a US-based company that provides a wide range of products and services for the electric power sector, including control systems, generator and transmission protection, and distribution automation. Researchers at industrial […]