Cybersecurity

Iran Dupes US Military Contractors, Gov’t Agencies in Cyber Campaign

An elite team of Iranian state-sponsored hackers successfully infiltrated hundreds of thousands of employee accounts at US companies and government agencies, according to the Feds, as part of a multiyear cyber espionage campaign aimed at stealing military secrets. The US Departments of Treasury and State are among those compromised in the elaborate campaign, which lasted […]

Cybersecurity

51% of enterprises experienced a breach despite large security stacks – Help Net Security

Threat actors are continuing to successfully breach across the entire attack surface and the stakes are only getting higher: 93% of enterprises who admitted a breach reported unplanned downtime, data exposure, or financial loss as a result, according to Pentera. Pentera surveyed 450 CISOs, CIOs, and IT security leaders at enterprise companies with more than […]

Cybersecurity

Steadybit’s chaos engineering platform attracts $6M in Series A funding

Steadybit, a leader in chaos engineering, today announces that it has successfully raised $6 million in Series A funding led by Paladin Capital Group. Steadybit’s mission is to improve software reliability through chaos engineering, a practice that ensures systems are robust and resilient against unpredictable online environments.  By simulating disturbances and potential failures, Steadybit aids […]

Cybersecurity

Dropbox Used to Steal Credentials and Bypass MFA in Phishing Campaign

A novel phishing campaign leveraged legitimate Dropbox infrastructure and successfully bypassed multifactor authentication (MFA) protocols, new research from Darktrace has revealed. The attack highlights the growing exploitation of legitimate popular services to trick targets into downloading malware and revealing log in credentials. The findings also show how attackers are becoming adept at evading standard security […]

Cybersecurity

Hackers Leak 2.5M Private Plane Owners’ Data Linked to LA Intl. Airport Breach

IntelBroker informed Hackread.com that they successfully executed the data breach by exploiting a vulnerability within one of the CRM systems utilized by the Los Angeles International Airport. The notorious hacker known as IntelBroker is making headlines once again with a daring alleged breach targeting one of the United States’ most critical organizations: the Los Angeles […]

Cybersecurity

New MaaS InfoStealer Malware Targets Oil & Gas Companie

By Dylan Duncan Cofense Intelligence is tracking an advanced campaign that is successfully reaching intended targets in the Oil and Gas industry. The campaign delivers an uncommon, but advanced, Malware-as-a-Service information stealer, the Rhadamanthys Stealer. This new and advanced phishing campaign employs a recently updated Malware-as-a-Service (MaaS) within days of law enforcement’s takedown of LockBit […]

Cybersecurity

Decryptor for Rhysida ransomware is available! – Help Net Security

Files encrypted by Rhysida ransomware can be successfully decrypted, due to a implementation vulnerability discovered by Korean researchers and leveraged to create a decryptor. Rhysida and its ransomware Rhysida is a relatively new ransomware-as-a-service gang that engages in double extortion. First observed in May 2023, it made its name by attacking the British Library, the […]

Cybersecurity

‘No evidence’ of foreign election interference in 2022 US midterms, spy agencies say

Both Russia and China attempted to influence the 2022 U.S. midterms but did not successfully hack into the country’s election infrastructure or otherwise disrupt voting, the U.S. intelligence community said on Monday. “We have no evidence that any detected activity prevented voting, changed votes, or disrupted the ability to tally votes or to transmit election […]