Cyber

Hundreds of code libraries posted to NPM try to install malware on dev machines

These are not the the developer tools you think they are. Credit: Getty Images An ongoing attack is uploading hundreds of malicious packages to the open source node package manager (NPM)...

Android Trojan that intercepts voice calls to banks just got more stealthy

FakeCall malware can reroute calls intended for banks to attacker-controlled numbers. Credit: Getty Images Researchers have...

Systems used by courts and governments across the US riddled with vulnerabilities

With hundreds of courts and agencies affected, chances are one near you is, too. Public...

Hacker plants false memories in ChatGPT to steal user data in perpetuity

Emails, documents, and other untrusted content can plant malicious memories. When security researcher Johann Rehberger...

Google calls for halting use of WHOIS for TLS domain verifications

WHOIS data is unreliable. So why is it used in TLS certificate applications? Certificate authorities...

Chinese malware removed from SOHO routers after FBI issues covert commands

Routers were being used to conceal attacks on critical infrastructure. The US Justice Department said Wednesday that the FBI surreptitiously sent commands to hundreds of...

NCSC warns ransomware attacks to intensify due to AI

The number of cyberattacks will “almost certainly” increase in the next two years as artificial intelligence lowers the entry barrier for less skilled hackers,...

Growing Number of Ransomware Victims Are Refusing to Pay

Companies are now more adept at recovering from ransomware attacks, providing less of an incentive to pay the hackers, according to Coveware. For years, ransomware gangs have...

Passkeys for X is now live for iOS users in the US

Social media platform X has announced the launch of the innovative Passkeys security feature for iOS users based in the United States. The company announced...

iPhone users: turn on new security feature

Apple has released a new security feature called Stolen Device Protection – and you should definitely turn it on, experts say. Stolen Device Protection “adds...

Mugger take your phone? Cash apps too easily let thieves drain accounts, DA says

Cash apps need tools like Apple’s Stolen Device Protection, DA says. Popular apps like Venmo, Zelle, and Cash App aren't doing enough to protect consumers...

Cyber spies launch PDF campaign

After a nine-month sabbatical, a cyber espionage group has returned to the scene, targeting organizations across North America with infected PDF documents. Proofpoint cybersecurity firm...

Google search is losing the fight with SEO spam, study says

Study finds "search engines seem to lose the cat-and-mouse game that is SEO spam." It's not just you—Google Search is getting worse. A new study from Leipzig...

Researcher uncovers one of the biggest password breaches in recent history

Roughly 25 million of the passwords have never been seen before by widely used service. Nearly 71 million unique credentials stolen for logging into websites...

Critical Xwiki vulnerability risks RCE attacks

Xwiki, an application development platform, has a critical vulnerability that could open it up for remote code execution (RCE) attacks. Xwiki is vulnerable to remote...

Toronto Zoo hit by ransomware attack

The largest zoo in Canada, Toronto Zoo, was hit by a ransomware attack on Friday, January 5th, affecting systems and some information about visitors,...

Saudi Ministry exposed sensitive data for 15 months

Saudi Arabia’s Ministry of Industry and Mineral Resources (MIM) had an environment file exposed, opening up sensitive details for anybody willing to take them....

Dark web sees “surge” of X gold accounts on sale

There’s a “gold rush” on the dark web as threat actors target verified accounts on X, formerly Twitter, for large-scale attacks, cybersecurity experts at...

Accounts in danger: Google recommends enhanced safe browsing and extra care

After reports of a new malware strain stealing and maintaining Google sessions, the tech giant is encouraging users to enable enhanced safe browsing and...
HomeCyber