Cyber

Hundreds of code libraries posted to NPM try to install malware on dev machines

These are not the the developer tools you think they are. Credit: Getty Images An ongoing attack is uploading hundreds of malicious packages to the open source node package manager (NPM)...

Android Trojan that intercepts voice calls to banks just got more stealthy

FakeCall malware can reroute calls intended for banks to attacker-controlled numbers. Credit: Getty Images Researchers have...

Systems used by courts and governments across the US riddled with vulnerabilities

With hundreds of courts and agencies affected, chances are one near you is, too. Public...

Hacker plants false memories in ChatGPT to steal user data in perpetuity

Emails, documents, and other untrusted content can plant malicious memories. When security researcher Johann Rehberger...

Google calls for halting use of WHOIS for TLS domain verifications

WHOIS data is unreliable. So why is it used in TLS certificate applications? Certificate authorities...

Pro-Hamas cybergang develops complex infection tactics with new downloader

A threat actor targeting West Asian governments now uses a labyrinthine infection chain based on delivering a new initial access downloader dubbed IronWind, cybersecurity...

In a first, cryptographic keys protecting SSH connections stolen in new attack

An error as small as a single flipped memory bit is all it takes to expose a private key. 120WITH For the first time, researchers have...

Frontegg Forward is here, allowing enterprises to securely manage their customers’ digital identities

VentureBeat presents: AI Unleashed - An exclusive executive event for enterprise data leaders. Network and learn with industry peers. Learn More Frontegg, the four-year-old startup focused on making...

Digital.ai launches Denali to help enterprises automate secure software releases

Credit: VentureBeat made with Midjourney VentureBeat presents: AI Unleashed - An exclusive executive event for enterprise data leaders. Network and learn with industry peers. Learn More Digital.ai,...

Google’s “Web Integrity” Android API could kill “alternative” media clients

Web Integrity pivots to Android, could permanently kill YouTube Vanced-style apps. 50WITH Google is killing off its proposal for "Web Environment Integrity API" as a new web standard,...

Critical vulnerability in Atlassian Confluence server is under “mass exploitation”

Atlassian's senior management is all but begging customers to take immediate action. 15WITH A critical vulnerability in Atlassian’s Confluence enterprise server app that allows for malicious...

Headhunt for 4 million cybersecurity pros: current shortage is largest ever

The gap between the demand for cybersecurity professionals and their availability has widened to unprecedented levels, says a new report. The number of new...

Microsoft: English-speaking ransom gang issuing death threats

Microsoft has detected a threat actor linked to the gang that recently launched high-profile cyberattacks on casinos in Las Vegas. In rare cases, the...

Critical vCenter Server vulnerability reported, VMware releases a fix

The leading virtualization and cloud tech provider VMware has disclosed a critical vulnerability with a score of 9.8 out of 10, affecting its vCenter...

Discord file links will expire after a day to fight malware

The company says anyone using Discord to host files should consider a different service. Anyone using Discord to host files will want to change that,...

The Global Cybersecurity Forum 2023

The Digital Watch Observatory will provide just-in-time reporting from the GCF, leveraging our AI-driven App. Visit our dedicated page for all the latest insights...

SEC sues SolarWinds over massive cyberattack, alleging fraud and weak controls

SolarWinds Corp banner hangs at the New York Stock Exchange (NYSE) on the IPO day of the company in New York, U.S., October 19,...

Splunk to cut 7% of workforce, or about 500 employees, ahead of Cisco acquisition

The Splunk logo is displayed on a phone screen on top of a laptop keyboard in this photo taken in Krakow, Poland, on Oct....

Okta cybersecurity breach wipes out more than $2 billion in market cap

The Okta website on a laptop arranged in Dobbs Ferry, New York, on Feb. 28, 2021. Tiffany Hagler-Geard | Bloomberg | Getty Images Okta has shed more...
HomeCyber