Iranian state-aligned threat actor targets new victims in cyberespionage and kinetic campaigns

New research from Proofpoint exposes a large shift in the TA453 threat actor’s modus operandi, which started conducting more hostile attacks.
The post Iranian state-aligned threat actor targets new victims in cyberespionage and kinetic campaigns appear… Continue reading Iranian state-aligned threat actor targets new victims in cyberespionage and kinetic campaigns

Can your passwords withstand threat actors’ dirty tricks?

Password security hinges on the answer to that seemingly simple question. Unfortunately, you can’t know the answer until you’ve engaged a ruthless penetration tester to find out if your environment can stand up to the frighteningly good password cracki… Continue reading Can your passwords withstand threat actors’ dirty tricks?

U.S. warns of North Korean hackers posing as IT freelancers

Companies and other organizations should be careful when employing IT freelancers, lest they end up hiring North Korean hackers. The advice comes from the U.S. Department of State, the U.S. Department of the Treasury, and the Federal Bureau of Investig… Continue reading U.S. warns of North Korean hackers posing as IT freelancers

Hackaday Links: May 8, 2022

Hackaday Links Column Banner

Russia’s loose cannon of a space boss is sending mixed messages about the future of the International Space Station. Among the conflicting statements from Director-General Dmitry Rogozin, the Roscosmos version …read more Continue reading Hackaday Links: May 8, 2022

Attackers using default credentials to target businesses, Raspberry Pi and Linux top targets

Findings from a Bulletproof report highlight the issue posed by poor security hygiene as automated attacks remain a high security threat to businesses. The research gathered throughout 2021, showed that 70% of total web activity is currently bot traffi… Continue reading Attackers using default credentials to target businesses, Raspberry Pi and Linux top targets

Ransomware groups and APT actors laser-focused on financial services

Trellix released a report, examining cybercriminal behavior and activity related to cyber threats in the third quarter (Q3) of 2021. Among its findings, the research reports that despite a community reckoning to ban ransomware activity from online foru… Continue reading Ransomware groups and APT actors laser-focused on financial services

Large scale cyberattack halts Red Cross work reuniting families, exposes confidential data

A cyberattack compromised personal and confidential data on more than half a million people helped by at least 60 Red Cross and Red Crescent organizations around the world, the International Committee of the Red Cross announced Wednesday. The organization said the exposed information belonged to highly vulnerable groups, including families separated by conflict. “An attack on the data of people who are missing makes the anguish and suffering for families even more difficult to endure. We are all appalled and perplexed that this humanitarian information would be targeted and compromised,” said Robert Mardini, ICRC’s director general. “This cyber-attack puts vulnerable people, those already in need of humanitarian services, at further risk.” International human rights organizations and nonprofits are popular targets for attackers. The United Nations confirmed in September it was hit earlier in the year by attackers that breached its infrastructure and accessed. The Red Cross has been a strong […]

The post Large scale cyberattack halts Red Cross work reuniting families, exposes confidential data appeared first on CyberScoop.

Continue reading Large scale cyberattack halts Red Cross work reuniting families, exposes confidential data