Free Decryptors Released for AstraLocker Ransomware

Cybersecurity firm Emsisoft has released free decryptor tools for AstraLocker, a “smash-and-grab” ransomware family that was recently retired.
read more

Continue reading Free Decryptors Released for AstraLocker Ransomware

OpenSSL Patches Remote Code Execution Vulnerability

OpenSSL has issued an urgent advisory to warn of a memory corruption vulnerability that exposes servers to remote code execution attacks.
The vulnerability, tracked as CVE-2022-2274, was introduced in OpenSSL 3.0.4 and could potentially allow malicious… Continue reading OpenSSL Patches Remote Code Execution Vulnerability

Apple Adds ‘Lockdown Mode’ to Thwart .Gov Mercenary Spyware

Faced with a surge in state-sponsored mercenary spyware attacks targeting its flagship iOS platform, Apple plans to add a new ‘Lockdown Mode’ that significantly reduces attack surface and adds technical roadblocks to limit sophisticated software exploi… Continue reading Apple Adds ‘Lockdown Mode’ to Thwart .Gov Mercenary Spyware

Researchers Flag ‘Significant Escalation’ in Software Supply Chain Attacks

Security researchers at ReversingLabs are warning of a “significant escalation in software supply chain attacks” after discovering more than two dozen malicious NPM packages siphoning user data from mobile and desktop applications.
read more

Continue reading Researchers Flag ‘Significant Escalation’ in Software Supply Chain Attacks

DoD Launches ‘Hack US’ Bounties for Major Flaws in Publicly Exposed Assets

The United States Department of Defense (DoD) has launched a one-week bug bounty program to reward researchers who find high- and critical-severity vulnerabilities in publicly accessible assets owned by the DoD.
read more

Continue reading DoD Launches ‘Hack US’ Bounties for Major Flaws in Publicly Exposed Assets

Evasive Rust-Coded Hive Ransomware Variant Emerges

A new variant of the Hive ransomware written using the Rust programming language is more evasive and provides attackers with flexibility, courtesy of support for command-line parameters.
read more

Continue reading Evasive Rust-Coded Hive Ransomware Variant Emerges

Oak9 Lands $8 Million in New Venture Investment

Chicago-based Infrastructure-as-Code (IaC) startup oak9 has attracted new interest from venture capitalists with Cisco Investments and Morgan Stanley’s Next Level Fund joining a new $8 million funding round.
read more

Continue reading Oak9 Lands $8 Million in New Venture Investment