November 20, 2024
Articles CyberSecurity

Unmasking the Dark Side of Social Media: Cybersecurity Threats and Solutions

The widespread use of social media has brought people closer together, allowing them to connect with friends and family across the world, share experiences, and discover new opportunities. However, as social media usage has grown, so has the risk of cybersecurity threats, which are often overlooked by users. Cybersecurity threats on social media come in […]

Read More
Articles CyberSecurity

Cracking the Code: Uncovering the Motives of Cybercrime

Cyber-attacks have become a prevalent threat in today’s digital age. Whether it’s the latest data breach, ransomware attack, or a social engineering scam, we are continually bombarded by news of cyber threats. While there are many technical aspects to cybersecurity, it’s essential to understand the motivations behind cyber attacks. By gaining insight into the mind […]

Read More
Articles CyberSecurity Technology

Hackers Abused Microsoft OAuth Apps to Breach Corporate Email Accounts

On Tuesday, Microsoft announced that it has taken action to disable phoney Microsoft Partner Network (MPN) accounts that had been used to build harmful OAuth applications as part of a phishing campaign intended to infiltrate cloud environments of enterprises and steal email. The IT company claimed that the fraudulent actors “built applications that were subsequently […]

Read More
Articles CyberSecurity

Microsoft advises users to maintain their Exchange servers up to date as well as take precautions

Microsoft advises users to maintain their Exchange servers up to date as well as take precautions such turning on Windows Extended Protection and setting up certificate-based signing of PowerShell serialisation payloads. The software giant’s Exchange Team stated in a post that attackers attempting to target unpatched Exchange servers would not stop. The value of unpatched […]

Read More
Articles CyberSecurity Technology

British Cyber Agency warns of Russian and Iranian Hackers Targeting Key Industries

On Thursday, the U.K. National Cyber Security Centre (NCSC) issued a warning about spear-phishing attacks carried out by state-sponsored actors in Iran and Russia. SEABORGIUM (also known as Callisto, COLDRIVER, and TA446) and APT42 were blamed by the agency for the intrusions (aka ITG18, TA453, and Yellow Garuda). Despite the parallels in the ways the […]

Read More
Articles CyberSecurity Technology

Over 4,500 Worldpress Sites Hacked to Redirect Visitors to Sketchy Ad Pages

A massive campaign has infected more than 4,500 WordPress websites as part of a running operation that has been believed to be active since 2017. According to owner of Godadddy,Sucuri the infections involve the injection of a JavaScript hosted on domain named “track[.]violetlovelines[.]com that is designed to redirect visitors to some unwanted sites. The latest […]

Read More
Articles CyberSecurity Technology

Chinese Hackers Utilize Golang Malware in Dragon Spark Attacks

Organizations in East Asia are targeted by likely Chinese-speaking actor dubbed DragonSpark while employing uncommon tactics to go past security layers. Chinese hackers utilize malware and attacks are characterized by use of open source SparkRAT and malware which attempts to evade detection through a Golang source code interpretation. A striking aspect of the intrusions is […]

Read More
Articles CyberSecurity Technology

Emotet Malware Makes a Comeback with New Evasion Technique

The Emotet malware operation has continued to refine its tactics in a effort to fly under the radar while acting as a conduit for other dangerous malware such as Bumblebee and IcedID. Emotet which is officially reemerged in late 2021 after which a coordinated takedown of its infrastructure by authorities earlier that year which has […]

Read More
Articles CyberSecurity Technology

Apple issues Update for older Devices

Apple has fixes for a recently disclosed critical security flaw that is affecting older devices which is reciting evidence of active exploitation. The issue which is tracked as CVE-2022-42856 and is a type confusion vulnerability in the WebKit browser engine that could result in arbitrary code execution when processing maliciously crafted web content. While it […]

Read More
Articles CyberSecurity Technology

Samsung Galaxy Store App Vulnerable to Sneaky App Install

Two security flaws has disclosed in Samsung’s Galaxy Store app for Android that are exploited by a local attacker to install arbitrary apps to fraudulent landing pages on the web. The issues that tracked as CVE-2023-21433 and CVE-2023-21434, were discovered by NCC Group which is notified to the South Korean chaebol in November and December […]

Read More