Category Security

NCA: Nation States Using Cybercrime Groups as Proxies

The new head of the UK’s National Crime Agency (NCA) has warned that hostile states are increasingly cooperating with organized cybercrime groups. Graham Bigger made the comments as part of his first public address as the agency’s secretary to initiate…

Scam Job Offers Target Uni Students

College students are being warned to be vigilant after researchers uncover a new scam campaign based on fake job listings. According to Proofpoint, the campaign will begin in March 2023 and run through June, targeting primarily North American students with…

Norwegian Giant Tomra Suffers “Extensive” Attack

Norwegian recycling and mining multinational Tomra has revealed that some “data systems” were directly affected by a “massive” cyberattack. In a brief statement, the company said it discovered the breach on the morning of July 16th. “We quickly disconnected some…

IT Security Pro Jailed for Attempted Extortion

A former IT security analyst has been sentenced to three years and seven months in prison for attempting to blackmail his employer, according to British police. Ashley Lyles, 28, of Fleetwood, Letchworth Garden City, was found guilty of unauthorized computer…

drIBAN Fraud Operations Target Corporate Banking Customers

Threat actors have extensively used a sophisticated web injection kit called drIBAN to orchestrate malicious attacks against corporate banking institutions and their customers. According to the new Recommendation drIBAN was first discovered in 2019 by Clafy security researchers. drIBAN uses…

New Vulnerabilities Found in Adobe ColdFusion

Security researchers at Rapid7 have discovered multiple vulnerabilities being actively exploited in Adobe ColdFusion, a web development computing platform. On July 11, 2023, Adobe released an access control bypass vulnerability (CVE-2023-29298) found in Rapid7, as well as an insecure deserialization…