Category Security

The New Threats to Cryptocurrency Users

Suspected Russian threat actors are targeting Eastern European users of the cryptocurrency industry to install information-stealing malware on compromised hosts, baiting bogus job opportunities. In a report this week, Trend Micro researchers Aliakbar Zahravi and Peter Girnus wrote that attackers…

US Warns Critical Sectors Against North Korean Ransomware Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued a new Cybersecurity Advisory (CSA) Thursday against entities in the critical infrastructure sector against ongoing North Korean government-backed ransomware. Warned against activity. part of #StopRansomware Campaign, the new recommendations are the…

Reddit Hit By Phishing Attack, Source Code Stolen

Reddit suffered a cyberattack on February 5, 2005 after its internal systems were compromised. This was due to a “sophisticated” and “targeted” phishing attack that led to the exposure of employee credentials. “In an attempt to steal credentials and second-factor…

Malicious Npm Package Uses Typosquatting, Downloads Malware

A package called ‘aabquerys’ was discovered in an open-source JavaScript npm repository that uses typosquatting techniques to allow the download of malicious components. The findings are from the following security researchers: reversing labThey stated that aabquerys was able to download…

3 Overlooked Cybersecurity Breaches

Here are the three worst breaches, 2022 attacker tactics and techniques, and the security controls that can provide effective enterprise security protection against them. #1: Two RaaS Attacks in 13 Months Ransomware as a service is a type of attack…

New Threat Group Reviews Screenshots Before Striking

Security researchers have discovered a new financially motivated threat group that uses custom tools to identify and track high-value targets for information theft. The group, dubbed TA866 by Proofpoint, may have been active since 2019, but its most recent activity…