Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

Russia-linked APT28 deploys the GooseEgg post-exploitation tool against numerous US and European organizations.

UnitedHealth confirms that personal and health information was stolen in a ransomware attack that could cost the company up to $1.6 billion.

Palo Alto Networks firewall vulnerability CVE-2024-3400, exploited as a zero-day, impacts a Siemens industrial product.

The LockBit ransomware gang leaks data allegedly stolen from government contractor Tyler Technologies.

Microsoft PlayReady vulnerabilities that could allow rogue subscribers to illegally download movies from popular streaming services.

Vulnerabilities in Palo Alto Networks Cortex XDR allowed a security researcher to turn it into a malicious offensive tool.

A hack that caused a small Texas town’s water system to overflow in January has been linked to a shadowy Russian hacktivist group, the latest case of a U.S. public utility becoming a target of foreign cyberattacks.

CrushFTP patches a zero-day vulnerability allowing unauthenticated attackers to escape the VFS and retrieve system files.

Shadowserver has identified roughly 6,000 internet-accessible Palo Alto Networks firewalls potentially vulnerable to CVE-2024-3400.

MITRE R&D network hacked in early January by a state-sponsored threat group that exploited an Ivanti zero-day vulnerability.

Cannes Hospital Centre – Simone Veil cancels medical procedures after shutting down systems in response to a cyberattack.

People on the Move

Attack detection firm Vectra AI has appointed Jeff Reed to the newly created role of Chief Product Officer.

Shaun Khalfan has joined payments giant PayPal as SVP, CISO.

UK cybersecurity agency NCSC announced Richard Horne as its new CEO.

Bill Dunnion has joined telecommunications giant Mitel as CISO.

Cybersecurity firm Forcepoint has appointed Naveen Palavalli as CMO.

More People On The Move
Streaming services hack Streaming services hack

Microsoft PlayReady vulnerabilities that could allow rogue subscribers to illegally download movies from popular streaming services.

MITRE hacked MITRE hacked

MITRE R&D network hacked in early January by a state-sponsored threat group that exploited an Ivanti zero-day vulnerability.

Ransomware Ransomware

Telecom giant Frontier shuts down systems to contain a cyberattack that led to personal information compromise.

Top Cybersecurity Headlines

Russia-linked APT28 deploys the GooseEgg post-exploitation tool against numerous US and European organizations.

UnitedHealth confirms that personal and health information was stolen in a ransomware attack that could cost the company up to $1.6 billion.

Palo Alto Networks firewall vulnerability CVE-2024-3400, exploited as a zero-day, impacts a Siemens industrial product.

The LockBit ransomware gang leaks data allegedly stolen from government contractor Tyler Technologies.

SecurityWeek Industry Experts

More Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

Upcoming Cybersecurity Events

The AI Risk Summit brings together security and risk management executives, AI researchers, policy makers, software developers and influential business and government stakeholders. [June 25-26, Ritz-Carlton, Half Moon Bay, CA]

Learn More

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Learn More

Designed for senior level cybersecurity leaders to discuss, share and learn innovative information security and risk management strategies, SecurityWeek’s CISO Forum, will take place June 25-26 at the Ritz-Carlton, Half Moon Bay, CA

Learn More

SecurityWeek’s Threat Detection and Incident Response (TDIR) Summit dives into Threat hunting tools and frameworks, and explores the value of threat intelligence data in the defender’s security stack.

Learn More

Vulnerabilities

Cybercrime

GreenSQL, a company that SecurityWeek first met earlier this year during the RSA Conference, recently released the results of a poll that included more than 6,000 customers, IT administrators, DBAs, InfoSec practitioners, and consultants. The results, when focused on information security and database security, show that the majority fear SQL Injection vulnerabilities.

What to Do When Your Website Has Been HackedWhile the following is by no means exhaustive, here are a few suggestions to begin with if your web site has been hacked.

John Kiriakou, a former CIA officer from 1999 to 2004, was indicted on Thursday for allegedly disclosing classified information to journalists. The restricted disclosure included the name of a covert officer and information related to the role a CIA employee played in classified operations.His indictment comes following an investigation that was triggered by what the Department of Justice is calling a “classified defense filing” back in January 2009.

Security firm Sophos with dual headquarters in Boston, Massachusetts and Oxford, UK, made a decision to disable its partner portal following a breach that was discovered earlier this week. According to a notice on the portal itself, Sophos doesn’t know if any sensitive data was accessed including passwords and email addresses. Until the investigation in to the breach is concluded, the portal will remain offline.

Containing the Global Cybercrime Threat is The Focus of The CeCOS VI Summit Taking Place in Prague, Czech Republic Later This MonthLater this month, global leaders from various industries, government, law enforcement, communications sectors, and research centers will gather in in Prague, Czech Republic for the Counter eCrime Operations Summit (CeCOS VI).

In Australia, the local police will be informing businesses and residents that their wireless signal is unprotected and therefore open for criminal activity.According to the Sydney Morning Herald, police in Queensland will be the first to provide the new service. It is hoped that securing wireless in the area will help cut down on the number of cases of fraud, however, this is still just an informational campaign with no fines for non-compliance.

Dell SecureWorks recently published a report on the Waledac / Kelihos botnet and its role in a recent takedown operation. Unfortunately, while the initial efforts were successful, the controllers of the botnet have moved on and resumed operations.

Lookout Mobile Security has discovered a new variant of the Legacy Native (LaNa) malware for Android which opens a backdoor to the device. Unlike previous versions of LaNa, where the device had to first be rooted and depended on user interaction, this new variant doesn’t require the user at all, and will work on non-rooted devices.

McAfee today launched a new agentless AntiVirus (AV) solution for its McAfee Management for Optimized Virtual Environments (MOVE) platform that provides protection against various physical and virtual attacks through a single console.Designed to integrate with VMware vShield™ Endpoint, the solution offers customers standardized security across all major hypervisor vendors and addresses the challenges of protecting virtual environments in order to keep them malware-free.

TIBCO Software, a publicly traded (NASDAQ: TIBX) provider of infrastructure software solutions, on Tuesday night said that it has entered into a definitive agreement to acquire San Jose California-based LogLogic, a provider of and log management and security intelligence solutions, for an undisclosed sum.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Cloud Security

Artificial Intelligence

Cisco announces Hypershield, an AI-native and cloud-native enterprise security solution with a wide range of capabilities.