Recent Security News

  • Three Ways To Supercharge Your Software Supply Chain Security

    January 4, 2024 at 08:12AM The “Executive Order on Improving the Nation’s Cybersecurity” emphasizes securing the “Software Supply Chain.” The article provides three ways to enhance security: safeguarding secrets, using software composition analysis for transparency, and integrating ethical hacking. Strengthening Software Supply Chain Security is crucial for smooth software sales and overall resilience in the…

    Read More

  • As lawmakers mull outlawing poor security, what can they really do to tackle online gangs?

    January 4, 2024 at 06:51AM The ransomware landscape in 2023 saw continued attacks on major organizations, but also notable progress in law enforcement’s efforts to bring down cybercriminal gangs. While some groups remained active, LE’s disruption of several operations marked significant strides in the fight against ransomware. The need for impactful legislation to further combat…

    Read More

  • Hacked Mandiant X Account Abused for Cryptocurrency Theft

    January 4, 2024 at 06:42AM Mandiant’s social media account was hacked and used to promote a fraudulent cryptocurrency website. The hacker temporarily renamed the account and spurred users to visit the deceptive site. Despite recovery attempts, the hijacker briefly regained control. Major web browsers have flagged the fraudulent site, coinciding with a report on dark…

    Read More

  • RIPE Account Hacking Leads to Major Internet Outage at Orange Spain 

    January 4, 2024 at 06:42AM Orange Spain experienced a prolonged internet outage due to a hacker attack on January 3. The hacker, known as ‘Snow’, gained control of Orange’s RIPE account, disrupting internet traffic using stolen credentials. Orange confirmed the attack, stating that customer data was not compromised, and the impacted services have been restored.…

    Read More

  • Beware: 3 Malicious PyPI Packages Found Targeting Linux with Crypto Miners

    January 4, 2024 at 06:24AM Three new malicious packages discovered in the Python Package Index (PyPI) repository can deploy a cryptocurrency miner on affected Linux devices. The packages, modularseven, driftme, and catme, attracted 431 downloads before being removed. They conceal their payload, deploy a CoinMiner executable, and persistently exploit devices, evading detection and security software.…

    Read More