Recent Security News

  • Cyberattackers Target Nuclear Waste Company via LinkedIn

    January 2, 2024 at 03:58PM Hackers recently targeted UK-based Radioactive Waste Management (RWM) using social engineering and LinkedIn. The company, now part of Nuclear Waste Services (NWS), has seen attempts to exploit business changes after a recent merger. The attackers were blocked through “multi-layered defenses,” but LinkedIn’s guidance recommends caution to avoid falling prey to…

    Read More

  • Steam drops support for Windows 7 and 8.1 to boost security

    January 2, 2024 at 03:46PM Steam officially stopped supporting Windows 7, 8, and 8.1 on January 1, with users urged to upgrade to a newer Windows OS. Microsoft’s extended support for Windows 7 ended in 2023. Windows 10 will reach end of support in 2025, making Windows 11 a better option. Steam warns unsupported versions…

    Read More

  • Orbit Chain loses $86 million in the last fintech hack of 2023

    January 2, 2024 at 03:46PM Orbit Chain suffered a security breach resulting in an $86 million loss, involving assets like Ether, Dai, Tether, and USD Coin. The breach, suspected to be the work of sophisticated state-sponsored attackers possibly from North Korea, prompted a collaboration with Korean authorities. Stolen funds are being tracked internationally, and caution…

    Read More

  • Crypto-crook Sam Bankman-Fried spared a second trial

    January 2, 2024 at 03:14PM US prosecutors have decided not to pursue a second trial for convicted crypto figure Sam Bankman-Fried. A letter cited already considered evidence and public interest for a prompt resolution. The decision could affect SBF’s March 2024 sentencing, as it would involve negotiating with The Bahamas over extradition terms. The first…

    Read More

  • Google password resets not enough to stop these info-stealing malware strains

    January 2, 2024 at 03:06PM Info-stealing malware can still access compromised Google accounts even after passwords are changed, due to a zero-day exploit first mentioned by the cybercriminal “PRISMA.” The exploit involves regenerating session tokens to access emails and cloud storage. CloudSEK identified the exploit in the undocumented Google OAuth endpoint “MultiLogin.” The discover reveals…

    Read More