Recent Security News

  • Vulnerability Management Firm Vicarius Raises $30 Million

    January 17, 2024 at 02:37PM Vicarius, a New York vulnerability management firm, secured $30 million in a Series B funding round led by Bright Pixel. With total funding exceeding $56 million, the company offers automated vulnerability management through vRx and a PLG model. Their LLM-based approach with vuln_GPT aims to combat AI attacks, and the…

    Read More

  • Bigpanzi botnet infects 170,000 Android TV boxes with malware

    January 17, 2024 at 01:57PM Summary: The cybercrime syndicate ‘Bigpanzi’ has been infecting Android TV and eCos set-top boxes to create a large botnet used for illegal activities, including media streaming, DDoS attacks, and content provision. Their customized malware, pandoraspear and pcdn, poses serious cybersecurity threats. The scale of their operations, involving over 1.3 million…

    Read More

  • CISA pushes federal agencies to patch Citrix RCE within a week

    January 17, 2024 at 01:36PM CISA has directed U.S. federal agencies to secure their systems against recently patched Citrix NetScaler and Google Chrome zero-days. The urgency is due to active exploitation of the vulnerabilities. The agencies have specific timelines for patching, with the most critical CVE-2023-6548 vulnerability requiring resolution within a week. CISA urges all…

    Read More

  • Microsoft: Iranian APT Impersonating Prominent Journalist in Clever Spear-Phishing Attacks

    January 17, 2024 at 01:30PM Microsoft has uncovered a sophisticated spear-phishing campaign by the ‘Mint Sandstorm’ hackers, associated with Iran’s military intelligence. The attacks target high-profile individuals in Middle Eastern affairs, using impersonation of journalists and benign emails to build trust before delivering malicious content. The hackers utilize compromised accounts to send phishing lures and…

    Read More

  • Swiss Govt Websites Hit by Pro-Russia Hackers After Zelensky Visit

    January 17, 2024 at 01:30PM Pro-Russian group “NoName” conducted a cyberattack on Swiss government websites, citing President Zelensky’s Davos visit. National Cyber Security Centre promptly restored access, as expected security measures were in place. The attack used distributed denial-of-service, impacting ministries and offices, but not the main portal. “NoName” group previously targeted Switzerland after Zelensky’s…

    Read More